/cyb/ + /sec/ - Cyberpunk and Cybersecurity General

Qt 3.14 edition

Previous thread:
/cyb/erpunk:
>The Cypherpunk Manifesto
activism.net/cypherpunk/manifesto.html
>The Cyberpunk Manifesto
project.cyberpunk.ru/idb/cyberpunk_manifesto.html

>What is Cyberpunk?
pastebin.com/hHN5cBXB

>Cyberpunk directory (Communities, Media, Readings)
pastebin.com/VAWNxkxH
Cyberpunk resources (Miscellaneous)
>pastebin.com/Dqfa6uXx

/cyb/ ftp: ftp://50.31.112.231/pub/
ftp://collectivecomputers.org:21212/Books/Cyberpunk/

/sec/urity:
>The Hacker Manifesto:
phrack.org/issues/7/3.html
>The Guerilla Open Access Manifesto:
archive.org/stream/GuerillaOpenAccessManifesto/Goamjuly2008_djvu.txt

>Why privacy matters
youtube.com/watch?v=pcSlowAhvUk
>Shit just got real
pastebin.com/rqrLK6X0

>Cybersecurity basics and armory
pastebin.com/rMw4WbhX
>Endware
endchan.xyz/os/res/32.html
>BBS archives
textfiles.com/index.html
>Various guides to get started
github.com/mayfrost/guides/

>Reference books (PW: ABD52oM8T1fghmY0)
mega.nz/#F!YigVhZCZ!RznVxTiA0iN-N6Ps01pEJw

Thread Archive: archive.rebeccablacktech.com/g/search/text//cyb/ /sec//

IRC:
Guide github.com/mayfrost/guides/blob/master/IRC.md
Join irc://irc.rizon.net:6697
SSL Required:
#Jow Forumspunk
#Jow Forumssec
#nfo

Schway SSH Textboard: bit@whisper.onthewifi.com (port 22)

Attached: NoGhost_EveVenture.jpg (741x1100, 148K)

Other urls found in this thread:

archive.org/details/cyberpunkeducator
ctf.hackucf.org/challenges#Conditional 2
en.wikipedia.org/wiki/Billion_laughs_attack
tapas.io/episode/1352412
blog.haschek.at/2017/how-to-defend-your-website-with-zip-bombs.html
hackerfactor.com/blog/index.php?/archives/762-Attacked-Over-Tor.html
youtube.com/watch?v=Cc61C-VsTko
lwn.net/free
bbc.com/capital/story/20190301-how-screening-companies-are-monetising-your-dna
reuters.com/investigates/special-report/usa-politics-beto-orourke/
youtube.com/watch?v=_XdQugsDz8E
rclone.org/crypt/
opensecuritytraining.info/Training.html
packtpub.com/packt/offers/free-learning
reddit.com/r/Jow
twitter.com/NSFWRedditImage

/cyb/ Movies:
>The Machine (2013)
>Johnny Mnemonic (1995)
>The Matrix (1999)
>Chappie (2015)
>Elysium (2013)
>Virtuosity (1995)
>The Lawnmower Man (1992)
>Lawnmower Man 2: Beyond Cyberspace (1996)
>The Terminator (1984)
>Blade Runner (1982)
>TRON (1982)
>TRON: Legacy (2010)
>Escape from New York (1981)
>Escape from L.A. (1996)
>Rollerball (1975)
>RoboCop (1987)
>Nirvana (1997)
>Transcendence (2014)

/sec/ Movies:
>Sneakers (1992)
>The Net (1995)
>Takedown (2000)
>The Fifth Estate (2013)
>Blackhat (2015)
>Enemy of the State (1998)
>Hackers (1995)
>WarGames (1983)
>WarGames: The Dead Code (2008)
>Swordfish (2001)

Jow Forums Movies:
>Disconnect (2012)
>Antitrust (2001)
>Pirates of Silicon Valley (1999)
>Office Space (1999)
>Her (2013)

/cyb/ Documentaries:
>The Cyberpunk Educator archive.org/details/cyberpunkeducator
>The Internet's Own Boy: The Story of Aaron Swartz (2014)
>RiP: A Remix Manifesto (2009)
>TPB AFK: The Pirate Bay Away from Keyboard (2013)
>The Net - The Unabomber, LSD and the Internet (2003)

/sec/ Documentaries:
>Hackers: Wizards of the Electronic Age (1984)
>Hackers Wanted aka Can You Hack It ( (2009)
>New York City Hackers (2000)
>We Steal Secrets: The Story of WikiLeaks (2013)
>Citizenfour (2014)
>Terms and Conditions May Apply (2013)
>All Watched Over by Machines of Loving Grace (2011)
>Snowden (2016) [Biopic?]
>Zero Days (2016)

Jow Forums Documentaries:
>The Code (2001)
>Revolution OS (2001)
>BBS: The Documentary (2005)
>Get Lamp (2010)
>From Bedrooms to Billions (2014)

Series:
>Dark Angel (2000)
>Person of Interest (2011)
>The Expanse (2015)
>Mr. Robot (2015)

Attached: 1546557826704.jpg (1800x850, 396K)

Can anyone help with this CTF? ctf.hackucf.org/challenges#Conditional 2
So it compares arg1 to the hexcode 0xcafef00d, but im not sure how to actually make that je because it doesnt translate to ascii. I know its basic, but im not sure what im missing

Attached: 2019-03-14-162424_1920x1080_scrot.png (1920x1080, 2.06M)

Last thread: Open issues from last thread:

>For the Sec guys here... has any changes been made to the pft server?
>ftp://50.31.112.231/pub/
That was the reserve FTP site, the main site with all the information in a more structured form is still at ftp://collectivecomputers.org:21212/Books/Cyberpunk/

====

Still ongoing on cybergoth. BTW were cybergoths as black in clothing as goths? Search for cybergoth and you get a lot of neon colouring.

====

AEL: we forgot that one in the OP.

====

Zine at Any more information? See also open FAQ questions at

I need a fucking answer to this. Posted on stackoverflow, and /sqt/. Need answer now, so I can submit report. Please.

Let's say there's a parameter in the url: ?date=, which is set to a ?date=2019-03-14. Now, if we submit a massive amount of digits in there, for example: ?date=2019999999999999999999...999-03-14, submitting this brings a Network Protocol Error, the page doesn't load, and the site seems to get slower(though not sure this had anything to do with that).
Is there a specific name for this? Is it anything which would cause concern?

Also, last time submitted got a 504 status code repsonse from the website. Am I breaking their server? Anything?

>stackoverflow
Not comfy.

Anyway, this seems to be a form, of denial of service. It doesn't have to break the server entirely but slowing it down significantly can be enough to qualify.

One example is death by a billion laughs.
en.wikipedia.org/wiki/Billion_laughs_attack

A ZIP bomb, on the other hand, is likely to tank the server. It will most likely require a reboot. The FAQ mentions TOR warfare using ZIP bombs.

In military parlance there is a difference between a soft kill and a hard kill. That seems to apply also here.

I was seriously just going through the possible reports, reading about stackoverflows. Is this definitely what it is, though?
>A ZIP bomb, on the other hand, is likely to tank the server.
What's this? Should I do it? I'm safe if I'm using a bounty program, no? :/

>Is there a specific name for this?
probably a kind of denial of service, caused by badly handled user input.
>Is it anything which would cause concern?
probably not, but let's break it down, assuming that the language of the script is php.
They're probably using strtotime() or mktime() to parse the date to a timestamp or other format to handle your input.
Different versions of php could possibly return different output on error (like -1 or FALSE)
Let's say that the result of this is not checked, and is passed to a database query or some other function that does not expect that kind of result.
That's where the fuckup likely happens.

>tl;dr
sanitize all user inputs

Attached: 1552397821945.gif (616x338, 419K)

ZIP bombs are well known already, even Wikipedia has an entry about it. Those are handy for feeding to net intruders - give them something to chew on and watch them blow up.

>sanitize all user inputs
Always a good advice.

New episode of Cyberpunk (with a hint of Desertpunk) comics Sammy:
tapas.io/episode/1352412
It is getting weird.