--- Log opened Tue Sep 13 00:00:09 2016 00:11 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] 07:06 <@Dolemite> mr0ning, be0tches and h0ez! 07:11 * aestetix hugs Dolemite 07:35 -!- TheDukh [~thedukh@2607:fcc8:ac80:d900:9027:8f2c:c3a5:c45e] has quit [] 07:59 -!- rattle [041c8581@tor/regular/rattle] has joined #se2600 07:59 -!- mode/#se2600 [+o rattle] by ChanServ 08:07 -!- TheDukh [~thedukh@2607:fcc8:ac80:d900:f929:a3aa:ad52:b91d] has joined #se2600 08:41 -!- xray [~xray@c-73-43-4-206.hsd1.ga.comcast.net] has quit [Quit: Leaving.] 08:42 -!- xray [~xray@dept-143-215-34-23.vpn.gatech.edu] has joined #se2600 09:14 -!- fie [~fie@ip72-206-22-57.fv.ks.cox.net] has quit [Quit: Leaving] 09:28 <@Evilpig> just saw this and laughed. http://www.techworm.net/2015/02/log-administrator-account-windows-pc-image-tutorial.html 09:28 < PigBot> Title: How to log in to administrator account on any Windows PC Image Tutorial (at www.techworm.net) http://tinyurl.com/hn3uef5 09:34 < _NSAKEY> Evilpig: What's funny about it? Is there some step that intentionally hoses the system? 09:34 <@Evilpig> the fact that you can fairly trivially reset the local admin password without any fancy anything extra 09:35 < _NSAKEY> Hasn't that been a thing on Windows since always? 09:36 <@Evilpig> possibly, but the recovery mode being accessible like that started with 7 09:36 < _NSAKEY> I remember it being pretty trivial to get to the password hashes on Windows XP, but I think you had to use a live environment of some sort to do that. It's been too long. 09:37 < xray> Without physical security there is no security. 09:37 < _NSAKEY> You could reset the password, or just copy the hashes. 09:37 < _NSAKEY> Windows is a fucking dumpster fire in that regard. 09:37 < xray> https://room362.com/post/2016/snagging-creds-from-locked-machines/ 09:37 < PigBot> Title: Snagging creds from locked machines · Room362 (at room362.com) http://tinyurl.com/z5r4alm 09:37 < _NSAKEY> I don't know if they went to a password hashing algo that doesn't need to die, but NTLM is/was a stupid joke. 09:37 < xray> http://byteseclabs.com/some-work-mostly-fun/2016/9/6/snagging-creds-from-locked-machines-with-raspberrypi-zero 09:38 < _NSAKEY> You could have, at most, 14 character passes... With the password split in two. 09:38 < xray> No need to reset you can just plug in a dongle and it will give you the passwords. 09:38 < _NSAKEY> Cracking a 14 character pass = a pain, but 2 7 char passes? That's hilariously easy. 09:38 < _NSAKEY> xray: Why am I not even surprised? 09:40 < xray> To prevent the repair attack, encrypt the hard drive. To prevent the WAPD attack disable WAPD for all interfaces. 09:40 < _NSAKEY> It's almost enough to make one want to run FreeDOS. 09:41 < xray> You can also prevent the repair attach by requiring a BIOS boot password. 09:42 < _NSAKEY> xray: That article seems a bit thin on details. Does that set-up dump out the admin hashes? 09:49 < xray> You get the hash. Then use the new version of L0phtCrack that takes advantage of multi-core CPUs and GPUs so it's faster at cracking Windows hashes now than when it first came out almost 20 years ago. http://www.theregister.co.uk/2016/09/01/l0phtcracks_back_crack_hack_app_whacks_windows_10_trash_hashes/ 09:49 < PigBot> Title: L0phtCrack's back! Crack hack app whacks Windows 10 trash hashes • The Register (at www.theregister.co.uk) http://tinyurl.com/z724dvx 09:51 < _NSAKEY> xray: I'll stick with hashcat, but that's just personal preference. 09:51 < _NSAKEY> Though, I would be interested to know which one is faster at NTLM. 10:01 < xray> https://theintercept.com/2016/09/12/long-secret-stingray-manuals-detail-how-police-can-spy-on-phones/ 10:01 < PigBot> Title: Long-Secret Stingray Manuals Detail How Police Can Spy on Phones (at theintercept.com) http://tinyurl.com/jnrs8s6 10:02 < xray> Reminds me when you could go to the library and read the Bell documentation on how to build a blue box. 11:00 -!- mog [~mog@fsf/member/mog] has joined #se2600 11:01 -!- mode/#se2600 [+o mog] by ChanServ 11:01 <@mog> who did this year's website for phreaknic? 11:05 <@Evilpig> like anyone would actually admit to that 11:05 -!- oddball [~oddball@c-98-240-105-54.hsd1.tn.comcast.net] has joined #se2600 11:05 -!- mode/#se2600 [+o oddball] by ChanServ 11:05 <@Evilpig> mog: if you're arranging for a public execution, count me in 11:06 <@mog> well one change i would make 11:06 <@Evilpig> erase it ans start from scratch? 11:06 <@Evilpig> host it at geocities? 11:06 <@mog> is no where on it is it listed phreaknic 20 is dates x-y 11:06 <@mog> it should be at the top 11:06 <@mog> as some of us are coming in from far away 11:06 <@Evilpig> pfffft information doesn't go on websites. 11:06 <@mog> and almost bought tickets for wrong date because they are retarded 11:07 <@Evilpig> benthemeek: ^ 11:07 <@mog> they being myself 11:23 < _NSAKEY> Evilpig: You're still welcome to create something yourself, as long as it isn't as ugly as the PN16 website. 11:24 < _NSAKEY> mog: I'll ping ben about it. 11:33 <@oddball> I think I've come to the conclusion that I'm just going to drive in every day for the con. Money is damn tight. :/ 11:34 < _NSAKEY> oddball: That's what I do. This year, especially, it makes zero sense for me to get a room. 11:34 < _NSAKEY> (I'm 5 minutes from the hotel) 11:35 <@oddball> I usually get a room. If nothing else, it means I don't have to pay as much attention to how much I drink or how late (oh shit, is that the sun?!) it is. 11:35 <@oddball> I wish I could think of another gun talk to do this year, but I just couldn't think of a topic. 11:36 < _NSAKEY> oddball: You could always split the cost with someone. 11:37 <@oddball> maybe. 12:08 <@benthemeek> mog: thanks, I will make it more prominent? 12:09 <@benthemeek> s/\?/\./ 12:22 < aestetix> vagina 12:58 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has joined #se2600 12:58 -!- mode/#se2600 [+o jb7od_] by ChanServ 13:01 -!- jb7od [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 240 seconds] 13:11 -!- jb7od [~jb7od@unaffiliated/jb7od] has joined #se2600 13:11 -!- mode/#se2600 [+o jb7od] by ChanServ 13:13 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 276 seconds] 13:13 < xray> Are you all running NetKotH at this year's preaknic. 13:16 <@oddball> I believe that's on the schedule. 13:16 < _NSAKEY> xray: I'm the not-so-benevolent dictator of netkoth this year. 13:17 < xray> Excellent. Some one on the DC404 channel wanted to know if you were having NetKotH this year. I'll let them know. Thanks. 13:17 < _NSAKEY> There are pictures of the carnage of set-up and testing on my phone that will likely slowly make it out via Twitter. 13:18 < xray> We are also looking into how IoT devices could be added to NetKotH. 13:18 < _NSAKEY> xray: If they run a web server on port 80 and can be defaced, that's all that's really required. 13:19 < _NSAKEY> However, if you're wanting to create something that's sort of a sandbox game that doesn't count towards points, I'm totally down with that as well. 13:19 < xray> We are looking other was we can do it if the device doesn't support a web interface. 13:19 < _NSAKEY> I was thinking of spinning up a couple of trivially ownable VMs and not making them score points. 13:19 < _NSAKEY> But, some IoT goodness works too. 13:19 < xray> Sort of a practice playground. 13:20 < _NSAKEY> If you've got scripts etc that aren't bundled in stock Kali, let me know so I can make sure they're downloadable from the scoring box. 13:22 < xray> We just started talking about it today and npcomp has a few devices he can sacrifice to the cause. I'll let you know how it goes. 13:22 < _NSAKEY> I've already rolled custom Kali ISOs to test. They're literally just the stock Xfce and LXDE installs with all the IRC clients included. 13:22 < _NSAKEY> I'll build new ISOs just before the con and toss them on the netboot box. 13:22 < _NSAKEY> xray: Sounds good. 13:23 < _NSAKEY> Don't worry if you guys can't figure out how to make the IoT stuff play well with netkoth. 13:23 < _NSAKEY> We can put it on the network anyway and let people have fun with it. 13:24 < _NSAKEY> Bonus points if one of you guys wants to incorporate random IoT stuff into a workshop. 13:24 < xray> I know I can't make it to phreaknic this year I don't know about npcomp. I'll check. 13:24 < xray> Whatever we figure out I'll chare. 13:24 < xray> s/chare/share/ 14:11 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has joined #se2600 14:11 -!- mode/#se2600 [+o jb7od_] by ChanServ 14:13 -!- jb7od [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 240 seconds] 14:16 -!- Netsplit *.net <-> *.split quits: @mog, @brimstone, _NSAKEY, scoob, NoFault1, Shadow404, @EnabrinTain, jerkit, @Mirage, Neoteric, (+28 more, use /NETSPLIT to show all of them) 14:16 -!- NotLarry_ [~NotLarry@wilpig.org] has joined #se2600 14:17 -!- Netsplit over, joins: aestetix, _NSAKEY 14:23 -!- giezr [~giezr@198.143.186.116] has joined #se2600 14:23 -!- eryc [~eric@unaffiliated/internetjanitor] has joined #se2600 14:23 -!- cyberanger [~cyberange@swissknife/adak/infocop411] has joined #se2600 14:23 -!- xray [~xray@dept-143-215-34-23.vpn.gatech.edu] has joined #se2600 14:23 -!- mog [~mog@fsf/member/mog] has joined #se2600 14:23 -!- jerkit [~toor@108.61.160.135] has joined #se2600 14:23 -!- Mirage [~mirage@ra.thehippo.net] has joined #se2600 14:23 -!- NoFault1 [~NoFault@174.49.12.150] has joined #se2600 14:23 -!- benthemeek [~Thunderbi@50-207-140-34-static.hfc.comcastbusiness.net] has joined #se2600 14:23 -!- ServerMode/#se2600 [+oooo eryc mog Mirage benthemeek] by adams.freenode.net 14:23 -!- Dolemite [~scott@24-158-112-64.dhcp.kgpt.tn.charter.com] has joined #se2600 14:23 -!- PigBot [~pigbot@wilpig.org] has joined #se2600 14:23 -!- robogoat [~robogoat@69.61.8.90] has joined #se2600 14:23 -!- Feltenix [~conrad@107-205-72-249.lightspeed.tukrga.sbcglobal.net] has joined #se2600 14:23 -!- crashcartpro [uid29931@gateway/web/irccloud.com/x-qwjxicbyerkdzytb] has joined #se2600 14:23 -!- opticron [~opticron@75.76.57.233] has joined #se2600 14:23 -!- Dagmar [~dagmar@unaffiliated/dagmar] has joined #se2600 14:23 -!- ServerMode/#se2600 [+oooo Dolemite Feltenix opticron Dagmar] by adams.freenode.net 14:23 -!- rootCIMv2 [~rootCIMv2@goochie.ga2600.com] has joined #se2600 14:23 -!- ChanServ [ChanServ@services.] has joined #se2600 14:23 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has joined #se2600 14:23 -!- am1n0 [~devnull@unaffiliated/am1n0] has joined #se2600 14:23 -!- Shadow404 [~shadow404@wilpig.org] has joined #se2600 14:23 -!- frsilent [~frsilent@unaffiliated/frsilent] has joined #se2600 14:23 -!- oddball [~oddball@c-98-240-105-54.hsd1.tn.comcast.net] has joined #se2600 14:23 -!- ServerMode/#se2600 [+oooo ChanServ jb7od_ am1n0 oddball] by adams.freenode.net 14:23 -!- TheDukh [~thedukh@2607:fcc8:ac80:d900:f929:a3aa:ad52:b91d] has joined #se2600 14:23 -!- rhia [~rhia@2601:601:4000:da79:82ee:73ff:fe64:1308] has joined #se2600 14:23 -!- k3ymkr [~KeyMaker@ec2-52-6-16-39.compute-1.amazonaws.com] has joined #se2600 14:23 -!- K4k [~K4k@unaffiliated/k4k] has joined #se2600 14:23 -!- Neoteric [~timball@anhedonia.sammy.net] has joined #se2600 14:23 -!- sicsscam [~sicsscam@24.154.70.234] has joined #se2600 14:23 -!- scoob [~scoob@fsf/member/scoob] has joined #se2600 14:23 -!- vaneck [~vaneck@section9.vaneckzero.com] has joined #se2600 14:23 -!- Guest81590 [~brimstone@noranti.in.the.narro.ws] has joined #se2600 14:23 -!- ServerMode/#se2600 [+o rhia] by adams.freenode.net 14:23 -!- EnabrinTain [sid11525@gateway/web/irccloud.com/session] has joined #se2600 14:23 -!- mode/#se2600 [+o EnabrinTain] by ChanServ 14:23 -!- EnabrinTain [sid11525@gateway/web/irccloud.com/session] has quit [Changing host] 14:23 -!- EnabrinTain [sid11525@gateway/web/irccloud.com/x-ctswdfxdtlgemlvb] has joined #se2600 14:23 -!- ServerMode/#se2600 [+o EnabrinTain] by morgan.freenode.net 14:24 -!- klixa [~klixa@unaffiliated/klixa] has joined #se2600 14:24 -!- mode/#se2600 [+o klixa] by ChanServ 14:25 -!- jb7od [~jb7od@unaffiliated/jb7od] has joined #se2600 14:25 -!- mode/#se2600 [+o jb7od] by ChanServ 14:25 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 255 seconds] 14:26 -!- EnabrinTain [sid11525@gateway/web/irccloud.com/x-ctswdfxdtlgemlvb] has quit [Ping timeout: 250 seconds] 14:34 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has joined #se2600 14:34 -!- mode/#se2600 [+o jb7od_] by ChanServ 14:37 -!- jb7od [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 265 seconds] 14:37 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] 14:55 -!- strages [sid11297@gateway/web/irccloud.com/x-votwnoixpngbndxo] has joined #se2600 14:59 -!- EnabrinTain [sid11525@gateway/web/irccloud.com/x-ihiqcfroihpdwstb] has joined #se2600 14:59 -!- mode/#se2600 [+o EnabrinTain] by ChanServ 15:05 -!- klixa [~klixa@unaffiliated/klixa] has joined #se2600 15:05 -!- mode/#se2600 [+o klixa] by ChanServ 15:12 -!- Guest81590 [~brimstone@noranti.in.the.narro.ws] has quit [Changing host] 15:12 -!- Guest81590 [~brimstone@unaffiliated/brimstone] has joined #se2600 15:12 -!- mode/#se2600 [+o Guest81590] by ChanServ 15:12 -!- Guest81590 is now known as brimstone 15:19 -!- rattle [041c8581@tor/regular/rattle] has joined #se2600 15:19 -!- mode/#se2600 [+o rattle] by ChanServ 15:20 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] 15:31 -!- D34dbug [~D34dbug@199.189.243.33] has joined #se2600 15:44 -!- klixa [~klixa@unaffiliated/klixa] has joined #se2600 15:44 -!- mode/#se2600 [+o klixa] by ChanServ 15:48 -!- D34dbug [~D34dbug@199.189.243.33] has quit [Quit: ZNC 1.6.3+deb1 - http://znc.in] 15:51 -!- rattle [041c8581@tor/regular/rattle] has quit [Ping timeout: 240 seconds] 15:58 -!- D34dbug [~D34dbug@199.189.243.33] has joined #se2600 16:07 -!- D34dbug [~D34dbug@199.189.243.33] has quit [Quit: ZNC 1.6.3+deb1 - http://znc.in] 16:14 -!- D34dbug [~D34dbug@199.189.243.33] has joined #se2600 16:15 -!- D34dbug [~D34dbug@199.189.243.33] has quit [Client Quit] 16:16 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] 16:16 -!- D34dbug [~D34dbug@199.189.243.33] has joined #se2600 16:20 -!- D34dbug [~D34dbug@199.189.243.33] has quit [Client Quit] 16:20 -!- rattle [b8994913@tor/regular/rattle] has joined #se2600 16:21 -!- mode/#se2600 [+o rattle] by ChanServ --- Log closed Tue Sep 13 16:27:52 2016 --- Log opened Tue Sep 13 16:28:01 2016 16:28 -!- Evilpig [~wilpig@wilpig.org] has joined #se2600 16:28 -!- Irssi: #se2600: Total of 36 nicks [16 ops, 0 halfops, 0 voices, 20 normal] 16:28 -!- mode/#se2600 [+o Evilpig] by ChanServ 16:28 -!- Irssi: Join to #se2600 was synced in 11 secs 16:28 -!- _NSAKEY [~nsa@backdoored.equipment] has joined #se2600 16:28 -!- aestetix [~aestetix@phalse.2600.com] has joined #se2600 16:28 -!