300M m/s https://300m.com Cyber Recovery and Hygiene Sun, 18 Jun 2023 00:50:57 +0000 en-CA hourly 1 https://wordpress.org/?v=6.9.4 62493438 Twitter oEmbed broken on DigitalOcean https://300m.com/security/twitter-oembed-broken-on-digitalocean/ https://300m.com/security/twitter-oembed-broken-on-digitalocean/#respond Sun, 18 Jun 2023 00:16:12 +0000 https://300m.com/?p=2105

(TLDR solution is to allowlist the Twitter API IP address ranges)

Around 3 weeks back, the end of May I had reports of WordPress authors unable to embed tweets in posts, some using classic editor, others block editor.

The …

]]>
https://300m.com/security/twitter-oembed-broken-on-digitalocean/feed/ 0 2105
DDoS attack leveraging RSS feeds https://300m.com/ddos/ddos-attack-leveraging-rss-feeds/ https://300m.com/ddos/ddos-attack-leveraging-rss-feeds/#respond Fri, 14 Apr 2023 02:25:30 +0000 https://300m.com/?p=2061 RSS feeds have been around for decades, once very popular with geeks as a lightweight way of keeping up with the news such as https://feeds.bbci.co.uk/news/rss.xml before we all got 1gb cable connections and 5g, not normally read raw by human …

]]>
https://300m.com/ddos/ddos-attack-leveraging-rss-feeds/feed/ 0 2061
Online threats to consumers https://300m.com/security/online-threats-to-consumers/ https://300m.com/security/online-threats-to-consumers/#respond Sat, 10 Dec 2022 18:06:51 +0000 https://300m.com/?p=2023 Online threats to consumers come in many forms, such as viruses, malware, phishing scams, and ransomware. These threats can compromise the security of a person’s personal information, such as their login credentials and credit card numbers, and can lead to …

]]>
https://300m.com/security/online-threats-to-consumers/feed/ 0 2023
How to get around the BBC block in Russia https://300m.com/security/how-to-get-around-the-bbc-block-in-russia/ https://300m.com/security/how-to-get-around-the-bbc-block-in-russia/#respond Sat, 05 Mar 2022 17:08:30 +0000 https://300m.com/?p=1948 Как обойти блокировку BBC в России

Sharing this as obviously the link that the Beeb shared here can not be seen if forwarded to a Russian, as of course, Russia has blocked all disenting voices, and as this is

]]>
https://300m.com/security/how-to-get-around-the-bbc-block-in-russia/feed/ 0 1948
Setting up a Mastodon Server at DigitalOcean https://300m.com/privacy/setting-up-a-mastodon-server-at-digitalocean/ https://300m.com/privacy/setting-up-a-mastodon-server-at-digitalocean/#comments Tue, 19 Jan 2021 05:09:30 +0000 https://300m.com/?p=1856 Please read the comments which have some updates regarding email config. You can find me on https://noc.social/web/@marc

Some people are really not too happy with Silicon Valley’s monopoly on social media. There are some serious privacy concerns, and we’ve seen …

]]>
https://300m.com/privacy/setting-up-a-mastodon-server-at-digitalocean/feed/ 21 1856
Mostly Unrecognized immense scale of Solarwinds Hack https://300m.com/security/mostly-unrecognized-immense-scale-of-solarwinds-hack/ https://300m.com/security/mostly-unrecognized-immense-scale-of-solarwinds-hack/#respond Sun, 20 Dec 2020 20:16:01 +0000 https://300m.com/?p=1845 I’m pretty confused as to why there is so little written in the mainstream news on the scale and implications of this latest, and by far the largest, one of many attacks on our network infrastructure, and by a state …

]]>
https://300m.com/security/mostly-unrecognized-immense-scale-of-solarwinds-hack/feed/ 0 1845
Advanced Security Headers https://300m.com/security/advanced-security-headers/ https://300m.com/security/advanced-security-headers/#respond Thu, 13 Feb 2020 03:35:52 +0000 https://300m.com/?p=1729 I have some great security headers on this blog, but they are added using a single checkbox on the Sucuri WAF (web application firewall) this site uses. This is what they look like:

 x-xss-protection: 1; mode=block
 x-frame-options: SAMEORIGIN
 x-content-type-options: nosniff
 
…]]>
https://300m.com/security/advanced-security-headers/feed/ 0 1729
Enumeration, Privacy, Security and the Law https://300m.com/security/enumeration-privacy-security-and-the-law/ https://300m.com/security/enumeration-privacy-security-and-the-law/#respond Sat, 21 Apr 2018 21:02:15 +0000 https://300m.com/?p=1569 There was a recent arrest of a 19 year old in Halifax for “hacking”  freedom-of-information releases from a government website. Alleging he is guilty of section 342.1 of the criminal code, which prohibits unauthorized uses of computers “with intent to …

]]>
https://300m.com/security/enumeration-privacy-security-and-the-law/feed/ 0 1569
Governments are always wanting to break encryption https://300m.com/law/governments-are-always-wanting-to-break-encryption/ https://300m.com/law/governments-are-always-wanting-to-break-encryption/#respond Fri, 04 Aug 2017 00:36:47 +0000 https://300m.com/?p=1522 Everytime governments try to break encryption on social media, and they are doing it a lot these days, they hold up an example such as in this case “Sex Traffickers” so if you dare question them, you are exposed as …

]]>
https://300m.com/law/governments-are-always-wanting-to-break-encryption/feed/ 0 1522
We could be doing more https://300m.com/law-and-enforcement/could-be-doing-more/ https://300m.com/law-and-enforcement/could-be-doing-more/#respond Tue, 02 May 2017 11:45:33 +0000 https://300m.com/?p=1481 There is a mostly unreported and unrecognised ongoing attack on our research institutes, commerce and infrastructure, massively damaging our successes in the western world.

UC Cert, the United States Computer Emergency Team released an update (TA17-117A) last week from the …

]]>
https://300m.com/law-and-enforcement/could-be-doing-more/feed/ 0 1481