18 Followers
12 Following
66 Posts
I like to hack into things sometimes. Opinions are mine. Fortis fortuna adiuvat.

Truly insightful post on the results of 2 years of password cracking by Andy Gill and the team at @lares.bsky.social

"The data potentially reveals patterns in password creation and policy enforcement across various industries"

https://labs.lares.com/password-analysis/

I Know What Your Password Was Last Summer...

We have spent the last six months researching on the previous two years of prior cracked passwords and built some tools to understand password creation strategies better. Here are the results.

Lares Labs

Tried out Ligolo-ng on Hack the Box. Impressive. Very fast and easy to setup on the pivot box. IMO, the killer feature is the agent listeners. No need for ssh reverse port forward or socat. Setup a listener & it feeds into your attacker box. 😈 @Nicocha30

https://github.com/nicocha30/ligolo-ng

GitHub - nicocha30/ligolo-ng: An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.

An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface. - nicocha30/ligolo-ng

GitHub
Hackers explain how they β€œowned” FlexiSpy https://www.helpnetsecurity.com/2017/04/26/flexispy-hack-explained/ via Help Net Security
"New Strain of Linux Malware Could Get Serious" http://www.linuxinsider.com/story/84481.html Basically, it's a brute force password attack on common ports.
@phoneboy just read up on that. How are they able to decrypt traffic without bringing everything to a halt?
@Theophilus no no. Own up to it. Take the hit and it will "dissipate" soon enough. πŸ˜‚
@Theophilus we have liftoff!
@Tain πŸ˜„ πŸ‘ πŸ™Œ
@schestowitz @Tain Remember. . .privacy isn't about "something to hide". . .it's about "something to lose".