#it networking
Explore tagged Tumblr posts
theshampyon · 8 months ago
Text
The complete lack of support for these chill dudes (gender neutral - not all are male, P.S. many are also queer) is not only unfair, it's a major security risk.
There's something called SSH - Secure Shell. A secure protocol for accessing and controlling network devices. It's an integral part of every major Linux-based server, which run the vast majority of internet and government IT infrastructure on the planet. It's also sometimes used on other operating systems like Microsoft Windows. There's another little bit of software on just about all Linux operating systems called XZ Utils. It's a set of data compressors.
XZ Utils was being maintained by one person, a dude named Lasse Collin. An integral item used by about countless operating systems and servers that run everything from military systems to literally almost every single web and content server on the planet. One guy. He was fucking tired.
So when someone named Jia Tan showed up and offered to ease some of that burden, Collin leapt at the chance. And for years, it went well. They worked together to maintain XZ Utils. Then other people began showing up telling Collin that it's fine to retire now, move on to other projects, Jia Tan can take care of it. Collin listened.
Within a year of Collin handing over the reins, Jia Tan had implanted code into XZ Utils that granted unauthorised access to any system using it via SSH. Which means it was a backdoor that granted direct unauthorised access to the majority of network device and computer systems on the planet, and indirect or potential unauthorised access to almost every other network device and computer system.
This kind of attack is called a "supply chain attack." Instead of trying to break in from the outside or directly attack a target from within, you compromise a step in the supply chain that eventually makes it's way to the target system. This happened a few years back with the SolarWinds attack, known to have been caused by the Russian government, after they compromised software updates for SolarWinds, VMware, and Microsoft products being used by the US Federal Government. (Side note: President Trump refused to comment on the attack for days, before finally declaring that despite the evidence China must be the perpetrator).
It has since been learned that Jia Tan's supportive voices were all sock puppet accounts. They and Tan appeared to always post from Cina, though sometimes seemed to be posting from the Middle East and Europe. They worked on just about every notable Chinese holiday. This seems to indicate Jia Tan was not only an alias, but a name chosen as false flag in the event the years-long deception was uncovered. Current suspicion is that this was another Russian cyberattack, but we may never know for certain.
And this attack was only noticed by one other dude, Andres Freund, who noticed his SSH connections were a little slower than normal and decided it would be fun to investigate. He was a Microsoft employee but that investigation wasn't his job. He just thought it was worth doing.
The vast majority of the world's network infrastructure, used by every government and every corporation, compromised because the entire planet was relying on one chill dude and he was fucking tired.
Tumblr media
92K notes · View notes
yeahiwasintheshit · 2 months ago
Text
28K notes · View notes
centralpark1981 · 4 months ago
Text
Tumblr media
25K notes · View notes
whiterabbitloveposting · 5 months ago
Text
Tumblr media
For those wondering - Amazing Spider-Man Vol 1 #338 (Hobgoblin sprays Spider-man with poison) and #339 (Doc Ock reveals the poison only becomes lethal when combined with cocaine).
Tumblr media Tumblr media
23K notes · View notes
azuremist · 5 months ago
Text
Tumblr media
(Original Tweet)
20K notes · View notes
tempizza · 2 months ago
Text
Tumblr media
15K notes · View notes
onebadnoodle · 10 months ago
Text
Tumblr media Tumblr media Tumblr media
i've been rewatching ed edd n eddy and its got me thinking about what their unseen parents are like
37K notes · View notes
dilaofan · 2 months ago
Text
Tumblr media
unfortunately my dunmeshi welfare vision is an unusually catty kabru. practise safe binding my friends
(笨蛋 = dumbass, idiot, dimwit, etc.)
14K notes · View notes
myovin · 19 days ago
Text
Tumblr media
Beatrice from Over the Garden Wall 🕊️✨
8K notes · View notes
rosielindy · 4 months ago
Text
One of the joys of working in technology are all the wonderful acronyms. I’m starting on a new technical project and hearing the term GNAS, so rather than asking somebody I decided to google it and found this page. I eventually found the correct acronym meaning but not here. I already know what a NAS is and discovered the G is Gateway.
What a relief! I really like my coworkers but not enough to do the last one on the list. 😜 😂
Tumblr media
1 note · View note
danicalzone · 8 months ago
Text
Tumblr media
the happy dudes or something
17K notes · View notes
deramin2 · 18 days ago
Text
Tumblr media
ID: Destiel Confession breaking news meme. Castiel says, I love you. Dean Winchester replies, "Sarah McBride to become first openly transgender member in Congress. End ID.
5K notes · View notes
aphel1on · 6 months ago
Text
compilation of dunmeshi images saved to my computer under variations of "FOUND FAMILY REAL":
Tumblr media Tumblr media Tumblr media Tumblr media
20K notes · View notes
bandzboy · 5 months ago
Text
Tumblr media Tumblr media Tumblr media
source.
8K notes · View notes
browsethestacks · 1 year ago
Text
Tumblr media Tumblr media Tumblr media Tumblr media Tumblr media Tumblr media Tumblr media Tumblr media Tumblr media Tumblr media
Arthouse Muppets
Art by Bruce McCorkindale
22K notes · View notes