* Posts by Clausewitz 4.0

358 publicly visible posts • joined 22 Jun 2021

Page:

Privacy is for paedophiles, UK government seems to be saying while spending £500k demonising online chat encryption

Clausewitz 4.0
Devil

If he had consensual sex with a 16+ woman, all fine by UK's law. And some other countries too.

If he paid for sex with a 17, not ok by law.

Clausewitz 4.0
Devil

And private islands, little boys in churchs, maybe royal titles

Japan solves 5G airliner conundrum: Keep mobe masts 200m from airport approach paths. That's it

Clausewitz 4.0
Devil

Messing with Altimeters

Let me get this straight, from the hacking point of view.

Instead of training 30 guys for over a year using Microsoft Flight Simulator, one can build a gadget to install it within 200m of the path to reliably crash a plane in a foggy, no-visibility night?

Never thought planes were so "safe"

McAfee's and FireEye rename themselves ‘Trellix’

Clausewitz 4.0
Devil

Marketing, Reactions, Fantasy

Do marketing really need to spend so much money in frivolous tasks?

Some are even doing political gamble.

North Korea pulled in $400m in cryptocurrency heists last year – report

Clausewitz 4.0
Devil

Re: Further to the North Korea story:

Some of my code may be grayish-black.

Clausewitz 4.0
Devil

Re: cryptocurrency

They are starving because of sanctions.

But USA is also broken with TRILLION of DEBT. Only fictiously inflated like triple-A housing bonds of 2008.

Clausewitz 4.0
Devil

Re: Further to the North Korea story:

McAfee was in the antivirus business. I am a system integrator ( also eletronics ), exploits and software implants developer.

Clausewitz 4.0
Devil

Re: cryptocurrency

I agree mixers with non-anonymous crypto are not failproof.

But, again, there are ways to make blockchain analysis innefective.

Owning a crypto exchange is one of the steps.

Clausewitz 4.0
Devil

Re: cryptocurrency

Thinking of the North Koreans, I doubt they would decrypt sensitive information, even if starving, with too much cameras or tooth-microchips not removed.

Dreams are not good. Reality is better.

Clausewitz 4.0
Devil

Re: cryptocurrency

Wrong.

If properly done, it is untraceable.

Owning an exchange may help.

Clausewitz 4.0
Devil

Re: Further to the North Korea story:

I must say NSA/FBI/CIA are a bit persistent.

One could think they use even mind-reading microchips to go after some folks.

20+ years programming, 9+ assassination attempts, patience is a virtue.

I own that $4.5bn of digi-dosh so rewrite your blockchain and give it to me, Craig Wright tells Bitcoin SV devs

Clausewitz 4.0
Devil

Re: Plot For A Film

I would kidnap all core developers with commit access to the bitcoin core code, in a multi-country operation.

Then, under gun-point, announce a hard fork or inserting a weak generation routine for the private keys, like NSA did with elliptic curve.

*This is an hypotesy for a movie, no need to sue me.

Clausewitz 4.0
Devil

Re: I only have questions

From what I heard, police raided his home and business offices.

He could have simply said they had stolen the keys.

Microsoft patches the patch that broke VPNs, Hyper-V, and left servers in boot loops

Clausewitz 4.0
Devil

Re: Quite a blast radius!

You can try to pay Wine developers to fix the Media Companion. I am sure some will happily jump aboard.

For office, can libreoffice do the trick?

Clausewitz 4.0
Devil

Use Linux

Use Linux.

If there is a real need to use windows, install it in a virtual machine inside Linux.

Remember to take a snapshot before any windows update.

Borked update? Just restore the snapshot

Ukraine blames Belarus for PC-wiping 'ransomware' that has no recovery method and nukes target boxen

Clausewitz 4.0
Devil

Marble Framework

Nowadays, even the PE Rich Header lies to you.

So the encryption methods used, PDB Path, System Language.

Email blocklisting: A Christmas gift from Microsoft that Linode can't seem to return

Clausewitz 4.0
Devil

Re: I am not surprised

You made a good point. Maybe a lot of the kids are running SMTP Auth script checkers or credential stuffing via web of O365, using Linode boxes.

Clausewitz 4.0
Devil

Re: Anticompetitive

Cannot be rules out. A lot of cases in the past years, oldest I remember was Microsoft vs. Netscape

Clausewitz 4.0
Devil

Re: A few weeks ago

You must be pretty good at what you do.

For not having an email and still running smoothly.

Clausewitz 4.0
Devil

Re: Mark my words...

When the "big" providers block some particular emails from you and your clients, due to business dispute, you will prefer to run your own mail server.

Russia starts playing by the rules: FSB busts 14 REvil ransomware suspects

Clausewitz 4.0
Devil

Re: What rules?

Also because of blow backs.

Do you think those hit by bombs or Stuxnet do not want to hit back?

Clausewitz 4.0
Devil

Re: Sting Operations and Red Team

I didn't said cooperation in the use of force isn't necessary. In fact, it is complementary.

Clausewitz 4.0
Devil

Re: "Ceased to exist"

Slavik is a good programmer. With a good team he can easily program Stuxnet-like stuff.

Clausewitz 4.0
Devil

Sting Operations and Red Team

As a professional in the information security field, I advise all engineers to produce a signed contract, in which you are immune from prosecution, before engaging in any Red Team or pentest operation.

I have a few of those contracts signed with clients.

Turns out some jobs may have been a sting operation, but thanks to my signed contracts, I am immune to prosecution.

