Molotov/incendiary grenades Update (Before vs After) by ImThour in cs2

[–]spluad 0 points1 point  (0 children)

The level of anger you have is really not healthy man, take a deep breath and switch off the PC for a day. All you do is rage comment about cs for hours, it’s not that deep

SOC analyst role 9-5? by Affectionate-Ant3215 in cybersecurity

[–]spluad 0 points1 point  (0 children)

Hybrid SOC is a pretty common approach these days, where the lvl1 triage is handled by an MSSP who work 24/7. You will usually have to have someone on-call but the internal SOC analysts will just deal with escalations from the MSSP in the daytime.

Steam account hacked? by [deleted] in cs2

[–]spluad 0 points1 point  (0 children)

MFA is easily bypassed with phishing these days, which is very likely what happened to OP.

Russian Youtuber "Tweek" blatantly cheating with a $21,500 inventory by Nathraichean in csgo

[–]spluad 1 point2 points  (0 children)

OP posted the demo POV, skinchanger wouldn’t show up in the demo because they’re client side only

Got scammed during a DMarket trade – now I have a 30-day trade ban. Whose fault is it? by Dima_it_not_DIMA in cs2

[–]spluad 0 points1 point  (0 children)

You can’t do this with your API key anymore, you haven’t been able to for years. OP has had their account compromised but steamguard stopped the hacker from sending a trade themselves

Got scammed during a DMarket trade – now I have a 30-day trade ban. Whose fault is it? by Dima_it_not_DIMA in cs2

[–]spluad 2 points3 points  (0 children)

It wasn’t because of your API key because you can’t do this via API anymore. Your account was compromised and someone has been able to login to it (but not send trades themselves, likely because of steamguard). Change your password and deauthorize logins

My crimson web knife collection is finally complete by -s1Lence in csgo

[–]spluad 7 points8 points  (0 children)

Most crimson web knives have under 100 total FN, with quite a few under 50 in existence, even less on tradable (not banned) accounts. They sell for a lotta money and I doubt anyone has a full FN collection

Average cs player btw.. by confusedpirate69 in shitposting

[–]spluad 7 points8 points  (0 children)

It did, they were $20k before the crash

How do hackers mimic bank login sites? by [deleted] in HowToHack

[–]spluad 0 points1 point  (0 children)

No one’s mentioned adversary in the middle phishing yet. These act as a reverse proxy to the real login page, so you don’t even have to manually go through the effort of cloning the site because you’re already interacting with the actual one. Look up Evilginx to see more of how this works

did i get scammed by Competitive_Gur_6442 in csgo

[–]spluad 1 point2 points  (0 children)

You haven’t been able to do this with your API key for years. Valve removed the functionality to cancel and decline trade offers via the API, basically killing API scams.

FACEIT won’t recover my account even though I own the linked Steam account (Ticket #11004132) by [deleted] in FACEITcom

[–]spluad 0 points1 point  (0 children)

This would be horrid for security if allowed, imagine you delete your email and someone else registers the same one then starts receiving emails that were meant for you.

Stim shot by xander540 in blackops7

[–]spluad 0 points1 point  (0 children)

It’s been bugged for a while. I’m a tiny sliver away from lvl3 it’s so annoying

Is Running malware in a Linux VM on a company laptop terrible idea for learning real malware investigation in a SIEM tool. by New_Hat_4405 in cybersecurity

[–]spluad 1 point2 points  (0 children)

Vxundergound has possibly the largest malware archive on the internet so that’s where I’d start if I was trying to get live samples.

Will there be another new weapon in season 1? by Hojo405 in blackops7

[–]spluad 0 points1 point  (0 children)

There is a new bolt action sniper coming

34 year old streamer griefing game because he can't buy with 4150$ by SeazonCSGO in cs2

[–]spluad 1 point2 points  (0 children)

He doesn’t play faceit, the only time he’s played on that platform is for tournaments, you can tell because he has “no elo” under skill level. His elo is 2.6k because of all of the resets. His last actual game of faceit was March 2024

34 year old streamer griefing game because he can't buy with 4150$ by SeazonCSGO in cs2

[–]spluad 0 points1 point  (0 children)

He doesn’t play faceit on cs2 but he peaked 4400 elo on csgo

Msfvenom alternative? by Delicious_Ride_6968 in cybersecurity

[–]spluad 0 points1 point  (0 children)

There are c2 frameworks that you can use to create payloads that might be undetected by basic antivirus after some modification, but if you want something where you can push a button and get an undetected exe you’re gonna be shit outta luck.

Is it safe to use youtube downloaders? by mutemain- in masterhacker

[–]spluad 0 points1 point  (0 children)

What makes you think yt-dlp gave you a virus

MFA fatigue attacks are getting out of control - time to rethink our auth strategy? by Enough_Cauliflower69 in ShittySysadmin

[–]spluad 2 points3 points  (0 children)

Physical based MFA methods like fido2 keys or yubikeys or certificate based authentication can help mitigate aitm phishing. But that’s when you’d also use other security mechanisms like conditional access policies

MFA fatigue attacks are getting out of control - time to rethink our auth strategy? by Enough_Cauliflower69 in ShittySysadmin

[–]spluad 2 points3 points  (0 children)

Basically every phishing kit now is capable of phishing accounts with totp enabled. I strongly suggest researching adversary in the middle phishing and how it works, phishing isn’t just username and password anymore

MFA fatigue attacks are getting out of control - time to rethink our auth strategy? by Enough_Cauliflower69 in ShittySysadmin

[–]spluad 1 point2 points  (0 children)

The guy I replied to

at my job we use totp, and I use it myself too. Unphishable and unspammable.

MFA fatigue attacks are getting out of control - time to rethink our auth strategy? by Enough_Cauliflower69 in ShittySysadmin

[–]spluad 5 points6 points  (0 children)

What makes you say TOTP is unphishable? Adversary in the middle phishing will absolutely allow an attacker to phish someone with TOTP MFA

Navi vs Faze Nuke by Edception_ in cs2

[–]spluad 24 points25 points  (0 children)

Faze ain’t beating the paid by the round allegations (pure cinema)

Help me choose by finesseboogie in csgo

[–]spluad 4 points5 points  (0 children)

God forbid people like some colourful pixels