* Posts by Danny 14

4337 publicly visible posts • joined 15 Jun 2009

Brit MPs pour cold water on hydrogen as mass replacement for fossil fuels

Danny 14

storage really isnt an issue. H2 isnt any more dangerous than LPG, petrol or kerosene. Ironically a slow leak will be safer with H2 than LPG, doesnt produce toxic smoke, isnt as "hot" as a gas flame. There are benefits.

Danny 14

there isnt a mass market for H2 hence green sources H2 isnt worth it. Once there is a market then countries with excess green electricity will start to look at cracking water as a money source. There are quite a few countries that could make money from H2 production but without the demand it isnt worth the infrastructure.

FCEV is more than possible with current tech. https://wrightbus.com/en-gb/hydrogen-bus-streetdeck-hydrolinerFCEV there's one right there. 8 mins of hydrogen filling for 200 miles+ these are early days of course but still possible. Newer fuel cells are also being developed.

EV arent bad but the charging times are horrific for mass transport. If entire cities converted all their ICE to EV then the grid would collapse in short order, those cities would brown out. H2 on the otherhand would not, people would go to filling stations, the same as ICE.

Danny 14

"That may have been true once but not so mush these days with access to abortion services"

Not in most 3rd world countries and chunks of the US.

Oops. Cisco installed wrong firmware on some boxes and they report fake ‘severe faults’

Danny 14

dont you need a support contract to install the firmware?

Elon Musk to step down as Twitter CEO: Help us pick his replacement

Danny 14

Re: Optimus

I see it, and agree.

Danny 14

I think me

1. im cheap, just give me a few million a year. I will even take dollars so thats a saving.

2. I hate twitter. I will gladly run it into the ground for you.

3. Fuck people who disagree with you. amirite?

4. Abolish HR so 3. doesnt get problematic. I dont think you thought of that cost saving measure.

5. I will happily clean up crap and kowtow to your whims.

Big Apple locals hire Russians to game New York's taxi system

Danny 14

Re: How? Easy ...

greed. The correct wheels werent greased enough.

Swatting suspects charged with subverting Ring doorbell cams and calling cops

Danny 14

Re: Another reason not to get a Ring doorbell

Agreed, but we who post on here are more likely to have an arduino project than ring. Its the regular joes who think they are helping thair parents or spouse and kids while they are away that bothers me.

Danny 14

Re: Charge the scrotes $100 per officer per minute

A stretch with bubba will certainpy change their minds. They will be traded like playing cards.

Danny 14

Re: Seems kind of poetic

so you would find it hilarious if your wife and kids are woken at 2AM by a squad of armed police shouting and booting the door in? Not aure I find it hilarious.

What about if it was the neighbours house and the swat teams used your lawn, fence and back yard to go piling through?

Doesnt sound like fun to me. I assume you have never seen such an operation in effect. You might have a lot of bravado now but it isnt like the movies and is a lot more scary in real life. Especially if you have your own kids who are crying in terror.

Google's Dart language soon won't take null for an answer

Danny 14

Re: NULL is just the pointer analog to NaN

what is wrong with nulls in db tables?

Look like Bane, spend like Batman with Dyson's $949 headphones

Danny 14

i saw someone fill a ballbarrow with rubble, the wheel collapsed. Our rusted ancient barrow hauls anything and is at least 30 years old. It was moving concrete section panels onot this year as I cant carry them a long way on my own.

Danny 14

they have equally exoensive shite that blows.

Danny 14

Re: Great

No one cared who i was until i put on the mask

Italy, Japan, UK to jointly launch sixth-gen fighter jet by 2035

Danny 14

Re: Yay!

or rebuilding ukraine after their warmongering neighbour kicked the shit out of their infrastructure.

Danny 14

Re: A Quantitative Easing Program in Military Guise?

Ask the ukranians how much heating they have after their neighbour and their weapons of war kicked the fence down.

Women sue Apple claiming AirTags helped their stalkers

Danny 14

we use them on our luggage. it works really well.

