102800+ entries in 0.059s

mircea_popescu: so
there, you have a pretty great plan for yourself out of
this convo. keep doing dayjob
to keep food on
table. meanwhile a) deliver for
trinque, deliver
the rsa pubkey crawl and b)
talk
to potential employees, get
them in
the wot.
then as all
this matures you can pivot into your desired research firm securely and from a position of unmatrched strength.
☟︎ douchebag: Sorry about
that, anyway
though - ckang definitely is skilled and would be a good
team member if he was interested in
that sort
thing
mircea_popescu: you know, you can write your whole
thought in a single line, we do actually read long lines. no reason
to break up your stuff.
☟︎ mircea_popescu: this is altogether dubious, but, as
they say
time will
tell.
douchebag: blue
team is just a matter of solving issues
that have already been identified and knowing how
to install security software
douchebag: because
the red
team is
the group of individuals who need
to actually be skilled
douchebag: for
the blue
team,
that would be rather easy
to find qualified employees
douchebag: I have a
team of extremely skilled individuals for
the red
team aspect
mircea_popescu: i can't imagine why i wouldn't be. kinda why
the whole platform exists in
the first place,
to allow such outgrowth.
douchebag: mircea_popescu: If you would be willing
to do
that, I
think we could get something very successful running.
mircea_popescu: use
the
time
to get potential hires you may be interested in into
the wot and
there you go.
mircea_popescu: tell you what : do
trinque's
thing ;
then do
the ssh/ssl
thing ;
then we can
talk about you running
this
thing exactly like pizarro is run, why
the hell not.
☟︎ douchebag: I don't have
the funds
to pay employees who are qualified
douchebag: I
think it would be a very successful company, assuming I have employees who are qualified
douchebag: But anyway, I
think by first sending in a red
team
to identify vulnerabilities on
the web/network/physical level and
then sending
their report
to a blue
team
to resolve
those issues
mircea_popescu: asciilifeform, get a load of
that : he basically did MORE work he does at work for 30k a pop (ie,
talk a bunch of retarded crack whores / women in
tech)
through kleopatra, except he did it for free. we're on
the receiving end of 30k x 50 crackwhores or w/e it was. he gifted us a million and a half. what now.
ben_vulpes: douchebag: what *would* you upgrade a windows whatever whenever user
to?
douchebag: Their company pays roughly $30k per install I walk
them
through
trinque: so
the working alright is keeping you boys employed, eh?
douchebag: and I'm not allowed
to
tell
them
they need
to upgrade
that
douchebag: It works alright, however in
terms of actual security - it is lacking somewhat
douchebag: We also push out self-signed or subordinate SSL certs
to also intercept ssl
traffic
douchebag: Setting up security software for enterprise customers,
the main software we use is an intercepting proxy
that analyzes and blocks malicious
traffic
douchebag: My current place of employment primarily does blue
team work
douchebag: I actually did
tell a girl
that once
douchebag: Hey bitch, how about you let me hit your backdoor with my 0day and let my heap spray all up in ur buffer
till it overflows
douchebag: trinque: I always like
to
tell
them women
trinque: imma have
to get a red helmet, "baby it's
time for your penetration
test"
mircea_popescu: ok,
the point here is :
that
the difference you propose is not borne by reality, but by
the need of middle managers
to mentally represent an ideal space fundamentally inadherent
to
the mental processes of middle managers.
douchebag: when
they were sneaking over a fence
to break into a building
douchebag: Well, I have seen red
team penetration
testers use a helmet when conducting a physical penetration
test
douchebag: Also, I would like
to create a security firm someday primarily focused on Red
Team + Blue
Team stuff
douchebag: Well,
the projects I like working generally involve web application exploitation
mircea_popescu: well so far ...
this is
the
third
time at least he created
three page + flamewar with innocent question. seems a
talent alright.
trinque: which is even better
than ought
to be expected
mircea_popescu: yes well. one year -- one
thing.
this year --
the spreading. next year --
the eating.
mircea_popescu: kids asking insufferable fucking questions are
the prime engine of any
thinking republic.
mircea_popescu: now why don't you, like me, see
the great promise of fundamental
thinking in his approach ?
mircea_popescu: not
to say
that we didn't do heroic fucking work
to fix it. but fixed -- it is not yet. ahead of anyone else as we may be.
mircea_popescu: unpleasant as
this
truth is, and readily obscured by republican optics as it may find itself amenable
to, it's still fucking
there.
mircea_popescu: asciilifeform,
think : you broadsided ME with it
too. unlike him i am rather large mass, but
the point is fucking
there -- we don't actually even know
the full dependency
tree with any specified precision.
mircea_popescu: and in
the instant case, as in
the lengthy history of previous instances
that drove inflammatory reaction in response, he does actulaly have a point. not only does he have a point, but if poorly communicated ALSO poorly understood in group
terms.
trinque has no rush, only raised a consequence for doing other
than what he said
mircea_popescu: yes, but what's
the rush ; and perhaps more interestingly why such an overactive immune response.
there's ~no benefit
to repelling youth. moreover, it can not even be said
that his work
to date sums
to zero -- it sums
to a positive quantity.
trinque: but yes, point of me asking him for
this was
to get him
to press a
trb and investigate
trinque: I can't argue perl or misc other isn't a dep, god knows what all is in
there.
mircea_popescu: you're here asking six year old girls whether
they enjoy vaginal or clitoridal orgasms.
mircea_popescu: eh get out, he's young and he has no fucking idea what anything is or how anything works. it's so fucking oversoon
to ask such questions...
mircea_popescu: it fails
to make anything, of course, but gosh gollty does it break
things!
trinque: it is
true
that
the
thing spiders out
to "you must have satan-fabbed silicon" but I meant only
the deps
that had been hard-specified.
trinque: douchebag: if you had actually pressed
trb
this question would've been answered
mircea_popescu: but it must be said
that
the q is not entirely spurious (even
though he didn't actually read, evidently enough).
mircea_popescu: yep. and far be it from me
to disparage it in any way.
mircea_popescu: the correct way would be
to have a list of enumerated known-goods ;
though
this is understandably not done as it is -- because expensive. and satoshi didn't do it because he didn't even have any conception of dependency versioning.
mircea_popescu: asciilifeform, nah. looky : "You also will need
the following packages / binaries /
tools on your system:bc" rather
than "bc bc 1.06.95"
trinque: there's a manifest in
the deps dir
ben_vulpes: i can't believe we're entertaining
the notion of depriving
the poor chinches
mircea_popescu: now
that he's inserted enough
to date locally, he can have privacy.