Elektrine lite

← Feed

Hugo | DevOps | Cybersecurity

hugovalters@mastodon.social

<p>Tech Lead &amp; DevSecOps. 🛡️ Cybersecurity | 💻 IT Tutorials | 🏴‍☠️ Ethical Hacking | ⚙️ Tech Reviews. Learn, secure, and explore cutting-edge IT solutions! 👇</p>

Posts

  • View post

    178 lines of LangChain code that turns a folder of PDFs and Markdown into a Q&amp;A bot. Advanced, uses FAISS and OpenAI. Ask runbooks and manuals questions straight from the CLI. https://www.valtersit.com/python/langchain-document-qa-bot/ #python #ai #langchain

  • View post

    Spent 3 days on a WireGuard tunnel that would not handshake? Your ISP put you behind CGNAT. Port forwarding is dead. Tailscale and ZeroTier use UDP hole punching and https://www.valtersit.com/guides/networking/tailscale_zerotier-why_youre_fighting_cgnat-and-losing/ #networking #tailscale #cgnat

  • View post

    Suricata carries a D trust score with 27 CVEs, 17 high severity, and 100% still unpatched. No KEV exploits yet, but that open gap is the risk. https://www.valtersit.com/vendors/suricata/ #cybersecurity #infosec #Suricata

  • View post

    Python script that hashes files in /etc with SHA256, stores a baseline in SQLite, and flags any change. 238 lines, intermediate level. Useful for catching tampering with https://www.valtersit.com/python/file-integrity-monitor-with-sha256-baseline/ #python #security #infosec

  • View post

    Brute-force LDAP with Hydra&amp;#39;s ldap2 module via simple bind. Target port 389 (or 636 for LDAPS). Specify user DN with -l (e.g., cn=admin,dc=example,dc=com), -P for password list, -t 4 parallelism, https://www.valtersit.com/vault/hydra-ldap-bruteforce-with-simple-bind-and-user-enumeration-51729a/

  • View post

    CVE-2026-78136 - CHIRP RCE via eval injection in crafted CSV (kenwood_itm.py). CVSS 7.8. Unpatched - upgrade once available. #CVE #infosec #CHIRP https://www.valtersit.com/cve/CVE-2026-78136/

  • View post

    Amazon: 61 CVEs tracked, avg CVSS 6.91. 42% unpatched. No KEV exploits yet, but cloud giants are prime targets. Harden your AWS configs. #AWS #cybersecurity #infosec https://www.valtersit.com/vendors/amazon/

  • View post

    SMB Share Enumeration with smbclient and Null Session Check This command leverages smbclient to enumerate SMB shares on a target host, attempting a null session (no credentials) and then listing accessible shares. It works by connecting to the SMB service and #DevOps #Linux #ValtersIT https://www.valtersit.com/vault/smb-share-enumeration-with-smbclient-and-null-session-check-3b5c2c/

  • View post

    Deploying Encrypted DNS Internally: DoH and DoT Guide — hands-on guide for sysadmins. #dns-security #encrypted-dns #devsecops https://www.valtersit.com/guides/networking/deploying-encrypted-dns-internally-doh-and-dot-guide/

  • View post

    CVE-2026-62384 - Symlink sandbox bypass in NLTK FramenetCorpusReader. Arbitrary XML file read. CVSS 7.5. Update to 3.10.2 now. #CVE #NLTK #infosec https://www.valtersit.com/cve/CVE-2026-62384/

  • View post

    Portabilis: 100 CVEs, 100% unpatched. Avg CVSS 4.32, max 6.3. XSS (CWE-79) leads. Trust https://www.valtersit.com/vendors/portabilis/

  • View post

    Meet PCI DSS 11.5 compliance with AIDE FIM rules. Configure SHA-512 baselines to monitor system binaries, permissions, and configs on Debian, Ubuntu, and RHEL. #pci #aide #fim https://www.valtersit.com/vault/configuring-aide-file-integrity-monitoring-rules-for-pci-dss-7bcc9a/

  • View post

    Deploying SQLite in Docker without volumes? One container update wipes your entire database. Learn how Docker storage works and how to properly persist your data. #Docker #SQLite #DevOps https://www.valtersit.com/guides/databases/sqlite-in-docker-containers-a-masterclass-in-data-deletion/

  • View post

    CVE-2026-4703 - Critical PHP Object Injection in WS Form for WordPress leads to remote code execution via insecure deserialization. CVSS 9.8. Update now. #CVE #WordPress #infosec https://www.valtersit.com/cve/CVE-2026-4703/

  • View post

    CVE-2026-66393 - DoS vulnerability in NLTK. Deeply nested JSON triggers unhandled recursion crash in Python. CVSS 7.5. Update to 3.9.4 immediately. #CVE #Python #infosec https://www.valtersit.com/cve/CVE-2026-66393/

