KairuByte

@KairuByte@lemmy.dbzer0.com · Joined ⁨Aug⁩ ⁨2023⁩

Replying to an earlier post

I’d stay away from Planka for one major reason: They have started to claw back features that were previously in the community version, and moving them behind a paid tier. OIDC is such a feature, their reasoning being support load, and despite the many calls to just not provide support for OIDC they have assured the community that the consensus is that it’s an enterprise only feature.

tl;dr: Avoid Planka.

Replying to @⁨XLE@piefed.social⁩

Eh?

This is if you a) purchase the phone in some way that is associated with your Apple account, b) have cloud backups already in place, and c) opt in to the preload.

If any of those things aren’t in place, it wouldn’t have happened.

Now your likely assuming they can get into that backup, which fair enough would be a concern. But (if you believe them, which I admit is a huge if) according to Apple, they can’t actually get into that backup without your password. Meaning (again, if you believe them) this would be as safe and secure as shipping your own phone cross country after rebooting it.

Replying to @⁨moodoovoodoo@lemmy.world⁩

Yes, it’s also how I run all my services. I checked just this moment, and locally my certs verified by field is Let’s Encrypt, while remotely that field is Google Trust Services

I have never personally provisioned a cert from Google. I have only ever utilized Let’s Encrypt. That leaves just one involved party that could have requested, received and presented this cert: Cloudflare.

Replying to @⁨avidamoeba@lemmy.ca⁩

Give it a look on dnsdumpster.com or similar. Your dns records are inherently public, so anyone that works out the domain can work out the subdomain. In fact there are plenty of tools that just scan every domain/subdomain they can find.

DNSDumpster.comDNSDumpster - Find & lookup dns records for recon & researchFree domain research tool to discover hosts related to a domain. Find visible hosts from the attackers perspective for Red and Blue Teams.

Replying to @⁨sage@lemmy.blahaj.zone⁩

Your ISP likely has multiple datacenters. And even if they don’t, their provider almost certainly does. Your DNS ultimately comes from a datacenter. Your machines clock is likely syncing with a NIST that is, once again, hosted in a datacenter.

A datacenter isn’t some magical thing that only a few companies have, if you’re dealing with a large anything that hosts its own or others data, they more than likely have a datacenter.