@fedora

Страница 689 из 2988
Vitaly
07.05.2017
15:39:47
Rizal
07.05.2017
15:40:42
Sorry :(

Marc
07.05.2017
16:53:15
what language was that, anyways?

Anxhelo
07.05.2017
16:57:44
what language was that, anyways?
it should be indonesian

Google
Red_hat
07.05.2017
17:23:06
guys is there any anti-netcut app in fedora ? this shit kills me everyday in the university

Tobias?
07.05.2017
17:23:38
What would it be supposed to do?

Red_hat
07.05.2017
17:24:57
anti-netcut?
Netcut is windows app kills other user's internet connection so some shitty ppl keep the whole speed for them

i get 50 KB out of 20 MB ?

Tobias?
07.05.2017
17:25:33
There is no actual App that can force you off the Network

The only Thing you _can_ do is going to the Source and using QOS, Quality of Service.

Martín
07.05.2017
17:27:00
http://alternativeto.net/software/netcut/

http://alternativeto.net/software/tuxcut/

Tobias?
07.05.2017
17:27:20
Not to do it

Red_hat
07.05.2017
17:27:37
How would that work exactly? Aside deauthing you from the Network?
some said that this app (netcut or selfish net) make your machine a gateway for the whole network you are using, so you can keep the whole speed for u

Google
Red_hat
07.05.2017
17:28:17
Tobias?
07.05.2017
17:28:28
https://forum.ivorde.com/how-to-add-persistent-static-arp-entries-in-linux-t19121.html

This thing fucks with the ARP table which is illegal, dangerous and can be used to sniff your whole internet traffic

Red_hat
07.05.2017
17:29:01
http://alternativeto.net/software/netcut/
this is the same netcut, i don't wanna be one of these people ?

Tobias?
07.05.2017
17:29:08
if you set the router's ip and Mac static there it can to nothing

I am horrified this Software exists

Red_hat
07.05.2017
17:29:42
Tobias?
07.05.2017
17:30:05
No not a static ip

Also you can look at The TuxCut Tool

It provides protection against this shit

http://www.linuxandubuntu.com/home/tuxcut-a-tool-to-protect-linux-against-arpspoof-attacks

This is again, literally a very dangerous attack used by a tool commercially for bullshit. I would strongly recommend making this clear to the administrators, People around you and warning them of the implications

This tool can literally take all your unsecured communications and listen trough them

Again, strongly recommend to speak to the Admins because they can provide protection from it.

And they should ^^

Michael
07.05.2017
17:41:21
>using unhardened communication in 2017

Tobias?
07.05.2017
17:42:11
>using unhardened communication in 2017
Next to noone knows about ARP poisoning and its effects and that the protocol is basically unprotected in 2017

Michael
07.05.2017
17:46:04
tbh I didn't know those tools existed

shocking

Google
Tanuj
07.05.2017
17:46:24
@Shell528 what these people are doing with NetCut is making everyone else's computers believe that they are the router, but you can make your OS remember which address is the real router and then netcut will have no effect on you

this is my understanding anyway

Tobias?
07.05.2017
17:47:05
tbh I didn't know those tools existed
Yep. And thats why we need another layer of security for "which pc is which" XD

Any Os should warn from ARP Packets not coming from a .1 address tough sometime XD

And even then vlans may be the only (cpuintensive) viable solution

(■_■¬)
07.05.2017
17:49:20
i get 50 KB out of 20 MB ?
Talk to the SysAdmin and help him to spot what MAC address are taking the whole bandwidth and ask to ban them. :D

Tobias?
07.05.2017
17:49:22
this is my understanding anyway
Thats mostly it. You can evade it if you know the actual router ip and set it as static entry

Michael
07.05.2017
17:49:23
should almost be default behaviour to remember the routers real address

