log☇︎
44300+ entries in 0.323s
asciilifeform: phf: 2nd category is no guarantee of megabux , either. ( but everybody, i'd hope, knew this. )
a111: Logged on 2018-01-23 06:19 douchebag: mircea_popescu: I want a career as a pentester, so far I feel I'm doing pretty good in terms of getting experience and reputation in the community. Do you have any suggestions for ways I that could get further on my career path?
mod6: looking for a few others to repeat the same kinda testing that I did. when we get a few more "thumbsup", then will deed & post to foundation site.
mod6: phf: aha. good deal. agreed that most machines i've ever seen have a /bin/sh, not all have a /bin/bash.
phf: afair though, the subset of commands that we have in vdiff can be reduced to portable awk (i had it working on mac os x), but i don't remember what the necessary changes are. someone mentioned that busybox awk fails.. ☟︎
phf: well, there's another non-portable part there: awk i think is really gawk, but i don't know if linux consistently provides gawk command, so on unix it ought to be | gawk ..., but that might (?) fail in linux
spyked: btw, re http://btcbase.org/log/2017-08-19#1701132 I asked around for this at some point, unfortunately I couldn't get contact info on any of the authors; leftover iron/documentation could be buried at faculty of electronics tho ☝︎
asciilifeform: ( i dun disagree with phf's decision, as such. but must point out. )
a111: Logged on 2018-01-23 04:39 mod6: A last question that I had: The original uses /bin/bash, the new changes include changing the shell to /bin/sh, is this intended, if so, why?
spyked: yes, very! funny enough, one of the people who worked on that (while a student himself) became my PhD advisor. he recently showed me a contraption that ran Basic, CP/M *and* had extensions for apple ii compatibility. (with an extra memory module? was it? I dun remember; anyway, it was soldered to the motherboard using a pair of wires, because no place to stick it in. communism was harsh, but people made the best of it)
spyked: asciilifeform: http://thetarpit.org/uploads/2015/02/hc-85.jpg (though mine was a HC 90 I think). Romanian ZX Spectrum clone, similar to many others discussed here ☟︎
spyked: asciilifeform, hm. I'm not familiar with that syntax. what does ,8,1 mean?
lobbes: http://btcbase.org/log/2018-01-23#1774737 << btw, ty ben_vulpes for writing this article. After I get archive .zip delivery up and running I will be taking time to get my castle in order. This will include: 1) learning 'v' 2) get a working trb 3) testing my damn fgs already 4) ffa chapter 1 (at least) ☝︎☟︎
a111: Logged on 2018-01-23 06:28 douchebag: Oh yes I understand that, I'm not really looking to sell 0day exploits, I mean starting a security company to provide penetration testing services to companies. A lot of places are required to hire a pentester or team of pentesters
BingoBoingo: Was obvious to spot who the counterparty was when they entered the public meeting space. Meanwhile I had been comfortable seated for a bit with coffees on the table.
BingoBoingo: asciilifeform: Used a web escrow thing to keep the kitten comfortable, they deliver benjies, I hit the release escrow button.
asciilifeform: i.e. you showed up with a privkey, and other party -- with benjies ? or wat
a111: Logged on 2018-01-23 17:18 spyked: http://btcbase.org/log/2018-01-23#1774633 <-- --> https://ocw.cs.pub.ro/courses/cns ; shameless plug, I wrote some of the materials there. but ftr, I completely agree with http://btcbase.org/log/2018-01-23#1774650 "security research" actually involves understanding systems; then only then e.g. the fundamental weakness of "C machines" becomes apparent.
spyked: http://btcbase.org/log/2018-01-23#1774633 <-- --> https://ocw.cs.pub.ro/courses/cns ; shameless plug, I wrote some of the materials there. but ftr, I completely agree with http://btcbase.org/log/2018-01-23#1774650 "security research" actually involves understanding systems; then only then e.g. the fundamental weakness of "C machines" becomes apparent. ☝︎☝︎☟︎
a111: Logged on 2017-04-02 08:04 diana_coman: might mention that I was a post-doc at some point in life
spyked: re research: coincidentally, was reading http://btcbase.org/log/2017-04-02#1635871 thread the other day and I can confirm diana_coman's experience. ☝︎
a111: Logged on 2018-01-23 16:08 asciilifeform: mircea_popescu: i thought he was a student
spyked: http://btcbase.org/log/2018-01-23#1774802 <-- neh, I'm freshly outta PhD; and outta teaching since late 2016, but still doing that occasionally, mostly for the 1-10% of students who appreciate the beating. ☝︎
a111: Logged on 2018-01-23 11:47 diana_coman: question for anyone who studied keccak: do you see any reason for keccak itself to care about msb/lsb? the way I see it, keccak works at bit level, so it eats a stream of bits in the order they come in and it outputs another stream of bits in the order they come out, no need for lsb/msb dance per se
a111: Logged on 2018-01-23 06:36 douchebag: After college and I get a few more certificates I'll be working a job paying roughly ~80-$100k/yr starting off
a111: Logged on 2018-01-23 06:28 douchebag: Oh yes I understand that, I'm not really looking to sell 0day exploits, I mean starting a security company to provide penetration testing services to companies. A lot of places are required to hire a pentester or team of pentesters
a111: Logged on 2018-01-23 06:25 douchebag: Eventually, I would like to start a company of some sort providing security solutions to companies as well as hire pentesters to work for me.
