#pfSense 2.8.0 kills #squid setups with #error ld-elf.so: undefined symbol _ZTVNSt3__117bad_function_callE
not good. need to go back to 2.7.2 snapshot
update your pfSense CEs to 2.8 for security fixes
#pfsense
Will I regret updating my #pfsense box, which is also my router and switch?
#Netgate #pfSense CE 2.8.0 is here! I knew it was on the way, but wouldn’t have placed any bets on it beating 25.03 out the gate. https://www.netgate.com/blog/netgate-releases-pfsense-community-edition-version-2.8.0
Electric Sheep Fencing released #pfSense Community Edition version 2.8.0. https://www.pfsense.org/download/
I am also using #pfSense as my router / firewall with pfBlocker-ng.
I have a local webserver and regularly check the logs with awStats for suspicious IP addresses connecting with my http server.
I then check the IP address with https://dnslytics.com/ which source it is coming from and if it is from a hosting source I block the whole subnet not all the IP ranges of the ASN, that would create big blocklists.
Fascinating blog post on vulnerabilities found in #pfsense including command injection through the Auto Configuration Backup cloud service
https://blog.brillantit.com/exploiting-pfsense-xss-command-injection-cloud-hijack/
Small business? $0 budget? No excuse.
Secure your entire stack with nothing but code, grit, and open source fire.
#DeadSwitch #FOSS #CyberSecurity #pfSense #WireGuard #Mailcow #LinuxSecurity #VeraCrypt #LibreOffice #AppArmor
http://tomsitcafe.com/2025/05/26/deadswitch-dispatch-secure-the-perimeter-for-0/
Something strange with my #Unifi gear...
Recently replaced my UDM Pro with a CloudKey Gen2 Plus (because I don't need the gateway function as my #Netgate #pfSense is taking care of this).
According to the screenshot, my WiFi APs are offline as well as the Protect cameras.
But: both are working.
Maybe that's because of the "management" VLAN 31 instead of default VLAN 1?
I commented "you had since November to fix this, the issue did not just appear without notice, coordinated disclosure principles were followed". Comment got deleted. In all fairness i used a throwaway account but they are hard on the damage control. #pfsense
#BSI WID-SEC-2025-1091: [NEU] [mittel] #Netgate #pfSense: Mehrere Schwachstellen ermöglichen Cross-Site Scripting
Ein entfernter, authentisierter Angreifer kann mehrere Schwachstelle in Netgate pfSense ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.
https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1091
Ich habe ein #ITProjekt gestartet, dass ich lange gefürchtet habe…
Ich babe meinen pfsense ersetzt durch ein Proxmox/OpenWRT-Setup. Wie geil ist #Proxmox denn? Kannte ich noch gar nicht… na ja…
Erstens sollte ich damit auch über 500MBit erreichen (war ein alter #pfsense PC) und außerdem mehr flexibilität für Kindersicherung etc. haben.
Habe zeitgleich das gesamte #Netzwerk aktualisiert und allen Geräten, die immer da sind, fixe Adressen verpasst.
Eine Odyssee…
#heimnetz #server #OpenWRT
Apparently Netgate fumbled coordinated disclosure about a pfSense vuln
https://blog.brillantit.com/exploiting-pfsense-xss-command-injection-cloud-hijack/
#pfsense