avatarTeri Radichel

Free AI web copilot to create summaries, insights and extended knowledge, download it at here

638

Abstract

。打過你才知道弱點,打是為了實踐,然後回去再練,把實力提高。能戰才能和,沒實力的人談和平只是空談。過去兩個多月,美帝安靜了一陣子,有政評說別指望侵侵,但回看就知道美帝在籌備。真打的人廢話少說,他們在思考怎打能減低損傷,增加勝選和效率。直至出手時,才連連出招,把你嚇壞。</p><p id="827b">說對方瘋狂的,是你一直心存僥倖,以為自己有14億人他怎敢打我?根本連拳架都沒擺好,到對方出手時,慌張失態。因為見過太多練國術練到患精神病(我也練國術),反而對此惡習熟悉,並不意外。</p><p id="0120">香港人沒有在武力上打贏的實力,一邊打一邊走國際戰線,將國際公敵在世界前曝光是聰明之舉,只苦了前線手足和牢內朋友。自己團結不夠,就團結全世界。如果團結全世界還不夠,再團結國內人民,別認為沒可能。一年前我們也沒有料到有今天。如果防火牆一旦拆去,事情演變只會更快。</p><p id="a9bf">戲再好看,香港人夾在其間,也不會好過。香檳不妨多買,但離真正重光還有好一段日子。請萬千照顧好自己。</p><blockquote id="1f0b"><p>(*圖:練京劇雜耍的成虫接受訪問時,竟然話全盛時期自己好打過真正的武術家李小龍,足見最厲害的中國功夫,那把嘴練到家了。李小龍能寫武術及哲學書,但真正打鬥時,決勝負只有一兩秒之間,就把你打爆了。吹水完了再講。)</p></blockquote> <figure id="5a88">

Options

 <div>
          <div>
            <img class="ratio" src="http://placehold.it/16x9">
            <iframe class="" src="https://cdn.embedly.com/widgets/media.html?src=https%3A%2F%2Fbutton.like.co%2Fin%2Fembed%2Fsbho930%2Fbutton&amp;display_name=LikeCoin&amp;url=https%3A%2F%2Fbutton.like.co%2Fin%2Flike%2Fsbho930&amp;image=https%3A%2F%2Fstatic.like.co%2Flikecoin_de-portrait.jpg&amp;key=a19fcc184b9711e1b4764040d3dc5c07&amp;type=text%2Fhtml&amp;schema=like" allowfullscreen="" frameborder="0" height="212" width="485">
          </div>
        </div>
    </figure></iframe></div></div></figure></article></body>

Why It’s Hard To Create Firewall Rules for Google Update Traffic

Same IP addresses for Google Updates and Google Ads?

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

⚙️ Check out my series on Automating Cybersecurity Metrics | Code.

🔒 Related Stories: Google Security | Network Security | Data Breaches

💻 Free Content on Jobs in Cybersecurity | ✉️ Sign up for the Email List

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

In my last post on the topic of monitoring your home network and computers for problems I posted about some malicious traffic I noticed on my network and how I inspected my Mac for malware (or should I say, evidence of malware).

Related to that, I was having some problems connecting to Google’s update service. I thought I had allowed the domain through my firewall rules. Where he’s why that’s not going to work.

Dig dl.google.com

Dig ads.google.com

Depending on which Google IP addresses you query at any particular time, you mights see that completely different services resolve to a similar — or in some cases the exact same — IP ranges.

In the above example, the two IP ranges are somewhat different, however, these particular IP addresses are more similar:

And in fact yesterday, something I cannot reproduce now on a different. machine, the IP addresses for the ad service was resolving to the exact same IP addresses that I needed to get to in order to get a Google update. Hmm?

So what was going on there? Not sure exactly but something to take a look at on your network. Was something compromised or is this Google’s way of saying, if you want to use our browser you have to look at our ads? Because the browser is free and yes, Google does need to make some money. Perhaps they should off an ad-free browsing experience for an additional cost if that was the objective. But now I’m not seeing that same behavior.

It would be great if Google published the IP range from which you should be getting updates for their various services.

If you know something about Kubernetes it’s easy to imagine why this is happening. Google has been known to be excellent on squeezing every last drop out of their computer resources — but sometimes that comes at the cost of security. Although they seem to be superior in some ways at processing large amounts of data due to their ability to scan and process — all the Internet — their optimization focused designs sometimes lack an understanding of how that can cause a security problem.

When Kubernetes came out my team wanted to use it and I looked at the design and said — show me how you are going to segregate the network traffic of different services so lets say, only the billing service can connect to the billing database? You couldn’t. At least not with a single Kubernetes cluster. Because you set up this Kubernetes service to handle all your containers and they all shared the same hardware and you couldn’t distiguish between different nodes via networking. You also couldn’t handle TLS traffic or monitor individual nodes. Now you can through the use of tacked on sidecars.

Security is best when it’s baked into the underlying design, not added after the fact. Kubernetes now has better security options, but what if somehow the servers got miconfigured (if not done intentionally) and the containers for updates were on the same hardware and networks as the servers for ads?

Or, was something compromised. Was I being directed to ad servers for updates due to some malware somewhere in the network or on my system? I don’t really know at this point. But this is something to be aware of and monitor in relation to Google software updates — or any software updates for that matter. Make sure they are coming from the proper network and understand what else is on that network that might send you a malicious update.

Follow for updates.

Teri Radichel | © 2nd Sight Lab 2024

About Teri Radichel:
~~~~~~~~~~~~~~~~~~~~
⭐️ Author: Cybersecurity Books
⭐️ Presentations: Presentations by Teri Radichel
⭐️ Recognition: SANS Award, AWS Security Hero, IANS Faculty
⭐️ Certifications: SANS ~ GSE 240
⭐️ Education: BA Business, Master of Software Engineering, Master of Infosec
⭐️ Company: Penetration Tests, Assessments, Phone Consulting ~ 2nd Sight Lab
Need Help With Cybersecurity, Cloud, or Application Security?
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
🔒 Request a penetration test or security assessment
🔒 Schedule a consulting call
🔒 Cybersecurity Speaker for Presentation
Follow for more stories like this:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 
❤️ Sign Up my Medium Email List
❤️ Twitter: @teriradichel
❤️ LinkedIn: https://www.linkedin.com/in/teriradichel
❤️ Mastodon: @teriradichel@infosec.exchange
❤️ Facebook: 2nd Sight Lab
❤️ YouTube: @2ndsightlab
Google
Updates
Security
Chrome
Network Security
Recommended from ReadMedium