Monday, March 10, 2025

PeopleSoft and MFA...

 Summary:

  • PeopleSoft's Native Support: PeopleSoft, as of PeopleTools versions 8.5x and 8.6x, does not directly support two-factor authentication out-of-the-box.
  • Reliance on External Systems: PeopleSoft relies on external security products like Oracle Access Manager (OAM) and Oracle Adaptive Access Manager (OAAM) to provide MFA capabilities. These products can integrate with partner-supported two-factor authentication solutions.
  • Signon PeopleCode Limitations: The Signon PeopleCode in PeopleSoft doesn't allow for direct interaction with the browser in a way that would enable a native MFA implementation. Therefore, any integration needs to be an "intercept" rather than a direct customization.
  • External Token Servers: Solutions like RSA SecurID, which use tokens, require external time-based token key servers.
  • Definition of MFA: The document clarifies that two-factor authentication generally involves "something you know" (like a password) and "something you have" (like a token or mobile app).
  • Customization Caution: While Signon PeopleCode allows for custom authentication integrations, Oracle strongly advises against this due to potential security risks.
  • Community Feedback: A link to an "Ideas Workspace" community post on the topic is provided, indicating user interest in this feature.

Key Information Explained:

  • Two-Factor/Multi-Factor Authentication (MFA): A security measure that requires users to provide two or more verification factors to gain access to an application or system. This adds an extra layer of security beyond just a username and password.
  • PeopleTools (PT): The development and runtime environment for PeopleSoft applications.
  • Oracle Access Manager (OAM): Oracle's comprehensive access management solution that provides features like single sign-on (SSO), authentication, and authorization.
  • Oracle Adaptive Access Manager (OAAM): Oracle's solution for risk-based authentication and fraud detection.
  • Signon PeopleCode: PeopleCode that executes during the PeopleSoft sign-on process.
  • RSA SecurID: A popular hardware token-based authentication system.
  • Intercept: In this context, it means that the MFA solution needs to intercept the authentication process between the user and PeopleSoft, rather than being directly integrated into the application.

In essence, the document states that while PeopleSoft itself doesn't offer built-in MFA, it can be achieved by integrating with external security solutions from Oracle or other vendors.

https://docs.oracle.com/cd/E12530_01/oam.1014/e10356/people.htm


Reddit is Compromised?

 


Reddit is compromised - by who? reddit_compromised

 


NationalParks

 

The email is about a trip to Washington DC to meet with Trump Administration officials and House Committee on Natural Resources staff, as well as a trip to Utah to work on the Protect Wild Utah campaign. The email also mentions meetings with Secretary of the Interior's staff regarding the canceling of a groundbreaking mountain lion research project in the Santa Monica Mtns, new uranium mine proposal in Lake Casitas Watershed, new logging in Los Padres NF and increase in oil drilling next to Sespe Condor Sanctuary. The email also mentions that the President and Secretary of the Interior have signed orders to allow new bids for new oil and gas drilling platforms in federal waters of the Santa Barbara Channel WITHOUT environmental review or public participation...first lease sale will be this Spring. The email also mentions that next month The President will sign executive orders downsizing or eliminating a number of national monuments across the west including the Carrizo Plain NM in eastern San Luis Obispo county. The email also mentions that the two national marine sanctuaries offshore of California';s Central coast, Channel Islands NMS and Chumash heritage NMS will receive zero funds in the coming fiscal year. The email also mentions that proposed elimination of urban national parks such as the Santa Monica Mtns National Recreation Area was discussed with the Acting Director of the National Park Service. The email also mentions that there are lots of upcoming plans to close various national parks, national monuments, national forest and national wildlife refuges across the west. The email ends with a call to action to organize, engage, stand up and speak out, and to let those in power know that people across our nation are not going to accept the Trump/Musk vision for our national public lands and waters stand.

Hashtags:

  • #ProtectWildUtah

  • #SantaMonicaMountains

  • #MountainLionResearch

  • #LakeCasitasWatershed

  • #LosPadresNF

  • #SespeCondorSanctuary

  • #SantaBarbaraChannel

  • #CarrizoPlainNM

  • #ChannelIslandsNMS

  • #ChumashHeritageNMS

  • #SantaMonicaMtnsNRA

  • #NationalParks

  • #NationalMonuments

  • #NationalForests

  • #NationalWildlifeRefuges

  • #PublicLands

  • #EnvironmentalReview

  • #PublicParticipation

  • #OilDrilling

  • #UraniumMining

  • #Logging

  • #Conservation

  • #TrumpAdministration

  • #Musk

Summary of Like Topics:

  • Threats to Public Lands: This includes the downsizing or elimination of national monuments, new oil and gas drilling in federal waters, the proposed elimination of urban national parks, and plans to close various national parks, national monuments, national forests, and national wildlife refuges.

  • Environmental Concerns: This includes the canceling of a mountain lion research project, a new uranium mine proposal, new logging in Los Padres National Forest, increased oil drilling next to Sespe Condor Sanctuary, and the lack of environmental review and public participation in new oil and gas drilling projects.

  • Specific Locations: This includes the Santa Monica Mountains, Lake Casitas Watershed, Los Padres National Forest, Sespe Condor Sanctuary, Santa Barbara Channel, Carrizo Plain National Monument, Channel Islands National Marine Sanctuary, Chumash Heritage National Marine Sanctuary, and Santa Monica Mountains National Recreation Area.

  • Political Aspects: This includes the Trump Administration's policies on public lands and the environment, as well as the involvement of Elon Musk (presumably in relation to the new oil and gas drilling projects).

  • Calls to Action: This includes the call to organize, engage, stand up, and speak out against the Trump/Musk vision for public lands and waters.

Tuesday, March 4, 2025

Hall, Franklin. Atomic Power with God

 It is very difficult to break the fast properly and very important. The importance of breaking the fast correctly and wisely cannot be over-emphasized. If you wish to avoid any consequences after your fast, please use plain common sense as well as heeding the following directions carefully. Very often an individual takes a fast of several weeks and gets along fine in the fast, but to his disappointment has uncomfortable physical difficulties while he is in the process of breaking the fast, which in practically all cases can be traced directly to his impatience to begin eating the accustomed rations days and weeks too soon. If you have fasted very long, or have taken a complete fast, you have practically a brand new stomach and it will have to be adjusted to food again. If you had your automobile engine overhauled, it would be necessary to break it in slowly for so many miles. If it were a major overhaul, you would have to run it at a lower R.P.M. even longer. The same thing applies to a new engine.


Hall, Franklin. Atomic Power with God, Thru Fasting and Prayer (p. 102). Mockingbird Press LLC. Kindle Edition. 

The final state of observation approaches

The final state of observation approaches the actual substance of mind where you observe that both existence and non-existence are not real, and yet both existence and non-existence are real. Emptiness (samadhi) and phenomena are both false, and emptiness and phenomena are also both valid. This is madhyamika, or the Middle Way, where you see that emptiness and phenomena coexist but you don't abide in either: you perceive both realms, but fall into neither. Yes, you rest your mental realm in the quiet of samadhi, and yes, you allow the phenomenal world (including the physical body) to continually transform but without your falling into any sort of clinging to this realm. That which knows is freely born and freely functions, but it doesn't abide in either of these states. It doesn't dwell. There's no affirmation or negation or arguing in this state of attainment, there's just the middle way. This is the true path of observation—observing emptiness and phenomena—the middle way of prajna. And this is also philosophy, science, psychology, and the study of our true ontological essence. But in our explanation, it's just the step of observation. After you understand this, you proceed to another step called “returning,” which means returning to one's original nature, or “original face.” What do you return to? This is hard to explain, so a story will have to suffice.


Bodri, William; Shu-Mei, Lee. Twenty-Five Doors to Meditation: A Handbook for Entering Samadhi (pp. 29-30). Red Wheel/Weiser. Kindle Edition. 

Retrieves local Administrators group members, filters out default accounts, and exports the results to a CSV file.

 <#

.SYNOPSIS

    Retrieves local Administrators group members, filters out default accounts, and exports the results to a CSV file.

    Optionally removes the file if it's empty.


.DESCRIPTION

    This script gathers members of the local Administrators group, excludes well-known system SIDs, and formats the output with computer name, 

    date/time, and other relevant information. The output is saved to a CSV file in a specified network location. 

    If the resulting CSV file is empty (after filtering), the file is deleted.


.PARAMETER OutputPath

    Specifies the network path where the CSV output file should be saved. Defaults to "\\XXXXX\ScriptRunResults".


.EXAMPLE

    .\Get-LocalAdmins.ps1 -OutputPath "\\server\share"

    Exports local Administrators group members to "\\server\share\LocalAdminOutput-HOSTNAME.csv".


