Pinned post

Day 1: Enumerate targets in a web application CTF. Explore potential sqli points. Look at SSTI for Werkzeug. Look at SSRF candidate. (dafuq is a gunicorn?)

Pinned post

Making a run at 100 days of hacking. Not setting a super high bar. Minimum, critically read a security article and take notes. Max, hands on keyboard and write/edit a script, hack on a ctf or lab box, work on a hacking workflow.

A question for the

shared brain... ...any 8- to 12-port lab-worthy switches capable of SDN I should take a look at? I'm exploring how to demo SDN controlling network access in an OT/ICS subnet.

Anyone got link(s) to current articles on wifi pentesting? In particular, why can I get handshakes from known ssids, but the handshakes for hidden ssids don't seem to be usable to tooling used to extract hashes. Is there a newer tool I'm not in the loop on? I also tried out mdk4 to work out the name of a hidden ssid. Is that old and busted? I there new hotness?

Hey, Hive Mind. Got any opinions on Oak Haven Resort in Tennessee?

It's getting near time to give up on tv shows and movies--the streaming services I went to because cable was getting ridiculous are now getting ridiculous.

certiorari... This word is hurting my brain. Is it cert-iorari, certi-orari, certior-ari, or something else?

For anyone who was watching this... Someone pointed this out: github.com/gloxec/CrossC2 Haven't tried it yet, though.

Any CS operators have pointers to Linux beacons? I’m getting ready for CRTO and was doing an HtB lab as prep—but initial compromise is a linux box! LOL.

ath0 boosted

Bob Menendez is a crook, a disgrace to his office, and should resign immediately.

See how easy that is to say, Republicans?

Try it sometime about the criminals in your party.

I've got a blog on infosec.press: infosec.press/beveragenotes/ It's random musings about whisky or other beverages. It's pretty green, so don't expect too much for a while. I'm targeting a musing every couple of weeks. After I get more writing under my belt, I'll explore getting some actual infosec stuff out--roll up some of my social media posts, explore some things that have been bugging me, etc. In the mean time, enjoy! (Or don't, I'm not your dad and I'm doing this one for me.)

ath0 boosted

When scrolling on your phone hits gold.
Foo Fighters and yes..... The Rick Astley
youtu.be/IdkCEioCp24

ath0 boosted
ath0 boosted

Why aren't right wing evangelicals just doing "Thoughts & Prayers" on Abortion?

If this is such a great way to deal with the killing of actual kids and others with actual birth certificates.....???

What brand of AR-15 would Jesus shoot the Pharisees and Scribes with?

Or would it be more like a "Suffer the little children to expose themselves in my line of fire." kind of thing?

The Evangelical "God" is so hard to understand.

@CoSoTips Is there a way to turn off the CoSoCom Radio Scanner w/out dropping into Ostrich Mode?

Show more

ath0

CounterSocial is the first Social Network Platform to take a zero-tolerance stance to hostile nations, bot accounts and trolls who are weaponizing OUR social media platforms and freedoms to engage in influence operations against us. And we're here to counter it.