• skankhunt42@lemmy.ca
    link
    fedilink
    English
    arrow-up
    9
    ·
    1 day ago

    It’s days like this where I’m happy I’m unemployed. I have a group chat with a few friends and they’re pushing out patches and it’s a bit of a rush.

    All my publicly accessible servers update every 6 hours and reboot after whenever they need to. It’s rare I need to step in and fix something. I checked a few hours ago and I’m not at risk.

    • motruck@lemmy.zip
      link
      fedilink
      English
      arrow-up
      0
      ·
      8 hours ago

      Your friends should do a PoC before they rush to fix random bugs that ostensibly have a high severity.

      • motruck@lemmy.zip
        link
        fedilink
        English
        arrow-up
        1
        ·
        8 hours ago

        You should tell that on your group chat. Motruck says you need to slow down and stop jumping at high severity but low exploitabile trash.

    • GreenKnight23@lemmy.world
      link
      fedilink
      English
      arrow-up
      9
      ·
      1 day ago

      All my publicly accessible servers update every 6 hours and reboot after whenever they need to. It’s rare I need to step in and fix something. I checked a few hours ago and I’m not at risk.

      not the flex you think it is.

      didn’t npm have a worm problem a few days ago?

      • skankhunt42@lemmy.ca
        link
        fedilink
        English
        arrow-up
        3
        ·
        20 hours ago

        Yep. I wasn’t affected thankfully. Didn’t realise I was flexing, sorry. Just happy most of my stack is automated and it’s quite low maintenance at this point.

        Where do I draw the line then? Serious question. If updating every couple hours is bad, then what’s safe?