Category: Administration

One of Chromium's features creates a huge load on root DNS servers.

The Chromium browser, an actively developed open-source parent of Google Chrome and the new Microsoft Edge, has drawn serious negative attention due to a feature that was conceived with good intentions: it checks whether the user's provider is 'stealing' nonexistent query results for domains. The Intranet Redirect Detector, which generates fake queries for random 'domains' whose existence is statistically unlikely, is responsible for about half of the total traffic received by root […]

6. Check Point SandBlast Agent Management Platform. FAQ. Free Trial

Welcome to the sixth article that concludes the series on the Check Point SandBlast Agent Management Platform solution. In this series, we have examined the key aspects of deploying and administering the SandBlast Agent using the Management Platform. In this article, we will address the most frequently asked questions regarding the Management Platform solution and discuss how to test the SandBlast Agent […]

4. Check Point SandBlast Agent Management Platform. Data Protection Policy. Deployment and Global Policy Settings

Welcome to the fourth article in the series on the Check Point SandBlast Agent Management Platform. In the previous articles (first, second, third), we detailed the interface and capabilities of the web management console, as well as discussed the Threat Prevention policy and tested it against various threats. This article is dedicated to the second security component — the Data Protection policy, which is responsible for protecting […]

5. Check Point SandBlast Agent Management Platform. Logs, Reports & Forensics. Threat Hunting

Welcome to the fifth article in the series on the Check Point SandBlast Agent Management Platform. You can find the previous articles by following the corresponding links: first, second, third, fourth. Today we will look at monitoring capabilities within the Management Platform, specifically the work with logs, interactive dashboards (View), and reports. We will also touch on Threat Hunting to identify current threats and […]

Managing development and production in Asana

Hello everyone, my name is Konstantin Kuznetsov, I am the CEO and founder of RocketSales. In the IT sector, there is often a story where the development team lives in its own universe. In this universe, there are humidifiers on every desk, a bunch of gadgets and cleaners for monitors and keyboards, and, most likely, its own task and project management system. What […]

Creating an automated system to combat malicious users on the site (fraud)

For the last six months or so, I have been working on creating a fraud detection system without any initial infrastructure. The ideas we've developed and implemented in our system help us identify various fraudulent activities and analyze them. In this article, I would like to discuss the principles we followed and what […]

Understanding in Practice: DMVPN and Per-Tunnel QoS

In preparation for the launch of the 'Network Engineer' course, we have prepared a translation of some interesting material. There's one remarkable thing about DMVPN that I encountered some time ago: DMVPN Per-Tunnel QoS. Obviously, I’m not the only one (as a lab rat) who thinks this is cool. Every time I show this to people, I see their eyes light up — a consequence […]

Choosing an Architectural Style (Part 1)

Hello, Habr. Right now, OTUS is accepting applications for a new cohort of the 'Software Architect' course. In anticipation of the course launch, I want to share with you my original article. Introduction Choosing an architectural style is one of the fundamental technical decisions when building an information system. In this series of articles, I will explore the most popular architectural styles for application development and answer […]

How to Stop Worrying and Start Living Without a Monolith

We all love stories. We enjoy sitting by the campfire, recounting our past victories, battles, or just sharing our work experiences. Today is just such a day. And even if you’re not by the campfire, we have a story for you. A story about how we started working with the storage on Tarantool. Once upon a time in […]

Nuclear shell over ICMP

TL;DR: I am writing a kernel module that will read commands from the ICMP payload and execute them on the server even if your SSH has crashed. For those who are eager, the entire code is on GitHub. Caution! Experienced C programmers may burst into bloody tears! I might be wrong even in terminology, but any criticism is welcome. This post is aimed at those […]

Features of securing wireless and wired networks. Part 2 — Indirect protective measures

Continuing the discussion on methods to enhance network security. In this article, we will talk about additional security measures and organizing more secure wireless networks. Preface to Part Two In the previous article, “Features of Protecting Wireless and Wired Networks. Part 1 — Direct Security Measures,” we discussed the security issues of WiFi networks and direct methods to protect against unauthorized access. There were […]

On the growing popularity of Kubernetes

Hello, Habr! At the end of summer, we want to remind you that we are continuing our exploration of Kubernetes and decided to publish an article from Stackoverflow, demonstrating the state of affairs in this project as of early June. Happy reading! At the time of writing this article, Kubernetes is about six years old, and in the last two years, its popularity has grown so much that it consistently ranks in […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster