Skip Navigation
InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)XY
xylogx @lemmy.world
Posts 118
Comments 232

Attack Surface Diet

www.evilsocket.net Attacking UNIX Systems via CUPS, Part I

Hello friends, this is the first of two, possibly three (if and when I have time to finish the Windows research) writeups. We will start with targeting GNU/Linux systems with an RCE. As someone who’s

Attacking UNIX Systems via CUPS, Part I

"A remote unauthenticated attacker can silently replace existing printers’ (or install new ones) IPP urls with a malicious one, resulting in arbitrary command execution (on the computer) when a print job is started (from that computer)."

Just spent some time removing CUPS from my Linux servers where it is not needed and only added to my attack surface. What other services should be removed from Linux servers?

1
What is the hardest video game(s) in your opinion, why, and what other games are you comparing against to make this conclusion?
  • The classic arcade game Venture. Go ahead, make my day:

    https://archive.org/details/arcade_venture#

    Venture is a 1981 arcade game by Exidy. The goal of Venture is to collect treasure from a dungeon. The player, named Winky, is equipped with a bow and arrow and explores a dungeon with rooms and hallways. The hallways are patrolled by large, tentacled monsters (the "Hallmonsters", according to Exidy) who cannot be injured, killed, or stopped in any way. Once in a room, the player may kill monsters, avoid traps and gather treasures. If they stay in any room too long, a Hallmonster will enter the room, chase and kill them. In this way, the Hallmonsters serve the same role as "Evil Otto" in the arcade game Berzerk. The more quickly the player finishes each level, the higher their score. The goal of each room is only to steal the room's treasure. In most rooms, it is possible (though difficult) to steal the treasure without defeating the monsters within. Some rooms have traps that are only sprung when the player picks up the treasure. For instance, in "The Two-Headed Room", two 2-headed ettins appears the moment the player picks up the prize. Players die if they touch a monster or the corpse of a monster. Dead monsters decay over time and their corpses may block room exits, delaying the player and possibly allowing the Hallmonster to enter. Shooting a corpse causes it to regress back to its initial death phase. The monsters themselves move in specific patterns but may deviate to chase the player, and the game's AI allows them to dodge the player's shots with varying degrees of "intelligence" (for example, the snakes of "The Serpent Room" are relatively slow to dodge arrows, the trolls of "The Troll Room" are quite adept at evasion). The game consists of three different dungeon levels with different rooms. After clearing all the rooms in a level the player advances to the next. After three levels the room pattern and monsters repeat, but at a higher speed and a different set of treasures.
    \

    Released
    1981

  • Microsoft parody
  • I remember when SFC was first introduced, I excitedly wrote a script to invoke it remotely so I could use it on a user’s pc when they called to fix their problem. To this day I have never run that script. This was in 1998.

  • Google is facing another crucial court case in the US – and it could have major consequences for online advertising.
  • "> driving out rivals, diminishing competition, inflating advertising costs, reducing revenues for news publishers and content creators, snuffing out innovation, and harming the exchange of information and ideas in the public sphere."

    I feel like it is going to be hard to prove that Google's anti-competitive actions have inflated advertising costs. Also, did news publishers lose revenue because of Google or was it Craigslist and jobs sites that killed their classified business?

    Google is definitely a monopoly and has acted badly, but proving the harm in this way is going to be tricky. The government should go after them for privacy, the place where they have clearly abused their relationship with the public. Google normalizing spying on users has created the data economy that has resulted in us being spied upon us all the time and having all of our personal data being leaked over and over again.

  • Student dorm does not allow wifi routers
  • As someone who has administered networks and written policies like this the concern here is that you will run an open network that may be used for piracy, hacking, DDOS or to send bomb threats. Tracing down this type of behavior is required by law and allowing students to run open networks makes this near impossible.

  • What is your favourite board game?
  • Champions of Midgard - Because Vikings! Its a resource management based game where you go on journeys to fight magical monsters. Its pretty tight and you can play a complete game in one-two hours.

    Pandemic - I mostly enjoy this because it is a co-op game. You all fight the disease! That said the game mechanic is pretty fun and can be challenging.

  • Dragonfly on a Turtle on a Log

    4

    Osprey on the prowl

    0

    Will the food trucks ever come back?

    1

    Kingfisher spotted in Northern Virginia

    3

    The Mountain

    7

    Eagle spotted along the Snake River in Wyoming

    1

    Got stuck in a traffic jam in Yellowstone, this was the cause

    11

    Bison spotted in Yellowstone

    3

    Grand Prismatic Springs

    1

    Entering Monument Valley Forest Gump Cut

    1

    Fire

    4

    Final Victory

    6

    Do you run the water while soaping up in the shower?

    I used to but now I do not anymore.

    73

    Eat my shorts from Bryce Canyon

    Cowabunga man!

    6

    Get Jacked

    4

    DC July 4th Fireworks

    0

    Half Moon

    1

    Mommy, why is the Apple Pie so spicy?

    65

    Motherboard upgrade

    Considering upgrading my gaming rig with the following bundle ->

    https://www.microcenter.com/product/5006709/amd-ryzen-7-7800x3d,-asus-b650-e-tuf-gaming,-gskill-flare-x5-series-32gb-ddr5-6000-kit,-computer-build-bundle

    I have a GeForce RTX 3070 which I will keep and I am running Linux Mint 21.2. Any thoughts on compatibility? Any one running one of these ASUS B650-E TUF Gaming motherboards under Linux? Mint?

    Edit: Thanks for all the great advice. It seems like I should spend just a few more dollars to get the Gigabyte B650 Gaming X AX v2:

    https://www.microcenter.com/product/5006645/amd-ryzen-7-7800x3d,-gigabyte-b650-gaming-x-ax-v2,-gskill-flare-x5-series-32gb-ddr5-6000-kit,-computer-build-bundle

    18