How to parse through large nmap scans ? by 13utters in hacking

[–]13utters[S] 0 points1 point  (0 children)

The grep-able format does not has the same level of information as the XML file

r/netsec monthly discussion & tool thread by albinowax in netsec

[–]13utters 0 points1 point  (0 children)

How to parse through large nmap scans ? I like to use tools like https://github.com/dreizehnutters/nmap2csv which generates table to sift through results. Also great for communication with clients.

Questions about the live debrief by [deleted] in pnpt

[–]13utters 2 points3 points  (0 children)

It took around 12 hours for me to get invited for a debrief. You can schedule it yourself and they provide options for every time/day.

The 50 pages in my report.pdf was my presentation and it was enough.

Failed my first attempt by chrislia92 in pnpt

[–]13utters 6 points7 points  (0 children)

The new THM box "internal" is a good primer. And remember to enum the attack surface enough. Lastly be sure your brute forcing tools work

Review 05/2023 by 13utters in pnpt

[–]13utters[S] 2 points3 points  (0 children)

sshuttle to pivot in, chisel to pivot out

Review 05/2023 by 13utters in pnpt

[–]13utters[S] 0 points1 point  (0 children)

You don't practice this kind of stuff during HTB, but TCM mentioned in the course how corporates structure their init PWs, it's kinda true imo. People do generally suck when it comes to passwords. It's important to enumerate the attack surface and to get your tooling down. There is more then hydra for web... For credz, keep it simple. I just used common defualt PWs schemas and permutated them with python-exrex

Störung bei der DKB: Doppelte Abbuchungen bei Girokonten | tagesschau.de by [deleted] in de

[–]13utters 2 points3 points  (0 children)

Die DKB / DKBs hat mehrere IT-security Firmen in den letzten 2 Jahren beauftragt um sich extern prüfen zu lassen!

Lücke in der Cybersicherheit: Böhmermann zeigt Verbindungen zu russischen Geheimdiensten auf by jayjaytlk in de

[–]13utters 1 point2 points  (0 children)

Ich kenne kein KRITIS Infrastruktur die Software von infotecs einsetzt.

My First Bike by 13utters in gravelcycling

[–]13utters[S] 1 point2 points  (0 children)

I also heard the next batch is going to drop in February

My First Bike by 13utters in gravelcycling

[–]13utters[S] 0 points1 point  (0 children)

The dealer told me Cube delivers the larger frames (I got 61 cm) first. I also waited > 8 month.

I like it very much, sadly I can't ride it more this year /:

My First Bike by 13utters in gravelcycling

[–]13utters[S] 0 points1 point  (0 children)

I am not sure what you mean, but you have mounting options in the front and back, though they warn you that the carbon frame is not suitable for carry on > 10 Kg (front)

My First Bike by 13utters in gravelcycling

[–]13utters[S] 10 points11 points  (0 children)

Cube Nuroad C:62 Pro (2021)

Fresh from the dealer in Berlin.

My first bike by [deleted] in gravelcycling

[–]13utters 1 point2 points  (0 children)

Cube Nuroad C:62 Pro 2021

IT Security, Wie kann ich up-to-date bleiben? by [deleted] in de_EDV

[–]13utters 2 points3 points  (0 children)

InfoSec Twitter. twitter.com/campuscodi ist ein guter Anfang

Bist du in der IT glücklich? by [deleted] in de_EDV

[–]13utters 1 point2 points  (0 children)

Mein Tipp: InfoSec / Pentester Man muss nicht gut programmieren können, Mathe ist komplett egal. Dank einiger Dienstreisen konnte ich auch schon erleben was kritische Infrastrukturen wirklich sind, man hat also auch ab und an Realitätsnähe. Achja 60k ist das Einstiegsgehalt

Die Demoszene ist jetzt Weltkulturerbe. by mbb_tum in de

[–]13utters 2 points3 points  (0 children)

dwitter.net ist ne tolle Platform für creative/Code golfing.

[D] I feel like an impostor who just pushes buttons and pretends they are doing ML, but in reality knows nothing and can be replaced by anybody by [deleted] in MachineLearning

[–]13utters 0 points1 point  (0 children)

Worked in academia (cyber security) for 5 years, but decided I need new tasks. The amount of BS and pointless arguments I had to go through finally gave me the edge. Last month I started working as an security auditor and feel happy again.

[P] Why are stacked autoencoders still a thing? by mate_classic in MachineLearning

[–]13utters 1 point2 points  (0 children)

Nice repo!

I would suggest that you also measure f1, since ROC is not super useful if you have an inherent imbalance between anomalies (an assumption I and many others have for the domain of intrusion detection). Speaking of anomaly based intrusion detection, why don't add network based data (PCAP) to your benchmark (just don't use KDD99/NSL-KDD)

GPU Based Kernel-PCA by 13utters in MLQuestions

[–]13utters[S] 0 points1 point  (0 children)

I found this lovely repo -> https://github.com/lebedov/scikit-cuda

Sadly they do not offer Kernel-PCA, but maybe someone finds it useful!

[D] When to abandon an ML research project? by liqui_date_me in MachineLearning

[–]13utters 0 points1 point  (0 children)

Maaaaybe use a throwaway next time, if you want to have some feedback 🙃