It is not definitely malware. At least, not in the sense it's intended for malicious reasons... In the case you are using cpanel and you have used its IP Deny Manager to block access to 121.54.58.159 then this will automatically be written to your .htaccess file with the intended purpose of blocking that IP (and any…
Cyber Security
Answered Apr 7, 2022
·
1.1K Views
Read answer →
Regarding the node.js server-side javascript virus - If you do have a process that starts automatically and that cannot be properly traced to a binary you installed or configured I would suspect malware alright. Just note that a complex OS like Windows 10 does have several ways of building a service, the most common…
Cyber Security
Answered Apr 6, 2022
·
863 Views
Read answer →
If you get a call from random number - I wondered if the phone call to my mobile could have stayed connected after the phone call ended in any way? No, if the phone call has been disconnected, the PSP's(Phone Service Provider's) switch is rotated to another communication channel. And most of the SPs are not so poorly…
Cyber Security
Answered Apr 4, 2022
·
818 Views
Read answer →
Simply, 'taking ownership' creates a new Storage Root Key. The TPM owner password ensures the user doing the 'owning' is the same person again should the person wish to perform options associated with the ownership password, in command line mode. The password is referred to as the 'shared secret' in the TPM docs and…
Cyber Security
Answered Apr 4, 2022
·
628 Views
Read answer →
Many VPN protocols do use TLS. In particular, almost all of the modern client-server VPNs (e.g. used to connect a laptop remotely to a corporate network) support TLS as a primary or fallback transport. I'm a contributor to the well-known open-source client for TLS/SSL based VPNs: openconnect. I reverse-engineered the…
Cyber Security
Answered Mar 30, 2022
·
752 Views
Read answer →
Let me begin by restating what is already known: CP certificate sets out the Policy and CPS describes the Practice (how the Policy is implemented) Per the RFC, the Policy (CP) should state a) what requirements are being met and b) what rules will be applied to meet those. It is intended to be high level. To determine…
Cyber Security
Answered Mar 29, 2022
·
1.6K Views
Read answer →
Depending on the implementation, there can be straightforward methods of confirming the key was correct. For example, TrueCrypt utilises an encrypted hash of the valid master key/header. After trying a user brute force decryption key, the hash of the header is checked. If the hash matches, TrueCrypt proceeds to boot,…
Cyber Security
Answered Mar 29, 2022
·
517 Views
Read answer →
The reason for malformed packets could be a broken network connection, out of range wifi signal or even a DDoS attack for example. Another thing, to avoid problems with .pcap or .cap files, why not save it to a .txt file? Here is a sample command to save data onto a text file:tcpdump -X -vv -i eth0 > tcplog.txt Also…
Cyber Security
Answered Mar 28, 2022
·
1.3K Views
Read answer →
Setting client_max_body_size to 20 GB is, obviously, not reasonable and I wonder why you would allow (users?, yourself?) to upload such very huge files. client_max_body_size governs the corresponding HTTP Header parameter. As a security good practice, we must always limit the header and message body to a minimal…
Cyber Security
Answered Mar 24, 2022
·
560 Views
Read answer →
Privacy Badger vs Disconnect They are not all for the same purpose nor work the same way, but some of them do have overlapping features. They are not all essentially the same, but you can divide them into these categories:Ad blockers: UBlock, Ghostery, AdBlock Plus. They destroy annoying elements from websites – those…
Cyber Security
Answered Mar 23, 2022
·
4.1K Views
Read answer →
I can neither see support for 802.11r (fast roaming) nor support for repeater mode in the specification. Based on this the AP is probably not affected but probably only the vendor itself can give you the ultimate answer about it. See also the statement of TP-Link krack regarding a specific type of routers and use case…
Cyber Security
Answered Mar 23, 2022
·
576 Views
Read answer →
You asked - Is it safe to store passwords in chrome, I think it is not as good as a password manager, better than nothing. Security often comes at the price of convenience, and convenience often comes at the price of security. Password managers built into browsers are primarily there for convenience, and security…
Cyber Security
Answered Mar 22, 2022
·
1.1K Views
Read answer →