Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
Workaday Wizard
Oct 23, 2009

by Pragmatica

unpacked robinhood posted:

Bestialities were my least favorite mortal kombat moves

loving scorpion turning into a penguin wtf???

Adbot
ADBOT LOVES YOU

klosterdev
Oct 10, 2006

Na na na na na na na na Batman!

Carbon dioxide posted:

People are gonna get in trouble.

how long before we get an xlsx drop and can check it against ceoemail.com

Agile Vector
May 21, 2007

scrum bored



more like haveibeenpownied.com

CRIP EATIN BREAD
Jun 24, 2002

Hey stop worrying bout my acting bitch, and worry about your WACK ass music. In the mean time... Eat a hot bowl of Dicks! Ice T



Soiled Meat

Agile Vector posted:

more like haveibeenpownied.com

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

Progressive JPEG posted:

moved logins into bitwarden and totp codes into authy

what made you decide to use authy instead of bitwarden for totp?

Chris Knight
Jun 5, 2002

me @ ur posts


Fun Shoe
I will never not read totp as top of the pops

Progressive JPEG
Feb 19, 2003

Subjunctive posted:

what made you decide to use authy instead of bitwarden for totp?

just so that the sites with totp codes (usually the ones that I care more about anyway) are not included if my bitwarden gets broken into somehow

tho the authy backup login is in bitwarden too so it’s not really separate, but with 1password it felt uneasy having main login and otp codes both coming from a common browser extension

Lysidas
Jul 26, 2002

John Diefenbaker is a madman who thinks he's John Diefenbaker.
Pillbug
im happy enough with duo mobile for totp code generation, with recovery keys saved in my keepass database, since i already use duo mobile 2fa for work

also i just found out about keepassxc (not keepassx), and its like "how did i not realize this existed earlier"

Dominus Vobiscum
Sep 2, 2004

Our motives are multiple, our desires complex.
Fallen Rib

secfuckin' an animal

dpkg chopra
Jun 9, 2007

Fast Food Fight

Grimey Drawer
really screwed the pooch on that one

dpkg chopra fucked around with this message at 02:36 on Oct 21, 2019

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

Progressive JPEG posted:

just so that the sites with totp codes (usually the ones that I care more about anyway) are not included if my bitwarden gets broken into somehow

tho the authy backup login is in bitwarden too so it’s not really separate, but with 1password it felt uneasy having main login and otp codes both coming from a common browser extension

I trust a browser extension that can validate the url matches what’s expected more than I trust Impaired Cocoa Crispies to do same and more than I distrust a given browser extension

Progressive JPEG
Feb 19, 2003

if I’m too impaired to log into a website then being unable to do so would be a feature imo

ewiley
Jul 9, 2003

More trash for the trash fire

Main Paineframe posted:

you can use the triggers system to do a sync every time you save or whatever, the doc has an example of how to set up that exact behavior

https://keepass.info/help/kb/trigger_examples.html#dbsync

kinda dumb that they require you to configure it all from scratch instead of including a prebuilt template that just needs the right values plugged in, but whatever. no one ever accused keepass of being simple and user-friendly

You can pre-fill a lot with their ini to make it consistent when you deploy keepass to managed devices, but that doesn't help with any of the integration plugins. I guess someone who likes pain could repackage keep rear end with some useful plugins and ini settings using NSIS and try to get users to use it, you could even include a friendly sync service that automatically syncs their kbdx with your AWS bucket :nsa:


https://twitter.com/HollyGraceful/status/1185877337713397761?s=20

akadajet
Sep 14, 2003

https://securityboulevard.com/2019/10/welcome-to-video-raid-leads-to-337-arrests-due-to-bitcoin-exchanges-that-use-strong-kyc/

quote:

"Welcome to Video" raid leads to 337 arrests due to Bitcoin Exchanges that use strong KYC

The darkweb child sexual exploitation video site, “Welcome to Video”, first came onto Law Enforcement’s attention as a result of a case in the UK, where a geophysicist Matthew Falder was arrested. When the National Crime Agency was looking into his hard drive, they found he had been a member of “Welcome to Video” which at the time used the dark web address mt3plrzdiyqf6jim .onion. Anyone visiting that website recently would have seen this banner instead:


Law enforcement actually got the website through a silly webmaster error. One of the webpages on the website linked some of its component files by the server’s IP address instead of its onion URL address. The IP address, 121.185.153.45, was a Korea Telecom address. They got the owner’s address details and were able to confirm his identity.

"This immutable public ledger easily linked to my bank account sure does seem anonymous. Let me just use it to buy this highly illegal pornography."

CRIP EATIN BREAD
Jun 24, 2002

Hey stop worrying bout my acting bitch, and worry about your WACK ass music. In the mean time... Eat a hot bowl of Dicks! Ice T



Soiled Meat
whats up with the title "welcome to video"?

is it due to just poorly translated broken english?

reminds me of the japanese band "oi! valcans" who wrote a bunch of oi punk songs while maintaining a loose grasp of the english language, releasing songs such as "we'll never back" and "independence for united". all their choruses (is that the right term) all seem like they're cut off in the middle.

taqueso
Mar 8, 2004


:911:
:wookie: :thermidor: :wookie:
:dehumanize:

:pirate::hf::tinfoil:

I don't think any of us know why they named the site welcome to video. :shrug:

akadajet
Sep 14, 2003

welcome to prison

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

akadajet posted:

welcome to prison

Lol

Wiggly Wayne DDS
Sep 11, 2010



taqueso posted:

I don't think any of us know why they named the site welcome to video. :shrug:
innocuous name if the members talk about it in public, but more importantly:

akadajet posted:

welcome to prison

Chris Knight
Jun 5, 2002

me @ ur posts


Fun Shoe
lol

https://twitter.com/kennwhite/status/1186075645962526720

Wiggly Wayne DDS
Sep 11, 2010



ya more terrible vpns were included as well, no one competent used them enough to notice:
https://twitter.com/cryptostorm_is/status/1186097950327476224

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

Progressive JPEG posted:

if I’m too impaired to log into a website then being unable to do so would be a feature imo

that’s not the risk, the risk is being in that in between state where you can log in to a malicious website using habits that are interchangeable with sober habits for non-malicious sites

but you not being able to log in to this website would be a plus, yes :haw:

Winkle-Daddy
Mar 10, 2007
like the old infosec joke what's the difference between a VPN and a honeypot? An exploit.

akadajet
Sep 14, 2003

https://twitter.com/NordVPN/status/1185979478205485056

lomarf

infernal machines
Oct 11, 2012

we monitor many frequencies. we listen always. came a voice, out of the babel of tongues, speaking to us. it played us a mighty dub.
do not taunt the infosec community

FungiCap
Jul 23, 2007

Let's all just calm down and put on our thinking caps.
On the other hand, free pen testing.

Plorkyeran
Mar 22, 2007

To Escape The Shackles Of The Old Forums, We Must Reject The Tribal Negativity He Endorsed
pen testing is only useful if you actually intend to fix any of the problems

klafbang
Nov 18, 2009
Clapping Larry
They posted a Twitter. What more do you expect anybody to do to fix issues?

geonetix
Mar 6, 2011


what’s a leaked root ca if it cures lowtax’s spine

Shame Boy
Mar 2, 2010


"triggered" :whitewater:

akadajet
Sep 14, 2003

Shame Boy posted:

"triggered" :whitewater:

hey, it was either that or "cucked"

duz
Jul 11, 2005

Come on Ilhan, lets go bag us a shitpost


Plorkyeran posted:

pen testing is only useful if you actually intend to fix any of the problems

sometimes its useful as a management bludgeon so that you can eventually fix the problems

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender
hey everyone. what is the best vpn? 🙃

akadajet
Sep 14, 2003

This owns lol.
https://www.youtube.com/watch?v=byYGPO4ptxs&t=70s

Share Bear
Apr 27, 2004

Lain Iwakura posted:

hey everyone. what is the best vpn? 🙃

gonna guess this is still correct? https://gist.github.com/grugq/353b6fc9b094d5700c70

someone put that in the first post

Shaggar
Apr 26, 2006
I use nordvpn with code lowtaxspine and it works fine for downloading Linux isos.

Vomik
Jul 29, 2003

This post is dedicated to the brave Mujahideen fighters of Afghanistan

Share Bear posted:

gonna guess this is still correct? https://gist.github.com/grugq/353b6fc9b094d5700c70

someone put that in the first post

brave browser and Facebook messenger seem odd recs

The Fool
Oct 16, 2003


fb messenger is end to end encrypted now, but it’s still Facebook

and yeah, I’d recommend safari or Firefox over brave every day

Winkle-Daddy
Mar 10, 2007

Shaggar posted:

I use nordvpn with code lowtaxspine and it works fine for downloading Linux isos.

Adbot
ADBOT LOVES YOU

Hed
Mar 31, 2004

Fun Shoe
Saw that first section use Brave :eek:
The rest is pretty good. Overall better than nothing, even if people don't know the why.

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply