Forumi
Home Pravila i pomoć Članovi Kalendar Današnji postovi


Povratak   PC Ekspert Forum > Ostalo > Razno
Ime
Lozinka

Odgovori
 
Uređivanje
Staro 26.08.2025., 19:55   #421
medo
#erase startup-config
Moj komp
 
medo's Avatar
 
Datum registracije: Nov 2001
Lokacija: Zagreb
Postovi: 3,688
Privatnost i sigurnost podataka i korisnika

ZTNA is ur friend

Ali da, MFA auth sa certom s poslovnog laptopa bi trebao biti minimum za VPN.
__________________
"It's not a bug, it's a feature!"
1N6pJsvusP7afu23qs1uBscK16wfcG7C8m
medo je offline   Reply With Quote
Staro 26.08.2025., 21:29   #422
Deamon101
Premium
Moj komp
 
Deamon101's Avatar
 
Datum registracije: Aug 2007
Lokacija: Zagreb
Postovi: 644
Citiraj:
Autor medo Pregled postova
ZTNA is ur friend

Ali da, MFA auth sa certom s poslovnog laptopa bi trebao biti minimum za VPN.
Minimum minimuma je da ako je poslovni laptop da je u domeni.
Prijatelj iz banke čak ima i karticu pa upiše pin ekstra.
Tu je i pristup preko "web stranice", to mi je najmanja zaštita općenito, doslovno nikakav cert ili nešto, možeš i sa moba.
Ipak najjači su mi oni koji lijepe na žute trakice svoje passworde pa na monitor stave, cca 5-10% ljud joj kako bi to trebalo kazniti, ali što ćeš kad svi "sheraju" računalne resurse i dost ljudi znaju od drugih ljudi na ovaj ili onaj način.
Doduše to smo stisnuli sada sa kompliciranim passwordima. Tu isto ajmo reći 10% ljudi ne može pojmiti što je to komplicirani password iako fino napišeš i tu nema pomoći, moraš mu jednom u tri mjeseca ti izmisliti neki
Deamon101 je offline   Reply With Quote
Oglasni prostor
Oglas
 
Oglas
Staro 26.08.2025., 21:52   #423
The Exiled
McG
Moj komp
 
The Exiled's Avatar
 
Datum registracije: Feb 2014
Lokacija: Varaždin
Postovi: 8,213
Službeno računalo u domeni, VPN uz 2FA/MFA na službenom mobitelu, YubiKey, AD grupe s jasno određenim razinama pristupa i sl. se naveliko koriste, a posebice otkad je rad od doma s drugog kraja svijeta postal popularan i normalan. Ljudi s privatnim stvarima mogu kaj god ih volja, ali za potrebe posla imaju službene resurse koji su zaključani za njihove lično-personalne "samo da provjerim kad je koncert na hipodromu" izlete. Skupljanje USB štapića po parkingu lokalnog Lidla im dođe ko skupljanje narkomanskih igli i korištenih kondoma po parkićima, pa kad im se tak objasni, više nemaju "a ja mislila, nisam školovala" nejasnoća.
__________________
AMD Ryzen 9 9950X | Noctua NH-U12A chromax.black | MSI MAG B650 Tomahawk Wi-Fi | 128GB Kingston FURY Beast DDR5-5200 | 256GB AData SX8200 Pro NVMe | 2x4TB WD Red Plus | Fractal Define 7 Compact | Seasonic GX-750
AMD Ryzen 5 7600 | Noctua NH-U12A chromax.black | MSI MAG B650 Tomahawk Wi-Fi | 128GB Kingston FURY Beast DDR5-5200 | 256GB AData SX8200 Pro NVMe | 2x12TB WD Red Plus | Fractal Define 7 Compact | eVGA 650 B5

Zadnje izmijenjeno od: The Exiled. 26.08.2025. u 21:58.
The Exiled je offline   Reply With Quote
Staro 26.08.2025., 22:46   #424
medo
#erase startup-config
Moj komp
 
medo's Avatar
 
Datum registracije: Nov 2001
Lokacija: Zagreb
Postovi: 3,688
Privatnost i sigurnost podataka i korisnika

Rvacka posla. Više od pola firme su frendovi, kumovi, familija… ne bi se nikome šteli zamerati a kamoli nešto reći pa makar i na poslu.

Yubikey je cool. Nema više promjena passworda zaljepljenih na ekrane i ispod tipkovnica. “aLi tO kooŠtaaa…”
__________________
"It's not a bug, it's a feature!"
1N6pJsvusP7afu23qs1uBscK16wfcG7C8m
medo je offline   Reply With Quote
Staro 27.08.2025., 10:07   #425
d0X
Kostolomac
Moj komp
 
d0X's Avatar
 
Datum registracije: Jun 2006
Lokacija: Rijeka
Postovi: 1,477
Citiraj:
Autor Deamon101 Pregled postova
Nego sad skroz offtopic, isprika, ali provjerava li tko dal je usb po defaultu pod boot u biosu?
Ok sad kad razmislim nije masovna pojava, ali da sam baš provjeravao nisam.
To na nekim starim Windows XP non-UEFI mašinama? Jer bi na novijima sa isključenim CSM-om trebao biti Windows Boot Manager stavljen po defaultu, pa sa sticka možeš bootati jedino ako odabereš.
__________________
PSN Steam
d0X je offline   Reply With Quote
Staro 27.08.2025., 10:14   #426
Night
Premium
 
Datum registracije: Oct 2008
Lokacija: Dbk
Postovi: 1,273
Citiraj:
Autor Deamon101 Pregled postova
Nego sad skroz offtopic, isprika, ali provjerava li tko dal je usb po defaultu pod boot u biosu?
Ok sad kad razmislim nije masovna pojava, ali da sam baš provjeravao nisam.

U pravilu nije nikad po defaultu USB ispred HDDa i onih UEFI varijabli, ali može se kroz BIOS podesiti ako hoćeš da USB bude defaultni boot device. I sa isključenim CSMom može UEFI USB biti default boot device. Nakon instalacije OSa maknem iz default boot ordera sve osim onoga što hoću da se boota.
Night je offline   Reply With Quote
Staro 27.08.2025., 11:33   #427
medo
#erase startup-config
Moj komp
 
medo's Avatar
 
Datum registracije: Nov 2001
Lokacija: Zagreb
Postovi: 3,688
Mi smo oduvijek lockali BIOSe sa unique passwordom za taj komp. Ostale boot metode disejblane. Thunderbolt također (vidi ThunderStrike napad). Secure Boot je postao obavezan sa uvođenjem Win10 (osmica preskočena).
__________________
"It's not a bug, it's a feature!"
1N6pJsvusP7afu23qs1uBscK16wfcG7C8m
medo je offline   Reply With Quote
Staro Jučer, 05:39   #428
tomek@vz
Premium
Moj komp
 
tomek@vz's Avatar
 
Datum registracije: May 2006
Lokacija: München/Varaždin
Postovi: 4,808
Citiraj:
WhatsApp said on Friday that it fixed a security bug in its iOS and Mac apps that was being used to stealthily hack into the Apple devices of "specific targeted users." The Meta-owned messaging app giant said in its security advisory that it fixed the vulnerability, known officially as CVE-2025-55177, which was used alongside a separate flaw found in iOS and Macs, which Apple fixed last week and tracks as CVE-2025-43300.

Apple said at the time that the flaw was used in an "extremely sophisticated attack against specific targeted individuals." Now we know that dozens of WhatsApp users were targeted with this pair of flaws. Donncha O Cearbhaill, who heads Amnesty International's Security Lab, described the attack in a post on X as an "advanced spyware campaign" that targeted users over the past 90 days, or since the end of May. O Cearbhaill described the pair of bugs as a "zero-click" attack, meaning it does not require any interaction from the victim, such as clicking a link, to compromise their device.

The two bugs chained together allow an attacker to deliver a malicious exploit through WhatsApp that's capable of stealing data from the user's Apple device. Per O Cearbhaill, who posted a copy of the threat notification that WhatsApp sent to affected users, the attack was able to "compromise your device and the data it contains, including messages." It's not immediately clear who, or which spyware vendor, is behind the attacks. When reached by TechCrunch, Meta spokesperson Margarita Franklin confirmed the company detected and patched the flaw "a few weeks ago" and that the company sent "less than 200" notifications to affected WhatsApp users. The spokesperson did not say, when asked, if WhatsApp has evidence to attribute the hacks to a specific attacker or surveillance vendor.


--------------------------------------------------------


Citiraj:
Defense Secretary Pete Hegseth said the Pentagon has halted a decade-old Microsoft program that has allowed Chinese coders, remotely supervised by U.S. contractors, to work on sensitive DOD cloud systems. In a digital video address to the public posted yesterday, the secretary said DOD was made aware of the "digital escorts" program last month and that the program has exposed the Defense Department to unacceptable risk -- despite being designed to comply with government contracting rules.

"If you're thinking 'America first,' and common sense, this doesn't pass either of those tests," Hegseth said, adding that he initiated an immediate review of the program upon learning of it. "I want to report our initial findings. ... The use of Chinese nationals to service Department of Defense cloud environments? It's over," he said. Additionally, Hegseth said DOD has issued a formal letter of concern to Microsoft, documenting a breach of trust, and that DOD is requiring a third-party audit of the digital escorts program to pore over the code and submissions made by Chinese nationals. The audit will be free of charge to U.S. taxpayers, he said.


-------------------------------------------------------


Citiraj:
US states are imposing stricter rules on how tech companies collect, analyze, and monetize biometric data, including facial features, iris patterns, and other unique identifiers. While no federal regulation currently governs facial recognition systems, the National Conference of State Legislatures reports that 23 states have passed or updated laws to limit the mass collection of biometric information.

> Techspot


Pitam se kad ce i kod nas (razina EU) ovo implementirati - prijavu kroz Fingerprint reader na lapu su odavno iskljucili.
__________________
Lenovo LOQ 15AHP9 83DX || AMD Ryzen 5 8645HS / 16GB DDR5 / Micron M.2 2242 1TB / nVidia Geforce RTX 4050 / Windows 11 Pro
Lenovo Thinkpad L15 Gen 1 || Intel Core i5 10210U / 16GB DDR4 / WD SN730 256GB / Intel UHD / Fedora Workstation 42

Zadnje izmijenjeno od: tomek@vz. Jučer u 06:03.
tomek@vz je offline   Reply With Quote
Staro Jučer, 09:30   #429
Deamon101
Premium
Moj komp
 
Deamon101's Avatar
 
Datum registracije: Aug 2007
Lokacija: Zagreb
Postovi: 644
Citiraj:
Autor tomek@vz Pregled postova
Pitam se kad ce i kod nas (razina EU) ovo implementirati - prijavu kroz Fingerprint reader na lapu su odavno iskljucili.
Evo jedna dobra vijest za tebe i onima sličnim tebi.

https://www.index.hr/vijesti/clanak/...vijesti_prva_d

George Orwell se smije iz groba.

Zadnje izmijenjeno od: Deamon101. Jučer u 09:35.
Deamon101 je offline   Reply With Quote
Staro Jučer, 09:51   #430
tomek@vz
Premium
Moj komp
 
tomek@vz's Avatar
 
Datum registracije: May 2006
Lokacija: München/Varaždin
Postovi: 4,808
Citiraj:
Autor Deamon101 Pregled postova
Evo jedna dobra vijest za tebe i onima sličnim tebi.

https://www.index.hr/vijesti/clanak/...vijesti_prva_d

George Orwell se smije iz groba.

A jesi našo kvalitetan članak nema šta "Petros Flames". Zna se da je Index krema vrhunskog novinarstva i da prije nego nesto napisu ne pozesaju za senzacionalizmom i ne pokusavaju u citetelju izazvati bijes i mrznju prema objektu/objektima radi par klikova vise i poistovjecivanjem sa trenutnim eskalacijama u narodu.


/sarcasm off.
__________________
Lenovo LOQ 15AHP9 83DX || AMD Ryzen 5 8645HS / 16GB DDR5 / Micron M.2 2242 1TB / nVidia Geforce RTX 4050 / Windows 11 Pro
Lenovo Thinkpad L15 Gen 1 || Intel Core i5 10210U / 16GB DDR4 / WD SN730 256GB / Intel UHD / Fedora Workstation 42
tomek@vz je offline   Reply With Quote
Oglasni prostor
Oglas
 
Oglas
Staro Jučer, 10:14   #431
Deamon101
Premium
Moj komp
 
Deamon101's Avatar
 
Datum registracije: Aug 2007
Lokacija: Zagreb
Postovi: 644
Citiraj:
Autor tomek@vz Pregled postova
/sarcasm off.
Zaboravio si i "živim tolko dosadan život da čak i ako me snimaju bez naloga mene to ne smeta" /sarkazam on

ontopic, čitam da "zbog zaštite djece" da ima puno false pozitive rezultata, tipa slikaš vlastito djete na plaži i ovaj te registrira kao prijestupnika? Morat će to malo doraditi

Sve za zaštitu dječice kako Tomek i administracija koja uvijek želi dobro običnom čovjeku.

