
Unable to Fetch Update from security.ubuntu #networking #apt #server #updates #firewall

Unable to Fetch Update from security.ubuntu #networking #apt #server #updates #firewall
Ransomware gang creates tool to automate VPN brute-force attacks
The Black Basta ransomware operation created an automated brute-forcing framework dubbed 'BRUTED' to breach edge networking devices like firewalls and VPNs.
Ufw blocking packets from tun0 after allowing them #networking #vpn #firewall #openvpn #ufw
@torproject same with #obfs4 bridges: there is no option to say like ports=80,443
or similar, which makes it cumbersome to get said bridges.
And trying to get places to #DontBlockTor that criminalize the use of #Tor is foolish at best.
@ProPublica Get your act behind a #vpn, #firewall, #encrypted email, #burnerPhone and #pw protected computer. Just bc you're paranoid doesn't mean #MAGAmron and #muskrat aren't out to get you! Even if you're not the target, you don't want to end up as collateral damage.
Telekom bringt "SMS-Firewall"
Im April will die Telekom Empfänger besser vor bösartigen SMS schützen. Das Unternehmen startet eine "SMS-Firewall".
#PaloAltoNetworks warns of another #firewall vulnerability under attack by hackers
heise+ | Blockadekonzepte: Unerwünschte Internetdienste und Server sperren
Kriminelle Server werden durch Firewalls oder Malware-Blocker begrenzt. Doch Regierungen können sie ohne Netzwerk-Kontakt auch gänzlich verstummen lassen.
Jetzt patchen! Sonicwall-Angreifer umgehen Authentifizierung von Firewalls
Derzeit finden Attacken auf Firewalls von Sonicwall statt. Sicherheitsupdates stehen zum Download bereit.
@snow Maybe consider a provider that allows you to do #Blackholing?
#Contabo for example allows to book a dedicaded, managed #pfSense #Firewall woth their #dedicaded #Servers so you can just block entire ASNs aggressively.
Ok, for those of you who already know how to computer, here you go - this should be pretty damn good (pending a few additional things I'll be reviewing and potentially tweaking/adding).
Put these on your outbound and/or forward chains with reject or drop targets and enjoy not being able to reach Facebook/Meta properties.
I'll be publishing an actual script as well as all my notes and reference on these ranges, the netblock names, link to the SEC filings to confirm the names of their subsidiaries, so forth.
#Facebook #FuckFacebook #Meta #Firewall
31.13.24.0/21
31.13.64.0/18
45.64.40.0/22
57.141.0.0/16
57.142.0.0/15
57.144.0.0/14
57.148.0.0/15
66.220.144.0/20
69.63.176.0/20
69.171.224.0/19
74.119.76.0/22
102.221.188.0/22
102.132.96.0/19
103.4.96.0/22
129.134.0.0/16
147.75.208.0/20
157.240.0.0/16
163.70.128.0/17
163.77.128.0/17
163.114.128.0/20
173.252.64.0/18
179.60.192.0/22
185.60.216.0/22
185.89.216.0/22
199.201.64.0/22
204.15.20.0/22
This is why running an opnSense router awesome.
Splitting the software from off-the-shelf hardware means that I can keep my hardware and replace the software if it ever stops getting updates or the software maker starts doing shenanigans (looking at you pfSense).
OPNsense 25.1 open-source firewall and routing platform rolls out powered by FreeBSD 14.2, with a revamped UI, ZFS snapshot support, and more.
https://linuxiac.com/opnsense-celebrates-10-years-with-the-25-1-ultimate-unicorn-release/
Palo-Alto: Sicherheitslücken in Firmware und Bootloadern von Firewalls
Die Firmware und Bootloader von einigen Palo-Alto-Firewalls weisen Sicherheitslecks auf, die Angreifern das Einnisten nach Angriffen ermöglichen.
Darknet: Konfigurationen und VPN-Passwörter von Fortinet-Geräten aufgetaucht
Vollständige Konfigurationsdateien mit VPN-Passwörtern im Klartext: Eine Gruppe verschenkt diese Daten im Darknet. heise security liegt der Datensatz vor.
@falcennial it's helpful for #sysadmins and anyone who is running their own #firewall (regardpess if WAF, hosted/managed or DIY/bare metal), as they can just pull that Feed-URL to (un)block stuff automatically...
git
just to diff&merge stuff because they only offer "add" and "replace" when it.comes to #CSV / #TSV input.