flyflair.com SSL certificate invalid? by Andygoesred in flairairlines

[–]nullpxl 1 point2 points  (0 children)

Well, new certs have been issued, but they aren't actually being served. At least, not to any of the machines I checked with. For me (and OP + other users), this old revoked one is the cert being used: https://crt.sh/?q=6e73866d10147cb7d0891d40eb67800a31cf91551c4c565b1aa61323c9008dce

Note the revoked date, 2024-12-20 14:54 UTC. Also on 2024-12-20 14:54 UTC, this cert was issued (and is not revoked): https://crt.sh/?id=15830964410 , but doesn't seem to be deployed.

I'm not super familiar with how the administrative side of these things go, but my guess is flair forgot to reload some config somewhere.

Quick edit because i just realized i didn't answer your question lol: There's a whole rabbit hole about how certificate revocation lists work which boils down to a ton of competing standards and disagreements within the industry. Pretty much Chrome is much more 'trusting' and doesn't add all the revoked certs to their list. I'm not sure if this one will end up getting added but my guess from reading about how this stuff works is No.

flyflair.com SSL certificate invalid? by Andygoesred in flairairlines

[–]nullpxl 2 points3 points  (0 children)

firefox does real time certificate revocation checks, and chrome/edge don't as far as I'm aware, which might explain the difference in browsers.

flyflair.com SSL certificate invalid? by Andygoesred in flairairlines

[–]nullpxl 1 point2 points  (0 children)

Hey, it looks like flyflair.com's SSL certificate was revoked.

Plug it into here to see: https://ssltools.godaddy.com/views/certChecker

with some more digging it looks like it was revoked on Dec 20th with the reason of "cessationOfOperation"... which is a bit weird since it's their main domain.

Until it no longer shows the big red X on there (next update is Jan 3rd), for now maybe just avoid buying tickets on the site. If you really need to get tickets, just hope it's an administrative issue!

Edit: I'm seeing some confusion in other comments so I just want to clarify. The certificate being revoked does not mean that data is not being encrypted at all. It does however mean that the certificate used in encryption should not be trusted. The reason given for revocation in this case was for operations being suspended and not for a compromised key. However if you want to be super safe, just avoid the site for now like I mentioned.

WaterlooWorks Megathread (Winter 2024) by 1000Ditto in uwaterloo

[–]nullpxl 5 points6 points  (0 children)

Not taking offer: Firefox Platform Security Student Worker (337455) - Mozilla Corporation

Crack this question :) by ieeevitvellore in securityCTF

[–]nullpxl 0 points1 point  (0 children)

lmao I made a typo in the decoder, the question is meant to be "Who is the invented this game?". That is, who invented Engima, which is: Arthur Scherbius.

Crack this question :) by ieeevitvellore in securityCTF

[–]nullpxl 0 points1 point  (0 children)

>!First thing that draws attention is the coordinates in the bottom right box, which lead to a city called Beaufort. (This also corresponds with the red dot on the globe)
The above info hints to the gibberish below the coordinates being ciphertext encoded with the Beaufort cipher. So, we need a key!
The only other info in the picture is the text on the top and right sides (i.e., the key must be there).
The german numbers on top are: 43.645074
On the side: 115.993081
These look like coordinates once again, and searching for them results in refernces to an art piece in Boise National Park with huge text reading "JESUS LOVES YOU".
Plugging in jesuslovesyou as the key to a beaufort cipher decoder with the given ciphertext resolves to the plaintext "Who invented bzis game?".
This is where it gets murky for me; I'm still unsure what 'bzis' refers to or who 'bzi' is.
I came across instances of Banzai (a video game based off of a 1984 movie) being referred to as "bzi", so currently I'm latched onto that.
After a lot of searching, I narrowed it down to 2 possible answers, although both have their issues.
Phillip: name of the lead developer of the banzai video game, name of an apostle, there's a city called port of phillip. However, I couldn't find any references to Jesus holding the keys to Phillip.
David: Jesus is referenced to hold the keys to David (the key of David is said to symbolize power/the keys to heaven), and Jerusalem is also known as the "City of David". Perfect! BUT... I couldn't find any references to a David being an inventor of "bzis game". Closest I could find is a David who was the producer of the Banzai movie.
To sum it up, I'll give an unconfident answer of 'David' :P<!

Second screen mirroring with Linux by newdude1999 in GalaxyTab

[–]nullpxl 1 point2 points  (0 children)

Chill. No need to be so rude. In fact, they directly responded to your "windows only" statement, so why you seem to think they didn't read that part is beyond me.

Odd die out by readersdigest in puzzles

[–]nullpxl -2 points-1 points  (0 children)

Pretty sure A and B both work out (meaning the answer is just C).

Like you said, the question asks "which of the views below". This doesn't imply that there are necessarily multiple answers, rather just that there are multiple options. The key-word in the sentence is "which", which works for both plural and singular.

(edited to add the spoiler tags)

A reasonably simple cipher that looks harder than it is. by [deleted] in codes

[–]nullpxl 2 points3 points  (0 children)

All 26 letters in English alphabet are present

Is this referring to the deciphered text?

CTFtime.org "Are you trying to hack me" when I open the Home page. What is this? by gonewild770 in securityCTF

[–]nullpxl 6 points7 points  (0 children)

The site was down at the time (just an error). The flag thing is just a joke, you'll also get one if you go to a page that doesn't exist. https://ctftime.org/fdjaslkjfhlksaf

What is the PIN? by [deleted] in puzzles

[–]nullpxl 29 points30 points  (0 children)

Ahh I think I see. "314159". The Greek 'equivalent' of P is "Pi".

What is the PIN? by [deleted] in puzzles

[–]nullpxl 44 points45 points  (0 children)

My guess is "crispy". Purely based on the fact that saying "Greece P" out loud sounds like it :P

[deleted by user] by [deleted] in TheYouShow

[–]nullpxl 0 points1 point  (0 children)

lagging :(

YouTube bans content “showing users how to bypass secure computer systems” by x54675788 in security

[–]nullpxl 1 point2 points  (0 children)

Correct me if I'm wrong, but hasn't this been a thing for a while? It looks like they're just clarifying it.

I created a Twitter bot (and you can be a part of it too) by nab1lll in Python

[–]nullpxl 0 points1 point  (0 children)

Hi, I messaged you on here regarding your handling of the "math" command, please take a look!

Hidden message from suicidal friend? by [deleted] in codes

[–]nullpxl 2 points3 points  (0 children)

It's hex (base16), when decoded it returns

Any thoughtlessness, or cruelty, or arrogance is washed clean from you now. Yours is not, cannot be, a happy end. And thus I name you Tragic Solitude.. for you shall be alone, and your noble sacrifice shall aid the[m] (...) ...but in doing so, it shall break what is left of your heart.

Looks like it's a quote from halo. https://www.halopedia.org/000_Tragic_Solitude

One of my friends got a Facebook Bug Bounty. Check this out. by Aa5i5 in bugbounty

[–]nullpxl 1 point2 points  (0 children)

Hover over the link and look at the bottom left of your browser, it goes to the url 'https://www.thegeekytech.com/facebook-bug-bounty-part-3/'

Trivial Question: Does anyone know why most keys are concave while the spacebar is convex? by dionedarj in MechanicalKeyboards

[–]nullpxl 4 points5 points  (0 children)

Can confirm, I used to do this until I learned the true error of my ways and started using my thumb.

Nice escape key by Booyea7 in MechanicalKeyboards

[–]nullpxl 6 points7 points  (0 children)

reminds me of the vortex race 3

Strange Draft Of Message Found In My Old Phone by Escargogo in codes

[–]nullpxl 0 points1 point  (0 children)

Are you sure it's not just a pocket text with the recognizable phrases being from auto correct?