/cyb/ + /sec/ Cyberpunk and Cybersecurity General

Ω All are welcome here; the world is fucked and we are all in this together.

◙ Cypherpunk Manifesto >>activism.net/cypherpunk/manifesto.html

◘ Cyberpunk Manifesto >>project.cyberpunk.ru/idb/cyberpunk_manifesto.html

∆ Hacker Manifesto >>phrack.org/issues/7/3.html

± Guerilla Open Access Manifesto >>archive.org/stream/GuerillaOpenAccessManifesto/Goamjuly2008_djvu.txt

▓ Fables, realities, prophecies and mythology of a community:

░ What is cyberpunk >>pastebin.com/hHN5cBXB

▀ The importance of a cyberpunk mindset applied to a cybersecurity skillset.: >>youtu.be/pcSlowAhvUk

● Cyberpunk directory: >pastebin.com/VAWNxkxH

▬ Cyberpunk resources >pastebin.com/Dqfa6uXx

▐ Cybersecurity essentials/resources >pastebin.com/SCUbhpjP >pastebin.com/VTXRAPxM

Cntrl + F Basic Knowledges, Basic Training, Arms/Arm >pastebin.com/rMw4WbhX

▼ Endware: Heavy armor for anons, by anons >>endchan.xyz/os/res/32.html

⦿ Shit just got real: >pastebin.com/rqrLK6X0

₪ /cyb/ FTP
ftp://collectivecomputers.org:21212/Cyberpunk/
user/password == guest

Other urls found in this thread:

bbc.com/news/technology-42887405
youtu.be/JLf9q36UsBk)
washingtonpost.com/news/wonk/wp/2018/03/06/23andme-gets-fda-approval-to-report-breast-cancer-risk-without-a-doctor/?utm_term=.5edb444de315
youtube.com/watch?v=bf5NQ5Z6NLk
bbc.com/news/technology-28549494
youtube.com/watch?v=FF2BIovN0Xc
youtu.be/IGSlKydvtbU
twitter.com/NSFWRedditGif

Emergency bump

hacking is naughty!

fuck /hmg/, glory to /cyb/ + /sec

This, I was missing you guys.

Are password managers a security risk? Employees should not use them in the offices.

The database where your passwords are saved is the real threat. I use a db in keepass format and store it in a pendrive, the password manager I use is kpcli.

Yay! Good work, user, I have missed this thread.

Doing a CTF walkthrough for youtube (hoping to help build my resume) any tips to make it a good walkthrough? I'm going to explain all the tools used etc

I just recently knew about the cyborg manifesto, pretty cool statement. Damn, the 80's sure were crazy times.

=== /cyb/ News - for the world is more cyberpunk than ever.
Transhumanists are obviously not dead yet, not even by their own hands...

>Would you hack your own body?
bbc.com/news/technology-42887405
>For some, transhumanism - the theory that the human race can evolve beyond its physical and mental limitations with the help of technology - is a crucial part of the advancement of society.

Also Lepht Anonym is featured here,

For some reason /sci/ thinks transhumanism is only about cyborgs and antagonizes genemodding.

Long live Lepht Anonym, I remember when she posted here!

i thought mods were deleting these threads?

They have long been associated with cyberpunk. My impression is that they have become a lot more low profile the last 5 years or so.

So did I. And we are not in the clear yet (youtu.be/JLf9q36UsBk)
I think it is a rogue janitor from the last intake. Also notable is that the /hackerman/ generals have been left alone.

=== /cyb/ News

>Trump's FDA is allowing Genetic Prediction tests to go forward.
washingtonpost.com/news/wonk/wp/2018/03/06/23andme-gets-fda-approval-to-report-breast-cancer-risk-without-a-doctor/?utm_term=.5edb444de315

>/sci/ is guiding OP to treat its own genetic disease, got genuine replies
>/sci/ was discussing making elves

Thread theme taken from /sci/ youtube.com/watch?v=bf5NQ5Z6NLk
This is real footage lads, in 5k!

BBC seems to be have some hardcore /cyb/ and also /sec/ people. Or do they just realise cyberpunk is now a fundamental part of our world?

Here is a category dedicated to cyberhacks
bbc.com/news/technology-28549494

I know it's not been long but bump on this, what makes CTF walkthroughs good or better?

youtube.com/watch?v=FF2BIovN0Xc

I beat bandit and got to level 2 on leviathan but I feel like I hit a wall. I come from linux network shit rather than cs n that I should buy a book to get there

Suggestions? I'm thinking The C Programming Language or Compilers: Principles, Techniques, and Tools idk

>Are password managers a security risk?
Yes. You don't know the source or of you do you don't know if the compiler is true or rigged and even if both are in the clear a third program can get hold of the data file and upload it to servers that will crack the encryption that also can have back doors.

obviously Compilers: Principles, Techniques, and Tools

A last video bump for the night, from a futuristic dystopia with fashion in alignment: youtu.be/IGSlKydvtbU

>you don't know if the compiler is true or rigged
I'm sure the man hacked the guys writing your password manager so they could insert a ken thomson hack into the compiler.

> a third program can get hold of the data file and upload it to servers that will crack the encryption that also can have back doors.

I'm sure whoever has the backdoor to AES has better things to do than find your pornhub password.

That said for your password manager protects you against
1. weak passwords
2. the site you used your password on being hacked and your weak password being reused

1 + 2 are regular risks.

Where your password manager is under attack:
1. Its an online password manager and hackers see it as a loot pinata
2. Your computer or where ever you store the password DB is compromised.

In the case of 2 your already fucked because even if you memorize 64 character passwords you have a keylogger or cred stealer waiting for you to use your PW or decrypt the PW DB.

TLDR: Using a password manager isn't increasing your threat vector because if they have access to it your already fucked. Its decreasing your threat vector if its eliminating password reuse(big one!) or weak passwords (lawl under 32chars) .

I'm not sure how to handle passwords. I ditched LastPass and have been using KeePass. I carry around a thumb drive with a database on it, the database is also on my phone, and I have another thumb drive in a safe for backup. I just sync up my database manually. I'm not sure if I'm retarded or not.

you're doing better than most folks

>I'm sure the man hacked the guys writing your password manager so they could insert a ken thomson hack into the compiler.
Alphabet agencies have pulled off some impressive stuff to the point where one should never ever make any assumptions.

>I'm sure whoever has the backdoor to AES has better things to do than find your pornhub password.
That was old style logic. These days it is all about running a massive dragnet across the entire net and catch anything and everything in case it might be useful later. Like finding your pornhub password is also used for your nuclear weapons.

I just use kpcli that is perl script and very transparent to audit. I know some password managers are risky and that is why I stay away from keepass2 and its .NET threat but keepassx, keepassxc and keepassc now exists. Also listen to both these fellas they both have good points. Above all dont use an online password manager, that is looking for trouble.

You are doing well, I would argue that storing the database in your phone is not a good idea and you should use the thumb drive connected through the USB or OTG your phone has only when you need it, like you do in your other computers. But mostly you are doing well.

I guess this is /sec/ related, currently in a program for informatics and security

I wanted to ask anons what jobs and positions there are other than muh security analyst wage slavery and how to make a good living after finishing school