Egregoros

Signal feed

Timeline

Post

Remote status

Context

5

Replies

1
@jae @nuintari I didn't have to log queries at the ISPjob but we did have a customer server in our datacenter that got popped and the FBI contacted us, I had to do phone calls with agents in Quantico which was weird.

We setup a port mirror and installed an FBI server to monitor the traffic, setup customer with a whole new server using a different domain so they could get back to work. Customer got the old server paid for by the FBI so we could just leave it on forever while they monitored whatever malicious activity was going on