.EXAMPLE

    .\Get-LocalAdmins.ps1

    Exports local Administrators group members to "\\XXXXX\ScriptRunResults\LocalAdminOutput-HOSTNAME.csv".


.NOTES

    This script requires PowerShell 3.0 or later.

    Ensure the script execution context has appropriate permissions to access the network share.

    The script filters out built-in SIDs: Administrator (500), Domain Admins (512), and two potentially environment-specific SIDs (17741 and 23112).

    Adjust the filtered SIDs as needed for your environment.

    ------------------------------------------------------------------------------------------------------------------------------

    .DISCLAIMER  This script has been uploaded to and delivered by the Absolute Platform.

    A digital signature is used to ensure integrity, authenticity, and non-repudiation, but does not imply that Absolute is the author.

    Details about who uploaded and who executed the script are available in the Absolute console.

#>


[CmdletBinding()]

param(

    [Parameter(Mandatory = $false)]

    [string]$OutputPath = "\\XXXXX\ScriptRunResults"

)


# Get computer hostname and current date/time for output file and data

$hostname = $env:COMPUTERNAME

$datetime = Get-Date -Format "yyyyMMdd_HHmmss"


# Construct the output filename

$filename = "LocalAdminOutput-$( $hostname ).csv"


# Construct the full output filepath

$filepath = Join-Path -Path $OutputPath -ChildPath $filename


try {

    # Retrieve and filter local Administrators group members

    Get-LocalGroupMember -Group Administrators |

        Where-Object { $_.SID -notmatch "500$|512$|17741$|23112$|1000" } |

        Select-Object @{ Name = "ComputerName"; Expression = { $hostname } },

                      Name,

                      ObjectClass,

                      PrincipalSource,

                      @{ Name = "DateTime"; Expression = { $datetime } },

                      SID |

        Export-Csv -Path $filepath -NoTypeInformation -Encoding UTF8 #Use UTF8 encoding for better compatibility


    # Check if the exported file is empty and remove if so

    if ((Get-Content -Path $filepath | Measure-Object).Count -eq 0) {

        Remove-Item -Path $filepath -Force #Added -Force to avoid confirmation prompts.

        Write-Verbose "Removed empty file: $filepath"

    } else {

        Write-Verbose "Successfully exported data to: $filepath"

    }


}

catch {

    # Handle any errors that occur during script execution

    Write-Error $_

}

Protestors...

 


Monday, March 3, 2025

data_decoder.mojom.DataDecoderService

"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-type=service --string-annotations --always-read-main-dll --field-trial-handle=6952,i,10858419173244041618,8725912151972485119,262144 --variations-seed-version --mojo-platform-channel-handle=6420 /prefetch:8


 This command line is launching the Microsoft Edge web browser in a specific configuration to perform a data decoding task. Let's break down the key parts:

  • "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe": This is the path to the Edge executable file.
  • --type=utility: Indicates that Edge is being launched as a utility process, not the main browser window.
  • --utility-sub-type=data_decoder.mojom.DataDecoderService: Specifies the type of utility process, in this case, a data decoder service. This suggests the process will be used to decode or process some kind of data.
  • --lang=en-US: Sets the language for the process to English (US).
  • --service-sandbox-type=service: This likely refers to the security sandbox environment that the process will run in, providing isolation and security.
  • --string-annotations --always-read-main-dll --field-trial-handle=6952,i,10858419173244041618,8725912151972485119,262144 --variations-seed-version: These are internal flags and parameters likely related to debugging, testing, or specific feature configurations within Edge.
  • --mojo-platform-channel-handle=6420: Mojo is an inter-process communication mechanism used in Chromium-based browsers. This flag likely specifies a handle for communication with other processes.
  • /prefetch:8: This might be related to prefetching resources or data for faster loading.

In simpler terms:

Edge is being launched in the background to act as a tool for decoding some data. The specific details of what data is being decoded and why are hidden in the internal flags and parameters. This is likely part of Edge's internal workings and not something a regular user would interact with directly.

Possible reasons for this:

  • Handling different data formats: Web browsers deal with various data formats (images, videos, compressed files, etc.). This process might be responsible for decoding a specific format.
  • Security and sandboxing: Running the decoder in a separate process with a specific sandbox type enhances security by isolating it from the main browser.
  • Experimentation and testing: The field-trial-handle suggests that this might be related to A/B testing or experimenting with new features or decoding mechanisms.