Mislim sve se moglo to filtrirati i prisluškivati/čitati i prije, kako i znamo, ali anemičnost mnogih, da to ide u smjeru da se to radi bez naloga i automatski, kao npr. u Kini i tko zna gdje još, mi je apsolutno nevjerojatna.

offtopic, Tomek, možda bi mogao live stream 24h od sebe staviti da pomogneš ljudima da lakše zaspu navečer, ionako nemaš što za skrivati.

Kladim se da ti je najopasnija stvar koju si napravio ovaj tjedan jest da si poskrivečki popio jedno pivo, a da nisi to rekao ženi

Ne ljuti se, moram se malo šaliti, čemu život inače?

Za Index se slažem, pogledm ga isključivo zbog zanimljivih komentara, kao da je nekakva vrsta foruma. Tko zna, možda se i to počne filtrirati/kažnjavati pa nećeš više moći reći da je Ursula krava sa lošim zubima
Deamon101 je offline   Reply With Quote
Staro Jučer, 11:51   #432
tomek@vz
Premium
Moj komp
 
tomek@vz's Avatar
 
Datum registracije: May 2006
Lokacija: München/Varaždin
Postovi: 4,808
Citiraj:
Autor Deamon101 Pregled postova
Zaboravio si i "živim tolko dosadan život da čak i ako me snimaju bez naloga mene to ne smeta" /sarkazam on

ontopic, čitam da "zbog zaštite djece" da ima puno false pozitive rezultata, tipa slikaš vlastito djete na plaži i ovaj te registrira kao prijestupnika? Morat će to malo doraditi

Sve za zaštitu dječice kako Tomek i administracija koja uvijek želi dobro običnom čovjeku.

Mislim sve se moglo to filtrirati i prisluškivati/čitati i prije, kako i znamo, ali anemičnost mnogih, da to ide u smjeru da se to radi bez naloga i automatski, kao npr. u Kini i tko zna gdje još, mi je apsolutno nevjerojatna.

offtopic, Tomek, možda bi mogao live stream 24h od sebe staviti da pomogneš ljudima da lakše zaspu navečer, ionako nemaš što za skrivati.

Kladim se da ti je najopasnija stvar koju si napravio ovaj tjedan jest da si poskrivečki popio jedno pivo, a da nisi to rekao ženi

Ne ljuti se, moram se malo šaliti, čemu život inače?

Za Index se slažem, pogledm ga isključivo zbog zanimljivih komentara, kao da je nekakva vrsta foruma. Tko zna, možda se i to počne filtrirati/kažnjavati pa nećeš više moći reći da je Ursula krava sa lošim zubima

Ajd oladi više. Zajebancija koja prelazi granice dobrog ukusa više nije zajebancija nego pod*ebavanje.


P.S. "/sarkazam on" znaci da sve nakon toga smatras sarkazmom...i fali ti dio gdje prestajes u tom smislu pisati ili ti je to samo normalno pisanje postova po forumu?
__________________
Lenovo LOQ 15AHP9 83DX || AMD Ryzen 5 8645HS / 16GB DDR5 / Micron M.2 2242 1TB / nVidia Geforce RTX 4050 / Windows 11 Pro
Lenovo Thinkpad L15 Gen 1 || Intel Core i5 10210U / 16GB DDR4 / WD SN730 256GB / Intel UHD / Fedora Workstation 42
tomek@vz je offline   Reply With Quote
Staro Jučer, 12:21   #433
mkey
Premium
Moj komp
 
Datum registracije: Sep 2018
Lokacija: tu
Postovi: 3,386
Izvor informacije sam po sebi je nebitan. Može najveća protuha, čak i netko iz HR politike, nešto napisati i to samo po sebi o napisanom ne govori ništa. Možda je autor u pravu, možda je u krivu, vjerojatno je negdje između, a gdje se iznesena informacija točno nalazi na skali istine ovisi jedino i isključivo o sadržaju.