a111: Logged on 2018-01-23 06:19 douchebag: mircea_popescu: I want a career as a pentester, so far I feel I'm doing pretty good in terms of getting experience and reputation in the community. Do you have any suggestions for ways I that could get further on my career path?
asciilifeform: http://btcbase.org/log/2018-01-23#1774643 << this is a terrible idea. it is a tournament market. and by all indications (i.e. yer asking the q) , you're trying to join it as an adult. which promises to be a double-width shitsandwich. ☝︎
a111: Logged on 2018-01-23 06:12 douchebag: And low level memory exploitation? Those are some areas I'm interested in learning about but I need to learn more.
asciilifeform: mircea_popescu: i thought he was a student ☟︎☟︎
mircea_popescu: douchebag re last night's convo : spyked is actually a (retiring, i think ?) security professor / researcher, you might want to also check out his blog.
mircea_popescu: in other news, it's so great that you can take a 2 year old article and it's actually fucking useful. but -- a point i think wasn't mentioned and it's a pity : i ~really~ like ben_vulpes code indentation style. those bars.
BingoBoingo: <mircea_popescu> contract number, something. does your contract have a number ? << Asking. I have my registration number, but I am asking them for clarity.
a111: Logged on 2018-01-23 14:59 mircea_popescu: it's so good, i'ma even publish it for later noobs. here : http://p.bvulpes.com/pastes/L3yym/?raw=true
asciilifeform: http://btcbase.org/log/2018-01-23#1774768 << i must confess, very curious re what a 800bux network switch is ☝︎
mircea_popescu: i was mostly trying to ascertain whether he's got what to eat left.
BingoBoingo: Yeah, I am just now starting to feel less physically ill
mircea_popescu: it's so good, i'ma even publish it for later noobs. here : http://p.bvulpes.com/pastes/L3yym/?raw=true ☟︎
mircea_popescu: BingoBoingo aite ; the one thing missing from your enumeration there, is "gpgram me the story of bbisp fiat holdings ab origine." ; what this means is, i want a list showing "hey, i got $8500 (or w/e the fuck it was) and i spent x, y, z, k, l, leaving me with q". you wrote me a story, as a literary exercise, i want a numeric thing. gpg & send.
a111: Logged on 2018-01-23 03:40 mircea_popescu: and in general if this current trend continues of 1. i ask for something ; 2. you deliver something entirely else ; 3. i point this out ; 4. nothing happens we're going to have a serious problem. how did you figure these are wire details, what, you never in your life saw a wire ? wtf is "Beneficiario Final: (Razón Social o Nombre Completo del Cliente y N° de Cuenta en Montevideo)" ?
BingoBoingo: http://btcbase.org/log/2018-01-23#1774614 << I have never seen a wire. I will intinsify my effort to suck less. I am trying to learn without falling into the outcome where we write this off as a learning experience. ☝︎
diana_coman: question for anyone who studied keccak: do you see any reason for keccak itself to care about msb/lsb? the way I see it, keccak works at bit level, so it eats a stream of bits in the order they come in and it outputs another stream of bits in the order they come out, no need for lsb/msb dance per se ☟︎
douchebag: Oh alright, I must have misunderstood
douchebag: How do I sign up?
douchebag: If you have any other sites you'd want me to check out I can do that
douchebag: In other news, I think this week I'm going to focus on finding an exploit in Pulse Connect Secure and writing a blog about that
hanbot: ty phf & mod6 for vdiff/ulimit fixes --former did the trick, hopefully i'll never need the latter but noted to self in case.
douchebag: Oh nah, I have done my fair share of experimenting with drugs but I no longer partake in that kind of stuff
douchebag: trinque: I was only prescribed sleeping medications because I find it very difficult to fall asleep, but that is unrelated
douchebag: Eh, I was mentioning that stuff as a way to show how my "autism" doesn't negatively impact my life
trinque: all I hear is "am male and have interests"
douchebag: I feel that it's quite useful in terms of learning new stuff
douchebag: Eh, I'm not ashamed of myself I'm rather happy I am the way I am. Honestly
douchebag: Nope I'm actually in Chicago
douchebag: I also have an extremely good memory compared to most people, I can remember very specific details about events and conversations that happened years prior ☟︎
douchebag: Idk, what I mean is that I cannot relate to others easily and I have noticed throughout my life that I get much more obsessed with my interest than normal people.
douchebag: If they got it wrong, I don't know what I have. I certainly know I'm not like most people
douchebag: When I was younger I told a therapist that and she said that's all common for people with autism, and then I was diagnosed with autism my a doctor
mircea_popescu: i dunno where you got these ideas, but they're without basis in fact or any merit whatsoever.