- NotLarry [~NotLarry@96.80.184.101] has joined #se2600 16:28 -!- mode/#se2600 [+o NotLarry] by ChanServ 16:34 -!- TheDukh [~thedukh@2607:fcc8:ac80:d900:f929:a3aa:ad52:b91d] has quit [] 17:00 -!- fie [~fie@ip72-206-22-57.fv.ks.cox.net] has joined #se2600 17:11 -!- fie [~fie@ip72-206-22-57.fv.ks.cox.net] has quit [Quit: Leaving] 17:16 -!- jb7od [~jb7od@unaffiliated/jb7od] has joined #se2600 17:16 -!- mode/#se2600 [+o jb7od] by ChanServ 17:17 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 244 seconds] 17:26 -!- TheDukh [~thedukh@2607:fcc8:ac80:d900:9027:8f2c:c3a5:c45e] has joined #se2600 17:38 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has joined #se2600 17:38 -!- mode/#se2600 [+o jb7od_] by ChanServ 17:39 -!- jb7od [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 260 seconds] 17:40 -!- xray [~xray@dept-143-215-34-23.vpn.gatech.edu] has quit [Quit: Leaving.] 17:41 -!- xray [~xray@c-73-43-4-206.hsd1.ga.comcast.net] has joined #se2600 17:59 -!- jb7od [~jb7od@unaffiliated/jb7od] has joined #se2600 17:59 -!- mode/#se2600 [+o jb7od] by ChanServ 18:01 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 248 seconds] 18:03 -!- klixa [~klixa@unaffiliated/klixa] has joined #se2600 18:03 -!- mode/#se2600 [+o klixa] by ChanServ 18:11 -!- jb7od_ [~jb7od@unaffiliated/jb7od] has joined #se2600 18:11 -!- mode/#se2600 [+o jb7od_] by ChanServ 18:12 -!- jb7od [~jb7od@unaffiliated/jb7od] has quit [Ping timeout: 240 seconds] 18:18 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] 18:47 -!- xray [~xray@c-73-43-4-206.hsd1.ga.comcast.net] has quit [Quit: Leaving.] 18:48 -!- klixa [~klixa@unaffiliated/klixa] has joined #se2600 18:48 -!- mode/#se2600 [+o klixa] by ChanServ 18:57 -!- xray [~xray@c-73-43-4-206.hsd1.ga.comcast.net] has joined #se2600 19:02 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] 19:16 <@Dagmar> Jesus this shouldn't work but let's see 19:17 <@Dagmar> I just su'd up on my phone and did a `mount -o remount,rw /system`, _renamed_ the su binaries to 'nianticfail' and then -o remount,ro again 19:19 <@Dagmar> You are shitting me 19:23 <@Dagmar> That fucking WORKED 19:41 <@brimstone> yup, sure 19:46 <@Dagmar> This has to be the most pathetic "security check" ever 19:54 -!- klixa [~klixa@unaffiliated/klixa] has joined #se2600 19:54 -!- mode/#se2600 [+o klixa] by ChanServ 19:55 <@Dagmar> I'll have to look into what the fuck they're doing there, because before I rebooted I had the "#" prompt in my notification bar when I ran Pokemon GO because apparently it attempts to get fuckin' root privs or something and fails 19:56 <@Dagmar> So, I may have some "choice words" about their method of checking. 19:56 <@Dagmar> Phone got real boggy while it was doing that which suggests to me that they caused some kind of spinlock 20:08 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] 20:43 <@brimstone> there was a xposed to hide su 20:43 <@brimstone> does xposed work on cm13 yet? 21:00 <@Dagmar> Probably 21:01 <@Dagmar> Xposed is the thing Niantic *should* be looking for and blocking phones that have it 21:01 <@Dagmar> From a cursory examination of the stuff that's out there, a _great many_ spoofers are relying on Xposed 21:06 <@Dagmar> now i have to figure out wtf these fools who were talking about SafetyNet were on about 21:07 <@Dagmar> Maybe there was a 5% rollout of a more strict check 21:07 <@Dagmar> For sure this thing has been sitting here next to me for awhile now and hasn't carped a bit 23:01 -!- klixa [~klixa@unaffiliated/klixa] has joined #se2600 23:01 -!- mode/#se2600 [+o klixa] by ChanServ 23:56 -!- klixa [~klixa@unaffiliated/klixa] has quit [Quit: if I were a bot, why would i be wearing this hat? lolz] --- Log closed Wed Sep 14 00:00:11 2016