Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Look at this fantastic piece of advice from Microsoft!

Look at this fantastic piece of advice from Microsoft!

Scheduled Pinned Locked Moved Uncategorized
38 Posts 36 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • kastasmykolas@river.group.ltK kastasmykolas@river.group.lt

    @theodric

    > "Sumarigo-MSFT 47,511 Reputation points • Microsoft Employee • Moderator"

    o_0

    hans_martin@ruhr.socialH This user is from outside of this forum
    hans_martin@ruhr.socialH This user is from outside of this forum
    hans_martin@ruhr.social
    wrote last edited by
    #5

    @KasTasMykolas @theodric well it's par for the course on Microsoft answers.

    1 Reply Last reply
    0
    • theodric@social.linux.pizzaT theodric@social.linux.pizza

      Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

      brezelradar@norden.socialB This user is from outside of this forum
      brezelradar@norden.socialB This user is from outside of this forum
      brezelradar@norden.social
      wrote last edited by
      #6

      @theodric This basically translates to "Please make sure your password is part of our rainbow table", right?

      1 Reply Last reply
      0
      • theodric@social.linux.pizzaT theodric@social.linux.pizza

        Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

        zikko@toot.catZ This user is from outside of this forum
        zikko@toot.catZ This user is from outside of this forum
        zikko@toot.cat
        wrote last edited by
        #7

        @theodric Uhhhh, what the fuck?

        1 Reply Last reply
        0
        • theodric@social.linux.pizzaT theodric@social.linux.pizza

          Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

          itnomad@ruhr.socialI This user is from outside of this forum
          itnomad@ruhr.socialI This user is from outside of this forum
          itnomad@ruhr.social
          wrote last edited by
          #8

          @theodric I'm too sober for this shit

          1 Reply Last reply
          0
          • theodric@social.linux.pizzaT theodric@social.linux.pizza

            Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

            teflontrout@beige.partyT This user is from outside of this forum
            teflontrout@beige.partyT This user is from outside of this forum
            teflontrout@beige.party
            wrote last edited by
            #9

            @theodric

            That is not very correct horse battery staple of them at all

            1 Reply Last reply
            0
            • theodric@social.linux.pizzaT theodric@social.linux.pizza

              Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

              heals@indiepocalypse.socialH This user is from outside of this forum
              heals@indiepocalypse.socialH This user is from outside of this forum
              heals@indiepocalypse.social
              wrote last edited by
              #10

              @theodric it’s only Azure Blob storage! No one would store sensitive data in the cloud! Right!… Right?! /s

              /cc @aeva

              1 Reply Last reply
              0
              • theodric@social.linux.pizzaT theodric@social.linux.pizza

                Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                kc@social.coopK This user is from outside of this forum
                kc@social.coopK This user is from outside of this forum
                kc@social.coop
                wrote last edited by
                #11

                « Additionally, Microsoft has methods for scanning the contents of password-protected zip files, such as extracting possible passwords from the bodies of an email or the name of the file itself »

                Isn’t that technically a cybercrime in most countries 🤔

                6@possum.city6 1 Reply Last reply
                0
                • theodric@social.linux.pizzaT theodric@social.linux.pizza

                  Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                  weirdmustard@flipping.rocksW This user is from outside of this forum
                  weirdmustard@flipping.rocksW This user is from outside of this forum
                  weirdmustard@flipping.rocks
                  wrote last edited by
                  #12

                  @theodric So "1234" and "Password1!" it is.

                  1 Reply Last reply
                  0
                  • System shared this topic
                  • theodric@social.linux.pizzaT theodric@social.linux.pizza

                    Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                    zkat@fedi.zkat.techZ This user is from outside of this forum
                    zkat@fedi.zkat.techZ This user is from outside of this forum
                    zkat@fedi.zkat.tech
                    wrote last edited by
                    #13

                    @theodric this reads like an LLM response, so is probably just that

                    1 Reply Last reply
                    0
                    • theodric@social.linux.pizzaT theodric@social.linux.pizza

                      Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                      lucky@mastodon.nzL This user is from outside of this forum
                      lucky@mastodon.nzL This user is from outside of this forum
                      lucky@mastodon.nz
                      wrote last edited by
                      #14

                      @theodric holy fuck?

                      1 Reply Last reply
                      0
                      • theodric@social.linux.pizzaT theodric@social.linux.pizza

                        Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                        leorjorge@mastodon.socialL This user is from outside of this forum
                        leorjorge@mastodon.socialL This user is from outside of this forum
                        leorjorge@mastodon.social
                        wrote last edited by
                        #15

                        @theodric This has to be an LLM response... even leaving alone this horrible security advice, the whole response is trying to do the exact opposite of what the OP asked!

                        evehaswords@toot.catE 1 Reply Last reply
                        0
                        • theodric@social.linux.pizzaT theodric@social.linux.pizza

                          Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                          bluetea@ioc.exchangeB This user is from outside of this forum
                          bluetea@ioc.exchangeB This user is from outside of this forum
                          bluetea@ioc.exchange
                          wrote last edited by
                          #16

                          @theodric omfg. seriously.

                          1 Reply Last reply
                          0
                          • kc@social.coopK kc@social.coop

                            « Additionally, Microsoft has methods for scanning the contents of password-protected zip files, such as extracting possible passwords from the bodies of an email or the name of the file itself »

                            Isn’t that technically a cybercrime in most countries 🤔

                            6@possum.city6 This user is from outside of this forum
                            6@possum.city6 This user is from outside of this forum
                            6@possum.city
                            wrote last edited by
                            #17

                            @kc@social.coop the fines are just the price of doing business 😜

                            1 Reply Last reply
                            0
                            • theodric@social.linux.pizzaT theodric@social.linux.pizza

                              Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                              burak@gursoy.socialB This user is from outside of this forum
                              burak@gursoy.socialB This user is from outside of this forum
                              burak@gursoy.social
                              wrote last edited by
                              #18

                              @theodric p4ssw0rd1

                              1 Reply Last reply
                              0
                              • theodric@social.linux.pizzaT theodric@social.linux.pizza

                                Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                                ljwrites@writeout.inkL This user is from outside of this forum
                                ljwrites@writeout.inkL This user is from outside of this forum
                                ljwrites@writeout.ink
                                wrote last edited by
                                #19

                                @theodric “Microsoft has methods for scanning the contents of password-protected zip files, such as extracting possible passwords from the bodies of an email or the name of the file itself[.]” Cool and normal stuff, your storage provider telling you that they are essentially cracking your data.

                                1 Reply Last reply
                                0
                                • theodric@social.linux.pizzaT theodric@social.linux.pizza

                                  Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                                  hugh@mastodon.nzH This user is from outside of this forum
                                  hugh@mastodon.nzH This user is from outside of this forum
                                  hugh@mastodon.nz
                                  wrote last edited by
                                  #20

                                  @theodric
                                  Does it suggest "password" or "ABC123"?

                                  ricci@discuss.systemsR 1 Reply Last reply
                                  0
                                  • leorjorge@mastodon.socialL leorjorge@mastodon.social

                                    @theodric This has to be an LLM response... even leaving alone this horrible security advice, the whole response is trying to do the exact opposite of what the OP asked!

                                    evehaswords@toot.catE This user is from outside of this forum
                                    evehaswords@toot.catE This user is from outside of this forum
                                    evehaswords@toot.cat
                                    wrote last edited by
                                    #21

                                    @LeoRJorge @theodric Offering irrelevant / off topic advice is pretty normal for humans where complicated or obscure questions are in play (source: reading lots of StackOverflow and forum responses written before the advent of stochastic parrots). That said, I do agree this is likely slop since the point about the passwords would have to be hallucinated.

                                    leorjorge@mastodon.socialL 1 Reply Last reply
                                    0
                                    • kr3st3n@infosec.exchangeK kr3st3n@infosec.exchange

                                      @theodric @phloggen Fantastic advice. I also noted that files larger than 2GB are exempt from scanning?!?

                                      Thanks. I’ll just add 2GB of randomness before my payload, then…

                                      Checkmark security (or compliance for some) at its best. 👍

                                      h5e@tech.lgbtH This user is from outside of this forum
                                      h5e@tech.lgbtH This user is from outside of this forum
                                      h5e@tech.lgbt
                                      wrote last edited by
                                      #22

                                      @kr3st3n @theodric @phloggen yeah but it also says “Ensure that the size of the password-protected zip files does not exceed the 2 GB limit to avoid unnecessary consumption of the scanning quota.”??

                                      1 Reply Last reply
                                      0
                                      • evehaswords@toot.catE evehaswords@toot.cat

                                        @LeoRJorge @theodric Offering irrelevant / off topic advice is pretty normal for humans where complicated or obscure questions are in play (source: reading lots of StackOverflow and forum responses written before the advent of stochastic parrots). That said, I do agree this is likely slop since the point about the passwords would have to be hallucinated.

                                        leorjorge@mastodon.socialL This user is from outside of this forum
                                        leorjorge@mastodon.socialL This user is from outside of this forum
                                        leorjorge@mastodon.social
                                        wrote last edited by
                                        #23

                                        @EveHasWords @theodric Yeah, maybe I was giving too much merit to the Microsoft employee who posted the reply...

                                        1 Reply Last reply
                                        0
                                        • kr3st3n@infosec.exchangeK kr3st3n@infosec.exchange

                                          @theodric @phloggen Fantastic advice. I also noted that files larger than 2GB are exempt from scanning?!?

                                          Thanks. I’ll just add 2GB of randomness before my payload, then…

                                          Checkmark security (or compliance for some) at its best. 👍

                                          ? Offline
                                          ? Offline
                                          Guest
                                          wrote last edited by
                                          #24

                                          @kr3st3n@infosec.exchange @theodric@social.linux.pizza @phloggen@expressional.social this is an actual technique that works against many commercial AV and EDR solutions

                                          ? 1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups