OMG OMG tweeps this is lulzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzz
TRAAAAAAAAAAAAAACCCCCCCCCCCKSSSSSSSSSSSSSSS (WTF this is pitches not tracks!)
a track should be a theme e.g.:
Tack 1 - Cyber Leadership
Track 2 - In the Cyber Trenches (Cyber Defence)
Track 3 - PURSUE (taking down teh ciber crims!)
not whatever the fuck this list is #LULZ#SCAMMY
This is a JOKE confernce isn't it... LOL
Look at this!
who wants to have an ad-hoc hacker conference? ;)
HOW DARE THEY USE WEAK CIPHERS!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
• • •
Missing some Tweet in this thread? You can try to
force a refresh
there seems to be some fun debate about Edge and it's storing all the passwords in RAM in clear text, vs chrome which stores the passwords upon use (e.g. one at a time) in RAM....
but chrome also stores the passwords in an SQL Lite file and the keys are protected by DPAPI!
Guess what a userland process can do?
It can get the keys! It can decrypt! Now you might be thinking... that's not true.... so let's see: to D LAB!
ok let's make sure I have a user! this is a good starting point :D
Firstly the TP-Link to show how poor their defaults are (on most of their kit I find ITW)
You can crack the key space here in 4 minutes on a laptop with not mega GPU
One of the WiFi participants managed to capture the key material and then crack the hashes from the TP-link so they won some swag! (A shadow router and a tp link usb WiFi adaptor #ironic)
What didn’t work during the workshop was capturing a hash from the WPA2 PSK network on the UniFi gear…. And I don’t know why!
So time to investigate!
ok so to explain the UNIFI setup a bit:
we have a Unifi Express 7! This has an ethernet WAN port. So because we want to have this as a mobile lab, we combine it with a GL-iNet Router via ethernet then we can use that router to get an internet connection (either WIFI repeater, Ethernet, USB 4G Modem)
(we could use other kit but this works well)
so here we have the GL-AXT1800 in WIFI repeater mode! so now are UNIFI router has internet access!
so here we have the Unify Console dashboard!
Next step let's go check out the wireless networks!
What could happen when you ban or put barriers in front of things on the internet?
Surely nothing bad could happen, because you are restricting of banning the bad thing right! *inserts Anakin/Padme meme*
#OnlineSafetyAct #UK
So let's look at the scenario:
Controls have been placed in front of adult content sites (where the visitor is 'from the UK')
Introducing the Online Safety Act (a UK Law which applies to UK Citizens/UK Organisations) - sitting in a global internet! (that's important to recognise)