A social experiment to see what happens when the internet votes in realtime to control an actor. This might end in tears...
humor  social  psychology  experiment  interent  crowdsourcing  control  command 
october 2018 by asteroza
stealth/odd: optimized dd
dd using CPU specific pipelining and mmap tricks to speed up copies
linux  CLI  disk  copy  command  optimization  high  performance 
may 2018 by asteroza
Oh god, smuggling C2 commands in TLS cert subject names. I suppose it should be possible to be bidirectional using both server and client selfsign certs....
covert  channel  TLS  SSL  certificate  subject  name  C2  command  security  hacking  pentesting 
february 2018 by asteroza
using audio not recognized by humans but recognized by voice recognition systems to execute commands in voice command systems. basically embedding trigger words in songs. kinda evil, such as disabling airplane mode...
security  research  adversarial  audio  voice  command  recognition  embedded  trigger 
february 2018 by asteroza
Logging Like A Lumberjack | Context Information Security
Why logging is important and how to best configure your systems and various tools-of-the-trade to semi-automate it.
security  hacking  pentesting  logging  command  record 
november 2017 by asteroza
Instegogram: Leveraging Instagram for C2 via Image Steganography | Endgame
Using social media image hosting with steganographically encoded C2 commands embedded in images for fun and profit...
malware  C2  command  control  remote  SNS  social  media  image  hosting  steganography  security  research  pentesting  hacking  Delicious 
october 2016 by asteroza
ripgrep is faster than {grep, ag, git grep, ucg, pt, sift} - Andrew Gallant's Bl...
epic documentation why ripgrep is a great grep alternative (for UTF-8, not true unicode per se...)
grep  alterantive  high  performance  text  search  command  line  UTF-8  Delicious 
september 2016 by asteroza
Command line process auditing
This will leave at least some breadcrumbs on obscure script execution...
windows  command  line  execution  parameter  flag  logging  auditing  security  hacking  pentesting  Delicious 
may 2016 by asteroza
[solved] mimas v2 programming in linux... | Page 2 | Numato Lab
So Ubuntu modemmanager arbitrarily probes new serial devices with AT commands to detect if they are modems or not, screwing other devices that don't expect that at connection start.
ubuntu  bug  serial  device  modem  AT  command  probe  Delicious 
april 2016 by asteroza
dthree/cash: Cross-platform Linux without the suck
Interesting, but you could get yourself into all kinds of trouble if you aren't careful...
javascript  shell  command  emulator  opensource  software  library  Delicious 
february 2016 by asteroza
Use certutil from a basic command line to decode a base64 payload, no powershell required
security  pentesting  tips  tricks  command  line  certutil  powershell  base64  encoding  Delicious 
july 2015 by asteroza
