Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
Shame Boy
Mar 2, 2010

i assume the only reason why anyone would buy a pastebin pro account is so they could write messages on it to prove they owned the bits coin?

Adbot
ADBOT LOVES YOU

maskenfreiheit
Dec 30, 2004

ate all the Oreos posted:

i assume the only reason why anyone would buy a pastebin pro account is so they could write messages on it to prove they owned the bits coin?

it's so they can leak winrar keys

spankmeister
Jun 15, 2008






It's pretty clever imo. I think we're going to see a shadowbrokers / guccifer 2.0 style disinformation campaign...

Pile Of Garbage
May 28, 2007



off the back of that wannacry/petya/whatever garbage a lot of security projects have been approved and funded where i work, one of which is LAPS which i'll be rolling out to our entire server fleet. i think some of ya'll have done the same, any gotchas to be aware of? TIA

Pile Of Garbage
May 28, 2007



oh yeah actual secfuck: today i found a couple of standalone windows servers in our environment that had their local Guest accounts enabled and they'd been added to the local Administrators group :stare:

oh and they also weren't being patched but that pales in comparison. pretty sure it was a former coworker who is responsible for that fuckery but he left about 3 months ago so i cant tear his trachea out.

cinci zoo sniper
Mar 15, 2013




cheese-cube posted:

oh yeah actual secfuck: today i found a couple of standalone windows servers in our environment that had their local Guest accounts enabled and they'd been added to the local Administrators group :stare:

oh and they also weren't being patched but that pales in comparison. pretty sure it was a former coworker who is responsible for that fuckery but he left about 3 months ago so i cant tear his trachea out.

:staredog:

Workaday Wizard
Oct 23, 2009

by Pragmatica
i didnt think windows server even had a guest account

Pile Of Garbage
May 28, 2007



Shinku ABOOKEN posted:

i didnt think windows server even had a guest account

yeah it does but it's disabled by default out of the box. it does have situational uses but it blows up your surface area if you don't know what you're doing.

Wheany
Mar 17, 2006

Spinyahahahahahahahahahahahaha!

Doctor Rope

cheese-cube posted:

he left about 3 months ago so i cant tear his trachea out.

says who?

Volmarias
Dec 31, 2002

EMAIL... THE INTERNET... SEARCH ENGINES...

cheese-cube posted:

he left about 3 months ago so i cant tear his trachea out.

Look at this Pessimistic Pete over here, all I'm seeing is that he had a 3 months head start and probably didn't even realize that he needed to run.

EssOEss
Oct 23, 2006
128-bit approved
What is a meaningful use of the Windows guest account?

Truga
May 4, 2014
Lipstick Apathy

EssOEss posted:

What is a meaningful use of the Windows guest account?

having guests log into it

Perplx
Jun 26, 2004


Best viewed on Orgasma Plasma
Lipstick Apathy

EssOEss posted:

What is a meaningful use of the Windows guest account?

easy file sharing so any random computer can open \\server\files

spankmeister
Jun 15, 2008






here's a video of the police raid on MEDoc, the company that (likely unwittingly) spread the NotPetya malware

https://www.youtube.com/watch?v=TY5f2fmwcDE

Pile Of Garbage
May 28, 2007



Perplx posted:

easy file sharing so any random computer can open \\server\files

pretty much that. the servers i was peeping were meant to operate as "guest print servers" that would host print queues and allow unauth anon access to them. guest being member of administrators is not a pre-req for that ofc...

fins
May 31, 2011

Floss Finder

spankmeister posted:

here's a video of the police raid on MEDoc, the company that (likely unwittingly) spread the NotPetya malware

https://www.youtube.com/watch?v=TY5f2fmwcDE

i'm the oscilating fan pointing at the rack held in place by what looks light a money counter

communism bitch
Apr 24, 2009

spankmeister posted:

here's a video of the police raid on MEDoc, the company that (likely unwittingly) spread the NotPetya malware

https://www.youtube.com/watch?v=TY5f2fmwcDE

im the assault rifle and 35lbs of tacticlol garbage necessary for raiding an office full of computer touchers

Chris Knight
Jun 5, 2002

me @ ur posts


Fun Shoe

communism bitch posted:

im the assault rifle and 35lbs of tacticlol garbage necessary for raiding an office full of computer touchers

gotta run what ya brung

Pile Of Garbage
May 28, 2007



can anyone ID that fortinet firewall top-right visible top-right at 0:50? it's looks like some kind of mutant 300D

Wiggly Wayne DDS
Sep 11, 2010



i'm the blur on the tech showing off the servers but ignoring the clear reflection of their face

Pile Of Garbage
May 28, 2007



fortinet apparently give zero fucks about their gear appearing in that vid

https://twitter.com/Fortinet/status/882620985874173952

e: actually it's dumb piss who cares

James Baud
May 24, 2015

by LITERALLY AN ADMIN
Possibly a 200B? I used to have one that looked just like that but it's years ago so I'm only guessing.

Pile Of Garbage
May 28, 2007



pretty sure the B-series hardware still had the matte-black exterior and they didnae switch that up until the C/D series. the specific model is hard to place from that pic because on the left-side it has 2x2 grouped interfaces and on the right it has that expansion area but neither of those features match up with current models.

James Baud
May 24, 2015

by LITERALLY AN ADMIN

cheese-cube posted:

pretty sure the B-series hardware still had the matte-black exterior and they didnae switch that up until the C/D series. the specific model is hard to place from that pic because on the left-side it has 2x2 grouped interfaces and on the right it has that expansion area but neither of those features match up with current models.

http://m.ebay.com/itm/302365864019

Pile Of Garbage
May 28, 2007



lol this is good i've been looking for more reasons why im always wrong!

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender
https://twitter.com/KateLibc/status/882644229901529089

and this is why we're doomed

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

JS has been the assembly of the web for a long time.

Shame Boy
Mar 2, 2010

cheese-cube posted:

pretty much that. the servers i was peeping were meant to operate as "guest print servers" that would host print queues and allow unauth anon access to them. guest being member of administrators is not a pre-req for that ofc...

setup

step 1: disable selinux put all the users in the administrators group

Pile Of Garbage
May 28, 2007




nah not really. it's the crazy container dinguses that will truly doom us. making arbitrary execution infinitely portable with zero safeguards yeah that's something which will end well

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum

cheese-cube posted:

fortinet apparently give zero fucks about their gear appearing in that vid

https://twitter.com/Fortinet/status/882620985874173952

e: actually it's dumb piss who cares
actually it's deleted so maybe they do care

Pile Of Garbage
May 28, 2007



yeah im poo poo at everything forever

SeaborneClink
Aug 27, 2010

MAWP... MAWP!
What was it?

Workaday Wizard
Oct 23, 2009

by Pragmatica

sorry grandma
http://i.imgur.com/kqshHqz.gifv

BangersInMyKnickers
Nov 3, 2004

I have a thing for courageous dongles

cheese-cube posted:

off the back of that wannacry/petya/whatever garbage a lot of security projects have been approved and funded where i work, one of which is LAPS which i'll be rolling out to our entire server fleet. i think some of ya'll have done the same, any gotchas to be aware of? TIA

not really, its gr8.

cinci zoo sniper
Mar 15, 2013





https://www.youtube.com/watch?v=vfl33Tn0pYc

Wiggly Wayne DDS
Sep 11, 2010



SeaborneClink posted:

What was it?
essentially "look at this setup" and linking to

https://twitter.com/GarbageDotNet/status/882620748023476224

they still have it liked though

Midjack
Dec 24, 2007



Wiggly Wayne DDS posted:

essentially "look at this setup" and linking to

https://twitter.com/GarbageDotNet/status/882620748023476224

they still have it liked though

https://youtu.be/FUyaItsRInQ

Pile Of Garbage
May 28, 2007



BangersInMyKnickers posted:

not really, its gr8.

thanks good to know. that's what i was leaning towards looking at the doco it's super simple. already did the schema extension earlier on, now just need to do ACEs, setup GPOs and get our SCCM dude to package the CSE. way too easy

Wiggly Wayne DDS posted:

essentially "look at this setup" and linking to

ahttps://twitter.com/GarbageDotNet/status/882620748023476224

they still have it liked though

cheese-cube posted:

yeah im poo poo at everything forever

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe

if my company ever did this i would hand in my resignation the next day

Adbot
ADBOT LOVES YOU

Wrath of the Bitch King
May 11, 2005

Research confirms that black is a color like silver is a color, and that beyond black is clarity.

cheese-cube posted:

off the back of that wannacry/petya/whatever garbage a lot of security projects have been approved and funded where i work, one of which is LAPS which i'll be rolling out to our entire server fleet. i think some of ya'll have done the same, any gotchas to be aware of? TIA

It's cake, just don't be retarded and try to deploy the client to a domain controller.

  • Locked thread