• Sign in
  • Sign up
Elektrine
EN
Log in Register
Modes
Overview Chat Timeline Communities Gallery Lists Friends Email Vault DNS VPN
Back to Timeline
  • Open on infosec.exchange

Rachel Rawlings

@linuxandyarn@infosec.exchange
mastodon 4.6.0-alpha.7+glitch

Linux sysadmin pro, infosec amateur
Blue teamer with a red hot temper

If you have no public posts I will not accept your follow request. Don't take it personally, just engage.

General purpose, humor, politics, gaming account: @LinuxAndYarn@mastodon.social -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here.

Alt text:
- Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164
- Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

0 Followers
0 Following
Joined November 08, 2022

Posts

Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Apr 07, 2025

I'm having trouble figuring out what kind of botnet has been hammering our web servers over the past week. Requests come in from tens of thousands of addresses, just once or twice each (and not getting blocked by fail2ban), with different browser strings (Chrome versions ranging from 24.0.1292.0 - 108.0.5163.147) and ridiculous cobbled-together paths like /about-us/1-2-3-to-the-zoo/the-tiny-seed/10-little-rubber-ducks/1-2-3-to-the-zoo/the-tiny-seed/the-nonsense-show/slowly-slowly-slowly-said-the-sloth/the-boastful-fisherman/the-boastful-fisherman/brown-bear-brown-bear-what-do-you-see/the-boastful-fisherman/brown-bear-brown-bear-what-do-you-see/brown-bear-brown-bear-what-do-you-see/pancakes-pancakes/pancakes-pancakes/the-tiny-seed/pancakes-pancakes/pancakes-pancakes/slowly-slowly-slowly-said-the-sloth/the-tiny-seed

(I just put together a bunch of Eric Carle titles as an example. The actual paths are pasted together from valid paths on our server but in invalid order, with as many as 32 subdirectories.)

Has anyone else been seeing this and do you have an idea what's behind it?

#botnet #ddos #webscraping #infosec

View on infosec.exchange
infosec.exchange

Infosec Exchange

9
3
20
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Jul 19, 2024

If you're impacted by the #Crowdstrike debacle, here's the latest tech alert with a workaround:

View on infosec.exchange
infosec.exchange

Infosec Exchange

9
0
9
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Feb 02, 2024

Okta originally said only one percent of customers were affected, now says the 99% were too.

https://www.bloomberg.com/news/articles/2023-11-29/okta-says-hackers-stole-data-for-all-customer-support-users

View on infosec.exchange
8
0
8
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Nov 16, 2023

I got a newsletter from #Fastly that I didn't remember subscribing to, possibly as a result of them being attached to a #SANS talk. (The first one appeared in my mailbox on October 26, so even I might remember something that recent.)

When I clicked the Unsubscribe link in the mail, the web page said "Fill out the form and we'll send you a link to edit your preferences."

So I went back to my email and reported them as #spam and blocked them.

"Don't be that guy," but for corporations.

View on infosec.exchange
infosec.exchange

Infosec Exchange

10
1
5
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Sep 14, 2023

The #WebP buffer overflow bug that caused all the major browsers to issue patches earlier this week (e.g. #Firefox 117.0.1) also affects applications built with Electron. #1Password issued an update today for their Mac build.

The CVE affects the underlying webp library, not just web browsers, so this will be an ongoing issue.

#CVE20234863

"Who uses #libwebp?
"There are a lot of applications that use libwebp to render WebP images, I already mentioned a few of them, but some of the others that I know include: #Affinity (the design software), #Gimp, Inkscape [not according to Martin Owens, see comment below], #LibreOffice, #Telegram, #Thunderbird (now patched), #ffmpeg, and many, many #Android applications as well as cross-platform apps built with #Flutter."

https://stackdiary.com/critical-vulnerability-in-webp-codec-cve-2023-4863/

View on infosec.exchange
infosec.exchange

Infosec Exchange

29
2
28
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Aug 30, 2023

No matter how good your encryption might be, a bad UI is a security hole.

View on infosec.exchange
19
0
9
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Aug 07, 2023

Another damned good reason to use #jitsi: #zoom will now use your calls to train their #ml

https://stackdiary.com/zoom-terms-now-allow-training-ai-on-user-content-with-no-opt-out/

View on infosec.exchange
infosec.exchange

Infosec Exchange

9
0
12
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Jul 19, 2023

#RedHat has declined to address #CVE202338403 (iperf3 integer overflow and heap corruption) in #RHEL for which an upstream patch has already been submitted.

"We commit to addressing Red Hat defined Critical and Important security issues. Security vulnerabilities with Low or Moderate severity will be addressed on demand when customer or other business requirements exist to do so." is a response indicative of corporate #Linux #enshittification.

https://gitlab.com/redhat/centos-stream/rpms/iperf3/-/merge_requests/5#note_1476867836

NIST hasn't yet scored it, but Debian calls is "serious". https://nvd.nist.gov/vuln/detail/CVE-2023-38403

View on infosec.exchange
infosec.exchange

Infosec Exchange

4
1
5
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Mar 07, 2023

Good morning! This is your reminder that, even without a flute, #Lizzo always carries a set of pipes.
#NPR #TinyDeskConcert

https://www.youtube.com/watch?v=DFiLdByWIDY

View on infosec.exchange
infosec.exchange

Infosec Exchange

5
0
1
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Feb 23, 2023

Today I learned every #MicroSD adapter has a little #menorah inside.

View on infosec.exchange
infosec.exchange

Infosec Exchange

15
0
4
0
Open post
linuxandyarn
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
Rachel Rawlings
Rachel Rawlings
@linuxandyarn@infosec.exchange

Linux sysadmin pro, infosec amateur Blue teamer with a red hot temper If you have no public posts I will not accept your follow request. Don't take it personally, just engage. General purpose, humor, politics, gaming account: @ LinuxAndYarn -- if you're reading this because I posted the Orange County, Florida, censored books list, follow me there instead of here. Alt text: - Profile picture: My @EFF membership card from 1990, embossed with my name and member # 164 - Banner: a rainy dusk/nighttime streetscape from the game Dreamfall Chapters

infosec.exchange
@linuxandyarn@infosec.exchange · Feb 17, 2023

Stop calling it security news. Start calling it FFS as a Service.

View on infosec.exchange
64
0
29
0

Media

313k7r1n3

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • VPN Policy

Email Settings

IMAP: mail.elektrine.com:993

POP3: pop3.elektrine.com:995

SMTP: mail.elektrine.com:465

SSL/TLS required

Support

  • support@elektrine.com
  • Report Security Issue

Connect

Tor Hidden Service

khav7sdajxu6om3arvglevskg2vwuy7luyjcwfwg6xnkd7qtskr2vhad.onion
© 2026 Elektrine. All rights reserved. • Server: 17:33:37 UTC