Category: Administration

The Data Privacy Issue in Active Directory

I conducted penetration testing using PowerView and utilized it to extract user information from Active Directory (AD). At that time, I focused on collecting information about group membership, and then used that information to navigate through the network. In any case, AD contains sensitive employee data, some […]

Protect Your Dongles: Security Research on Logitech Keyboard Receivers

Historically, most employees use wireless keyboards and mice from Logitech. Once again, while entering our passwords, we – the Raccoon Security team – wondered: how difficult is it to bypass the security mechanisms of wireless keyboards? Our research revealed architectural flaws and software bugs that allow access to the entered data. Below is what we […]

PostgreSQL Antipatterns: harmful JOINs and OR

Beware of operations that bring buffers… We will look at some universal approaches to optimizing queries in PostgreSQL through a simple example. Whether to use them or not is up to you, but it's worth knowing about them. In some subsequent PG versions, the situation may change with a "smarter" planner, but for versions 9.4/9.6, it looks pretty much the same, as shown in these examples. Let’s take a quite realistic query: SELECT […]

Kubernetes 1.17: Overview of Key Innovations

On December 9, the latest release of Kubernetes—version 1.17—was announced. Following the traditions of our blog, we will discuss the most significant changes in the new version. The information used to prepare this material was sourced from the official announcement, the Kubernetes enhancements tracking table, CHANGELOG-1.17, and relevant issues, pull requests, as well as Kubernetes Enhancement Proposals (KEP). So, what’s new?.. Routing with […]

Yesterday, December 9, there was another Kubernetes release — 1.17.

Studying the history of disks is the starting point for understanding the principles of solid-state drives. The first part of our "Introduction to SSD" article series will provide a historical overview and allow for a clear comparison between SSDs and their closest competitor, HDDs. Despite the variety of information storage devices available, the popularity of HDDs and SSDs today is undeniable. The difference between […]

Comparison of Performance of Unblocking Tools

As access to various resources on the internet is increasingly restricted, the question of how to circumvent these blocks becomes more relevant. Thus, the question of 'How can we bypass restrictions more quickly?' is more pertinent. We will leave the topic of effectiveness regarding DPI white/blacklist circumvention for another time and simply compare the performance of popular circumvention tools. Note: The article discusses […]

Creating a Discord bot on .NET Core with deployment on a VPS server

Hello, Habr readers! Today you will learn about how to create a bot using C# on .NET Core and how to run it on a remote server. The article will consist of background information, preparatory steps, writing logic, and transferring the bot to a remote server. I hope this article will help many beginners. Background It all started one sleepless […]

PostgreSQL Antipatterns: CTE x CTE

In my line of work, I often encounter situations where a developer writes a query and thinks, "the database is smart, it will handle everything!" In some cases (partly due to a lack of knowledge about the capabilities of the database, partly due to premature optimizations), this approach leads to the creation of "Frankensteins." First, I will provide an example of such a query: — for each key pair, we find the associated field values WITH RECURSIVE cte_bind AS […]

Introducing the programmable AWS Landing Zone in the Terraform module

Hello everyone! In December, OTUS is launching a new course - Cloud Solution Architecture. In anticipation of this course, we are sharing an interesting material on the topic. AWS Landing Zone is a solution that helps customers quickly set up a secure AWS environment with multiple accounts based on best practices. For more than five years, we have been […]

How to use MySQL without a password (and security risks)

It is said that the best password is one that you don’t have to remember. In the case of MySQL, this is made possible thanks to the auth_socket plugin and its version for MariaDB — unix_socket. Both of these plugins are not new, and there has been much discussion about them in this blog, for example in an article on changing passwords in MySQL 5.7 using the auth_socket plugin. […]

True channel aggregation of internet connections — OpenMPTCPRouter

Is it possible to combine multiple Internet channels into one? There are many misconceptions and myths surrounding this topic, and even experienced network engineers often do not know that it is possible. In most cases, what is mistakenly referred to as channel aggregation is actually NAT-level load balancing or failover. However, true summation allows a single TCP connection to simultaneously use all Internet channels, such as in video streaming […]

How to connect to a corporate VPN in Linux using openconnect and vpn-slice

Do you want to use Linux at work, but the corporate VPN doesn't allow it? This article might help, although it's not guaranteed. I want to warn you in advance that I have a limited understanding of network administration, so it's possible I did everything wrong. On the other hand, I might be able to write a guide that's understandable for regular people, like […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster