/cyb/ + /sec/ - Cyberpunk and Cybersecurity General

/cyb/erpunk:
The Cypherpunk Manifesto activism.net/cypherpunk/manifesto.html
The Cyberpunk Manifesto project.cyberpunk.ru/idb/cyberpunk_manifesto.html

"What is cyberpunk?" pastebin.com/hHN5cBXB

Cyberpunk directory (Communities, Media, Readings) pastebin.com/VAWNxkxH
Cyberpunk resources (Miscellaneous) pastebin.com/Dqfa6uXx

/cyb/ ftp: ftp://50.31.112.231/pub/

/sec/urity:
The Hacker Manifesto: phrack.org/issues/7/3.html
The Guerilla Open Access Manifesto: archive.org/stream/GuerillaOpenAccessManifesto/Goamjuly2008_djvu.txt

"Why privacy matters" youtube.com/watch?v=pcSlowAhvUk
"Shit just got real" pastebin.com/rqrLK6X0

Cybersecurity basics and armory pastebin.com/rMw4WbhX
Endware endchan.xyz/os/res/32.html
BBS archives textfiles.com/index.html

Reference books (PW: ABD52oM8T1fghmY0) mega.nz/#F!YigVhZCZ!RznVxTiA0iN-N6Ps01pEJw
Additional reading ftp://collectivecomputers.org:21212/Books/Cyberpunk/

IRC:
Guide github.com/mayfrost/guides/blob/master/IRC.md
Join irc://irc.rizon.net:6697
SSL Required:
#Jow Forumspunk
#Jow Forumssec
#nfo

Attached: 153900303421.jpg (1920x1080, 200K)

Other urls found in this thread:

startpage.com/
duckduckgo.com
justfuckinggoogleit.com/
lmgtfy.com/?q=what does a firewall even do
youtube.com/watch?v=S5O47gemMNQ
abine.com/optouts.php
history.google.com/history/
superuser.com/questions/565488/disconnect-all-computers-that-are-signed-in-to-my-google-account
reddit.com/personalization
batman.gyptis.org/zerobin/?d425d536bd6785bb#7anLDEyPVNu0lDIIVucyKciYUHgcVPzNZ/8NRfDEIhU=
framatube.org
searx.me/
d.tube/#!/v/harto/gup27ien
peertube.duckdns.org/videos/trending
instances.joinpeertube.org/instances
twitter.com/NSFWRedditVideo

are lesbians /cyb/?

install CRUX

Yes, because just like cyberpunk you think that it's cool and sexy until you see the real deal.

Attached: 1539301538288.webm (1440x508, 1.75M)

You. I like you.

cringe and pluepilled

Das it

Attached: 1417954936462.jpg (300x300, 13K)

Where should I start in computering? I'm about to hit 30 and need to escape neetdom. Was thinking about enlisting in the army but can I code my way out instead?

Same here.

>Same here.
even with the enlistment?
I semi tried to go balls deep into programming a few years back. started to learn python and went back to college with the intent to get a bachelors in comp sci. the intro to computing class was such a fucking joke I just stopped doing it and pre cal was a bitch because my math is so rusty and I gave up on math in like 8th grade

Attached: smug.png (833x767, 810K)

>enlistment

if you can't into math you're expendable in tech industry. learn a trade instead.

?
can I learn a marketable computer skill from home and seek reasonable compensation within a somewhat short time period? can I make it?

I'm not a brainlet unless years of neetdom has given me perma brain fog. I should be able to force myself to math if I have to. given this insight what is your advice? thank you

So what does a firewall even do aside from filtering ports and maybe blacklisting IP addresses?

Just enlist, and get it over with.

unless you have a plan or internship you know you could land i'd still recommend learning a trade. pay ain't shit but at least you'll have some job security and will actually contribute to something if anything else.

>startpage.com/ or duckduckgo.com (i.e., fucking google it)

what you're describing is a stateless firewall, as in, it doesn't know which traffic belongs to which connection.
Stateful firewalls on the other hand know about connections so you can create rulesets based on a connection state - for example allow all established connections outbound, drop Connections that are in an invalid state or silly stuff like drop each forth packet of a connection.
Based on other capabilities they may have, they're also called Deep Packet Inspection, Content filter, Proxy, Intrusion Detection / Prevention System...

Attached: 8ecpMhx[1].png (805x1000, 213K)

Links to previous threads OP.

RBT seems to be back up again so we can link there again.
Or did you mean those recent threads links?
Did anyone use those?

>(i.e., fucking google it)
Dude. Leave this to the professionals.

justfuckinggoogleit.com/

telling someone to use a search engine isn't the the universal solution if you don't know what to search for. at least give some keywords

lmgtfy.com/?q=what does a firewall even do

congratulations, you would've forwarded user to sites that would've told him what he already knew, wrapped in several layers of BS.
Based on that search he still wouldn't know about stateless / stateful firewalls because it just isn't in the results

>How not to InfoSec
youtube.com/watch?v=S5O47gemMNQ

Teach yourself calculus, it's literally high school mathematics.

>calculus
>high school mathematics
Mmmmmm

I am neither joking not trolling. Calculus (at a bare minimum, differential calculus, but integrals and series should be familiar too) is remedial in any serious university's STEM curriculum.

Yes, advanced high school mathematics for the tryhards.

It's not expressly difficult if you have a solid understanding of math, but math education in the US is a goddamn fucking joke. People graduate without even being able to do long division or fractions. I should know, I was one of them.

Personally, I had to spend about 2 years re-doing all my math classes from Grade 8 to Grade 12, not because I hadn't passed them, but because I hadn't actually learned that shit. Luckily it was free for me to do it because I live in the socialist dystopia of Canuckistan.

My advice for people who need to brush up on math: Use khanacademy, work through everything from the basics on up. Spend 1-2 hours PER DAY doing this. Math actually gets fun once you know the fundamentals.

not OP, but here

BOTNET OPT OUT

>How To Protect Your Data And Remove Personal Info
abine.com/optouts.php

>Google
history.google.com/history/
superuser.com/questions/565488/disconnect-all-computers-that-are-signed-in-to-my-google-account

>Reddit
reddit.com/personalization

I've been writing a cyberpunk novella. 63 Pages in and it's pouring out of me. Don't really know what I'm going to do with it when I'm done but it's been a blast writing it. I gotta be thankful for these continued cyberpunk threads because I've learned a ton of shit from them.

tl;dr: thanks.

np

I followed that endchan link and that's very interesting. I'd think it'd be more important to learn the principles behind the endwall and the like, but I do think the scripts do help teach that.

What's happened to endchan? It seems a whole lot less normie than this place and I'd prefer that.

opting out doesn't solve anything. You'd need a robust privacy solution.

Cyberpunk has nothing to do with cybersecurity.

on one hand, fuck people for asking stupid questions. On the other hand, this kind of toxicity is why you don't see any cybsec communities. You can't find a single good infosec community on the whole damn web, this shit sucks ass. Best you have is reddit-tier autism and fuck that.

I can't wait to read it. Have a good day!

Lets say you were hypothetically creating some ransomware. How would you include the password? just as a base64 string, or another way?

I'm trying a beginner buffer overflow problem that I can't seem to figure out.

Here's the code:
batman.gyptis.org/zerobin/?d425d536bd6785bb#7anLDEyPVNu0lDIIVucyKciYUHgcVPzNZ/8NRfDEIhU=

I want to give some input that will modify a or b so that they'll match one of the cases. I thought it would be something obvious like entering 10 A's and then the value which will overflow and modify one of the variables, but it doesn't appear to be that simple.

Also gdb won't let me look at the stack for some reason. The buffer and variables all appear to be in a contiguous block of memory though.

Fuck college, learn computer security basics and do some hackmes and ctfs, then you can at least do some freelance security work with bugcrowd or something. If you feel like getting into it some more, apply for SOC analyst jobs, they're pretty entry level in general.

>he doesn't know 4kev.org

Attached: 1538165813236.jpg (1022x754, 35K)

What's the premise if you don't mind me asking?

I am trying to hack zoom's guitarlab software to let me load an effect only allowed on the "b3n" unit onto my "g3n" unit. Unfortunately the effects in question are not displayed in any way that makes it possible to generate a relevant error message or anything like that to begin tracing through the code.

Anyone have any ideas on where to start with this? I'm willing to do my homework.

Attached: Zoom_B3n_Top.jpg (1000x741, 379K)

for ransoware you'll want asymmetric crypto.
passwords in code should always be derivatived from computed values. Also read 'trolling with math'

I have to do a project on network security

I can do basically anything since the prof left it vague as hell what she even wants. The general gist I got was that it's supposed to be about network security, it'll require a powerpoint presentation, a demonstration of something, and a bunch of documented research.

Any ideas?

Thanks dude, i appreciate it. I will read it. Its not super important to be really secure, because its just tutorial code for my programming/pentesting website, but i do want to be as informed as i can be.

What are you interested in, my dude? If i were you, i would be browsing exploit-db.com and finding some recent exploits to talk about. I found one a while back (I think it was quite old) about an sqli attack that allowed you admin permissions into a smart house, and all the smart houses were in jewland. Shodan dork and all.
Port knocking is a fun concept in terms of defense, if thats more what you are after.

Attached: b - go to shodan io type content smarthome php int - Random - 4chan.png (1862x8819, 1.34M)

netsec isn't about exploits, it's about preventing them to get through.
So, maybe practical setup / circumvention / analysis of an IDS / IPS

It's about both. You can't prevent exploits without understanding them. Find an exploit that's been patched, and discuss why there was an issue in the first place, and how it has been fixed.

Cyberpunk has nothing to do with computer security
Vulnerability research is the only real security field
Certs are for retards
You're all larpers

I've been leaning towards a pentest example using aircrack-ng against an old laptop working as an AP with WPA encryption and then I guess getting root and doing something silly like sending microphone input to the laptops speakers or something via ssh.

Trouble is, idk how I'm going to do that and show the class, and I'm literally doing this with zero experience in hacking anything. I've essentially got a month to rig this all together.

vr is fucking great
haven't written a real-world exploit in over a year. I really need to get back into it

redpill me on the phrack high council and the insecurity of openbsd

nice haiku

Honestly, I think the whole aircrack-ng is a very skiddie attack. It doesn't actually demonstrate any understanding. Really all you are doing is capturing a .cap file with a wifi handshake in it, then brute forcing the handshake. This isnt really a security vulnerability, because if the user has a good password that will takes months and months, then getting into a PC in the network requires a PC to have vulnerable services running. The there is privesc, and no offense, but you will struggle with that.
However, setting up an AP on a linux box is easy as piss, so if you are interested in doing something along the lines of that, you could look into the program fluxion, which rely's on social manipulation to make the user give you their wifi password thinking they are doing it for security reasons. Much more of an actual attack.
A good one to look into would be EternalBlue, fucking interesting samba attack developed by the NSA.

With no experience, it may be a struggle for you, but it really depends how fast you learn, and how enthusiastic you are about this type of stuff. If you do want help though, you can drop a throwaway email here and i can try and help you out.

openbsd is pretty secure
it employs some pretty novel mitigations for general security issues and as such is pretty resilient against most exploits. sure, you can hack some userland software in openbsd, but from my understanding the OS is designed such that getting anywhere from that point is pretty difficult.

which semester are you in? h4x0ring isn't magic, you know

2nd year class, basically my second networking class period

You could reverse engineer some shitty software/malware and document your findings. It doesn't matter what you're looking at; it's likely you'll find some interesting quirks/bugs/whatever.
Include lots of diagrams and code snippets and it'll probably be pretty baller regardless of your findings.

In my opinion, thats a bad idea. Reverse engineering is difficult, and thats not necessarily netsec either

don't stray too far, you know missed topics equals failed assignment. Take guidance at the classes' topics - I doubt you're doing software exploitation in an networking class.