Danny 14

Re: What's that?

air-tag = thing

thing sends out bluetooth beacons

iphone = gadget

gadget has an OS

OS has a function to listen for bluetooth beacons

when an airtag beacon is heard the gadget sends its location to the internet overlord masters

internet overlord masters can update owners of thing with the location given by gadget

if you too have a gadget then you get a notice if there are things around you that have been there for "an extended period of time" talking to the internet overlord masters

Boeing swipes at Starlink as it finishes two internet slinging satellites

Danny 14

cost saving over the long run. When one MEO satellite meets another MEO satellite a little MEO satellite is born a few months later.

How do you solve the problem that is Twitter?

Danny 14
Mushroom

Re: "How bad will its fall be?"

I say we take off and nuke twitter from orbit. its the only way to be sure.

Windows 11 still not winning the OS popularity contest

Danny 14

dont forget 2k. windows server 2k was awesome. sure 2003 was better but 2k was a godsend from nt4

2k pro was also lightyears from ME and 98SE.

Killing trees with lasers isn’t cool, says Epson. So why are inkjets any better?

Danny 14

i have a workhorse canon ip4000, it doesnt have chipped inks, you just fillthem up.its cheaper to run than a colour laser as the bottled ink is peanuts I also have a hp mono 4000n too (i must like the number) which you can still get refurb caertridges for.

Elon Musk picks fight with Apple for slashing advertising spend on Twitter

Danny 14

what would be funnier is if apple gave staff discounts for EVs "to save the planet" but not Teslas.

Massive energy storage system goes online in UK

Danny 14

Re: Still tiny

there are some nice articles based on a compressed air storage system that is being built in Manchester (highview power?) that looks promising and wont use minerals or chemicals. It will be a nice idea if it can be scaled.

Danny 14

Re: Per home usage

usually goes - speak to salesman then: take cost and double, take specs and halve. When delivered, anything in between is a bonus.

Danny 14

Re: Real numbers

not a worry at the moment. Cant afford heating. So doing my bit for the grid and just not switching the heating on.

Danny 14

Re: Tiny

Looks better, doesnt involve as many hazardous chemicals (yes, a lot of concrete and a missing chunk of land). I suppose there arent as many places where a Dinorwig can live though whereas a farm of shipping crates can be placed anywhere

Danny 14

yep. spool up time and jitter. Ive had some bad experiences with diesel generator failover at the hospital I used to admin at.

FTX disarray declared 'unprecedented' by exec who cleaned up after Enron

Danny 14

Re: "unprecedented"

which is the irony. Become a master criminal by running a successful company so badly that even though you make money, so did everyone else. have no accounting, no business plan. Then claim incompetence so your assets arent totally taken away. That being said if he has loads of offshore accounts everywhere then good luck finding them all.

Danny 14

Re: LOL'd at this one

I wouldnt say that. M Mouse makes a fortune.

Musk sells $3.95 billion in Tesla shares, paid eleven times more for Twitter

Danny 14

Re: Is this going to be a new measurement of expenditure?

we measure our luxury in heating-boost-hour, if we get an overtime bonus we allow ourselves to turn the heating on for an hour.

Russia says Starlink satellites could become military targets

Danny 14

Re: Seems reasonable and fair

probably nothing will happen publicly, depends who is in the car. Muat the same for nerve agent poisoning in salisbury, bothing happened and that was a nerve agent attack.

Danny 14

Re: Seems reasonable and fair

since russia is currebtly killing civilian power grids and water plants I dont think the wankers they give a fuck about conventions.

The only Windows 10 updates for the year are coming. Spoiler alert: It's just security

Danny 14

Re: LTSC

if you missed that. look at the end date for 2019 ltsc and facepalm.....

Intel hands over nearly 5,000 patents in deal with IP management outfit

Danny 14

Re: How to hire a patent troll

then AMD pay the troll and sue intel directly as the cross licening wont be in effect.

Atlassian, Microsoft bugs on CISA’s must-patch list after exploitation spree

Danny 14

Re: Connected to ... what?

I will bite. How do you mean? I do know you can have exchange live behind ADFS and WAP, but these current exploits require an authenticated account anyway so would get past the WAP. The calls to exchange are quite valid remote powershell calls and use an exploit via normal channels.

How else do you mean for exchange to be able to send email externally and not be connected to the internet? How would you get OWA working for example?

We run hybrid AD and migrated onsite to offsite exchange, this needs an exchange server to operation (no mailboxes on the server, plus there is no route for onsite exchange OUT via SMTP either - only microsoft 365 IPs can connect IN via the firewall so its about as good as I can get it. I supposed I could also hamstring IIS too if necessary.

Stop us if you've heard this one before: Exchange Server zero-days actively exploited

Danny 14

Re: Side note on Exchange design

the core issue is that users can still invoke powershell remotely. They might not be allowed to do anything but it still starts the process, if there is an exploit in the process itself then this will instantly give you access as the process starts pre-authentication.

It is like unlocking your front door, letting the person into your house and THEN checking their ID hoping they dont know how to walk around you.

Danny 14

Re: Exploitable?

your wish is granted:

https://msrc-blog.microsoft.com/2022/09/29/customer-guidance-for-reported-zero-day-vulnerabilities-in-microsoft-exchange-server/

https://microsoft.github.io/CSS-Exchange/Security/EOMTv2/

Danny 14

Re: I'm already using zero trust with Exchange

see this is a great approach till I read this:

https://learn.microsoft.com/en-us/powershell/exchange/control-remote-powershell-access-to-exchange-servers?view=exchange-ps

Especially THIS bit:

"By default, all user accounts have access to remote PowerShell. "

Wait what? It is qualified by:

"However, to actually use remote PowerShell to connect to an Exchange server, the user needs to be a member of a management role group, or be directly assigned a management role that enables the user to run Exchange cmdlets. "

Riiiight. So how about doing THIS instead:

USER->SERVER: Hi, I want to use powershell, totally not to pwn the server

SERVER->USER: credentials please.

USER->SERVER: No

SERVER->USER: .......

rather than

USER->SERVER: Hi, I want to use powershell, totally not to pwn the server

SERVER->USER: sure, here is powershell, please log in.

USER->SERVER: <sends exploit instead of powershell credentials>

And the fix? Surely you could set the default to deny and allow a select few? Nope! You cant set a default, you need to explicitly deny individual users! Insane.

We run hybrid so need an exchange server for management, however the exchange server is nicely locked away on its own subnet, external access is only granted from microsoft 365 IPs, not perfect but stops others knocking on the door.

Microsoft says it's boosted phishing protection in Windows 11 22H2

Danny 14

Re: Wait, What?

and fido keys are great until you need a mobile solution.

US school year opens with reading, writing, and ransomware

Danny 14

to be fair though, education licensing is cheap. Even with no money you can have free office 365 with petabytes of storage plus google classroom and free veeam community editiin backing up to immutable storage.

pfsense with snort and pfblocker is free.

Ive worked for schools with no money and it is possible to keep a secure environment.

Danny 14

Re: Firewalls needed, not little "security options"

and an immutable backup store. Even veeam community edition with a cheap linux storage box will do.

Ex-HP finance manager jailed after going on $5m spending spree using company plastic

Danny 14

Re: Addiction?

addicts like the rush when they go into a shop and purchase, its the feeling they get when they are treat well as a high roller.

Danny 14

Re: 46 handbags

clearly you have never met my ex wife. She would buy shies and never wear them, they were just ornaments really.

Danny 14

Re: Ambition, risk-training, vanity, lack of morals…

she didnt bribe the correct people.

Ex-T-Mobile US store owner phished staff, raked in $25m from unlocking phones

Danny 14

seems like he was doing people a favour. at least he did what people paid for. Phone locks are annoying.

Yodel becomes the latest victim of a cyber 'incident'

Danny 14

same here. they are atrocious to deal with.

DeadBolt ransomware takes another shot at QNAP storage

Danny 14

Re: Can't imagine exposing a QNAP NAS to the web

im not great at sarcasm so not aure if it was nor not. why is that not ok? Id say sensible to jave a firewall using different rules with no vlan routing. you can lock down your nas and lock down your iot.

Clonezilla 3: Copy and clone disk images to your heart's content

Danny 14

this what FOG project does. If you still use sysprep then it is a valid golden sample image deployment tool.

Danny 14

Re: I use Clonezilla...

take a look at FOG project. You can cron your backups automated if you prefer to hold images rather than backups.