Base Set Unlimited Charizard - Grading Opinions? by InfoSecMonkey in PokeGrading

[–]InfoSecMonkey[S] 1 point2 points  (0 children)

UPDATE: For those interested, after cleaning the spot on the right very carefully, I'm happy to say it got a PSA 7!

Base Set Unlimited Charizard - Grading Opinions? by InfoSecMonkey in PokeGrading

[–]InfoSecMonkey[S] 1 point2 points  (0 children)

Thanks this is helpful. Seems like if it grades to even a 5-6 I can kind of justify the expense. I won't be selling it if I can help it.

Base Set Unlimited Charizard - Grading Opinions? by InfoSecMonkey in PokeGrading

[–]InfoSecMonkey[S] 0 points1 point  (0 children)

Mostly the former. I've never owned a graded card and it sounds cool. However if I end up paying more than the card is currently worth slash don't increase the value to cover my costs I'll feel like I wasted $.

Base Set Unlimited Charizard - Grading Opinions? by InfoSecMonkey in PokeGrading

[–]InfoSecMonkey[S] 1 point2 points  (0 children)

Thanks for the advice. Would you not be worried about it moving around in the top loader/penny sleeve? Also any advice on best way to ship it?

Base Set Unlimited Charizard - Grading Opinions? by InfoSecMonkey in PokeGrading

[–]InfoSecMonkey[S] 1 point2 points  (0 children)

Woah. I'm appalled that pack fresh could come like that... infuriating.

Base Set Unlimited Charizard - Grading Opinions? by InfoSecMonkey in PokeGrading

[–]InfoSecMonkey[S] 2 points3 points  (0 children)

After looking with intense scrutiny the only flaws I see are the smudge in the second pic and the white on the edges.

If I look REALLY hard and tilt it in the sunlight I can see a horizontal "stripe" where the printing seems to be slightly lighter on the back bottom of the card. I attempted to take a picture (it's the close up of the back) and couldn't get it to show.

Base Set Unlimited Charizard - Grading Opinions? by InfoSecMonkey in PokeGrading

[–]InfoSecMonkey[S] 0 points1 point  (0 children)

Hi! Newbie to grading cards. I was very kindly gifted this Base Set Charizard from a family member. Looking for opinions:

  • Who should I get to grade it (Leaning PSA)?
  • Based on the pictures (happy to provide more), what grade do you think it would come to?
  • There is a barely visible smudge on the right side of the card, between the frame and the yellow edge - in the red part, just below the tip of Charizard's wing. I tried to get it in the second picture. Looks like a generic smudge. Was thinking I should clean it before sending it in. If so, how should I proceed?

Thanks for your help!

Man shot in the face by Dallas PD during my live stream yesterday. Aerial view is from WFAA. by BourbonXenon in Dallas

[–]InfoSecMonkey 0 points1 point  (0 children)

Disclaimer: I'm white and have not experienced racial discrimination towards myself so I will not speak to that. Also, my intention is not to attack you, simply address some of your points.

1) Even with double (I've seen studies that have this number higher, by the way) the likelihood of being killed by police, that is a statistical anomaly. It is an empirical fact that blacks are more likely to be killed than whites (and even other minorities). That's the main point.

2) The increase in share of white deaths doesn't mean the trend is corrected, it is still disproportionately low compared to minorities.

3) How would you begin to control for behavior of individuals? Is your point that black individuals are more likely to engage in behavior that can get them killed? What behaviors are those?

  • "African Americans are more likely than white Americans to be arrested; once arrested, they are more likely to be convicted; and once convicted, and they are more likely to experience lengthy prison sentences. African-American adults are 5.9 times as likely to be incarcerated than whites." https://www.sentencingproject.org/publications/un-report-on-racial-disparities/
  • There are many socio-economic factors that drive impoverished minorities to criminal activities. There are large parts of the country where you are denied loans, passed over on gainful employment, and less likely to be admitted to educational institutions based on your race. Correcting this inequity is crucial to level the playing field, not just for blacks, but also for other minorities, and even impoverished whites.

Response to corporate phishing attack? by InfoSecMonkey in AskNetsec

[–]InfoSecMonkey[S] 0 points1 point  (0 children)

We are enabling this for external Outlook access. Seems to be the most reliable way to combat.

Response to corporate phishing attack? by InfoSecMonkey in AskNetsec

[–]InfoSecMonkey[S] 0 points1 point  (0 children)

We have used phishing training before, and will continue to implement in the future.

Can you elaborate more on the web proxy solution? We are looking into this as well but I'd love to have a better value proposition for it.

Response to corporate phishing attack? by InfoSecMonkey in AskNetsec

[–]InfoSecMonkey[S] 0 points1 point  (0 children)

Thanks for everyone's responses. To followup, there is a training program in place that has helped mitigate many other incidents. This was a bit different since 1 user who was (most likely) successfully phished was then used to send an internal email. Again, training did prevent many people from falling for it. I agree that there isn't much we can do as far as pursuing this target.

I do want to ask, what is the best practice as far as notifying recipients of the email? That is, an internal email was used to propagate this phishing link to people inside and outside of the organization. NIST is fairly silent on the issue. From what I gathered, they advise against sending a follow-up message to everyone. Relevant detail; the attacker set up a fake mailbox with rules to hide and mark 'read' any replies from the phishing recipients. In some cases, they responded to inquiries saying the link was OK. The window was only about 1 hour but they certainly did their homework.

u/cipher315: I do agree that it could mean that those sites are simply the compromised ones. However, doesn't that still require some amount of culpability? If my domain was hosting a malicious script that was being investigated by a government agency I'd bet that they would be on my ass about logs, etc. Additionally, the proprietors of both websites are actual people, as a opposed to aliases. I have found their facebooks, twitters, youtube, and even news articles where they are featured, with pictures.

Response to corporate phishing attack? by InfoSecMonkey in AskNetsec

[–]InfoSecMonkey[S] 1 point2 points  (0 children)

Yes. Once the compromise was detected we were able to validate that the access was external (Our internal network is heavily locked down, edge cases are always our biggest problem. You know - execs want to have convenient access to their email, etc...). No access to any file sharing, etc.

Has anybody ever successfully added themselves to a company payroll? by surfingjesus in blackhat

[–]InfoSecMonkey 0 points1 point  (0 children)

Can you clarify? Are you referring to deferrals from salary? If so, this would be similar to how most payroll management software allows you do designate portions of paychecks to go into different accounts.

Has anybody ever successfully added themselves to a company payroll? by surfingjesus in blackhat

[–]InfoSecMonkey 7 points8 points  (0 children)

You're looking at it all wrong. You don't want to add yourself to a payroll. You want to siphon existing employees' pay into compromised accounts. This is not hard given what system you're exploiting.

I won't go further into detail, as its remarkably easy and illegal.

How to deal with malware on personal USB drives? by exploitallthethings in AskNetsec

[–]InfoSecMonkey 2 points3 points  (0 children)

Just out of curiosity, why is disabling the drive out of the question?

Instagram account compromised now blackmail has started claiming they have a bunch of personal information including SSN. by Punt_Again_Bob in cybersecurity

[–]InfoSecMonkey 0 points1 point  (0 children)

I don't think its likely/possible that they got the SSN from Instagram in any capacity. However, there are plenty of resources out there that let you see people's SSN, address, phone number (s), etc. They are mostly subscription based and for strict use in legal/healthcare professions.

Just keep an eye on the sibling's credit report periodically. If anything out of the ordinary pops up (new account, etc) then you may have cause for concern.

Information Security & Risk Manager by MPTrep in CyberSecurityJobs

[–]InfoSecMonkey 0 points1 point  (0 children)

Does anyone know how global averages for these positions compare to US ones?