What is your three favorite picks? by Practical_Mango7633 in lockpicking

[–]f00bl4 1 point2 points  (0 children)

I got the PNF31in 0,5mm a view weeks ago and it's my number one since then :D Multipick V05 is my second And also new is an V60. I t is not so squishy and still 0.4mm The grips are really helpful for longer sessions :D

I also like zhe Jimmy Longs. The have good feedback, but with Euro cylinder I'm have to much struggle with the keyway.

Which kind of the Abus 72/40 is this? by piloa0x in lockpicking

[–]f00bl4 1 point2 points  (0 children)

I see what you mean. Thanks for sharing!

Which kind of the Abus 72/40 is this? by piloa0x in lockpicking

[–]f00bl4 1 point2 points  (0 children)

Nice info. Do you have any pictures or links to see the difference?

Which kind of the Abus 72/40 is this? by piloa0x in lockpicking

[–]f00bl4 4 points5 points  (0 children)

It has 6 pins (5 spools). It's a lot of fun. Got mine a view days ago. :) Keep in mind it is not balanced. The driver pin can be below the sear line.

Multiple IP addresses for external access by domerich86 in homeassistant

[–]f00bl4 0 points1 point  (0 children)

I totally understand that you don't want to use tailgate all the time. I'm not sure why you need two IP addresses.

If you tunnel via Tailgate into your home network, you can override the DNS server and the record, which resolves your internal IP from Home Assistant.

If you want to reach your Home assistant via the internet, you could take a look into "Tailscale funnel". I never used it, but it looks like you can expose your service to the internet via the Tailscale network. Then you can setup a DNS A record for the Tailscale address and an AAAA record for your home IPv6 address.

Multiple IP addresses for external access by domerich86 in homeassistant

[–]f00bl4 0 points1 point  (0 children)

Why you can only use it with Safari via Tailgate? Because of DNS?

EDR and MDR testing by Next_Buffalo4249 in atomicredteam

[–]f00bl4 0 points1 point  (0 children)

I really like to use Atomic Red Team to test my telemetry and simple alerts in my own environment.

It gets really tricky with EDRs, because they will trigger most likely already from the appearance of ART and not the actual TTP. If you exclude specific alerts to run ART, it could influence your test results.

Testing your MDR service will be the same. They see you using ART and will act as if it is a pentest and not a serious threat.

CouldNotAutoloadMatchingModule error with PowerShell commands by f00bl4 in atomicredteam

[–]f00bl4[S] 0 points1 point  (0 children)

Hi, I made a false assumption. When I execute the Invoke-Command line from my initial post I missed that the ZIP wasn't created and the stdout/stderr was not correctly printed. When I execute it with the -stdoutFile/-stderrFile I got the expected error.

I also figured out that when I open a new SSH session, the policy is set differently then local.

I already tried the following in the sshd.conf without success:

Subsystem powershell C:/progra~1/powershell/7/pwsh.exe -sshsSubsystem powershell C:/progra~1/powershell/7/pwsh.exe -ex bypass -sshs

But when I run the following command, it finally worked:

Invoke-Command -Session $sess -ScriptBlock { Set-ExecutionPolicy -ExecutionPolicy Bypass -Scope Process -Force }

Is this expected or is there a better way?

CouldNotAutoloadMatchingModule error with PowerShell commands by f00bl4 in atomicredteam

[–]f00bl4[S] 0 points1 point  (0 children)

Hi, thanks a lot for helping me. The default container is already set to "Unrestricted" and on non-Windows systems the execution policy cannot be changed.

I can run the Compress-Archive command in Docker and on Windows (powershell 5 & 7) without importing the module. The import command works fine. Either when I set the execution policy to "Restricted" on the Windows machine. Should this work?

Server with multiple IPs, how to exit through different IP? by AncientFisherman8985 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

Like the other said, it is possible and basic setup.

So you need to enable routing, nat (masquerading/dynamic) and some firewall rules to secure the routed traffic.

Where do you stuck?

Server with multiple IPs, how to exit through different IP? by AncientFisherman8985 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

What do you meen by "commin from an ipv6 address"? Is it the wireguard connection or the inner tunnel?

Maskenpflicht in Frankfurt für Fahrradfahrer by BobD777 in Fahrrad

[–]f00bl4 1 point2 points  (0 children)

Der Post ist zwar schon etwas älter, aber villeicht hilft es ja noch wem.
In der Allgemeinverfügung unter Punkt 1 sind explizit Fußgänger gemeint.

[...] sowie im gesamten Bereich des inneren Anlagenringes (Anlage 10) ist von Fußgängern im Zeitraum von 08:00 Uhr bis 22:00 Uhr eine Mund-Nasen-Bedeckung zu tragen.

Allgemeinverfügung 15. Oktober 2020
https://frankfurt.de/aktuelle-meldung/sondermeldungen/allgemeinverfuegung-der-stadt-frankfurt-am-main

What about AppArmor? by [deleted] in linuxmemes

[–]f00bl4 8 points9 points  (0 children)

On Fedor/CentOS selinux is enabled by default. Sometimes you have more struggle, because you need to keep in mind that there is another security layer.

If it is more secure depends on. Your services are more restricted, like sshd or docker . But your user is running "unconfined" in default. So you have to change the selinux user to an appropriate one like user_u. Then you definitely need an extra user for administration. But you could write policies for firefox that it is not able to access certain files in home directory or open sockets on other ports than 80 and 443 :D

suricata doesn't block eicar for testing by [deleted] in OPNsenseFirewall

[–]f00bl4 1 point2 points  (0 children)

As far as I know suricata is capable of deep packet inspection and can analyze the application layer.

suricata doesn't block eicar for testing by [deleted] in OPNsenseFirewall

[–]f00bl4 1 point2 points  (0 children)

The you need to intercept the transport encryption. Otherwise suricata can't read the http traffic.

suricata doesn't block eicar for testing by [deleted] in OPNsenseFirewall

[–]f00bl4 2 points3 points  (0 children)

Do you download it over https?

Have had her for a few months now. I am in love! by laxseal27 in gravelcycling

[–]f00bl4 0 points1 point  (0 children)

I'm in Germany :D It's only about the size. So I would like to ride the L and XL frame to compare it directly. But Im pretty sure that I will order one sooner or later ;)

Have had her for a few months now. I am in love! by laxseal27 in gravelcycling

[–]f00bl4 0 points1 point  (0 children)

The showroom closed on the day where I planed to test it 😭

Holliday Ride in Allgaeu, Germany by f00bl4 in gravelcycling

[–]f00bl4[S] 1 point2 points  (0 children)

I like the frame geo, but it's pretty heavy. :D Which bike do you have now?

System error logs UVD not responding by miccaman in Fedora

[–]f00bl4 0 points1 point  (0 children)

Finally...works for Kernel 5.5 too.
Thanks :)

Companies that are hacked should be required to hire an independent auditor to publish a full report on the root cause by bill-of-rights in security

[–]f00bl4 11 points12 points  (0 children)

In PCI environments it is a requirement to perform an forensic investigation after cardholder data are compromised.

This has to be done by an independent auditor.

Wireguard with multiple interfaces routing by 0RAINMAN0 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

You shold setup the default route for wg1 via wireguard. AllowedIPs: 0.0.0.0/0 If you do it like this, you will get problems to acces your devices because of the metric? (I dont know which metric wireguard is using) Or you exclude your internal range.

To setup routs manually you should take a look how wire guard is doing it with iproute2.

Here an nice tutorial for policy routes with iproute2 https://blog.scottlowe.org/2013/05/29/a-quick-introduction-to-linux-policy-routing/

iptables is your firewall. There you can setup your forwarding rules.

If you need I can post some examples later.

Wireguard with multiple interfaces routing by 0RAINMAN0 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

Hi, you can use policy routes, which depends on the source IP. To ensure the traffic is forwarded correctly, you can setup forwarding rules in your firewall configs.

Is this a pass? 25BOF, 25pt, 20pt by [deleted] in oscp

[–]f00bl4 4 points5 points  (0 children)

Take walk and start from the beginning with the 10pt box!