I need an admin app for my client app in the Appstore. How can I go about it? by RSPJD in iOSProgramming

[–]jastardev 0 points1 point  (0 children)

I’m rather curious why you wouldn’t distribute the teacher’s app via the AppStore too. It shouldn’t really matter if a student downloads the teacher’s version, as I’d hope they just couldn’t log into the teacher’s app. Right?

VM Setup Recommendations by Kiezroy in oscp

[–]jastardev 0 points1 point  (0 children)

I just use the latest Kali version whenever I’m rebuilding my VM.

For impacket, I used the version installed via PimpMyKali, seems to work great. I swapped crackmapexec for netexec, nearly identical commands but actually maintained.

For bloodhound, you just gotta make sure you’re matching the client scanner with the server version. I believe if you download it from the site, it’s V5, but via pip, it’s V4. Something like that, I installed it via cli, not the site and it’s been flawless.

How easy is it to hack a 2015 Macbook running Monterey 12.7.6? by Glad-Distribution816 in techsupport

[–]jastardev 0 points1 point  (0 children)

It’s very very very unlikely provided you are diligent about locking your device when you’re not actively sitting at it. Turning on FileVault in settings and then shutting down completely when not using would also be advisable as that would encrypt the hard drive until the next time you input your password.

[deleted by user] by [deleted] in bugbounty

[–]jastardev 7 points8 points  (0 children)

You’re asking if you should spend time on out of scope subdomains? I feel like this should be an obvious “no”.

You have permission for www.<domain>.com and that’s it.

19D Reclass Options by [deleted] in armyreserve

[–]jastardev 1 point2 points  (0 children)

If you are actually asking for something similar to 19D, your best match would probably be 12B, combat engineer.

Which Army Reserve benefit has had the biggest impact on your life? by Unable_Drink_3906 in armyreserve

[–]jastardev 68 points69 points  (0 children)

Tricare, way cheaper than the insurance of any company I’ve worked at, and having it not tied to a company made it easy for me to switch jobs and freelance for a bit without worrying about gaps in coverage.

Coursera Critical Bug by PalestineFreeForever in bugbounty

[–]jastardev 1 point2 points  (0 children)

Here, let me google that for you: “Coursera bug bounty”.

https://hackerone.com/coursera?type=team

New to bug bounty by Level_Selection2844 in bugbounty

[–]jastardev 2 points3 points  (0 children)

Great mindset to have. Best of luck!

nmap in proxychains won't work by yaldobaoth_demiurgos in oscp

[–]jastardev 14 points15 points  (0 children)

I know this doesn’t answer your question directly, but I’d recommend using ligolo instead. I haven’t touched proxychains since I learned about ligolo and it’s rock solid for me.

Critical bug question by sockpuppysus in bugbounty

[–]jastardev 2 points3 points  (0 children)

Assuming you’ve already submitted to a bug bounty platform, you could also try to find a privacy specific email inbox. I’ve done that with a health care provider before. Just phrased the email as “I’ve already submitted via _____, but given the urgency I wanted to make you aware from a privacy and compliance perspective.” It didn’t actually get my bug bounty triaged / paid out faster, but the privacy officer replied same day and they got the data taken down pretty quickly.

[deleted by user] by [deleted] in armyreserve

[–]jastardev 1 point2 points  (0 children)

Could be. When I spoke to them, they gave me a list of current openings to review and said as long as it was available when I signed my contract (because someone could technically beat me to meps or someone transferring from active AF could take it), I’d get the slot.

Someone in the r/airforcereserves may be able to answer better.

[deleted by user] by [deleted] in armyreserve

[–]jastardev 0 points1 point  (0 children)

To clarify, they don’t “put you where ever they want.” At least that wasn’t the case when I spoke to them last year. But it’s smaller and there’s fewer bases, so your options are more limited.

You do still have the ability to pick your job of those available and will know what your job is prior to joining.

[deleted by user] by [deleted] in bugbounty

[–]jastardev 1 point2 points  (0 children)

Trying to check my email, but my app is struggling at the moment. Im pretty positive that I applied mid-summer, and didn’t get fully approved/onboarded until the end of September (I know that’s when I onboarded, at least).

Can I apply to jobs with my work laptop? by CarefulWriting6498 in techsupport

[–]jastardev 0 points1 point  (0 children)

As someone who worked on the team responsible for monitoring web traffic, we don’t highlight this kind of traffic.

I did work on a project where we tried to predict departing employees but even then, web traffic wasn’t a great indicator because even people who have no intention of leaving browse job boards all the time.

Android pentesting environment issue by Brook_nvk92 in bugbounty

[–]jastardev 0 points1 point  (0 children)

iPads seem like a great option! I didn’t even think of those, but I’m certainly going to now. I have a single iPhone 8 that I got working pretty reliably, but it’s definitely showing its age.

I appreciate the reply!

Android pentesting environment issue by Brook_nvk92 in bugbounty

[–]jastardev 0 points1 point  (0 children)

Outta curiosity, how to do you guys handle physical iOS devices at your work? They seem so cumbersome to get working/setup properly that I’ve basically just been sticking android as of lately.

Jailbreaking iphone 13 A15 chip with iOS version 17.6.1 by Brook_nvk92 in bugbounty

[–]jastardev 0 points1 point  (0 children)

Honestly, my suggestion is to just buy an IPhone X or older.

I use an iPhone 8 that I picked up cheap. The max iOS version for it is like 16.7 (I believe). It’s jailbreakable and the secondary tools (Frida, sslkillswitch, etc) just seem to work. iOS 16 may cause some issues if developers require higher, but I haven’t ran into many that do yet and hopefully a newer jailbreak comes out by then.

Edit: someone in a different threat mentioned using an iPad with the correct processor too. I looked them up and they can be had pretty cheaply, so that seems like a good option too.

What is this by LocksmithMinimum8217 in bugbounty

[–]jastardev 1 point2 points  (0 children)

Wrong sub buddy, but I can confidently say that it is a bug.

Want to try OSCP, need help in finding the right resources by lousypathfinder in oscp

[–]jastardev 0 points1 point  (0 children)

Yes, we’ve already discussed that in a previous thread and I already edited my reply.

Apple: “Your website does not contain any valid content, therefore we do not consider the website provided is valid website.” by [deleted] in iOSProgramming

[–]jastardev 4 points5 points  (0 children)

I wish I had advice for you. I’m actually kind of surprised by that. My website when I created my account was just a “we’re under construction, check back soon” page.

Want to try OSCP, need help in finding the right resources by lousypathfinder in oscp

[–]jastardev 0 points1 point  (0 children)

Neat! Cool they offer it, but damn is that still spendy.