/cyb/ + /sec/ - CYBERPUNK/CYBERSECURITY GENERAL

Previous threads: [ archive.rebeccablacktech.com/g/search/text//cyb/ /sec//type/op/ ]
Last thread: []
- - - - - -
/cyb/erpunk
The alt.cyberpunk FAQ (V5.28) [ ftp://50.31.112.231/pub/Alt_Cyberpunk_FAQ_V5_preview28.htm ]
What is cyberpunk?: [ pastebin.com/pmn9vzWZ ]
Cyberpunk directory (Communities/IRC and other resources): [ pastebin.com/AJYry5NH ]
Cyberpunk media (Recommended cyberpunk fiction): [ pastebin.com/Dqfa6uXx ]
The cyberdeck: [ pastebin.com/7fE4BVBg ]
- - - - - -
/sec/urity
The /sec/ Career FAQ (V1.11) [ ftp://50.31.112.231/pub/sec_FAQ_V1_Preview11.htm ]
"Shit just got real": [ pastebin.com/rqrLK6X0 ]
Cybersecurity basics and armory: [ pastebin.com/v8Mr2k95 ]
Reference books (PW: ABD52oM8T1fghmY0): [ mega.nz/#F!YigVhZCZ!RznVxTiA0iN-N6Ps01pEJw ]
/sec/ PDFs: [ mega.nz/#F!zGJT1QQQ!O-8yiH845GN26ajAvkoLkA ]
Learning/News/CTFs: [ pastebin.com/WQhRYB59 ]
FTP Backup: ftp://50.31.112.231/pub
thegrugq OPSEC: [ grugq.github.io/ ]
#! sec guide [ pastebin.com/aPr5R1pj ]
EFF anti-surveillance [ ssd.eff.org/en ]
- - - - - -
Thread challenge: Find a way to bypass SameSite cookies. scotthelme.co.uk/csrf-is-really-dead/

NEW? Check the /sec/ Career FAQ and Cybersecurity basics links above. Learn to code, learn computer basics, learn networking THEN work on hacking. It's technical and hard, but fun. Want to hack now? Try Webgoat and use the cheats. Grab Penetration Testing A Hands On Introduction and see what you don't know enough about. Always use a virtual machine for reading PDFs.
Wanna be a punk? Read the What is cyberpunk? and start today!

Attached: cybsec.gif (938x1032, 3.05M)

Other urls found in this thread:

habr.com/en/company/qrator/blog/466287/
giuliocomi.blogspot.com/2019/08/insecure-secrets-encryption-at-rest.html
ired.team/offensive-security/privilege-escalation/unquoted-service-paths
captmeelo.com/bugbounty/2019/09/02/asset-enumeration.html
trenchesofit.com/2019/09/01/logrhythm-network-forensics-at-home/
isc.sans.edu/diary/rss/25302
youtube.com/watch?v=04F4xlWSFh0
nmap.org/book/scan-methods-null-fin-xmas-scan.html
medium.com/@thegrugq/secured-android-smartphone-32b28ae3fbd8
azeria-labs.com/heap-exploit-development-part-1/
azeria-labs.com/heap-overflows-and-the-ios-kernel-heap/
blog.g0tmi1k.com/2011/06/dictionaries-wordlists/
wiki.skullsecurity.org/Passwords
cbc.ca/news/world/hong-kong-protest-lasers-facial-recognition-technology-1.5240651
twitter.com/whale_alert/status/1169815776733220866
arstechnica.com/tech-policy/2019/09/senator-pushes-amazon-for-details-about-ring-partnerships-with-police/
arstechnica.com/tech-policy/2019/08/police-can-get-your-ring-doorbell-footage-without-a-warrant-report-says/
arstechnica.com/tech-policy/2019/08/dont-call-our-surveillance-products-surveillance-ring-tells-police/
arstechnica.com/tech-policy/2019/07/amazon-writes-scripts-for-cops-to-sling-ring-home-cameras-report-says/
inverse.com/article/45192-bitcoin-ethereum-price-manipulation-doj-investigation-explained
megabeets.net/xor-files-powershell/
twitter.com/SFWRedditGifs

habr.com/en/company/qrator/blog/466287/

internet reliability and adoption of ipv6. turns out ipv6 stuff isn't that reliable and ipv4 has always been kind of shit.

giuliocomi.blogspot.com/2019/08/insecure-secrets-encryption-at-rest.html

Using ProcDump, ProcMon and mimikatz to find NordVPN credentials in memory. PROTIP: don't use Local Machine for DPAPI protection of secrets. AES and PBKDF2 are fine tho.

ired.team/offensive-security/privilege-escalation/unquoted-service-paths

Windows path searching issues that plagued programs with DLL side loading now affecting services.

captmeelo.com/bugbounty/2019/09/02/asset-enumeration.html

Subdomain enumeration using free services. Good setup during recon to find possible takeovers.

does exif store phone numbers?

trenchesofit.com/2019/09/01/logrhythm-network-forensics-at-home/

want to set up a siem at home?

down them all for firefox 69?

just wanna let you know that what you just said was retarded

no, but gps coordinates and sometimes enough data to identify the camera/phone

plus date it was taken
very relevant in forensic timelines