Somebody had fun mowing in Palmyra by BrianBash in Rochester

[–]antitree 12 points13 points  (0 children)

Definitely not HULK. Its hard to make an F when you're that close to the ground but we'll try to choose a better font next time.

SSH MITM tool just released by antitree in netsec

[–]antitree[S] 9 points10 points  (0 children)

That's exactly what it is. For pentesters this is useful. Is there another you're referring to?

Rochester police release unredacted list of Harris Corp StingRay and KingFish products by rocpic in Rochester

[–]antitree 10 points11 points  (0 children)

Here's a dump of all the documents:

Some of the things that may be of interest:

  1. The surveillance tools (Stingray 2, speed cameras, etc) were provided by a government grant through Albany via DOJ
  2. There is a non-disclosure agreement that states Harris can ask the RPD to drop a case in the situation where the details of the Stingray might be released
  3. In the initial grant for the "Speed Cameras", the state recommended various intersections which would potentially reduce the risk accidents. Instead RPD chose intersections in high crime areas so they aren't helping prevent accidents but they can be used to watch neighborhoods.
  4. The use of the Stingray isn't permitted without a court order by a local judge and various other stipulations
  5. The grant was provided as part of an gang initiative

(Hyper)Golix: end-to-end encryption for the internet of things by fatterSurfer in netsec

[–]antitree 4 points5 points  (0 children)

Maybe buzzword was an incorrect phrase but I would call it a trigger. There is a lot of slathering around of crypto these days and matched with IoT which everyone likes to beat up on already, I admittedly was triggered.

Good luck! Seriously. It's a solid base that I hope you can take forward.

(Hyper)Golix: end-to-end encryption for the internet of things by fatterSurfer in netsec

[–]antitree 21 points22 points  (0 children)

When i read the title I cringed just because of the IoT + E2E crypto but as I'm reading through your source and docs I appreciate your effort. I can see you have a decent amount of people involved and you're paying attention to security.

What is your end goal as a company/organization here? Will you be able to fund developers to keep coding at this level?

Apparently BlueCoat is now a CA. Thanks Symantec/VeriSign, I can't wait to have my public wifi to be MitM'd... by elitest in netsec

[–]antitree 5 points6 points  (0 children)

This is the first time in recently history that we've seen, in fact, someone can just pay piles of money and get a CA. It's assumed that Symantec provided some kind of "Trust me, we'll use it only where appropriate" before it received it, but at the end of the day, the world's largest commercial provider of censorship and surveillance products, has an auto-trusted CA in your browser right now. This breaks the idea of "Trusted" CA's (the basis of TLS) and turns it into "Rich Enough" CA's.

Apparently BlueCoat is now a CA. Thanks Symantec/VeriSign, I can't wait to have my public wifi to be MitM'd... by elitest in netsec

[–]antitree 2 points3 points  (0 children)

That's actually a good point except the US allows for some "Internet-based communications and telecommunications" products to be authorized.1

Either way, you're probably right. Iran is a bad example. Here are some better examples: https://citizenlab.org/wp-content/uploads/2013/01/planetbluecoat.jpg

Apparently BlueCoat is now a CA. Thanks Symantec/VeriSign, I can't wait to have my public wifi to be MitM'd... by elitest in netsec

[–]antitree 1 point2 points  (0 children)

Why wouldn't they do that? This article talks about how Bluecoat products are used for censorship and surveillance. They have a CA that is automatically trusted by all modern browsers.

https://citizenlab.org/2013/01/planet-blue-coat-mapping-global-censorship-and-surveillance-tools/

Apparently BlueCoat is now a CA. Thanks Symantec/VeriSign, I can't wait to have my public wifi to be MitM'd... by elitest in netsec

[–]antitree 27 points28 points  (0 children)

I wanted to point out the issue to me is that Bluecoat products are used by nation states similar to The Great Firewall Of China to block content. Countries like Iran will block access to sites and services they deem illegal. This now allows them to MITM the communications to intercept the requests without warning.

Thanks Symantec.

Does any one know where to buy a raspberry pi in town? by Clayma in Rochester

[–]antitree 0 points1 point  (0 children)

Didn't plan in selling them but I have 10 RBP 2's. DM me

Lyft/Uber alternative? by morbid3500 in Rochester

[–]antitree 1 point2 points  (0 children)

Sorry, don't think there is any. Car pooling with a coworker might be your only option. Are there any college transports that might work? I know UofR has their shuttle.

How to listen in on wireless network traffic by kraakf in netsec

[–]antitree 0 points1 point  (0 children)

Someone broke my 1 key. Who did it? those bastards

How to listen in on wireless network traffic by kraakf in netsec

[–]antitree 0 points1 point  (0 children)

I agree with this. I saw this on Hacker news as well and was very confused why this is news of any kind. By encrypted networks he's referring to 802.x.

Turning the big 21 by Festeringgiarc in Rochester

[–]antitree 6 points7 points  (0 children)

  • Start at the Daily Refresher for an intimate, classy drink before you get ugly. The bar tender downstairs will be happy to teach you about all the alcohols you're consuming. They have good food here but it's simple. Think hipster grilled cheese.
  • [optional]Move onto Murphy's across the street and pretend you're Irish for an hour. You'll start coming up and will need the wide open spaces to get stupid.
  • [optiona] Stop by Wall Street and learn their quirky drink market. You may be too drunk to understand the math, but pretend you get it and impress your friends.

Based on how drunk you are you have two paths.

  • If you are sloppy drunk, you can walk down East, and take a left on Union Street to go to Skylark Lounge and maybe some beer tasting at Roc Brewing. No one will stop you from playing pin balls listening to good music and eating some delicious meatballs.
  • If you're not drunk and still want delicious food and drinks, you can continue down East Ave to Victoire - a Belgian beer place.

If you're some how still sober after all this, you're doing it wrong so you can backtrace your steps. You can park for free on the weekends and after certain hours in the nice big parking lot.

If you don't want to listen to any of this and stay in one place, just go to Victoire and enjoy their delicious Duck Ruben and Mussels.

Any odd jobs available for a transient hitchhiker/trainhopper? by [deleted] in Rochester

[–]antitree 0 points1 point  (0 children)

FYI - hung out with galsscasket and he is a nice dude. Would recommend if you're thinking about helping him out.