HNHacker News
TopNewBestAskShowJobs

LiveOverflow

237 karma · joined December 12, 2015

submissionscomments
LiveOverflow··on The Origin of ‘Script Kiddie’
interesting! I never thought about that somebody might interpret it in this way
LiveOverflow··on The Origin of ‘Script Kiddie’
Do you know where I could get old IRC logs? I was looking for some but couldn't find any. I guess most of them are not archived anywhere?

IRC logs of #hack etc. would be gold!

LiveOverflow··on XSStrike: XSS detection suite
Must be advanced because:

> Throw away your paid tools because this is some God level shit. Now with 4 hand written parsers, an intelligent payload generator, powerful fuzzing engine, DOM scanner, hidden parameter discovery and an incredibly fast crawler. F*cking retweet it!

- https://twitter.com/s0md3v/status/1061255510677057537

> Exactly, that's why you have no idea how it works and all. Well, it took me a month and being a developer of 30+ open source software, this is the first time I am saying this is some God level shit and I mean it.

- https://twitter.com/s0md3v/status/1061662698335723520

LiveOverflow··on Ask HN: What are the best resources for learning security and pen testing?
thank you for sharing my channel <3

I would also like to highlight the following other creators. For me seeing the process of others has been a lot more fruitful then just following text tutorials:

+ ippsec: https://www.youtube.com/channel/UCa6eh7gCkpPo5XXUDfygQQA

+ John Hammond: https://www.youtube.com/user/RootOfTheNull

+ Gynvael EN: https://www.youtube.com/user/GynvaelEN

+ Derek Rook: https://www.youtube.com/channel/UCMACXuWd2w6_IEGog744UaA

+ ...

LiveOverflow··on Ask HN: What are the best resources for learning security and pen testing?
I create highly technical videos about various topics of IT security. Many of my videos are walk-throughs of CTF challenges explaining my thought process. I think this playlist could be interesting: https://www.youtube.com/playlist?list=PLhixgUqwRTjywPzsTYz28...

I have also recently started a series on Pwn Adventure 3, where we are hacking a game and I explain my process: https://www.youtube.com/playlist?list=PLhixgUqwRTjzzBeFSHXrw...

Besides that, I can also really recommend livestreams/screenshares from the following creators. To me, seeing how somebody really does it and where they struggle, really really helped me break through a wall I was hitting:

+ ippsec: https://www.youtube.com/channel/UCa6eh7gCkpPo5XXUDfygQQA

+ John Hammond: https://www.youtube.com/user/RootOfTheNull

+ Gynvael EN: https://www.youtube.com/user/GynvaelEN

+ Derek Rook: https://www.youtube.com/channel/UCMACXuWd2w6_IEGog744UaA

+ ...

LiveOverflow··on Medium tries to prevent people reading deleted articles on the Wayback Machine?
I think a difference can be made about the individual "right to be forgotten" and the transparency/accountability of a public company.
LiveOverflow··on YouTube Programming Channels
Shameless plug: https://www.youtube.com/LiveOverflowCTF not directly programming, but hopefully still interesting
LiveOverflow··on German police will be able to hack WhatsApp encrypted messages by end of 2017
title is misleading because it's not like Germany broke the encryption. But this has nothing to do with rt, a lot of news outlets reported it in this way. And in the article rt is is pretty clear what it is about: The law makes it legal for the police to install trojans on a phone to gather evidence.
LiveOverflow··on Dreaming of prime numbers in short intervals
There is a database for prime factorisation: https://factordb.com/

And like the other people responded, there are just wayyyy to many primes to make that feasible. Though it is a common Challenge in security competitions to find the factors to a public key through factordb. Or having two bad keys sharing one same prime - then you can use Euclidean algorithm (greates common divisor).

LiveOverflow··on Reverse engineering guide for beginners: Methodology and tools
classic
LiveOverflow··on Ask HN: What's the prerequisite to become an exploit developer?
> I want to understand what are the ACTUALLY NECESSARY topics required and in RIGHT ORDER to MINIMIZE the TIME WASTING and wandering in between topics so that the knowledge aqcuired is more practical in context of current vulnerabilities rather than being more theoretical.

To be honest with you? I consider that sentence almost offensive. I hear you, but I think you have absolutely wrong expectations. You want to learn something that is not a profession like plumber where a really good expert can teach you everything you need to know with all the little tricks learned over the years. The field is sooo huge diverse and complicated that this won't work. And I think my playlist offers a rough outline that you can follow, but without going down rabbit holes left and right, and getting stuck many many times, you wont become good at it.

I understand the frustration that you don't want to "waste time" and that you are busy already. But everybody I know who is good in this field, including my own experience shows me, that nobody learns this stuff through a straight path. And everybody knows that most of the time will be spent chasing rabbits through a labyrinth and getting stuck.

Also there is no clear path. It's a complicated web you have to learn to traverse. For example like "Learn C" - what the f* does that even mean? To what extend? Hello World? Drivers? Or Operating System? "Learn assembler" - which assembler? have you looked into the Intel Instruction spec once? I doubt any human knows every instruction. Also who said that intel is the way to go, why not ARM or AVR. All of these fields offer a lifetime of studying in itself.

