woodytrombone

joined 2 years ago
[–] woodytrombone@lemmy.dbzer0.com 1 points 2 months ago (1 children)

I didn't order waffle fries!

(I usually see the Computer Fraud and Abuse Act abbreviated CFAA)

[–] woodytrombone@lemmy.dbzer0.com 4 points 3 months ago

Almost as ~~bad~~ glorious as Breezewood, PA.

[–] woodytrombone@lemmy.dbzer0.com 1 points 5 months ago

Yep, that's dumb. SOC2 is built upon NIST guidance, not the other way around.

[–] woodytrombone@lemmy.dbzer0.com 3 points 5 months ago (2 children)

If you have any voice with your Security department, you can tell them that rotating passwords are counter to NIST SP 800-63B (Section 10.2.1) guidance:

Do not require that memorized secrets be changed arbitrarily (e.g., periodically) unless there is a user request or evidence of authenticator compromise.

[–] woodytrombone@lemmy.dbzer0.com 2 points 8 months ago

Though I haven't shot the FAMAS, 3-round burst fired from an M4 is clearly distinguishable from firing a single round (and alerts range safeties within a 300m radius)