• 0 Posts
  • 57 Comments
Joined 1 year ago
cake
Cake day: September 14th, 2023

help-circle








  • From what I understand you obfuscate the port in order to limit the amount of incoming attacks. But then fail2ban would be a much more effective tool.

    The disinterested aspect you described is the actual problem. Because it’s based on the assumption your port won’t be found, but it definitely will, and as soon as that happens you’ll end up in a database such as shodan and the entire effect is GONE.












  • Yeah you’re missing the point that the mind blown is just ironic.

    The entire point here was to demonstrate that the “security” features of these DEs are not implemented by the DE but by the underlying components such as PAM, and you can just ignore the DE until you have the basics fixed.

    What’s the point in having a super duper secure login screen if I can bypass it by booting from a USB stick for example.