  • View post

    Automate OpenVAS via gvm-cli over Unix sockets. Send raw XML to build CIDR targets and execute Full and Fast scan tasks. #openvas #gvm-cli #automation https://www.valtersit.com/vault/programmatic-headless-target-creation-and-scan-execution-via-c0f854/

  • View post

    TOTOLINK: 622 CVEs, 99% unpatched. Max CVSS 9.8, top flaws: buffer overflow &amp;amp; command injection https://www.valtersit.com/vendors/totolink/

  • View post

    That ZimaBoard Celeron CPU isn&amp;#39;t weak—you&amp;#39;re just wasting resources. Optimize Linux kernel and Docker settings for brutal homelab efficiency. #ZimaBoard #Docker #Linux https://www.valtersit.com/guides/zima/zimaboard-home-server-setup-pushing-the-celeron-to-its-limits/

  • View post

    CVE-2026-62384 - Symlink sandbox bypass in NLTK leads to arbitrary file read. CVSS 7.5. Update to version 3.10.2 now. #CVE #Python #infosec https://www.valtersit.com/cve/CVE-2026-62384/

  • View post

    Prevent BMC memory saturation by exporting raw System Event Log (SEL) records for external archival and issuing an IPMI Clear SEL request via ipmitool. #ipmi #sel #ValtersIT https://www.valtersit.com/vault/dumping-and-clearing-system-event-log-records-to-prevent-bmc-1e81e0/

  • View post

    Stop running separate Datadog, New Relic, and Splunk agents. Migrate to OpenTelemetry Collector with config patterns proven across 500+ host migrations. #OpenTelemetry #DevOps #Observability https://www.valtersit.com/guides/monitoring/opentelemetry-collector-unified-observability-without-vendor-lock-in/

  • View post

    CVE-2026-47895 - Double-Free vulnerability in strongSwan EAP identity parsing. CVSS 7.5. Update to version 6.0.7 immediately. #CVE #strongSwan #infosec https://www.valtersit.com/cve/CVE-2026-47895/

  • View post

    Parse Server: 70 CVEs, max CVSS 10. 100% unpatched. Trust Score: D. Auth bypass &amp;amp; SQLi risks rising (+53 in 2026). Don&amp;#39;t trust default config https://www.valtersit.com/vendors/parse-server/

  • View post

    Execute NRQL queries via New Relic CLI to output real-time infrastructure resource usage data as JSON/tables directly in your CI/CD pipelines. #newrelic #cli #ValtersIT https://www.valtersit.com/vault/querying-infrastructure-resource-usage-via-new-relic-cli-and-23a228/

  • View post

    Fuzzing for CORS Misconfigurations with curl and Custom Script This bash script uses curl to fuzz for CORS misconfigurations by sending requests with varying Origin headers and checking for Access-Control-Allow-Origin response. It loops through a list of origins #DevOps #Linux #ValtersIT https://www.valtersit.com/vault/fuzzing-for-cors-misconfigurations-with-curl-and-custom-scri-d3fc77/

  • View post

    Rockwell Automation: 113 CVEs, 94% unpatched. Avg CVSS 7.65, max 9.8. Trust Score: C. Top weakness: CWE-20 (Input Validation). Industrial control security still lagging. #Rockwell #cybersecurity #infosec https://www.valtersit.com/vendors/rockwell-automation/

  • View post

    Stop guessing ciphers. Isolate SSH traffic with `ssh`, then add `ssh.encryption_algorithms` as a column to see the exact negotiated cipher. Wireshark parses SSH_MSG_KEXINIT to reveal your key exchange. Audit with confidence. #wireshark #ssh #cipheraudit https://www.valtersit.com/vault/wireshark-display-filter-for-ssh-protocol-and-cipher-detecti-fe8312/

  • View post

    Radare2: 24 CVEs tracked, 87% unpatched. 0 CISA KEV exploited, but avg CVSS 6.67. Trust Score: C. Open source reverse engineering tool needs patching vigilance. #Radare2 #infosec #cybersecurity https://www.valtersit.com/vendors/radare2/

  • View post

    Run Kali Linux and isolated browsers on a $99 ZimaBoard 2 with zero lag. This Kasm setup turns your homelab into a cyber lab. #Homelab #Linux #Cybersecurity https://www.valtersit.com/turn-your-zimaboard-2-into-an-ultimate-cyber-lab-with-kasm-2026-guide/

  • View post

    CVE-2026-15155 - Critical Email Header Injection in Essential Addons for Elementor. Allows authenticated account takeover. CVSS 8.8. No patch available. Disable login/register widget immediately. #CVE #WordPress #infosec https://www.valtersit.com/cve/CVE-2026-15155/