Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
communism bitch
Apr 24, 2009

WAR DOGS OF SOCHI posted:

uh...i've been to many a library conference and depending on the crowd, they tend to be a bunch of librarians pissing and moaning about how to get the respect they deserve and to prove their worth to the world. ala is better than most but still ain't nobody talkin' about archiving at these things and internet privacy to a librarian means putting a polarized screen on the desktops so that their patrons can continue to watch rape porn in the childrens room
There's apparently an international cohort of 60, 70, and 80 year old ceos, owners, and senior managers who still think that archives and libraries are basically the same discipline, with the same requirements and only cosmetic differences. It was catastrophic for archives in the early-mid 20th century, when a lot of well-intentioned and respectable librarians were put in charge of archives and tried to organise them on the same lines as libraries. My archive is still trying to recover 40 years later from the inadvertent damage this approach caused.
I don't think this was ever a problem the other way around for libraries because what a library is, and how you organise it, is really kind of intuitive - but it doesn't work at all for archives. Anyway it's interesting to hear the two disciplines still being lumped together by old people who dunno wtf they're doing.

*something about internet security here*

Adbot
ADBOT LOVES YOU

communism bitch
Apr 24, 2009

ratbert90 posted:

Taking a shower at the gym I realized that anybody flushing the toilets makes the water temp go up by 10F.

MitM attack if I have ever seen one.

can you flush enough toillets to effectively ddos the showers into pumping out boiling water

communism bitch
Apr 24, 2009

ratbert90 posted:

I would think that's a buffer overflow.
*takes notes*

so ddosing a toilet would be like cramming 50 dudes in there all trying to take a poo poo at the same time?

communism bitch
Apr 24, 2009
this is much more on my intellectual level than cybrary

communism bitch
Apr 24, 2009
some people upthread were saying that Ukraine has been an "live fire range" for Russian malware for a while now. Is there any good in depth journalism on this? I'd love to read a potted history of what's happened.

communism bitch
Apr 24, 2009

Shifty Pony posted:

wired has a story on it which isn't entirely awful. it goes over the pattern of the attacks starting out as largely manually executed against a particular system and then iterating until they are automated attacks based on modular tools which could be more easily adapted for use against other targets. if you dig a bit online about each of the incidents in the article there are usually a few blog posts by researchers.

Wicked, thanks.

communism bitch
Apr 24, 2009

spankmeister posted:

here's a video of the police raid on MEDoc, the company that (likely unwittingly) spread the NotPetya malware

https://www.youtube.com/watch?v=TY5f2fmwcDE

im the assault rifle and 35lbs of tacticlol garbage necessary for raiding an office full of computer touchers

communism bitch
Apr 24, 2009
Just keep all your passwords in a word file on your desktop titled "passwords" like my dad.

communism bitch
Apr 24, 2009

cinci zoo sniper posted:

an app idea - 0dayr, crashes your phone on activation

You could probably find a venture capitalist ready to invest 10 mil into this. Just change "crashes" to "disrupts", make some vague noises about monetisation strategy, and you're golden.

communism bitch
Apr 24, 2009
Y'all sound so depressed and cynical about every method of protecting user data like login credentials. If 2fa using my phone isn't going to keep my neopets account safe what is?

communism bitch
Apr 24, 2009

Maximum Leader posted:

using a 2fa code tattooed to your dick

Well that would guarantee security via obscurity, but I don't know if three characters would be secure enough....

communism bitch
Apr 24, 2009
lol

communism bitch
Apr 24, 2009
e: nvm

communism bitch fucked around with this message at 19:44 on Jul 10, 2017

communism bitch
Apr 24, 2009

spankmeister posted:

I went to this crypto museum last year and they had a large collection of enigmas and we weren't tuoposed to touch it but I couldn't help myself. It's a very satisfying machine.

I dunno if it's still a thing but a few years ago the Bletchley Park crypto myuseum was selling fully functional Enigma replicas in kit form that you built yourself.
If you google around maybe they're still doing it.

communism bitch
Apr 24, 2009
Ah that's a pity.
I bet some insane person makes functional mechanical replicas for people with a few grand to spare.

communism bitch
Apr 24, 2009
I think it'd be safer and maximum opsec for all concerned if we put all the 5 eyes spooks in a single gigantic airtight off-the-grid facility 5 miles underground and permanently sealed up the entraces and exits.

communism bitch
Apr 24, 2009
That would raise some questions as to who or what is currently occupying all the infrastructure above ground while masquerading as government spies.

communism bitch
Apr 24, 2009

jammyozzy posted:

(which was a glass-walled meeting room with paper taped over the windows).
lol

communism bitch
Apr 24, 2009
Just send a target fb friend requests from a few dummy accounts over a few weeks/months, then request a pw reset and nominate your own dummies for verification.

My sister has over a thousand friends on FB. I don't think there's much discrimination there, she probably just adds everybody.
Now my sis is for sure a confirmed moron, but i don't think she's much worse than average.

communism bitch
Apr 24, 2009

LP0 ON FIRE posted:

what does that do? you're reactivating your dummy account with other dummy accounts?

No, you make a bunch of dummy accts, friend them to the account you want to compromise, then (if that works) try to password reset the target account, which requires you to name some trusted fb friends for id verification. If you nominate the dummies that you control you can get the codes needed to reset the target account pw.

But if the trusted friends need to be specifically selected in advance by the legit account holder it'd be super convoluted and probably not possible anyway.

communism bitch
Apr 24, 2009

quote:

China has successfully sent "hack-proof" messages from a satellite to Earth for the first time.
The Micius satellite beamed messages to two mountain-top receiving stations 645 km (400 miles) and 1,200 km away.
The message was protected by exploiting quantum physics, which says any attempt to eavesdrop on it would make detectable changes.
Using satellites avoids some limitations that ground-based systems introduce into quantum communication.
http://www.bbc.co.uk/news/technology-40885723
Is this "hack-proof" or """""""""hack-proof"""""""""?
Presumably at some point in the process (once the data reaches its destination?) your secret quantum data needs to be turned back into its original best_simpsons_quotes.txt format to be usable, at which point it's as vulnerable as anything else?

Is the data actually less vulnerable during transmission, or is it just easier to figure out its been compromised once it reaches its destination?

gently caress copmuters

communism bitch
Apr 24, 2009

ate all the Oreos posted:

if it's actual quantum encryption then the idea is it's basically a very secure way to send key data, after that it's just a boring normal OTP (or a stream cipher or whatever). so basically if anyone intercepts the key data or looks at it or anything you gently caress with the quantum-y bits of the system and it's immediately detectable (in fact it completely prevents you from continuing the connection), so you cancel the transmission before any of the ciphertext is even encoded.

it's hack-proof in that the quantum bits are assured by physics to work that way, and if you use a OTP (correctly use it, that is) you're mathematically assured that the encryption part is "provably secure" too. obviously if you have access to the system on either side of the secure bits then you can hack away
So give it 20 years and the only way to hack the planet will be to physically access the machines, bured deep inside the megacorp arcologies? Finally, my animes will be almost real....

quote:

e: also I swear someone already did it from a satellite to a ground station years ago so idk if this is anything new or just China trying to look cool
I'm going to bet on the latter!!!!!

communism bitch
Apr 24, 2009
Yes hello, please preserve for one thpusand years this 1tb hdd with millions of copies of hello.jpg

communism bitch
Apr 24, 2009

Migishu posted:

I'm going to make a legacy for myself where the FBI and all them will want to get access to all my private files, only to see nothing but hello.jpg as every file on the disk

steganographically encode blue waffle into one of them.

communism bitch
Apr 24, 2009
Apparently they threw it in a rock smasher after the steamroller didn't destroy it as comprehensively as they hoped.

communism bitch
Apr 24, 2009
Is it dumb for a big-ish company handling sensitive information to have company wifi secured with WEP in tyool 2017?
I'm not acomputer toucher at all, but I heard that WEP is basically a joke, in security terms.

communism bitch
Apr 24, 2009
I know this is a vague follow-up but if somebody hreaks into the wifi what's the reasonable worst they could do? Cause if it's just boosting free wifi i don't think anybody would care.

Adbot
ADBOT LOVES YOU

communism bitch
Apr 24, 2009
It's "ground control" not "command and control" you gosh drat plebs.

  • Locked thread