douchebag: idk, just typical autism stuff except I am a pretty normal person in terms of behaving properly, I don't enjoy social interaction much but I don't mind it
douchebag: I also lack empathy
douchebag: I don't have a single phobia nor do I flynch
douchebag: I find it difficult to relate to most people
douchebag: I can sit in front of my computer for 36 hours straight researching a specific topic ☟︎
douchebag: Oh I already have a girlfriend
douchebag: I'm very high functioning, most people in real life cannot even tell until they have known me for a long time.
mircea_popescu: "i'm the type of person who likes to smoke" "why ?" "a lot of cancer cases in my family". really now!
douchebag: I'm autistic.
douchebag: I'm just the type of person who likes to plan ahead, that's all
douchebag: I've just been trying to think ahead about what I should do with my life. As of now I have a pretty solid plan in terms of getting started and whatnot, I'll definitely be living comfortable. I'm just not sure what I should try to do after that to
douchebag: After college and I get a few more certificates I'll be working a job paying roughly ~80-$100k/yr starting off ☟︎
douchebag: I'm just not completely sure about how I am going to go about that
douchebag: I would like to be successful one day, I don't mind if I don't become super rich however I would like to be able to live rather comfortably and possibly retire early
douchebag: Oh okay I understand
douchebag: No I do not
douchebag: Oh yes I understand that, I'm not really looking to sell 0day exploits, I mean starting a security company to provide penetration testing services to companies. A lot of places are required to hire a pentester or team of pentesters ☟︎☟︎
douchebag: Eventually, I would like to start a company of some sort providing security solutions to companies as well as hire pentesters to work for me. ☟︎
mircea_popescu: here's what i mean : being a doctor is a career path. you have to, mind, HAVE TO go to a certain fixed form schooling ; there's no dispute as to this. after you do, every year you practice you get better, and your market value improves. eventually decay sets in and you retire.
douchebag: mircea_popescu: I want a career as a pentester, so far I feel I'm doing pretty good in terms of getting experience and reputation in the community. Do you have any suggestions for ways I that could get further on my career path? ☟︎☟︎
douchebag: I started class today, my teacher provides every assignment the first day of class I'm pretty sure I can complete it all in a few days so I suppose I'll have plenty of time to focus on that throughout this semester
douchebag: Ooh interesting idea, I'll have to look more into that
trinque: I dunno about low level exploitation leetsauce, but when I was learning some ppc asm I wrote a sad little scheme in the stuff
douchebag: And low level memory exploitation? Those are some areas I'm interested in learning about but I need to learn more. ☟︎
mod6: A last question that I had: The original uses /bin/bash, the new changes include changing the shell to /bin/sh, is this intended, if so, why? ☟︎
mod6: http://btcbase.org/log/2018-01-22#1774125 << Good Evening TMSR. I have followed the steps here, and repeated the given steps with the expected results. Which looks good! I have also done a bit of additional testing on this vdiff change with a local vpatch created with the original, and the new, and then comparing the output vpatches. http://p.bvulpes.com/pastes/Knj0f/?raw=true ☝︎
mircea_popescu: i guess.
asciilifeform: i can actually believe that he never saw a wire
mircea_popescu: and in general if this current trend continues of 1. i ask for something ; 2. you deliver something entirely else ; 3. i point this out ; 4. nothing happens we're going to have a serious problem. how did you figure these are wire details, what, you never in your life saw a wire ? wtf is "Beneficiario Final: (Razón Social o Nombre Completo del Cliente y N° de Cuenta en Montevideo)" ? ☟︎
shinohai: http://archive.is/3uTCK <<< "We have investors that pay us to throw car show. I took funds and invest in BITCONNECT in DEC 2017. They run wit money n I dunno what to do."
asciilifeform: BingoBoingo: i don't buy new cpu , mobo, or cases, it would mean paying the priced-for-usgcorps 'tax'
BingoBoingo: <asciilifeform> a circa 2008 box, for >8x what i paid for a dulap-class opteron cum ssd raid << Has two of last year's http://www.cpu-world.com/CPUs/Zen/AMD-EPYC%207251.html and 128 GB of RAM, I am asking for a list but if you could forward some spec'd by alf suggestions it could be helpful.
mircea_popescu: aaaanyway, as they say, "i can't believe i ate the whole thing!"
BingoBoingo: <mircea_popescu> http://btcbase.org/log/2018-01-22#1774453 << bwahahaha << I think that was a RagnarDanneskjol thing ☝︎
asciilifeform: i gotta wonder if BingoBoingo made the mistake of mentioning bitcoin within earshot of the vendor
asciilifeform: a circa 2008 box, for >8x what i paid for a dulap-class opteron cum ssd raid
asciilifeform: then again i have plenty of iron from before i was born
asciilifeform: fwiw i find it in my head ~every day
mircea_popescu: but why, do you propose i have her download ubuntu ?
mircea_popescu: consider, i am a man of no email.