Clausewitz 4.0
Devil

That's the GRU

Clausewitz 4.0
Devil

Re: Three options

NSA/CIA/FBI do recruit also this way.

Key pillar in the UK's border control upgrade programme 'lacks a systems integrator'

Clausewitz 4.0
Devil

BID Redactng

Whoever redacted the BID requirements either didn't had the capabilities or was not properly advised in the technological aspects.

Microsoft poaches Apple chip expert for custom silicon

Clausewitz 4.0
Devil

Talent takeover

Shows a certain pattern of aggressive talent takeover between companies.

Until companies do not hijack chip designers in the trunk of cars, it seems all will be fine.

Microsoft hires law firm to review sexual harassment policies, probe gender discrimination

Clausewitz 4.0
Devil

Re: "presents a material investment risk."

altruistically capitalist

Clausewitz 4.0
Devil

Microsoft Sexual Harassment Workshop

Speakers:

- Bill Gates

- Jeffrey Epstein ( deceased, in memoriam )

- Ghislaine Maxwell

On the importance to bring your kids to the company's parties

Scam, pyramid scheme, environmental disaster: Vivaldi boss shares his thoughts on crypto-coins

Clausewitz 4.0
Devil

Re: Dead right.

It is the new shareware. After the free-tier expires, starts the mining.

Clausewitz 4.0
Devil

Wall Street?

is at best a gamble and at worst a scam. It would be unethical

Sounds like the definition of Wall Street and banks, not cryptocurrency

'Admin error': AWS in dead company data centre planning application snafu in Oxfordshire

Clausewitz 4.0
Devil

The intern filling the applications probably gotta a slap on the wrist

Orca Security tells AWS fail tale with a happy ending

Clausewitz 4.0
Devil

Incentives

Makes me laugh to compare a BILLION-DOLLAR company security rapidness with an underpaid OpenSource developer.

Ransomware puts New Mexico prison in lockdown: Cameras, doors go offline

Clausewitz 4.0
Devil

Re: Wait, what?!

Most people are hoping UK Navy Missile system is not network-connected.

Clausewitz 4.0
Devil

Re: Wait, what?!

The police doesn't have the same security of the military.

Already worked with both.

In police stations / prisons, usually the IT setup all and forget about it.

Software engineer jailed for 2 years after using RATs and crypters to steal underage victims' intimate pics

Clausewitz 4.0
Devil

Re: Funny how

I am a security expert and explois developer.

And in my humble opinion, most FBI/Europol/Tech Police, are just.. Morons ! You can see them coming from miles away !

I am used to see the Autism trick being used to spy on normal people.

Clausewitz 4.0
Devil

Re: Austism Defense

I used to think autism was used by law enforcement/spy agencies to spy on scientists and well-skilled hackers to steal their tools, cryptocurrency and privacy, not the other way around.

UK regulators to scrutinise cloud resilience in response to financial services sector's reliance on the fluffy stuff

Clausewitz 4.0
Devil

Re: Of Needs and Feeds and Seeds Dangerous and Destructive to Know.

Talk is cheap. Come with money in a face-to-face meeting.

Clausewitz 4.0
Devil

Those 'cloud engineers', when presented with a command line, BGP route error, kernel panic, faulty daemon, usually call us.

Clausewitz 4.0
Devil

There is no cloud: It's just someone else's computer.

Never dies

Microsoft starts 2022 with big bundle fixes for 96 security bugs in its software

Clausewitz 4.0
Devil

Nothing is certain except death, encryption, and programming errors

Taxes were surpassed by encryption and cryptocurrency

Open source isn't the security problem – misusing it is

Clausewitz 4.0
Devil

Security is also a Product

I have code and it exploits some holes and/or zero-days, I have a product.

The process being, to use encryption to keep my intellectual property safe from prying eyes, until payment and deals are done.

North Korea says it's launched a third hypersonic missile, this time reaching Mach 10

Clausewitz 4.0
Devil

This test was observed by foreigners, no way to fabricate results

Secure boot for UK electric car chargers isn't mandatory until 2023 – but why the delay?

Clausewitz 4.0
Devil

Pwning UK EV stations

Method 1: Until 31 December 2022, just rewrite the boot sector and install a rootkit.

Method 2: After 01 January 2023, first steal the crypto private keys to sign the boot, then just rewrite the boot sector and install a rootkit. Just like RSA and their SecurID token.

Info-saturated techie builds bug alert service that phones you to warn of new vulns

Clausewitz 4.0
Devil

Re: be horrified at the idea of strangers being able to wake them

I used to be "On Call" in a big multinational telecom company some years ago.

They would give you bonus + expensive equipment to receive the calls and do the job.

Unfortunately one of the engineers once left the company and took the equipment and tools to the adversary.

Management got really angry.

European Space Agency: Come on, hack our satellite if you think you're hard enough

Clausewitz 4.0
Devil

Not funny

Hacking the real deal is funny

Four million outdated Log4j downloads were served from Apache Maven Central alone despite vuln publicity blitz

Clausewitz 4.0
Devil

Just hope a nuclear reactor safety procedure isn't using an automatic fetch / build of this version.

Or a missile launcher.

Or an industrial chemical plant.

Signal CEO Moxie Marlinspike resigns, leaves WhatsApp co-founder to run things until a successor is named

Clausewitz 4.0
Devil

Bring them in

I disagree with a private blockchain. They could've used an anonymized one, like Monero.

"invites all sorts of government investigative and regulatory meddling: by the IRS, the SEC, FinCEN, and probably the FBI."

Bring them in. They are not rocket scientists.

Page: