@fedora

Страница 725 из 2988
Bloo
21.05.2017
08:28:09
Seems the thing tries to make itself at home with a little http/torrent server and a pile of data transfer.

Michael
21.05.2017
08:28:58
Google
Bloo
21.05.2017
08:30:19
A friend of mine got a similar thing one time by running himself a little public Joomla website and not bothering to keep it updated with the latest security fixes.

Speaking of updates, I think I'll update my own server real fast. :)

Michael
21.05.2017
08:32:49
Bloo
21.05.2017
08:33:34
http://ix.io/uqX
Nice! Thank you. :)

J.
21.05.2017
08:34:09
but strace isn't the ideal tool. it losts the track when the process forks...

you'll have more luck with sysdig

Michael
21.05.2017
08:34:39
AHAHAHAH

Bloo
21.05.2017
08:35:26
It's enough to see some basic idea of what it's up to tho. Seems like it's trying to set itself up as a little server inside his machine. It's definitely NOT syslogd, tho, that's for certain now. :)

ssh and scanner? Maybe it's trying to brute force other machines?

Google
Bloo
21.05.2017
08:36:26
watchdog? Apparently it sets itself up to be "unkillable"?

And I see definite attempts to replicate itself in that trace.

Yea, it taps the signal handlers to dodge bein' killed it looks like.

Michael
21.05.2017
08:38:21
i hate working without NVidia drivers

Bloo
21.05.2017
08:41:06
Aighty. I've saved that trace in my quarantine folder and repacked my archive. Will carry it to my server on a pendrive tomorrow and dig at it in a virtual machine a bit myself. Mebbe let it loose in a honeypot for a little while. :)

J.
21.05.2017
08:46:06
but this is only the bootstraper trace. (I think that) the real thing is in the fake syslogd process.

Michael
21.05.2017
08:46:53
I've just wipped my disk on the desktop pc, now i have to install it back, with NVidia drivers and all my programs. Damn that virus.

Bloo
21.05.2017
08:47:02
Ya, that's why I'm thinking I'll have to run it in a honeypot VM, so that it can download it's payload and try to do it's thing while I monitor what it's up to.

LinuxIRC
21.05.2017
08:47:11
Cities: Skylines is -68% off at Steam right now...

Bloo
21.05.2017
08:47:43
LinuxIRC
21.05.2017
08:48:12
Great game indeed

Bloo
21.05.2017
08:48:51
Dang, there's a MESS of stuff on sale on Steam today, innit?

LinuxIRC
21.05.2017
08:49:00
Also there's Shadwen (a stealth game) to grab with -70% off

Bloo
21.05.2017
08:50:32
Nice.

LinuxIRC
21.05.2017
08:50:49
Bloo
21.05.2017
08:54:26
It's often like this on weekends ?
Right on. Hadn't looked at Steam in a while, honestly. Been all sucked into learning Python and coding a Telegram bot. :)

Michał
21.05.2017
09:14:01
Cities: Skylines is -68% off at Steam right now...
got it, works flawlessly on F25 ;)

Kohane
21.05.2017
09:28:06
Good day everyone! I have a little question. I'm using Plasma 5 on Fedora 25. It's installed on top of Workstation. How do I know if I'm using Wayland or X-Org?

Hi Malicious ! Welcome to the group!

Google
Bloo
21.05.2017
09:31:16
The KDE system info tool

Kohane
21.05.2017
09:31:48
Sandman
Enter the Sandman? LOL

What kind of laptop is that one? Looks nice.

The KDE system info tool
Ah, it's not instsalled.

Gwindor
21.05.2017
09:35:19
What kind of laptop is that one? Looks nice.
Looks like a Macbook Pro of a kind.

15" probably.

Hi Kohane.

Orgs of the contest would let people to use their hardware for the competiton. :D

10 days left and I am already packing.

Martín
21.05.2017
10:21:32
https://blog.mozilla.org/blog/2017/05/18/one-step-closer-closed-internet/

Tobias?
21.05.2017
10:23:48
maybe it went on my system because I have public static IP enabled..
If you have a public IP you either should have a very potent firewall (opnsense) infront of it, not on the same system ideally - or really really tightly lock down your pc and choose very strong passwords (maybe move your ssh port a bit)

or even both. Nothing comes close to being as dangerous as running a home pc with a public ip - even servers struggle to do so.

This link may sound worse than it is XD

天荣
21.05.2017
10:29:11
You people.... Using Raspberry Pis for network intensive tasks

Gwindor
21.05.2017
10:30:09
Google
Tobias?
21.05.2017
10:32:10
what about setting a Pi as DMZ Firewall?
Its slow, it doesnt have the tools opnsense offers and would scream and die under suricata

天荣
21.05.2017
10:32:33
Yes indeed.

Tobias?
21.05.2017
10:32:39
and if you use a firewall and then just dmz your pc you gained exactly nothing

Tobias?
21.05.2017
10:32:56
you may have made it worse tough by adding anothee possible target

Or not open any ports at all.
Or this ( but old kernels can still pose a threat publically)

Gwindor
21.05.2017
10:34:57
I don't have a hardware firewall or a machine I can use as such, I have software firewalls up and running at all machines and only use certs with passwords to connect to machines.

Admin
ERROR: S client not available

Gwindor
21.05.2017
10:40:02
Also, 3 attempts lockout is a nice feature.

Tobias?
21.05.2017
10:45:15
Also, 3 attempts lockout is a nice feature.
same setting here - i love to tail -f varlogsecure sometimes and laugh at all the idiots not realizing that root doesnt have a password auth they could use XD

a
21.05.2017
10:45:18
hello how to verify fedoraiso and checksum

Tobias?
21.05.2017
10:45:41
hello how to verify fedoraiso and checksum
open terminal sha256sum /path/to/iso

a
21.05.2017
10:45:56
darkabhi@Gnome:~$
21.05.2017
10:46:18
Tobias?
21.05.2017
10:46:28
also, the process is detailed on their website after you download. just click the "how to verify"

that isnt a necessity?
Dont tell anybody to not do things when they do it right.

darkabhi@Gnome:~$
21.05.2017
10:47:07
sorry edit?

is it a necessity?

Google
darkabhi@Gnome:~$
21.05.2017
10:47:37
coz i never did it?

Tobias?
21.05.2017
10:47:47
Your download could be broken or even compromised in rare cases, checking the checksum (and ideally the checksums key) prevents both.

is it a necessity?
Fedora has its own checker but if you are exceptionally lucky the iso is corrupted just right so it doesnt boot or checksum passes despite failure. chances are low but the 1 minute sha256sum...

Just do it.

darkabhi@Gnome:~$
21.05.2017
10:49:13
hmm

a
21.05.2017
10:50:28
that isnt a necessity?
yeah very have necessary now time have edward snowdon

Tobias?
21.05.2017
10:53:45
yeah very have necessary now time have edward snowdon
if you want to travel that route it leads into a steep descent of neverending things.

patching out your AMT, using core/libreboot, making sure you only use free software, desoldering your cam and mic....

dont worry, i did go down that route ^^

a
21.05.2017
11:13:49
dont worry, i did go down that route ^^
fedora 25 how to update fedora 26??

Tobias?
21.05.2017
11:16:26
fedora 25 how to update fedora 26??
Wait for 26 to become stable

then it will display an update button all by itself

Kohane
21.05.2017
11:19:43
Hi Kohane.
Hi Gwindor!

Anyway, now I have installed Kinfocenter, how do I know if my KDE is using Wayland or X-Org ? I already took a look at it but I can't find where it says that. I know Wayland is Gnome 3's default, but I want to know about Plasma/KDE.

a
21.05.2017
11:26:14
Marc
21.05.2017
11:29:41
If you run in a VM, you know it's wayland when the screen flickers...

J.
21.05.2017
11:29:58
if it's something like wayland-0, you're using Wayland.

Marc
21.05.2017
11:31:54
xrander also shows wayland display, afaict

Страница 725 из 2988