I Cant Even...
- 
 @DustinB3403 said: Nothing in that thread is "I can't even" except your posts. And you bailed rudely. 
- 
 I love dealing with someone who has a DEGREE in Cybersecurity, claims to be an experienced system administrator, yet doesn't even know what an SPF record is for email and leaves it blank - even after being taught how to do it. And then puts the wrong data in from the wrong vendor because they don't know how to follow directions or what it is for. 
- 
 @scottalanmiller said in I Cant Even...: I love dealing with someone who has a DEGREE in Cybersecurity, claims to be an experienced system administrator, yet doesn't even know what an SPF record is for email and leaves it blank - even after being taught how to do it. And then puts the wrong data in from the wrong vendor because they don't know how to follow directions or what it is for. It's fun stuff for sure. We do a hard bounce on all incoming email with SPF failures. Wish Microsoft and Google would do that too, because it's a wake up call for people. 
- 
 @scottalanmiller said in I Cant Even...: I love dealing with someone who has a DEGREE in Cybersecurity, claims to be an experienced system administrator, yet doesn't even know what an SPF record is for email and leaves it blank - even after being taught how to do it. And then puts the wrong data in from the wrong vendor because they don't know how to follow directions or what it is for. The number of people that have no idea what SPF or DKIM are is just crazy. Nobody I've tried to deal with either has had a clue what I was even talking about. 
- 
 @Pete-S said in I Cant Even...: @scottalanmiller said in I Cant Even...: I love dealing with someone who has a DEGREE in Cybersecurity, claims to be an experienced system administrator, yet doesn't even know what an SPF record is for email and leaves it blank - even after being taught how to do it. And then puts the wrong data in from the wrong vendor because they don't know how to follow directions or what it is for. It's fun stuff for sure. We do a hard bounce on all incoming email with SPF failures. Wish Microsoft and Google would do that too, because it's a wake up call for people. Problem is, customers and vendors use it to say we don't respond. they don't look at their hard bounces. 
- 
 @Pete-S Ready for the worst offender? The Nicaragua Tax Office. No SPF, no TLS. And you are absolutely responsible for receiving and responding to their emails  
- 
 Today a large corporate "IT department" that uses DattoRMM (OMG, shoot me now) ask me if we needed these "apps"... sc.exe and wmic.exe because DattoRMM was flagging them. Um, that's WINDOWS. What kind of IT department that manages thousands of Windows computers opens a ticket to their upstream MSP to ask what sc and wmic are? Like, ever heard of Google? Or Windows? Seriously? 
- 
 @scottalanmiller said in I Cant Even...: Today a large corporate "IT department" that uses DattoRMM (OMG, shoot me now) ask me if we needed these "apps"... sc.exe and wmic.exe because DattoRMM was flagging them. Um, that's WINDOWS. What kind of IT department that manages thousands of Windows computers opens a ticket to their upstream MSP to ask what sc and wmic are? Like, ever heard of Google? Or Windows? Seriously? Damn... /sigh And here I am being told to 'use the MSP more' 
- 
 I cant even....Begin to see the breach data and lawsuits coming.... 
 https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/
- 
 @Texkonc said in I Cant Even...: I cant even....Begin to see the breach data and lawsuits coming.... 
 https://www.bleepingcomputer.com/news/security/godaddy-hackers-stole-source-code-installed-malware-in-multi-year-breach/Shitty security, shitty hosting, but at least they are expensive  
- 
 @Dashrender said in I Cant Even...: @scottalanmiller said in I Cant Even...: Today a large corporate "IT department" that uses DattoRMM (OMG, shoot me now) ask me if we needed these "apps"... sc.exe and wmic.exe because DattoRMM was flagging them. Um, that's WINDOWS. What kind of IT department that manages thousands of Windows computers opens a ticket to their upstream MSP to ask what sc and wmic are? Like, ever heard of Google? Or Windows? Seriously? Damn... /sigh And here I am being told to 'use the MSP more' It wasn't your MSP that said that, lol. 
- 
 Today a customer can't bring from this one workstation. Funny, everything else can print fine. Oh wait, Windows 7 on Intel Core 14 years old, 32bit. Um yeah, we don't have 32bit drivers on the network. WTF people? 
- 
 @scottalanmiller said in I Cant Even...: Today a large corporate "IT department" that uses DattoRMM (OMG, shoot me now) ask me if we needed these "apps"... sc.exe and wmic.exe because DattoRMM was flagging them. Um, that's WINDOWS. What kind of IT department that manages thousands of Windows computers opens a ticket to their upstream MSP to ask what sc and wmic are? Like, ever heard of Google? Or Windows? Seriously? Do I need sshd on my linux servers? Can you remove it? 
- 
 
- 
 @Texkonc said in I Cant Even...: @scottalanmiller said in I Cant Even...: Oh wait, Windows 7.... mmmmmmm, Security.... Flavoured Swiss cheese 
- 
 @scottalanmiller said in I Cant Even...: @Dashrender said in I Cant Even...: @scottalanmiller said in I Cant Even...: Today a large corporate "IT department" that uses DattoRMM (OMG, shoot me now) ask me if we needed these "apps"... sc.exe and wmic.exe because DattoRMM was flagging them. Um, that's WINDOWS. What kind of IT department that manages thousands of Windows computers opens a ticket to their upstream MSP to ask what sc and wmic are? Like, ever heard of Google? Or Windows? Seriously? Damn... /sigh And here I am being told to 'use the MSP more' It wasn't your MSP that said that, lol. Actually - it was both. 
- 
 Taking over a location from an MSP and I found that there were two accounts that were created in 2019 with only one login on that date in 2019, and the password was listed in the account description field..... Luckily this domain will only exist for about a week under our control before we move them to our domain. Drafted an email for my management to review before I email the CEO of that MSP. Just to make sure it doesn't backfire on me. CYA since I am about to call out an MSP at horrible security. 