Reverse engineering isn't as difficult as it is time consuming and monotonous at times.
Since when has challenging yourself been a "bad idea" anyway?

Don't get me wrong, im learning reverse engineering myself at the moment. Its not a bad thing to challenge yourself, I just think its a bad idea to learn reverse engineering for a networking assignment when you have a month to create something you have to present.

shouldn't you larpers be posting on gaia or something?

We're dealing mostly with basic network scanning and exploitation tools - netstat, nmap, wireshark, nessus, hashcat, etc.

I'm currently going through stuff that will prepare me for OSCP (might take it in February because of money mostly, maybe even in January).
Does anyone know any good resources and trainings I could go through to be more prepared?

Also, which other certifications and trainings should I go for if I aim to work in cyber security field?

idk lol I never went to university :^)

Attached: 1532591674965.jpg (1600x1131, 249K)

is vaporwave the 80's cyberpunk?

Attached: molejo.jpg (1280x720, 208K)

Attached: getonmylevel.jpg (259x194, 9K)

If it's only allowed on another unit there might be a reason, most likely related to a component on the device. If you have the code perhaps your best shot would be to port it according to the components, and well the device must have some memory where you can modify the presets, so you would have to find a way to insert that effect there

Saved.

I figure reading this and then brushing up/learning shell scripting should give a decent foundation. Am I right?

Attached: 516+hGptmNL._SX376_BO1,204,203,200_.jpg (378x499, 38K)

how would the idea of uploading one's consciousness to a purely digital network work? writing a novel for nanowrimo and i like the idea of transhumanism to that extent being extremely common and effectively an alternate form of suicide.

i imagine we'd have a sort of urbit-like network with personal domains

What's the point of LARPing?
You can work in security without pretending to live in a post-apocalyptic universe.

Foundation for what?

A netsec analyst job. Right now desktop support with a sec + cert. I think I would need some more knowledge before I'd have an edge over others.

Yeah doesn't require much knowledge at all.

It is an alternate form of suicide. Stay away from it.

Attached: 1471999123441.jpg (640x640, 54K)

Remember when in the 80's everybody talked about LAN's being everywhere? You can't expect the future to turn like you imagine.

Where do you get your news? Do you use a podcast, RSS feed, Youtube? Trying to find something on Youtube is difficult.

I don't. The news is irrelevant.

Are gays /cyb/? Asking for a friend.

Attached: 1523404061590.jpg (1181x1748, 436K)

This is true.
Sadly actual cyber security is so dull that the only way most people here are able to do it is to roleplay as if it does.

Attached: 1349732355450.png (1800x3100, 648K)

You are not even a human, "friend".

fake and gay, HL3 will never happen.

Keep it up! We need more cyberpunk stuff that isn’t from old dudes

I got a few media outlets from both sides, so I don't forget how each side looks and I can check on facts.

Everywhere. Assume everyone is giving half truths at best. Everyone is a fucking liar who lets a little bit truth slip by. Don't forget to live since that is the closest you will get to The Truth.

Attached: 1509771563026.jpg (750x600, 73K)

Will there be technology in the future to cure my depression?

Attached: 1538141500729.png (1900x1070, 1.71M)

I don't read news, I make it. Just kidding. I don't do anything at all.
I don't read news though. I figure I'll notice if it's time to begin forcible removal and Jow Forums keeps me up to date on all my consumerist needs.

Maybe making you into a little girl, if you're into that kind of thing.

Attached: F03AF23404C94B12B6549C4357456BA2.jpg (1280x1920, 287K)

Threadly reminder to join the p2p Internet (pic related, also contact in pic).

Also, join a decentralized Youtube alternative framatube.org
And use an alternative search engine searx.me/

Attached: mesh10.png (1240x1754, 1.19M)

These youtube alternatives are interesting d.tube/#!/v/harto/gup27ien

>framatube.org
Scratch that, found a better instance peertube.duckdns.org/videos/trending

There is a huge collection of instances in their site instances.joinpeertube.org/instances

how does illicit substances factor into your cybsec lifestyle?

Mine has an impact of the grassy variety