keisatsu

joined 1 year ago
[–] keisatsu@infosec.pub 1 points 3 months ago (1 children)

Yeah it took a while for me to find as well, Debian moved to managing alot of packages you used to install with pip. In many cases you can just prefix pip packages with python3- and find them via apt.

[–] keisatsu@infosec.pub 11 points 3 months ago (3 children)

apt install python3-certbot :)

[–] keisatsu@infosec.pub 41 points 8 months ago (8 children)

Probably not. It's most likely automated scanning and the subdomains seem common enough to be included in wordlists. Another possibility is that the subdomains have leaked somehow, do you use LetsEncrypt? If so, the existence of your subdomains is public knowledge and can easily be picked up by bots.

[–] keisatsu@infosec.pub 1 points 1 year ago

oh and don't run it all in one image, make one per service and use docker-compose to bring it up

[–] keisatsu@infosec.pub 1 points 1 year ago (1 children)

Since it's a test environment you should be fine with that amount of hardware, except for the AI stuff perhaps. That shit eats compute like nothing else, but it also depends on how much log you feed it. Go ahead and try bringing up the containers and observe how the load increase, it's a good learning experience and perhaps one of the most difficult aspects of SIEM (sizing).

[–] keisatsu@infosec.pub 7 points 1 year ago (1 children)

I had issues until I got connectors that come with a little sleeve that you thread the wires through before putting them into the part you clamp them in. Get those if you if you haven't already. Also get a cable tester, they are pretty cheap