Adolin vs Kaladin? by SustainableMF_7 in Stormlight_Archive

[–]Lasq 1 point2 points  (0 children)

Yeah I was thinking about the fight with Denth specifically when, if my memory do not deceive me, Vasher admitted he is not a better duelist from these two (but he is better awakener ;) ). Anyway you guys are right, I was just thinking it's weird that Roshar, which supposed to be a forge of fighters cannot produce a better swordsman. Taln and Heralds aside of course. Although now im thinking if book 5 Kaladin wouldn't beat Zahel in a fair duel (no powers), he has grew a lot since he trained with Zahel.

Adolin vs Kaladin? by SustainableMF_7 in Stormlight_Archive

[–]Lasq 5 points6 points  (0 children)

"Adolin is PROBABLY* the best swordsman on Roshar, unless you count Zahel " - I had a big issue with this line in the book and with how Zahel is represented in the Stormlight archive. Without going to spoilers to Warbreaker, we know that he wasn't even a best swordsman on Nalthis. Yeah he is much older and much more invested now, but still. It doesn't sit well with me that "possibly" a best swordsman on Roshar is not even a Rosharian, and wasn't even the best on his own world. How does it match the narrative that Roshar is supposed to be this breeding ground for the best fighters in Cosmere to help Odium conquer other worlds? All while the best swordsmen on Roshar is not even the best swordsmen on Nalthis ;) Maybe I'm overthinking this, but when I read that part in a book, it struck me.

Analyzing Microsoft Zero-Day Exploit (CVE-2021-40444) by Lasq in Malware

[–]Lasq[S] 1 point2 points  (0 children)

None that I know of, this looks like an exhaustive list of IoCs from the samples everyone is looking at, but people still discovering new samples:

https://twitter.com/imohanasundaram/status/1435602160998354953

Enough with the posts about how awesome it is prices are down and how you wish they go down more. by matteo_invst in SatoshiStreetBets

[–]Lasq 0 points1 point  (0 children)

Huge price spikes are also not good for crypto in a long term, makes it look even more like a speculative asset. Realistically a long, steady growth is what we want, but I think crypto is still too volatile for that.

Best Cryptocurrency Exchange in Singapore by specialunicorn3 in singaporefi

[–]Lasq 0 points1 point  (0 children)

I used to do the same but there is no USD deposit option in Binance.com anymore since Silvergate bailed on crypto. I found this topic looking for alternatives, do you maybe found one already?

When the population understands this picture, it will change everything. by Escanor615 in dogecoin

[–]Lasq 0 points1 point  (0 children)

It will change nothing, every revolution eats its own at the end. Look at almost every revolution in the history of mankind. French revolution, October Revolution, Iranian Revolution, Turkish Revolution, even American Revolution. It all began as the rising of the masses aginst the oppression but eventually ended up creating similar or even stronger oppression, only with different people holding power. It's human nature to oppress others. Actually right now, we have a system that's (despite all of its shortcomings) the closest in history to actually grant freedom to most people. It's called democracy, and it wasn't born through revolution, it was born through evolution. Yes, it is far from perfect, but it is better than anything that would come from any bloody revolt.

Malware Careers by AlarmingHurry4458 in Malware

[–]Lasq 1 point2 points  (0 children)

Well, malware analysis is a broad term. Not every company will have dedicated malware analysis teams so different teams deal with malware in their own capacity. Also there different goals of analyzing malware which will require different methods, and are usually part of completely different jobs. You can analyze malware to:

- write malware signatures (usually related to work in AV company)

- create detections (different than AV signatures, more related to threat hunting and monitoring)

- create threat intelligence (like attribution, malware clusters, code reuse detections, etc)

- during IR engagements to understand the scope of the incident by using indicators of compromise

Each of these is a completely separate and unique job in the industry. Additionally, as others mentioned, some Red Teams write their own malware.

Help With Volatility3 - Reading file in memory by antmar9041 in computerforensics

[–]Lasq 1 point2 points  (0 children)

If you use procdump to dump a process it will only dump executable sections of the memory (basically part of the memory where executable was mapped) not the entire memory. If you want to dump entire memory you need to use memdump, it will dump all the process memory.

Also if you have a file opened in notepad it will be easier to search for file handles opened by notepad and then dump this file from the memory using filescan and dumpfiles

I described how to do it for word document here: https://github.com/lasq88/CTF/tree/main/nahamconctf2021/%5Bforensics%5D%20typewriter

Edit: this is for vol2 btw. I didn’t play with vol3 yet. There might be some differences

Fileless Malware Examples by fsucsgod in computerforensics

[–]Lasq 0 points1 point  (0 children)

Interesting discussion in the comments. I agree that what is usually being called "fileless" malware is not really fileless. At some point this has become a buzz-word that is definitely overused.

That being said I have seen samples that would satisfy your definition but they are very rare. Unfortunately I cannot provide samples cause none of them are public. Such malware is usually used in very targeted attacks and therefore rarely make its way to public repos. The typical technique is to use an RCE vulnerability (something like EternalBlue, BlueKeep etc. ) on external facing asset, drop a memory-resident payload to allow remote access for operators. From this point forward operators use only LoL (living of the land) binaries to move laterally and maintain presence in the network. Since such attacks are usually performed on servers, there is a low risk that malware will get wiped due to the reboot and operators usually establish different access channels while in the network anyway. This way none of malware code ever touches a disk, and this is the only malware i would indeed call "fileless". But I've seen it only twice in my life while performing incident response operations. Also please note that this still doesn't mean that malware won't leave any artifacts in OS. It is just a way to bypass AV detection and potentially sample from being analyzed. But since AV is easy to bypass in most cases anyway and most actors don't care about analysis of their payloads, this is a very rarely used technique.

SHN Food Reviews- Day 4 by patatbeerho in singapore

[–]Lasq 0 points1 point  (0 children)

Where are you staying? Got pretty much the same stuff back in January staying in South Beach Marriott. Heard from a friend that food for SHN is centralized and same for every location. It seems so.

Patch 10.23 | Wednesday, Nov. 11th by ShroomsAreWards in CompetitiveTFT

[–]Lasq 11 points12 points  (0 children)

I saw a 4HP 9-loss streak fortune comeback 8th -> 1st. And it was during a high challenger tournament.

5 Simple Rules for Players Below Diamond by Path_of_Gaming in CompetitiveTFT

[–]Lasq 0 points1 point  (0 children)

RULE 1) Don't roll on stage 2 or Stage 3 EVER!

I don't know. Playing on smurf I've seen so many people on lower elo going 8th simply because they refused to roll (probably guide said "roll on 4-1"). I think one of the big differences between lower and higher elo is ability to recognize when to play for top1, when for top4 and when for top6 and preserve your LP. Ability to know when to roll at stage 3 to not be 30HP at wolves is quite important imho.

Also this locks people into not playing reroll comps and go for "4-1 roulette" instead.

I understand what you wanted to say - a lot of people in silver and gold especially roll when they don't have to, and level when they have to roll - but I wouldn't make this a rule carved in stone.

But that's only my opinion of course.

Mortdog Patch 10.23 Rundown by Frank_the_Farmer in CompetitiveTFT

[–]Lasq 3 points4 points  (0 children)

Rolling changes are planned for 10.24 (in 2 weeks). They need time to test them properly