zephro
Junior Member
Posts: 3,011
|
Post by zephro on Mar 25, 2022 19:19:14 GMT
No idea about Gremlin It's an Apache query language for Graph Databases, I sat through some tutorials on it when we were eyeing up AWS Neptune.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Mar 28, 2022 10:50:51 GMT
No idea about Gremlin It's an Apache query language for Graph Databases, I sat through some tutorials on it when we were eyeing up AWS Neptune. Ah. It's a better name than either "Oozie" or "Pig", I suppose. I have to be honest; I haven't done much this morning (notice in last week and all that). What I did do was an investigation into a contractor (who is leaving) and decided that he'd found a bit of software on his machine which he thought was there to monitor his activity, snoop on his desktop etc. It's actually for allowing an RDP session over a TCP tunnel to the AV agent if the standard RDP ports are blocked by a Firewall or NAT etc. It doesn't allow snooping and access to an existing desktop session only occurs with that user's permission (as per standard Windows config). Paranoid, much?
|
|
|
Post by dfunked on Mar 28, 2022 10:53:14 GMT
Heh, I love it when people believe that we've got nothing better to be doing with our time than spying on users.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Mar 28, 2022 10:55:57 GMT
Innit. Not only that, but we have plenty of actual ways of telling exactly what a given user is doing on their work computers (Traffic monitoring, SIEM, Syslogging, MI analytics platform), as if I need to install anything to view your actual desktop.
|
|
X201
Full Member
Posts: 5,148
|
Post by X201 on Mar 28, 2022 19:19:16 GMT
Also their disbelief that even though you could go through everyone’s email and files, you don’t.
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Mar 28, 2022 20:57:44 GMT
To be fair, it is generally worth assuming someone will look at your shit at some point. I deal with so many falsely reported HR and whistleblowing cases, it’s ridiculous.
|
|
Deleted
Deleted Member
Posts: 0
|
Post by Deleted on Mar 28, 2022 22:03:53 GMT
Having issues with datafusion (Google cloud) managed to get it all plumbed in via terraform/terragrunt but the data guys can't connect to anything. Fw rules are in, done the routing and the vpc peering. No joy. Google support told me it has to be the same range as one of our subnets. Erm no, because that's already being used and hence why we peer vpcs to accommodate the different ranges.
Got a call with them tomorrow as I cannot remove some of the older failed peerings. Console is greywd out and in the cli the peerings don't exist so I can't run the gcloud commands. Well I can but obviously they don't find the peerings.
What a bloody nightmare.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Mar 29, 2022 9:56:21 GMT
To be fair, it is generally worth assuming someone will look at your shit at some point. I deal with so many falsely reported HR and whistleblowing cases, it’s ridiculous. Yeah. I always advise people to behave as if you’re using someone else’s computer, tbh. It’s surprising how many people think that their work PC belongs to them.
|
|
|
Post by spacein_vader on Mar 29, 2022 12:34:05 GMT
To be fair, it is generally worth assuming someone will look at your shit at some point. I deal with so many falsely reported HR and whistleblowing cases, it’s ridiculous. Yeah. I always advise people to behave as if you’re using someone else’s computer, tbh. It’s surprising how many people think that their work PC belongs to them. And their work email address. So many people have their amazon (for example,) account attached to their work email. Why ffs? Gets fun when people put in SARs asking what their boss has written about them in emails. That can get tasty.
|
|
zephro
Junior Member
Posts: 3,011
|
Post by zephro on Mar 29, 2022 16:09:00 GMT
So this is a new one on me for the state of recruiters. I actually had a recruiter from my old company message me, who I had worked with as a team lead trying to find new engineers. It was for a mid level position back at the old company in fucking JavaScript. Genuinely a bot could do better.
|
|
Psiloc
Junior Member
Posts: 1,567
|
Post by Psiloc on Apr 8, 2022 10:59:39 GMT
Fucking hell imagine building a career around JS
|
|
Psiloc
Junior Member
Posts: 1,567
|
Post by Psiloc on Apr 8, 2022 11:04:11 GMT
"When you install our new system, could you import all of the data from our 15+ year old database?" "We can do that but there are a ton of reasons why you shouldn't and the process will be irreversible if you change your mind down the line. This is your chance for a fresh start and the old data isn't going anywhere anyway." "We won't change our minds, thank you!"
One month later:
"Could someone remote in and remove all of the old junk from our database?"
Having to deal with this with every install lately.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Apr 8, 2022 11:40:39 GMT
I hope you said "no, we warned you"?
|
|
Psiloc
Junior Member
Posts: 1,567
|
Post by Psiloc on Apr 8, 2022 15:25:10 GMT
Nope. Have to deal with it now.
