sludge

joined 5 days ago
[โ€“] [email protected] 3 points 2 days ago* (last edited 2 days ago) (6 children)

And since i don't post my valid urls anywhere no web-scraper can find them

You would ah... be surprised. My urls aren't published anywhere and I currently have 4 active decisions and over 300 alerts from crowdsec.

It's true none of those threat actors know my valid subdomains, but that doesn't mean they don't know I'm there.

[โ€“] [email protected] 14 points 5 days ago (4 children)

Have you considered running Wireguard or Headscale instead of keeping SSH open? I don't know how big an issue it is since you've changed the SSH port and use keys, but opening SSH in any respect freaks me out.