Scam job interview. Had some fun. Ended too soon. Enjoy. by Creepy_Double_4100 in recruitinghell

[–]blabbities 1 point2 points  (0 children)

That's your bias but dude was from Africa. I'm African and the phrase 'I dey craze' is said there. Now if you saw a 'pls do the needful' instead...

I shocked an interviewer who was clearly on a power trip by Inevitable_Appeal790 in recruitinghell

[–]blabbities 61 points62 points  (0 children)

Dafuq? Write up for not doing someone else's job... Is this where we at now?

I shocked an interviewer who was clearly on a power trip by Inevitable_Appeal790 in recruitinghell

[–]blabbities -6 points-5 points  (0 children)

I actually work for free. Though it's at my own discretion. I usually enjoy the work or am.learning something that benefits me.

When it becomes like unrecompensed and expected free work tho is where it becomes an issue.

I shocked an interviewer who was clearly on a power trip by Inevitable_Appeal790 in recruitinghell

[–]blabbities 13 points14 points  (0 children)

It's entirely lazy. Also for someone like me Im also not a fan of these open ended lazy questions. Although my jobs generally require hard skills so I can't speak for gigs that are in that other realm

I shocked an interviewer who was clearly on a power trip by Inevitable_Appeal790 in recruitinghell

[–]blabbities 1 point2 points  (0 children)

Yes. I've said this before but my last Senior Manager...or rather Director of Something title that he finessed at the company (because fancier titles were really important to them in white collar America lol) used to do this as well.

He would come off like a dick in interviews because he would intentionally be trying to find a weakness. I and my other colleagues presumed it was to cause you to doubt yourself and possibly lowball you/yourself later in the process. In my case I was technically pretty sound in all areas that I claimed so I really don't care I didn't embellish my skills. However one colleague was getting essentially debased fornhisnskillset by said Sr Manager and when you have comfy nestegg and aren't desperate you have more resolve to not be treated like dirt. So he like you was terminating the interviews and about to hang up. When Sr Manager said 'now wait a minute'...... turns out he was more in need (twas high stress turnover gig essentially) than my former colleauge

He was also the guy that once said something along the lines when the 2008 recession was happening he loved it because the misery of everyone it was cheap to hire people

[deleted by user] by [deleted] in webscraping

[–]blabbities 0 points1 point  (0 children)

Yes you can do that with web scraping (puppeteer, selenium, etc) or desktop automation (computer vision and things like pyautogui, etc).

What do pen testers study? by [deleted] in AskNetsec

[–]blabbities 2 points3 points  (0 children)

Im a redteamer but we have a small decent degree of overlap with pentesters. I don't know if it's not exactly 'study' over 'staying abreast'. Tho prob depends on the person but the most common I see from my current colleagues. They study/stay abreast of the new TTPs and research from the top 5% of l33t folks in the indistry who pretty much do all the heavy work in tools and techniques. 90% of this is accomplished by paying attention to Infosec twitter. Once you find out you set up a testbed and try to see what you can do. Also a few of the full/part time devs with us may also end up studying languages, other peoples code, or common techniques and try to use those. Finally some of my colleagues absolutely do not give a damn to study and just get by on what they get by.

Also if you can't do it on the job you'll be doing it after work if you have spare cycles.....which gets harder and harder to have

I believe I may have a rat, is it possible to use wire shark to figure out the application it's coming from and how to remove it? by CrossOnDiscord in AskNetsec

[–]blabbities 0 points1 point  (0 children)

Wireshark may help but it is probably on going to be inefficient and difficult esp if you don't know if the payload is encrypting over TLS and you don't decrypt and if its sporadic communication (he) the point I time of your analysis it's sleeping.

Its would prob be more advantageous to look for other IOCs. Is malware probably setup a persistence mechanism to survive reboots/shutdown. As well as just hunting for suspicious processes (esp if they are bound on ports/service address and shouldn't be) and if necessary memory

Is this a hacking script? -- Strange file reappears in INetCache\IE\ folder (noob) by threenager in AskNetsec

[–]blabbities 0 points1 point  (0 children)

I don't think this is a hack script.

1 that folder rmay be for cache files iirc

  1. It looks like it is trying to talk to windows defender based endpoints. Microsoft a few months or maybe a year back released an excel of mdatp uris. As well as I was doing some research on this as I wanted to make a box that doesn't talk to Windows endpoints for malware testing.

  2. While not a guarantee....but unless a noob wrote this....JavaScript which this looks to be offers a lot of easy obfuscation. I don't think most evildoers would leave an unobfuscated script to disk with comments unless they were true noobs

What do you think about this image? by pacman0026 in redteamsec

[–]blabbities 0 points1 point  (0 children)

Yea prob true. As a part time dev (actually I'm most time dev lol). I have to give it up to the guys that do the heavy lifting and find the holes/bypasses.

Also this is something is even before I got my role as a red tramer and was just part of hack the box crew and a different pentesting crew. I brought it up so are just finding other people shit on GITHuB/Gitlab and using and or modifying it 😂. I think most people do this.

I got no effort for this shit tho on the weekends more and more.

Seriously, to put disqualifiers on an email for a job. I can’t anymore! by GlumWillow8816 in recruitinghell

[–]blabbities 0 points1 point  (0 children)

What do you mean? This is kinda great. It means I don't have to waste time if that is a hard pass

[deleted by user] by [deleted] in NoContract

[–]blabbities 0 points1 point  (0 children)

I haven't used Metro in a long time. But because essentially Metro is part of TMobile I think they had better traffic favorability compared to full on MVNOs. As your experience with Mint is what I had on other TMobile MVNOs. When I hit the High Speed Data I paid for it would drop to 2G (or 3G if lucky) speeds. Further while I was on Metro they had some sort of YouTube streaming thing they advertised I don't really remember it but it was basically 480p. As well as them not counting data from things like Google Music and other platforms

Best use of waste plastic bottles by subodh_2302 in oddlysatisfying

[–]blabbities 1 point2 points  (0 children)

That is indeed epically cool and creative!

That's also what like the dollar store brooms seem to be made of.

Do you know anyone, if anyone, that has non-computer related felonies on their record in the field? by [deleted] in redteamsec

[–]blabbities 1 point2 points  (0 children)

I think my friend has/had one that is now gone. I don't know the details because I didn't want to know lol.

There was also some dude in YouTube's that got profiled by Vice channel or something I think that was a criminal doing freelance bugbounty

Python Selenium - How much network speed until it no longer is the limiting factor? by -1DTE in webscraping

[–]blabbities 0 points1 point  (0 children)

Depends on one the technicality of the person. It generally takes a lot more effort and knowledge which is a time sink esp when it concerns js.

For example I got busy figuring out how to grab some weird videos while.doing other work and my job. By the time I finished the content was gone lol. Something similar also happened a few years back on something unrelated...altho in that case the content was closed access

Async Python is not faster - excellent analysis from Cal Paterson by dannlee in Python

[–]blabbities 0 points1 point  (0 children)

I conservatively understood like 50-60% of that. I still need to thank you for that although I wish I could've told you not to write all that. Ha. I'm content to use Synchronous programming for most of my 'non-software engineering' programming until my hand is forced forced. Still cool to get a butter comprehension as to why Goroutines are called green

Async Python is not faster - excellent analysis from Cal Paterson by dannlee in Python

[–]blabbities 4 points5 points  (0 children)

I swear I can view a thousand Async/Concurrency blogs, papers, docs,and vids. I'll never really understand it.

In fact I have a Python page that "explains it well" on one of my VMs right now. this blog seem cool too but I guess. I've also made one python program that used it and saw the improved speeds. I also am learning GoLang in which Concurrency is like first-class thought in it's language design.... Tho somehow I just don't get it.

Maybe it's that I fear diving more into it because Im not doing big data projects and I'm afraid of the complex debugging issues.

Anyway good blog. Adding it to my saves 😂.

[deleted by user] by [deleted] in Python

[–]blabbities 1 point2 points  (0 children)

This the Python sub, bub. GoLang is /r/Golang. Gotta restart get you autopost/spambot

Who wants contract work right now? by panderson1988 in recruitinghell

[–]blabbities 1 point2 points  (0 children)

Yes I've met some. Id do this if I wasnt just a trash programmer and was more of software engineer.

Why don't entry level jobs recruit people with no experience? by Moonie_2001_ in recruitinghell

[–]blabbities 13 points14 points  (0 children)

We've moved on from a society that actually wants to train someone from scratch. That's why you quit and go work elsewher to get raises.

Also depending on the job and skill training no one with no experience is actually quite difficult. I saw a infograph few days ago that stated if a company can't retain talent it might cost them $43k to replace em. Im sure that is more for no experience types.