Bilo kakva pomisao da ti ljudi to što rade rade zbog djece je nešto što su samo naivčine spremne povjerovati. Kada bi im bilo stalo do djece, onda bi se možda ti naši veliki vođe digli protiv 70 godina masovnih pokolja u ostatcima ostataka Palestine, desetljećima u Afganistanu, u više navrata tokom desetljeća u Iraku, pa recentno u Siriji, Libiji, Sudanu, Jordanu i da ne nabrajam dalje.

Ali možda se implicira kako to što su toliko bolji od nas samo žele pomoći djeci svijetle puti. U tom slučaju se postavlja pitanje čemu onda huškanje u Ukrajini? Taj sukob se a) nije moralo niti huškati te se b) odavno mogao okončati. Djeca ondje su pretežito bijela, pa ne vidim u čemu je problem. Možda smatraju da djecu ipak treba osigurati prisluškivanjem poruka, ako se već ne može obustaviti bombardiranje, raketiranje i rešetanje.

Zato mene najviše zanima gdje ta briga za djecu počinje a gdje završava. Jer prema tome što možemo vidjet slijedi kako je njihova briga jako selektivna i ne podliježe načelima.
__________________
Citiraj:
Autor George Carlin
But there’s a reason. There’s a reason. There’s a reason for this, there’s a reason education sucks, and it’s the same reason that it will never, ever, ever be fixed. It’s never gonna get any better. Don’t look for it. Be happy with what you got. Because the owners of this country don't want that. I'm talking about the real owners now, the real owners, the big wealthy business interests that control things and make all the important decisions. Forget the politicians. The politicians are put there to give you the idea that you have freedom of choice. You don't. You have no choice. You have owners. They own you. They own everything. They own all the important land. They own and control the corporations. They’ve long since bought and paid for the senate, the congress, the state houses, the city halls, they got the judges in their back pockets and they own all the big media companies so they control just about all of the news and information you get to hear. They got you by the balls. They spend billions of dollars every year lobbying, lobbying, to get what they want. Well, we know what they want. They want more for themselves and less for everybody else, but I'll tell you what they don’t want: They don’t want a population of citizens capable of critical thinking. They don’t want well informed, well educated people capable of critical thinking. They’re not interested in that. That doesn’t help them. Thats against their interests. Thats right. They don’t want people who are smart enough to sit around a kitchen table to figure out how badly they’re getting f*cked by a system that threw them overboard 30 f*cking years ago. They don’t want that. You know what they want? They want obedient workers. Obedient workers. People who are just smart enough to run the machines and do the paperwork, and just dumb enough to passively accept all these increasingly shittier jobs with the lower pay, the longer hours, the reduced benefits, the end of overtime and the vanishing pension that disappears the minute you go to collect it, and now they’re coming for your Social Security money. They want your retirement money. They want it back so they can give it to their criminal friends on Wall Street, and you know something? They’ll get it. They’ll get it all from you, sooner or later, 'cause they own this f*cking place. It's a big club, and you ain’t in it. You and I are not in the big club. And by the way, it's the same big club they use to beat you over the head with all day long when they tell you what to believe. All day long beating you over the head in their media telling you what to believe, what to think and what to buy. The table is tilted folks. The game is rigged, and nobody seems to notice, nobody seems to care. Good honest hard-working people -- white collar, blue collar, it doesn’t matter what color shirt you have on -- good honest hard-working people continue -- these are people of modest means -- continue to elect these rich c*cksuckers who don’t give a f*ck about them. They don’t give a f*ck about you. They don’t give a f*ck about you. They don't care about you at all -- at all -- at all. And nobody seems to notice, nobody seems to care. That's what the owners count on; the fact that Americans will probably remain willfully ignorant of the big red, white and blue dick that's being jammed up their assholes everyday. Because the owners of this country know the truth: it's called the American Dream, because you have to be asleep to believe it.
mkey je offline   Reply With Quote
Oglasni prostor
Oglas
 
Oglas
Odgovori



Pravila postanja
Vi ne možete otvarati nove teme
Vi ne možete pisati odgovore
Vi ne možete uploadati priloge
Vi ne možete uređivati svoje poruke

BB code je Uključeno
Smajlići su Uključeno
[IMG] kod je Uključeno
HTML je Uključeno

Idi na