Tobias?
07.05.2017
17:49:51
should almost be default behaviour to remember the routers real address
It can change legitimately and there is always the case that an arp attacker may be the first to answer

making the router the "Untrusted" guy

Michael
07.05.2017
17:53:35
sure

>should

Michael
07.05.2017
17:54:05
almost

tbh

just

I suppose this is more of an issue with public wifi networks

"public"

Tobias?
07.05.2017
17:56:04
You could make a speedtest over both Arp responses and choose the faster one XD

Tobias?
07.05.2017
18:12:51
Google
Tobias?
07.05.2017
18:13:12
So anything a man in the middle with literally all your packets running trough him could do he can do

Tobias?
07.05.2017
18:14:01
Or an un-ssl-tool

A http token stealer

Just collecting non-https passwords

Michał
07.05.2017
18:14:51
if you're going through https or so then I guess it will warn you about unsecure connection

LinuxIRC
07.05.2017
18:36:32


Tobias?
07.05.2017
18:37:16
if you're going through https or so then I guess it will warn you about unsecure connection
If you visit the site for the first time or HSTS has run out it wont

Admin
ERROR: S client not available

Michał
07.05.2017
18:39:30
If you visit the site for the first time or HSTS has run out it wont
What? If you visit a site for the first time, and its certificate is not signed by the authority, you will be notified of the problem, and a regular sniffing guy won't have a certificate signed by a legit authority.

I guess what you mean is, if you visit a website using HTTP you won't be redirected to HTTPS that way, and it's true that it's a risk

Michał
07.05.2017
18:43:48
No, not signed but instead plain http
yeah, that's true, that's why I always use the https everywhere extension

desci
07.05.2017
18:47:12
some stupid people changed configuration of our websites to use an alternative ssl certificates

i was mantaining the websites with let's encrypt

then the websites became to provide ssl errors instead of php

when asked I told them it would be that way for the next four months

Google
desci
07.05.2017
18:48:08
and also I said "you're welcome"

I don't know one thing tough. Would HSTS protect a dns hijacked website?

Michał
07.05.2017
18:51:29
I don't know one thing tough. Would HSTS protect a dns hijacked website?
I'm not an expert, but I would assume that if the website can only be accessed using HTTPS, and only the original one can get a certificate signed by an authority

desci
07.05.2017
18:51:30
recently some people hacked the dns zone of a brazilian bank and therefore were able to produce valid ssl certificates for a pishing website without ever touching the bank's web servers

Michał
07.05.2017
18:52:00
well, I guess with the ability to get valid certificates practically everything goes down the drain

desci
07.05.2017
18:52:57
what about the users web browser cache, doesn't that get affetced with hsts?

(■_■¬)
07.05.2017
20:39:52
10 members to go 900.

Tanuj
07.05.2017
20:40:16
if this chat is anything like @letstalkprogramming it will hit it and go back to 899 repeatedly

Kohane
07.05.2017
21:46:20
Hi @Schza ! Welcome to the group

Schyza
07.05.2017
21:47:02
Tobias?
07.05.2017
21:48:58
I don't know one thing tough. Would HSTS protect a dns hijacked website?
HSTS would protect from everything but someone else getting a valid certificate for your site.

what about the users web browser cache, doesn't that get affetced with hsts?
What do you mean? HSTS just means "Every future Connection _must_ be valid ssl and dont even present the user an optout button"

Schyza
07.05.2017
21:56:43
I'm having some problems with nvidia drivers on fedora. The screen freezes and needs to reboot, but today I stayed two hours trying to enter the graphical mode. someone can help me? (sorry for my english)

Gwindor
08.05.2017
01:17:09
Good morning, everybody.

Elizeu
08.05.2017
01:19:00
Good morning

Justin
08.05.2017
01:19:24
Sherif
08.05.2017
01:27:10
Good morning

(■_■¬)
08.05.2017
02:00:08
❤️ :^)

Eduard
08.05.2017
02:46:26
Hi o/

Gwindor
08.05.2017
05:32:13
Welcome aboard, @ikaizuka and @Gggul

Страница 689 из 2988