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Apr 8, 2022 17:55:36 GMT
Some bellend chose to kick off a red team at 4pm on a Friday. We ‘won’ in a muscular 3hrs but, still…. ugh.
|
|
スコットランド
Junior Member
Delicious gruel
Posts: 3,934
|
Post by スコットランド on Apr 8, 2022 17:58:38 GMT
Some bellend chose to kick off a red team at 4pm on a Friday. We ‘won’ in a muscular 3hrs but, still…. ugh. What does that mean?
|
|
|
Post by 😎 on Apr 8, 2022 17:59:56 GMT
It’s like in Crimson Tide where they run nuclear launch drills. nick is Gene Hackman
|
|
|
Post by 😎 on Apr 8, 2022 18:06:19 GMT
I bet nick has some juicy evil user stories to add to his secops epics now.
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Apr 8, 2022 19:02:26 GMT
Their foothold was gained through linkedin spearphishing (again). If anyone ever asks you to provide a reference for some rando you used to work with, don’t click on anything they send you.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Apr 19, 2022 9:29:33 GMT
Today, I am mostly writing Cyber Security interview questions and preparing to interview my potential replacement. My boss has sent me the CVs of his possibles. Three of them have precisely zero actual cyber experience (for a "Senior Security Engineer" position). Three of them are asking for a fair bit more than they were paying me. This all seems rather ironic...
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Apr 19, 2022 9:39:37 GMT
Its a buoyant market but, yes, the amount of 23 year old Chads applying for senior positions and wanting top bracket with a muscular 18 months experience is nuts. Our first CV sift on senior positions is 90% just filtering out graduates.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Apr 19, 2022 9:54:13 GMT
Its a buoyant market but, yes, the amount of 23 year old Chads applying for senior positions and wanting top bracket with a muscular 18 months experience is nuts. Our first CV sift on senior positions is 90% just filtering out graduates. Indeed. The internet (eg, Reddit) is full of folks (Americans?) saying "yeah, I did tech support for a year, then worked in a SOC for 2 years and now I'm on $200k" which I suspect probably helps. Although, I don't actually believe a word of it. One of these guys was working in a pawn shop until a couple of years ago. No offence, mate, but even if you're a gifted amateur, you're probably not ready for a senior role.
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Apr 19, 2022 10:01:08 GMT
We had a junior CTI position open for like a year because everyone who applied for it wanted more money than the person who was going to be managing them.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Apr 19, 2022 10:13:36 GMT
Blimey.
I guess those folks telling stories on the internet ain't helping anyone. Fancy that.
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Apr 19, 2022 11:10:36 GMT
I think universities also play some part in it. I think they have a tendency to egg people on to sell their courses now. I dunno. Its an odd one. Cant fault them for backing themselves but we are offering like 34k for a junior level where we would want a grad with like a year or so experience which isnt loads but they are wanting double that or more.
Its good for our internal people, tbh. We have given up on a few external vacancies and the people who have been filling in have got the job.
|
|
dogbot
Full Member
Posts: 8,738
|
Post by dogbot on Apr 19, 2022 11:28:14 GMT
Cripes.
I know salaries have shot up and more senior, experienced staff can definitely pick and choose... but not to double that level for fairly junior people.
This actually explains why all the recent approaches I had came from recruitment professionals working directly for the company concerned and not from the more traditional route of approaches from contracted agents. I guess it allows them to approach who they want and have that discussion early without wasting any time or spending any money.
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Apr 19, 2022 11:55:37 GMT
Yeah, that too. If you’re always reading on Reddit that your fantasyland peers are all on $120k, you’re going to want that, too. I mean, it’s fine, whatever, it’s not my money but reality kicks in eventually.
|
|
|
Post by 😎 on Apr 19, 2022 14:12:04 GMT
Not that I disagree in general but that more or less did happen to me. My highest on paper qualification is an Associates in English, but my experience in healthcare IT and my aptitude landed me a 6 figure architect role out of nowhere.
|
|
Bongo Heracles
Junior Member
Technically illegal to ride on public land
Posts: 4,661
|
Post by Bongo Heracles on Apr 19, 2022 14:17:07 GMT
Yeah but, I mean, you old. I would never get my job now with the qualifications I had when I got it.
But, yeah, that does raise a point. There is a fair dose of luck involved and, more often than not, a dollop of nepotism. Im already priming the pump for the girls work experience whether she likes it or not.
|
|
|
Post by 😎 on Apr 19, 2022 14:19:20 GMT
I’ve been told by multiple people that my entry point into my current org was based entirely on my accent.
|
|