Category: Blog

A vulnerability that allows intercepting TCP connections established through VPN tunnels.

An attack technique (CVE-2019-14899) has been published, allowing packets in TCP connections passed through VPN tunnels to be spoofed, altered, or substituted. The issue affects Linux, FreeBSD, OpenBSD, Android, macOS, iOS, and other Unix-like systems. Linux supports the rp_filter (reverse path filtering) mechanism for IPv4, the activation of which in 'Strict' mode neutralizes this issue. This method allows packet substitution at the TCP connection level, occurring within encrypted […]

W3C has granted WebAssembly the status of a recommended standard

The W3C consortium has announced that WebAssembly technology has been given recommended standard status. WebAssembly provides a browser-independent universal low-level intermediate code for executing applications compiled from various programming languages. WebAssembly is positioned as a more promising and portable technology for creating high-performance web applications across browsers. WebAssembly can be used for tasks that require high performance, such as video encoding and audio processing, […]

$11 million is being invested in an intelligent cybersecurity platform

The issue of security is critically important for every company dealing with data. Modern tools allow attackers to effectively mimic the activities of a regular user. However, protective mechanisms do not always recognize and prevent unauthorized access attempts. As a result, there are information leaks, theft of funds from bank accounts, and other troubles. A solution to this problem was proposed by the Spanish company Buguroo, which utilizes deep learning […]

OpenVPN Setup on Windows Server and Mikrotik with Migration to Linux

Greetings! Eventually, every enterprise finds itself in sudden need of remote access. The necessity to organize remote access to their networks is something nearly every IT professional encounters. Like many, I felt this need hit me with the urgency of “yesterday.” After analyzing all the pros and cons, as well as sifting through tons of information and delving a bit into the theory, I decided to start the installation. […]

What happens during connections inside and outside the VPN tunnel

Real articles are born from emails to Tucha's technical support. Recently, a client reached out asking for clarification on what happens during connections inside a VPN tunnel between the user's office and the cloud environment, as well as during connections outside the VPN tunnel. Therefore, the entire text provided below is a real email we sent to one of our clients in response to […]

SCADA on Raspberry: myth or reality?

Winter Is Coming. Programmable Logic Controllers (PLCs) are gradually being replaced by embedded personal computers. This is due to the fact that the computing power allows a single device to encompass the functions of a programmable controller, server, and (if the device has an HDMI output) an automated workstation for the operator. In total: a web server, OPC component, database, and automated workstation in a single case, and […]

The Truth About Train Brakes: Part 4 — Passenger-Type Braking Devices

Next time you find yourself at the station, take a moment to focus on the inscription right in the middle at the bottom of the train car that will take you away on another long-awaited vacation. This inscription is not there by chance; it tells us the mysterious, conditional number of the brake air distributor that is installed on this car. The inscription is visible even if the train is stopped […]

Review of ONYX BOOX Max 3: A Reader with the Largest Screen

Table of Contents 1. Technical Specifications 2. Hardware and Software 3. Reading Books and Documents 4. Additional Features 5. Autonomy 6. Conclusions and Summaries What is the most important for e-books (readers) with production-technical application? Perhaps, the processor power, memory size, screen resolution? All of this is certainly important; but the most crucial factor is the physical screen size: the larger it is […]

Multiple vulnerabilities in OpenBSD

Experts from Qualys Labs discovered several security issues related to the possibility of fooling the programs responsible for password verification mechanisms used in BSD (similar to PAM). The trick lies in passing the username "-schallenge" or "-schallenge:passwd", which is then interpreted not as a username but as an option. After that, the system accepts any password. Vulnerable, i.e., ultimately allowing unauthorized access, […]

Release of the Elementary OS 5.1 "Hera" distribution

The release of the Elementary OS 5.1 "Hera" distribution has been announced, positioned as a fast, open, and privacy-respecting alternative to Windows and macOS. The project focuses on quality design aimed at creating a user-friendly system that consumes minimal resources while providing high boot speed. Users are offered the custom Pantheon desktop environment. Bootable ISO images (1.47 GB) are prepared for download, […]

An attack on HackerOne that allowed access to confidential vulnerability reports

The HackerOne platform, which enables security researchers to inform developers about detected vulnerabilities and receive rewards for them, has reported an incident of its own hacking. One of the researchers was able to access the account of a security analyst at HackerOne, who had the ability to view confidential materials, including information about vulnerabilities that have not yet been resolved. Since the platform's inception, […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster