33 Followers
54 Following
98 Posts

2024 was crazy:
- Married.
- First public talks.
- New work adventure.
- Bought an apartment (and an arcade cabinet!!!)
- Changed my car.
- Co-founded a company.

Three wishes for 2025:
- I hope it is a quieter year.
- I hope things keep as good as they are.
- I meant it I hope a quieter year. Really. Please.

[gal] Onte estiveron pola #BlackHat de Londres o noso @DonCaralludo e o noso amigo Marcos dando unha charliña sobre "Análise sintático de malware con Linguado". Menudas lendas!

[en] Yesterday our own @DonCaralludo and our friend Marcos were at #BlackHat London talking about "Syntax analysis for malware detection with Linguado". What a legends!

https://www.blackhat.com/eu-24/arsenal/schedule/index.html#syntax-analysis-for-malware-detection-with-linguado-41490

Black Hat

Black Hat

Os nosos @DonCaralludo e @zer1t0 dando a súa charla “inxección de código en Python” na @pycones #pythones #python #vigo #pycones2024 #PyConES
Novo artigo do @zer1t0, que apresenta a súa ferramenta keydump para leer os keyrings (protexidos) de terceiros procesos en Linux e extraer segredos como as credenciais de usuarias do dominio almacenadas por sssd. Agardamos que vos guste! https://hackliza.gal/posts/keydump/
Volcado de keyrings con Keydump: Extraendo credenciais en claro de SSSD

Boas xente!! Fai tempo estiven trangallando cos keyrings de Linux para extraer tickets de Kerberos con tickey, e recentemente vinme envolto nun novo proxecto no que precisaba volver a aprender sobre o tema, así que vou a describir aquí o proxecto e os conceptos mais relevantes sobre os keyrings por se eu ou outra persoa ten que aprendelos no futuro. O primeiro que temos que saber é que o que se coñece como keyrings de Linux, é un xestor de chaves.

Hackliza

I was playing with code injection to read processes keyrings on Linux. I've wrote a new tool, keydump, and showing how we can use it to extract cleartext credentials from sssd. Not an easy exploitable scenario, but I hope you like the article!!

https://hackliza.gal/en/posts/keydump/

Keyrings dump with keydump: Extracting SSSD cleartext credentials

Hi there!! Time ago I was tinkered with Linux keyrings to extract Kerberos tickets from keys with tickey, and recently I was involved in a new interesting project in which I needed to learn again about this topic, so I will try to describe the important points here in case my future self or anyone else want to learn them. First we need to know is that Linux keyrings is a key management facility.

Hackliza
Novo artigo do @zer1t0 explicando pasiño a pasiño como unir un Debian a un Active Directory (porque nos entornos privados tamén se pode meter software libre), incluíndo para que serve cada protocolo e ferramenta. Dende logo, moito lle gustan os internals a este rapaz! https://hackliza.gal/posts/linux-en-ad/
Como unir Debian a Active Directory

Boas xente, neste artigo vou amosar como unir unha máquina GNU/Linux, específicamente unha Debian, a un entorno de Active Directory. Seino, seino, Active Directory (AD) é unha ferramenta comercial do malvado Microsoft, mais por moito que nos pese, é a solución de directorio mais usada do mercado. Sen embargo, non por ter un entorno de Microsoft temos que usar Windows, inda que iso é o que lles gustaría.

Hackliza
Brand new post from our own @zer1t0 explaining with baby steps how to join Debian to Active Directory (yes, you can add free software to a privative environment!) including detailed explanations of protocols and tools. Is there anyone in the world who love sysinternals more than him? We really doubt it! https://hackliza.gal/en/posts/linux-en-ad/
How to join Debian to Active Directory

Hi people, in this article I'm going to show how to join a GNU/Linux machine, specifically a Debian one, to an Active Directory environment.I know, I know, Active Directory (AD) is a commercial tool from the evil Microsoft, but we need to admit that is the most used tool in the market. However, not because we are in a Microsoft environment we need to use Windows, even if that's what they would like.

Hackliza
Have you ever added a DNS server to /etc/resolv.conf that disappeared? Our own @zer1t0 did a research about it and he brought a detailed solution for several GNU/Linux daemons: https://hackliza.gal/en/posts/cambiar_dns_linux/
Who is messing with my DNS server? Discovering and managing network daemons

Hi there, today I would like to talk about an recurrent issue that I've been facing for many years. I wanted to configure my machine to use an specific DNS server, so I including it in /etc/resolv.conf. However, after a while my new DNS server was removed and /etc/resolv.conf restored to a previous version. In this article I'm going to explore what is happening and how discover who is modifying /etc/resolv.

Hackliza
Nunca che pasou de engadir un servidor DNS a /etc/resolv.conf e que desaparecera ao pouco? O noso compañeiro @zer1t0 estivo indagando sobre este problema e ofrece unha solución detallada para varios demos de rede de GNU/Linux: https://hackliza.gal/posts/cambiar_dns_linux/
Que demo pasa co meu DNS? Descubrindo e configurando demos de rede

Boas xente, hoxe veño a falar dun problema que me teño atopado en varias ocasións. O tema é que configuro o equipo para usar un servidor DNS concreto, incluíndo este no /etc/resolv.conf, e dalí a un anaco me atopo que este se borrou e se volveu ao servidor DNS anterior. Neste artigo vou ver porque acontece e quen me está tocando o /etc/resolv.conf e como solucionalo. Este artigo vai dirixido a entornos onde se usa a consola, xa que cando temos unha interface gráfica, polo xeral nas opcións de rede podemos poñer o DNS que queiramos sen problema ningún.

Hackliza
@signalapp is there any know issue with signal in samsung devices? I’ve been told that it takes ages to sent or receive messages. They tried reinstalling and the issue persists.