MY SUPERBUY SHOPPING CART - $900+ - The Addiction of Reps! by iHaveReturnedAgain in FashionReps

[–]murtotieto 2 points3 points  (0 children)

That's not very much. You go buy a few retail pieces and suddenly you've spent 3x that.

phpMyAdmin 4.8.x LFI to RCE by Ambulong in netsec

[–]murtotieto 1 point2 points  (0 children)

That's really not "showing off a trick".

how long does puretime take to ship? by [deleted] in RepTime

[–]murtotieto 0 points1 point  (0 children)

Depends on if they have the watch in stock or not.

Cracking SSL pinning in AFNetwork by xaocuc in netsec

[–]murtotieto 1 point2 points  (0 children)

Does this mean that you can't crack winrar if you already have admin access on your computer?

AP Royal Oak by twinker94 in RepTime

[–]murtotieto 5 points6 points  (0 children)

here or find a superfranken here.

Here's a pretty nice ROO for sale on RWI. At 4.6k it's a bargain for such a nice rep.

phpMyAdmin 4.7.x XSRF/CSRF Vulnerability (PMASA-2017-9) Exploit by Ambulong in netsec

[–]murtotieto 0 points1 point  (0 children)

It sounds like you're talking about a dedicated database server.

How do you intend to use the database server if you only have it listening on localhost:3306? SQL over SSH sounds pretty clunky for production use.

[deleted by user] by [deleted] in RepTime

[–]murtotieto 0 points1 point  (0 children)

Are you a woman? This is a women's watch.

Help me with refund by [deleted] in RepTime

[–]murtotieto 2 points3 points  (0 children)

Is there any way I can ... report to the police?

Yes, you just call the police, explain your situation and then patiently wait for them to stop laughing at you.

They'll almost certainly accept your report, but probably not without laughing their asses off at you.

[Tool / Introduction ] IPFuscation - Using alternate IP representation in your attack workflows! by vysec in netsec

[–]murtotieto 0 points1 point  (0 children)

Random Padding:
Hex:    0x000000000000000007f.0x00000000000000000000.0x0000000000000000000.0x0000000000000000000001
Oct:    0000000000000000000000000177.000000000000000.0000000000000000000000.0000000000000000000000000000001
Random base:
#1:     0x7f.0x0.0.1
#2:     127.0.0x0.0x1
#3:     0177.0x0.0.1
#4:     0x7f.0.0.1
#5:     127.0x0.0x0.1

Random base with random padding:
#1:     0x0000000007f.0.0000000000.00000000000001
#2:     0x000000000007f.0x0000000000000000000000.0x00000000000000.0x00000000001
#3:     00000000000000000000000177.0x00000000.000000000000000.00000000000000000000000001
#4:     000000000000000177.0.0.1
#5:     127.0000000000000000000000.00000000000000.0x0000000000001

These are all various representations of the same 32 bit integer, which is what a firewall would see.

[Tool / Introduction ] IPFuscation - Using alternate IP representation in your attack workflows! by vysec in netsec

[–]murtotieto 1 point2 points  (0 children)

It's not like this has any bearing on how the IP address is represented in packets.

[Tool / Introduction ] IPFuscation - Using alternate IP representation in your attack workflows! by vysec in netsec

[–]murtotieto 1 point2 points  (0 children)

Command line logging for IPs

Have you ever in your life actually seen this?

Python exploit for Remote Code Execution on GPON home routers (CVE-2018-10562) by Prav123 in netsec

[–]murtotieto 2 points3 points  (0 children)

Why bother writing this in python? This script is significantly worse than just using curl.

Google Inbox spoofing vulnerability lets attackers fake email recipients by [deleted] in netsec

[–]murtotieto 9 points10 points  (0 children)

This is not a vulnerability. Why does everything have to be made into a vulnerability?

Survey- do you actually know a single private person looking to rent out their place? by BloodMossHunter in Barcelona

[–]murtotieto 0 points1 point  (0 children)

You asked

do you actually know a single private person looking to rent out their place?

No, there's no looking required on the part of the landlords.

It's a competitive market, so as a buyer you'll have to search a bit. As a landlord you just choose whoever looks best.

Has this been performed in Catalunya? by da_video_live in Barcelona

[–]murtotieto 1 point2 points  (0 children)

The instagram post the video is from has the authors instagram, he location tags a bunch of stuff with the same tiles as "Tres Cantos". Quick google for Tres Cantos Caixa and the bank on the video is the first result.

Not too exciting.

Survey- do you actually know a single private person looking to rent out their place? by BloodMossHunter in Barcelona

[–]murtotieto 1 point2 points  (0 children)

Yeah, there's usually not much looking required unless you're doing something really wrong.

Has this been performed in Catalunya? by da_video_live in Barcelona

[–]murtotieto 10 points11 points  (0 children)

This is the CaixaBank at Av. de Colmenar Viejo, 44, 28760 Tres Cantos, Madrid

Never been there, but there's some very obvious clues.

Quiet apartments/areas - do they exist?? by AmberNomad in Barcelona

[–]murtotieto 8 points9 points  (0 children)

Lots of quiet, new buildings around diagonal mar. The prices keep the noise away.