Why YSK: It appears several Lemmy Instances are flagged as suspicious and at least 1 instance intentionally using the name of ransomware. A couple of the big enterprise monitoring suites (Fortiguard, ZScaler) will flag your account and may end up with you being pulled into an office for an explanation, or worse.

TL;DR: Keep browsing to your local instance at work for now.

  • LostDeer@infosec.pub
    link
    fedilink
    arrow-up
    21
    ·
    1 year ago

    Don’t use company computers for personal stuff, it all gets logged and can be used against you at the very least as evidence that you weren’t working come performance reviews.

    • givesomefucks@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      It’s fucking insane people don’t know this in 2023.

      Work computers are for work, and pretty much every employer monitors what you do on it.

    • uberrice@feddit.de
      link
      fedilink
      arrow-up
      1
      ·
      1 year ago

      Depends on your work. I agree with you, but for example my work is different.

      Yes, we have managed devices as well, but my department specifically went for unmanaged devices. Just plain old laptops. Install whatever OS you want, do whatever you want. I only have the base windows install on there for some compatibility reasons, I mostly just use PopOS.

      And we’re also explicitly allowed to browse private content - as long as the work gets done and we stay in budget, do whatever.

      • theDoctor@lemmy.sdf.org
        link
        fedilink
        arrow-up
        2
        ·
        1 year ago

        If you are on their network they can see what you are doing. At the end of the day, the business will protect itself.

        Do what you want at your own risk. But never assume that any company is on your side.

      • wizardbeard@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 year ago

        Even if you don’t, there’s plenty of different ways to identify a user on company wifi.

        For example, have your cellphone named “Stephano’s iPhone”? Narrows it down to the Stephanos working in range of that access point.

      • smeg@feddit.uk
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        Always use a VPN when on a network you can’t trust. There are plenty of free and trustworthy ones you can activate with one click, and then all the company sees is noise.

  • Poob@lemmy.ca
    link
    fedilink
    arrow-up
    5
    ·
    1 year ago

    Browsing personal sites, especially social media, on a work computer is insane

  • Powerpoint@lemmy.ca
    link
    fedilink
    arrow-up
    3
    ·
    1 year ago

    Just don’t use a work computer for anything but work. Use your personal cell phone and don’t use their wifi.

        • joelfromaus@aussie.zone
          link
          fedilink
          English
          arrow-up
          0
          ·
          1 year ago

          I used to use a VPN on the work wifi and then they began blocking VPN’s. One day my VPN started continuously dropping and reconnecting while on their wifi. Absolutely within their right to do, they need to know what traffic is on their network in case of anything that breaks policy or is nefarious.

          • Darkassassin07@lemmy.ca
            link
            fedilink
            English
            arrow-up
            1
            ·
            edit-2
            1 year ago

            I haven’t had the time, but I’d like to give Shadowsocks a go and see if that can break out of the vpn blockages.

            The majority of my self-hosted services are vpn access only, and my phone is set to block non-vpn traffic so I notice in a hurry when my vpn drops out/can’t connect.

            /edit: I did give shadowsocks a go. It didn’t get through unfortunately and it’s password auth only, no key pairs or certificates. Got rid of it again.

    • lordkuri@lemmy.world
      link
      fedilink
      arrow-up
      1
      ·
      1 year ago

      I had a lady in the marketing department open a ticket with us many years ago when ILoveYou was running rampant and we had blocked yahoo mail, gmail, etc on our corporate network and she was PISSED because “I need to access that for my other job!”. Yes, she put that in the ticket. That was a brief discussion with her manager and a resume generating event for her.

    • wizardbeard@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      0
      ·
      1 year ago

      That only helps if you aren’t on company wifi. Guess it’s time to stop misusing the corporate wifi password I shouldn’t have.

  • dm_me_your_feet@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    1 year ago

    This does not apply for most european users. Source: I am the one who gets these requests and anyone who isn’t a judge gets jack shit. Go pound sand. Anything else would be illegal under privacy and work laws. Even police wont get ANYTHING (judge will reject it) if the crime in question isn’t worth at least 2 years of jail time.

    Suspected malware domains just get blocked, no further action will ever take place.

  • Celsiuss@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    1 year ago

    I find it crazy that you can get in trouble for browsing the wrong websites. It’s illegal where I live to track people’s computers.

  • r00ty@kbin.life
    link
    fedilink
    arrow-up
    0
    ·
    1 year ago

    My company uses zscalar. It’s essentially a company endorsed MitM attack and for that reason alone I don’t use the work laptop for anything but work.

    • FIST_FILLET@lemmy.ml
      link
      fedilink
      arrow-up
      0
      arrow-down
      1
      ·
      1 year ago

      seriously, why don’t people just use their phones for non-work stuff in the office? you can leave those disconnected from wifi so nothing is visible to the company.

          • AphoticDev@lemmy.dbzer0.com
            link
            fedilink
            arrow-up
            0
            ·
            1 year ago

            That was my response. You shouldn’t be doing personal tasks on a work phone. Has that ever been a thing corporations wouldn’t immediately fire you for? VPN or not, NSFW or SFW, don’t browse Lemmy or other social media on your work devices. Ever. Depending on who you work for, it could even be highly illegal, especially if it’s a government job.

            • QuinceDaPence@kbin.social
              link
              fedilink
              arrow-up
              1
              ·
              1 year ago

              There’s some at mine that don’t even have a personal and I don’t get it. You leave and have to change your number and deal with all that crap plus if you have to have an account sent you a text.

              They told me that was an option an I was like Fuuuuck no, I keep that shit separate. I still get calls on my work phone when the previous guys kid needs to be picked up from daycare.