Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
Butter Activities
May 4, 2018

Echo $GOATSEASCII before every command

Adbot
ADBOT LOVES YOU

Butter Activities
May 4, 2018

Better yet rename all your commonly used binaries to a bash script with its former name that does that then runs the binary

duz
Jul 11, 2005

Come on Ilhan, lets go bag us a shitpost


Achmed Jones posted:

goddammit i'm still mad that when i meet people at defcon and ask if they're interested in crypto they want to tell me about their dumb fake money portfolios instead of talking about the real poo poo

like how else am i supposed to ask?? use the word "cryptography" i guess

Obv, otherwise you might find a bigfoot fan.

Sickening
Jul 16, 2007

Black summer was the best summer.

I applied just for the funsies.

The Fool
Oct 16, 2003


Absolutely need some fun interview stories out of that.

Ynglaur
Oct 9, 2013

The Malta Conference, anyone?
"Do you have any experience with Em-Eff-Ay? Our consultants say we should use it, whatever that acronym means."

Methylethylaldehyde
Oct 23, 2004

BAKA BAKA

Sickening posted:

I applied just for the funsies.

That job posting is gonna be great for whoever actually gets it. Incredible visibility, tons of people busy trying to make it look like they give a single poo poo about security, then 6 months later there is no budget, nobody wants to do any of the remediation steps you came up with, everyone is in the MFA exempt group because the CFO had a hissyfit after MS had a Azure outage for 20 minutes one day, and the 2nd time they get hosed in the rear end by FancyBear or whatever APT group decides to kick that sandcastle over, you're the 'go to jail for malicious negligence' guy because you didn't fix anything. Did I say great? I meant a sysphysian task made worse by the fact the big rock is actually dried antelope turds the scarab god Khepri rolled up for you as a favor to Zeus.

If you are in a single party state, PLEASE record the phone interview and transcribe out the choice bits for us. My bet is "salary is negotiable, but we're looking at 65k to start".

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug
Good stuff coming out of the Feds post Solarwinds

https://twitter.com/ericgeller/status/1392608990819926017?s=20

Impotence
Nov 8, 2010
Lipstick Apathy
encryption and mfa werent already required in 2021??

hobbesmaster
Jan 28, 2008

SMEGMA_MAIL posted:

Better yet rename all your commonly used binaries to a bash script with its former name that does that then runs the binary

Recompile busybox to print it before and after every command.

RFC2324
Jun 7, 2012

http 418

Biowarfare posted:

encryption and mfa werent already required in 2021??

not to the degree they need to be. it was all very very basic

Maneki Neko
Oct 27, 2000

Biowarfare posted:

encryption and mfa werent already required in 2021??

We have a federal microagency as a customer and sherpaing them up on their FISMA audits from "lol ad hoc on everything" has been quite the journey. If anyone is actively enforcing anything requirements wise it hasn't ever made it to our customers level.

Phosphine
May 30, 2011

WHY, JUDY?! WHY?!
🤰🐰🆚🥪🦊
Our it department insists on asking for/taking screenshots. Yesterday I finally figured out why: I got an error on windows and the goddamn text wasn't selectable. Copy the error message by hand or screenshot? Both are poo poo, but at least the screenshot will be accurate.

I hate windows.

spankmeister
Jun 15, 2008






Iirc you can copy the text of any dialog box in windows if you click on it (not any of the buttons but the window itself) and hit Ctrl+C

Phosphine
May 30, 2011

WHY, JUDY?! WHY?!
🤰🐰🆚🥪🦊

spankmeister posted:

Iirc you can copy the text of any dialog box in windows if you click on it (not any of the buttons but the window itself) and hit Ctrl+C

Well then they have no excuse, and I've gotta try that next time

omeg
Sep 3, 2012

That only works for the old-style win32 MessageBox I think, so it's not great.

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

Maneki Neko posted:

We have a federal microagency as a customer and sherpaing them up on their FISMA audits from "lol ad hoc on everything" has been quite the journey. If anyone is actively enforcing anything requirements wise it hasn't ever made it to our customers level.

LIGMA audits

wolrah
May 8, 2006
what?

omeg posted:

That only works for the old-style win32 MessageBox I think, so it's not great.
Correct, it works for any standard message box but it does not work for the millions of horrible corporate apps built with some nonsense UI framework some manager thought looked better.

evil_bunnY
Apr 2, 2003

https://twitter.com/kimzetter/status/1392853446059954177

BonHair
Apr 28, 2007

Maneki Neko posted:

We have a federal microagency as a customer and sherpaing them up on their FISMA audits from "lol ad hoc on everything" has been quite the journey. If anyone is actively enforcing anything requirements wise it hasn't ever made it to our customers level.

I worked in two Danish government agencies. All agencies are required to be "ISO 27001 compliant", and both my places had plenty reason to be. On paper they were both 4 on a 1-5 scale. The trouble is that it's self evaluation. So basically it's a requirement with essentially zero enforcement beyond "tell us you're doing well please". Long story short, my honest evaluation would have been a lot lower, and when talking to colleagues in other agencies off the record, they said the same thing. Very few agencies officially dip below 3, despite a lot of them having no real concept of system/service ownership.

Of course, there's the state audit institution, but I'm very much but impressed with them. They're nice and could be a really good resource if the agencies treated them as a partner helping to improve security, but in all cases I know of, they're treated as an opponent that you have to dodge.

Now I'm doing consulting/ISMS software designing. The customers range from "what's a risk assessment" to a few guys who really run a tight ship (at least on the governance level, we don't really do deep technical stuff). It's a lot of fun seeing the range and sherpaing/nudging organisations towards actually thinking about security.

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

Yup. They lied. They lied to the Us Government, that then announced that lie. Jesus, these people are bad.

Even more, one of their ex-pentesters leaked that they had done an audit and found that Colonial was not very secure at all (shockingly!) and that it was pretty much a matter of time.

EVIL Gibson
Mar 23, 2001

Internet of Things is just someone else's computer that people can't help attaching cameras and door locks to!
:vapes:
Switchblade Switcharoo

Gee creating decrypted files on a machine is slower then deleting?? What weaksauce.

Impotence
Nov 8, 2010
Lipstick Apathy

EVIL Gibson posted:

Gee creating decrypted files on a machine is slower then deleting?? What weaksauce.

you and i both know it's a high latency remote mounted drive over vpn to a 'central onprem location' that is nowhere near the branches

friendbot2000
May 1, 2011

I got a good friend who is being harassed by her exhusband and she needs to have her digital identity erased because her ex is disseminating revenge porn in an attempt to ruin her life. Does any goon in this thread know of someone who is good at webscrubbing that would be willing to be put in contact with them for their services?

Butter Activities
May 4, 2018

I listen to a lot of Michael Bazzell’s stuff about recon, osint and privacy, apparently he’s kinda the guy on that stuff but I’m willing to bet it costs an arm and a leg to actually contract him

xtal
Jan 9, 2011

by Fluffdaddy
You probably need a lawyer more than whatever it is you're looking for. If it's known that the ex is doing it then there are probably several laws being broken depending on jurisdiction. If the dude has a vendetta, they might just keep doing it unless there's some kind of repurcussion.

xtal fucked around with this message at 02:48 on May 14, 2021

Sickening
Jul 16, 2007

Black summer was the best summer.

friendbot2000 posted:

I got a good friend who is being harassed by her exhusband and she needs to have her digital identity erased because her ex is disseminating revenge porn in an attempt to ruin her life. Does any goon in this thread know of someone who is good at webscrubbing that would be willing to be put in contact with them for their services?

This is illegal in almost every state in the union. I know that isn't what you asked for, but knowing this is important. There is no scrubbing service that is going to be fast enough to protect someone actively doing something like this.

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano
You want a lawyer but you should also report the vids to whichever tube site they're on asap because they all mirror each other

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

friendbot2000 posted:

I got a good friend who is being harassed by her exhusband and she needs to have her digital identity erased because her ex is disseminating revenge porn in an attempt to ruin her life. Does any goon in this thread know of someone who is good at webscrubbing that would be willing to be put in contact with them for their services?

Revenge porn is illegal, find out where he's posting it, report it, and have her lawyer up. There is no easy solution to this.

If its bad, reach out to https://badassarmy.org/
Badass also has a link to Revenge Porn laws by state: https://badassarmy.org/revenge-porn-laws-by-state/

CommieGIR fucked around with this message at 04:26 on May 14, 2021

evil_bunnY
Apr 2, 2003

CommieGIR posted:

If its bad, reach out to https://badassarmy.org/
Badass also has a link to Revenge Porn laws by state: https://badassarmy.org/revenge-porn-laws-by-state/
This

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug
poo poo is going down against Darkside, the ransomware group that hit Colonial
https://twitter.com/EamonJavers/status/1393236555616165891?s=20

bull3964
Nov 18, 2000

DO YOU HEAR THAT? THAT'S THE SOUND OF ME PATTING MYSELF ON THE BACK.


Ars thinks it's just an exit scam.

https://arstechnica.com/gadgets/2021/05/pipeline-attacker-darkside-suddenly-goes-dark-heres-what-we-know/

Harik
Sep 9, 2001

From the hard streets of Moscow
First dog to touch the stars


Plaster Town Cop
https://twitter.com/aionescu/status/1393728058629136387

i'm sure it's fine

https://twitter.com/aionescu/status/1393798004151181312

welp (that exact command doesn't work, he altered it instead of dropping a fully working 0day on twitter)

EVIL Gibson
Mar 23, 2001

Internet of Things is just someone else's computer that people can't help attaching cameras and door locks to!
:vapes:
Switchblade Switcharoo
Watching https://x33fcon.com presentations today and the next two days. not alot of presentations which is normal for smaller conventions.

quote:

Agenda
Time Day 1 - May 17
12:00 UTC Opening & Keynote: Between the Chair and Keyboard by J Wolfgang Goerlich
13:00 UTC In nation-state actor's shoes by Anastasios Pingios
14:00 UTC Jurassic Malware by Rob Fuller (mubix)
15:00 UTC Utilizing Lol-Drivers in Post Exploitation Tradecraft by Barış Akkaya
Time
Day 2 - May 18
12:00 UTC O Event, Where Art Thou? by Grzegorz Tworek
13:00 UTC Adversary emulation is a fraud by David Hunt
14:00 UTC Windows 10 TCP / IP RCE - from the patch to the screen of death by Adam 'pi3' Zabrocki
15:00 UTC What the F#*%? by Chris Truncer and Joe Leon
Time
Day 3 - May 19
12:00 UTC The cost of complexity: Different vulnerabilities while implementing the same RFC by Shlomi Oberman and Daniel dos Santos
13:00 UTC How to make intelligence, hunting, and response BFFs - Effective intelligence requirements in security operations by Kamil Bojarski
14:00 UTC COVID-19 Tracing Apps: The Proliferation of Rushed Development by Aleksander Frelas and John Butler
15:00 UTC EDR Evasion and OODA Loops: Understanding and exploiting defensive loops to win operations by Jackson T.

Looking forward to Mubix's talk today about old malware being used (and working), the O Event tommorow which shows examples of how to prevent certain event logs from showing up and being able to create totally arbitarty ones, and on the third day the COVID-19 Tracing Apps which is the reason I had concern of using.

x33f will post all the videos later on their youtube channel but I am recording them for the Q&A questions since I find that more interesting.

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug
Gonna need Cyberinsurance for a Cyber Insurance Broker

https://twitter.com/gcluley/status/1394237883394019330?s=20

RFC2324
Jun 7, 2012

http 418

wonder if they followed their own best practices

Internet Explorer
Jun 1, 2005





What's that, pay someone else to cover them if their infosec policies aren't good enough? :agesilaus:

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

RFC2324 posted:

wonder if they followed their own best practices

Gonna guess that'd be a no. Guess that means their insurance was invalidated.

Apple is moving their encryption to China, both to comply with the Chinese government'd demands and to "provide them a shield from American Law"
Its as bad as it sounds. While Google and most others also do this same thing, Apple specifically prides itself on its "Privacy Protection"

https://twitter.com/matthew_d_green/status/1394389869540089856?s=20

CommieGIR fucked around with this message at 23:28 on May 17, 2021

Sickening
Jul 16, 2007

Black summer was the best summer.
Crossposting because some of you need this in your lives.



idiot profossor who should have stuck to teaching posted:

I have obviously heard the feedback on my article in The Hill. I know there are some who are deeply offended by my broad-based characterization of the Information Security industry. I will also cede that I know many engineers in the field who I respect deeply.

I will also tell you right now that I regret how I worded the sentence: "never hire an information security employee who has ever worked for a firm that has had a security incident." I recognize that people get blamed for other people's mistakes and those are not who I was intending to target with my comment.

I do stand by my bottom-line that the security industry needs a real renaissance--and I have heard from many who agree.

I apologize profusely to those of you who I offended.

I, on the other hand, should never write another editorial :) If I do, would someone please hack in, empty my bank account and forward the proceeds to the "Buy Everyone a Beer" foundation?

I guess he didn't think he would get so exposed.

Adbot
ADBOT LOVES YOU

Tryzzub
Jan 1, 2007

Mudslide Experiment

quote:

He has well over four decades of experience with systems, networks, data and other cyber resources.

bet he knows how to code in html

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply