Sign in

Hugo | DevOps | Cybersecurity 🇱🇻

@hugovalters.bsky.social
130 followers 11 following 5.1K posts

Tech Lead & DevSecOps. 🛡️ Cybersecurity | 💻 IT Tutorials | 🏴‍☠️ Ethical Hacking | ⚙️ Tech Reviews. Learn, secure, and explore cutting-edge IT solutions! 👇 www.valtersit.com/links

PostsRepliesMedia
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 14h
ffmpeg-python script to dump video metadata to JSON: codec, duration, resolution, bitrate. 212 lines, no GUI needed. www.valtersit.com/python/video-meta… #python #ffmpeg #utilities
valtersit.com
Video Metadata Extractor with ffmpeg-python
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 14h
181.118.159.233 (Colombia) shows mixed malicious activity across 2 threat feeds, confidence 55. Check your logs and block if seen. www.valtersit.com/threat-ip/181.118… #ThreatIntel #InfoSec
valtersit.com
181.118.159.233
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 14h
Catch IAM policy errors before deploy. Access Analyzer validates JSON, action names, condition keys, flags overly permissive statements. www.valtersit.com/vault/validate-ia… #aws #iam #access-analyzer
valtersit.com
Validate IAM Policy with Access Analyzer Before Deployment
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 15h
Android: 38 CVEs but 60% unpatched and a C trust score. CVE trend up 17 year over year. Patch lag is the real risk here. www.valtersit.com/vendors/android #cybersecurity #Android #infosec
valtersit.com
Android
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 15h
CVE-2026-95499: Unrestricted file upload in JosephChuks php-file-manager-with-code-editor up to 3.0, CVSS 7.3. Remote attackers can upload arbitrary files via filemanager.php. Vendor unresponsive, no patch. Restrict access now. www.valtersit.com/cve/CVE-2026-95499 #CVE #infosec
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 16h
185 lines of Python to turn Markdown into styled HTML, with themes. Beginner-friendly. www.valtersit.com/python/markdown-t… #python #markdown #utilities
valtersit.com
Markdown to HTML Converter with mistune
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 16h
Stop hardcoding subnet and SG IDs in EC2NodeClass. Use AWS tags instead: Karpenter queries the EC2 API at runtime, picks subnets by free IP space, and matches security www.valtersit.com/vault/configuring… #karpenter #aws #ValtersIT
valtersit.com
Configuring EC2NodeClass for Dynamic Subnet and Security Group Discovery
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 16h
180.247.7.13 (ID, PT Telkom) flagged in 2 threat feeds for mixed activity, linked to CVE exploitation. Confidence 55. Check your logs. www.valtersit.com/threat-ip/180.247… #ThreatIntel #InfoSec
valtersit.com
180.247.7.13
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 16h
MySQL's utf8 isn't UTF-8. It's 3-byte, so emojis and many CJK chars get truncated or throw error 1366. Here's how to migrate to real utf8mb4 without data loss. www.valtersit.com/guides/databases/… #mysql #database #utf8mb4
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 16h
181.86.60.141 (Argentina, Telecom Personal) is flagged for CVE-linked exploitation activity. Confidence 55, tracked by 2 feeds. Check your logs. www.valtersit.com/threat-ip/181.86.… #ThreatIntel #InfoSec
valtersit.com
181.86.60.141
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 16h
Sign every Git commit and tag with GPG or SSH, then verify at clone, CI, and release time with git verify-commit, verify-tag, and log --show-signature. www.valtersit.com/vault/git-signed-… #git #gpg #audit
valtersit.com
Git Signed Commit and Tag Verification for Supply Chain Audit Trail
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 16h
Catch bad CSV data before it hits your pipeline. 156 lines of Python and Pandera, intermediate level. Run: python3 schema_validate.py --csv data.csv --schema schema.py www.valtersit.com/python/csv-schema… #python #dataengineering #pandera
valtersit.com
CSV Schema Validator with Pandera
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
CVE-2026-95273: path traversal in dgtlmoon changedetection.io up to 0.60.7 via static_content filename, CVSS 4.3, exploit public, no patch. Update or restrict access now. www.valtersit.com/cve/CVE-2026-95273 #CVE #infosec #cybersecurity
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
CVE-2026-63273 LibreOffice Draw heap buffer overflow via encrypted PDF key length, CVSS 7.8. No patch yet, so treat untrusted PDFs with care. Details: www.valtersit.com/cve/CVE-2026-63273 #CVE #infosec #LibreOffice
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
RabbitMQ's pause_minority mode halts isolated nodes when they lose quorum, avoiding split-brain during network splits. Track heartbeat loss against cluster www.valtersit.com/vault/hardening-n… #rabbitmq #high-availability #ValtersIT
valtersit.com
Hardening Network Partition Strategy using Pause Minority Mode
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
Microsoft Edge: 33 CVEs, max CVSS 9.0, 3% unpatched. Use-after-free (CWE-416) leads its flaw list. Trust score A, no known KEV exploits. Patch cadence still matters. www.valtersit.com/vendors/microsoft… #cybersecurity #infosec #MicrosoftEdge
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
CVE-2026-12718: SQL injection in Karel KarelIPS, CVSS 9.8. Vendor says product unsupported, so no patch is coming. Anyone still running it is exposed. Migrate off or isolate now. www.valtersit.com/cve/CVE-2026-12718 #CVE #infosec #cybersecurity
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
Using node:latest in prod is Russian roulette. Mutable tags mean silent supply chain attacks and random breakage on Monday. Pin your Docker images by www.valtersit.com/guides/docker/rus… #docker #devsecops #supplychain
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
181.78.3.114 flagged as a scanner, confidence 55, tracked by one threat feed. Origin unknown. Worth a look if it's hitting your logs. www.valtersit.com/threat-ip/181.78.… #ThreatIntel #InfoSec
valtersit.com
181.78.3.114
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
262 lines of Python that turn audio files into text with OpenAI Whisper, ffmpeg handling the decoding. Batch interviews or meeting notes without touching a GUI. Intermediate level. www.valtersit.com/python/audio-tran… #python #ai #whisper
valtersit.com
Audio Transcription with OpenAI Whisper
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 17h
It's 2026 and SMBv1 is still enabled on domain controllers for a 2005 Xerox scanner. That is a WannaCry invitation. Here's how to kill it without breaking HR's www.valtersit.com/guides/security/s… #cybersecurity #SMB #Windows
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 18h
Enrich Splunk notable events with VirusTotal via the lookup command. Extract file hashes, query VT v3 API, cache in KV store to respect rate limits. www.valtersit.com/vault/enriching-s… #splunk #virustotal #threat
valtersit.com
Enriching Splunk Notable Events with VirusTotal via Lookup Command
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 18h
SOC triage: one GET /cve/{{cve_id}} returns CVSS, EPSS, KEV, exploit and patch status, no five-source mashup. Bearer token, 30 req/min Standard. Docs: www.valtersit.com/cve/pricing
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 18h
Your docker-compose.yml ran fine on your laptop. Then a container crashed on your VPS at 3 AM and nothing restarted it. Swarm self-heals on a single node. Here's how: www.valtersit.com/guides/docker/doc… #Docker #DevOps #Swarm
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 18h
Compare two Helm values files and see exactly what changed. 159 lines of Python, intermediate level. Good for tracking drift between values-dev and values-prod. www.valtersit.com/python/helm-chart… #helm #python #kubernetes
valtersit.com
Helm Chart Values Differ
010
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 18h
Still trusting hardware RAID and EXT4? Silent bit rot doesn't send alerts. This ZFS deep dive covers data integrity and ARC tuning for sysadmins who'd rather not www.valtersit.com/guides/databases/… #ZFS #Sysadmin #Storage
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 19h
178.151.167.39 is flagged as a scanner, seen in 1 independent threat feed. Confidence is moderate at 55, location unknown. Worth a look if it hits your logs. Details: www.valtersit.com/threat-ip/178.151… #ThreatIntel #InfoSec
valtersit.com
178.151.167.39
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 19h
Zimbra: trust score D, 8 CVEs on CISA KEV, 100% unpatched. Peak CVSS 10. XSS (CWE-79) dominates 47 CVEs. Email is the target; patch or migrate. www.valtersit.com/vendors/zimbra #cybersecurity #infosec #Zimbra
valtersit.com
Zimbra
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 19h
MiniOrange (D): 33 CVEs, 100% unpatched, max CVSS 9.9. An IAM vendor that can't patch its own auth flaws is a hard sell. www.valtersit.com/vendors/miniorange #cybersecurity #infosec #SSO
valtersit.com
Miniorange
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 19h
Codepeople WordPress plugins: 47 CVEs, 9 high severity, 100% still unpatched. Trust score C. CWE-862 missing authorization leads the list at 22. Check your installs. www.valtersit.com/vendors/codepeople #cybersecurity #WordPress #infosec
valtersit.com
Codepeople
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 23h
Trimble holds a D trust score with 42 CVEs, avg CVSS 7.68, one on CISA KEV, and 100% unpatched. Verify before you deploy. www.valtersit.com/vendors/trimble #cybersecurity #infosec #Trimble
valtersit.com
Trimble
001
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 23h
CVE-2026-63274 LibreOffice Draw heap buffer overflow on PDF import, no CVSS, patch status unknown. Opening a crafted PDF can corrupt memory. Treat untrusted PDFs with caution and update as soon as a fix lands. www.valtersit.com/cve/CVE-2026-63274 #CVE #infosec #LibreOffice
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Still managing servers with a control panel on the same box as prod, cPanel style? RunCloud, Forge and Ploi split the GUI from the server. Here is where the agent www.valtersit.com/guides/hosting/th… #devops #saas #hosting
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Malicious IP 178.132.198.200 (BR, FONSECA ALVES TECNOLOGIA): malware distribution, flagged by 2 feeds, 55% confidence. Check your logs. www.valtersit.com/threat-ip/178.132… #ThreatIntel #InfoSec
valtersit.com
178.132.198.200
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
176.65.139.229 (NL) flagged for malware distribution tied to Mirai, Gafgyt, and ELF droppers. Moderate confidence, seen by two independent feeds. Check your logs. www.valtersit.com/threat-ip/176.65.… #ThreatIntel #InfoSec #Mirai
valtersit.com
176.65.139.229
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Stop waiting for users to report slow apps. Use SNMP OIDs, InfluxDB, and Grafana to build a TIG monitoring stack that catches network bottlenecks instantly. #Networking www.valtersit.com/guides/networking…
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
176.58.103.99 (GB, Linode) is flagged as a scanner, seen by 2 threat feeds. Confidence 55, so verify before blocking. Details: www.valtersit.com/threat-ip/176.58.… #ThreatIntel #InfoSec
valtersit.com
176.58.103.99
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
WatchGuard's 45 CVEs average 8.04 CVSS and 100% remain unpatched, with 2 already in CISA KEV. Trust score D for a security vendor. www.valtersit.com/vendors/watchguard #cybersecurity #infosec #WatchGuard
valtersit.com
Watchguard
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
CVE-2026-92882 Checkmk: credentialed API user can read SNMP community strings, SNMPv3 passphrases and IPMI passwords in cleartext from REST GET responses. CVSS 6.5. No patch yet. Restrict API access and monitor now. www.valtersit.com/cve/CVE-2026-92882 #CVE #infosec #Checkmk
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Your CI/CD pipeline is a black box. DORA metrics are the only real pulse. Stop guessing why deploys fail. www.valtersit.com/guides/gitlab/ci-… #devops #cicd #dora
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
176.9.121.119 shows mixed malicious activity, tracked by 2 feeds. Hosted at Hetzner in DE - shared infrastructure worth flagging. Check your logs. www.valtersit.com/threat-ip/176.9.1… #ThreatIntel #InfoSec
valtersit.com
176.9.121.119
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Scan a /24 for open TCP ports with asyncio. 226 lines, intermediate. 500 workers, custom port list and timeout. www.valtersit.com/python/network-po… #python #networking #asyncio
valtersit.com
Network Port Scanner with asyncio
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Wire semantic-release into CI: every push to main auto-bumps the version, updates the changelog, tags, publishes to npm, and cuts a GitHub release from your www.valtersit.com/vault/automate-se… #semantic-release #ci #ValtersIT
valtersit.com
Automate Semantic Versioning and Publishing with semantic-release
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Deno: 34 CVEs, 17 high severity, avg CVSS 6.72. 97% of issues still unpatched. Trust score C. Secure runtime, messy patching. www.valtersit.com/vendors/deno #cybersecurity #infosec #Deno
valtersit.com
Deno
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
CVE-2026-87080 Net::IDN::Punycode CVSS 9.1: truncated label decodes to unencoded chars, enabling spoofing. Patch under review - update Perl module now. www.valtersit.com/cve/CVE-2026-87080 #CVE #infosec #Perl
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
OpenVPN runs in user space. WireGuard lives in the kernel. That gap explains most of the performance difference. Here is the engineering reality, without the www.valtersit.com/guides/networking… #WireGuard #OpenVPN #VPN
010
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Beginner dnspython script that queries A, MX, TXT and more against any resolver in one run. 133 lines. Handy for propagation checks and email audits. www.valtersit.com/python/dns-resolv… #python #networking #dnspython
valtersit.com
DNS Resolver and Lookup Tool with dnspython
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Consistent NetBox backups: pg_dump -Fc for Postgres, media tarball, flock to block overlaps, rotation built in. www.valtersit.com/vault/automate-ne… #netbox #backup #ipam
valtersit.com
Automate NetBox backups with pg_dump and media tarball rotation
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
Setting up OpenVPN or WireGuard by hand eats days and still breaks on firewalls. Tailscale fixes that with zero-config WireGuard mesh networking. Here is how it works and when to use it: www.valtersit.com/what-is-tailscale… #tailscale #vpn #wireguard
000
Hugo | DevOps | Cybersecurity 🇱🇻 @hugovalters.bsky.social · 03/10/2026
UK-based C2 spotted: 172.94.9.194 (Limited Network LTD) is flagged as an exploit host on port 7443. Low confidence at 55 but two feeds still track it. Check your logs. www.valtersit.com/threat-ip/172.94.… #ThreatIntel #InfoSec #Cybersecurity
valtersit.com
172.94.9.194
000