The "art" in becoming good at security and RE is to get a broad knowledge of a lot of things and try to simultaneously go deeper 'n deeper in all of them. And if you are interested in a specific field, put more weight on those topics.

You know how long it takes to reverse engineer something? People stare on IDA for weeks or months at a time. You can't learn RE just by reading a book or a blog. You gotta start to just doing it, and hopefully find a few blogs and people to keep up the spirit.

LiveOverflow··on Ask HN: What's the prerequisite to become an exploit developer?
Shameless self-promotion. I have a YouTube channel where I basically try to offer a path for learning exploitation. I'm done covering all the basics, and we will soon move to more advanced stuff. I have videos on various different security topics, but here is the probably more relevant playlist: https://www.youtube.com/playlist?list=PLhixgUqwRTjxglIswKp9m...
LiveOverflow··on PegaSwitch: Exploit Toolkit for Nintendo Switch
I'm really interested in some technical tidbits :)

Quickly looking over the code I think you use a slightly different way to achieve the r/w than qwerty - you don't misalign a pointer, correct? Can you give a short description how you do it?

I wondered how to not crash the switch when done, and you seem to simply set everything to 0 `this.bufs[i] = 0;` and that solves that issue. Could you say a few words on why that is the case?

Any information yet you want to share about the execution environment? Is there some kind of sandbox? Anything interesting you can already access, or surprisingly not access?

Edit: One more question. Did you guys get to play any BotW yet? :D

I really love the overengineering of this toolkit <3

LiveOverflow··on What does Nintendo Switch and iOS 9.3 have in common? CVE-2016-4657 walk-through
It was already out of the bag. That the switch is vulnerable to this was quickly known on day 1 and shortly after posted all over the internet. I didn't leak something private.
LiveOverflow··on What does Nintendo Switch and iOS 9.3 have in common? CVE-2016-4657 walk-through
thanks. I blame it on being not a native speaker :P I fixed it on YouTube.
LiveOverflow··on How to learn hacking
> I have reservations about pentesting because For example, I think a lot of it is unskilled work (e.g., pressing scan on nessus, clicking exploit on Burp) or work which will be automated in the near future

My job title is "Penetration tester" but I don't fall into that category. That's why I often refer to it as doing "application security analysis/audits". My current job is to do black/white box testing of single applications - and not a huge organisations where you just phish some employees. I have not worked for other companies, but as far as I can tell, many "penetration testing jobs" are actually what I do.

It's fun, challenging and very technical. And obviously no scanners are used - I have never in my career used nessus or any other click2exploit tool.

LiveOverflow··on How to learn hacking
If you have feedback from infosec students, or topics that would benefit students, please contact me :)
LiveOverflow··on How to learn hacking
Thank you so much!

I have also recently started building https://liveoverflow.com, which might have a better structure than a YouTube channel or subreddit.

Also some people may have actually seen a video of mine, because my most popular video so far is the DirtyCow video which got referenced by news sites and on the dirtycow github repository.

My personal recommendation is to checkout the AngularJS Sandbox bypass series: https://www.youtube.com/playlist?list=PLhixgUqwRTjwJTIkNopKu...

Criticism and feedback is always welcome.

LiveOverflow··on A Grad Student Found Spyware That Could Control Anybody’s iPhone
a kernel exploit doesn't help you much with a docker style container. Also docker is not a VM. And iOS/Android are already way better with sandboxing than our desktop environments.
LiveOverflow··on A Grad Student Found Spyware That Could Control Anybody’s iPhone
there you go: http://info.lookout.com/rs/051-ESQ-475/images/lookout-pegasu...
LiveOverflow··on Adobe Voco 'Photoshop-for-voice' causes concern
I don't really understand the concern. Digital media has always been edited and manipulated. I was actually surprised to see so much news about it - professional video/audio productions edit speech all the times. I'm sure with a lot of dedication any amateur can already collect enough unique sounds and and snippets from prominent people to fake sentences. It's just easier now.
LiveOverflow··on Reverse Engineering for Beginners
I recently started a YouTube series on hacking. With a main focus on reverse engineering and memory corruption. I'm currently on episode 0x5 and I currently release them biweekly.

https://www.youtube.com/playlist?list=PLhixgUqwRTjxglIswKp9m...

I also record myself playing CTFs and I just created a video walkthrough of the pwnable 200 challenge from the 32c3 CTF: https://www.youtube.com/watch?v=wLsckMfScOg

Maybe it helps somebody.

LiveOverflow··on Stockfighter Developer Hub
It is a bit weird to me that you want starfighters to be a recruitment platform but think it's 'Fun' when somebody releases recording of the solution.

> "I recorded a speedrun of level 5, clearly labeled as a speedrun of level 5, which spoils the twist midway through level 5." -- Fun

> We're OK with you publishing facts about Starfighter games/levels but don't want people to be exposed to intentionally hidden facts (discovery of which is, in many cases, the point of the level) unless they go looking for them.

I am asking because I sometimes record or stream myself playing CTFs and I first thought I couldn't do that with starfighter... But I can do it as long as I label it properly and this would not be frowned upon?

I understand that you cannot stop people from leaking and spoiling challenges. But I definitely want to be obedient with your vision.

Really looking forward to this! Thank you for your work