Thứ Ba, 25 tháng 12, 2018

Auto news on Youtube Dec 25 2018

[Pratik]:As the scope of bug bounty has increased in India and also the CTFs, In India only few people plays CTF.

Tell me something about CTFs and what are it's benefit related to Job or bug bounty

[Aaditya]: I did bug bounty for around 2 years, until 2015.

Then I left Bug Bounty. I did full focus on CTFs

Why I left Bug Bounty, this is my point of view

I thought that if I fuzz the whole day, then my enumeration skills will get perfect.

Like how many services a target has, and also can find a bug and may also exploit it and can demonstrate the exploitibility

But it takes a lot of time. Like you find bug, then you get bounty.

But, in cyber security there are lots of field not only web

You should have knowledge of Mobile, RE, Binary, Cryptography

If you only do bug bounty, then you will only keep doing bug bounty in your whole life.

When I thought, I reached my threshold of learning in bug bounty. I started CTFs

CTF is capture the flag, like in bug bounty there are real websites. CTF sites are built by the organizers of the CTF

They are intentionally vulnerable. Like they ask you to hack it

If you hack it using intended techniques, then you will get a flag. Flag is like a string like You solved it flag{...}

and after validating you receive points

There are different categories, then you should focus on category in which you have interest

There are challenges of different points. 100 pt for instance is easier than 500 pt ones

There are 3 types of CTFs generally

1st is jeopardy, which is category based which is most common

If you are interested in CTF, look at ctftime.org which has calender for CTFs

Second thing, is Attack-Defense. In AD all teams have different services. Team A will attack Team B's service

Whereas Team B will attack Team A service and you also have to patch them.

You have to constantly play it, they are around 7 hours to 24 hours maximum

Third is King of the Hill, in which you maintain persistence in the servers.

It is not much, but big ctfs like defcon and all has

You learn a lots from CTFs

[Pratik]: Basic knowledge for someone who wants to start CTFs?

[Aaditya]: First of all, general answer is it depends on your field. If you are targetting cryptography, then your skills related to web

will be useful but not to that much extent. For that, you need to understand maths, having grip on algorithms, programming with python

C, C++ is also a bonus

In recent CTF, there was a go based binary

google's language, less folks do it. That could be learned during ctf duration

It depends on your catching strength.

CTF will push you out of your comfort zone. Like daily stuff you perform like capturing requests from Burp Suite, using tools

Sublisters and all. Script kiddie style enumeration.

In CTFs, you write your own code exploit. So, python skills is like bonus. Mandatory thing

[Pratik]: To write pwntools exploit, bash scripting should also be good.

[Aaditya]: You need good hold of Linux, if you are going towards ELF side and windows hold is a plus point.

Regarding the tools, the tool you use in real world are also applicable to CTFs like Burp Suite for proxying

You can use wireshark to analyze network traffics.

Toolset is the same

[Pratik]: Any CTFs for beginner, websites? Can you share in link?

[Aaditya]: The best CTF for beginner is PicoCTF

It is hosted by CMU every year, targeted to High school students.

and newbies. Challenges are easy and gradually increase in difficulty. That's a good thing to try.

The challenges are online. You can read writeups on that.

So you can easily learn.

[Pratik]: Required programming language for Bug Bounty and CTFs? Because I get a lot of message on Youtube and Instagram

like what languages I need to learn hacking we should focus?

[Aaditya]: Javascript, can be used to strengthen your client side exploitation skill.

Second thing, is learning automation using Python. Python is quick to write.

If I want to write a POC code, I will do that in Python

It has rich libraries

PHP is also good, PHP also has bugs.

Recently there was Real World CTF, in that PHP internals bug were present

Like you can do SegFault in PHP and can perform RCE.

C, C++ is evergreen. That you should always know.

Java, is needed to go into Android (Mobile) field.

These 5-6 languages are like must learn.

So, it's C, C++, Java, Python, Shell scripting and whole LAMP stack

[Pratik]: What is importance of networking in Hacking?

[Aaditya]: You should know networking concept along with Linux fu.

If you are using any public computer, then would you open your facebook a/c at first.

You need to check what process are running on that machine, what ports are open

Like is there any port in which reverse shell communication is happening

netstat, route, arp etc should be known and learnt

There is also a site overthewire, in which there are networking challenges. If you finish that trick, you will get an idea

What services are running on what protocol will be understood by networking, what traffic is generated

When you press ping on terminal, it generates ICMP request.

Like now what if you want to breakdown ICMP protocol, then you can open wireshark, start capturing request

and write ping command. Then you can read the entries there

You can disassemble that network traffic in Wireshark.

If you are doing pentesting, then networking is important.

Like in red teaming, how do you exfiltrate data like if many protocols are blocked or commands are restrictive.

like firewall, then how you could bypass it.

[Pratik]: Some people says if you have laptop worth $1000 then only you can do good pentesting. Can you debunk that?

If you see these two laptops:Macbook and Dell, he earned from his own earning in US.

and these are also pretty old laptop.

So, it's not needed that you can do pentesting on only costly machine. Only in initial stages, you may need

like programming, automation, GPU cracking

[Aaditya]: You can also SSH into your VPS. You can download XShell or Putty

And purchase $5 basic VPS from Digital Ocean.

It should be even better than your lowly runned VM

Good RAM, good space, and linux server. From scratch deployment.

You can SSH to it even from Windows box like put the remote IP and port number

and login with password or public key.

and then you enter the linux box. So that's a good option that you gotta enumerate

For more infomation >> Talking Cyber Security with Special Guest - Aaditya Purani #2 - What is CTF and Networking - Duration: 10:01.

-------------------------------------------

How Meghan Markle is spending her first Christmas as a Royal - Duration: 2:05.

For more infomation >> How Meghan Markle is spending her first Christmas as a Royal - Duration: 2:05.

-------------------------------------------

What If Jesus Was Alive Today? - Duration: 6:42.

2.3 billion people on this planet are Christian, and the birth of jesus of nazareth, which

took place on Christmas day, is celebrated on this day.

Jesus changed the world forever with his teachings, I mean, the world we live in is predominantly

Christian.

As Louis ck said, what year is it?

Christians, even though they believe that jesus is always a presence in their life,

have never actually seen him in person.

But what if that changed?

What if jesus were around to witness the society we have become.

How would he be received?

Would he be proud of us?

Would he be ashamed?

So what if jesus were alive today?

That's the question we're asking, right now on life's biggest questions.

Hello and welcome back to life's biggest questions, and happy holidays from everyone

at LBQ.

By the way, I'm charlotte, and if this is your first time here, leave a thumbs up, subscribe

and turn on those notifications.

And if you want to connect with the creative team behind life's biggest questions, our

social media handles are posted in the description.

It is believed by most historians and religious people alike that jesus was in fact a real

person who was born in the first century.

He was a jewish preacher who was crucified under the command of Pontius pilate some time

during 20 to 30 CE.

First of all, jesus was not a Christian, he was jewish.

And he looked very middle eastern.

He was olive skinned.

This directly contradicts the blonde, blue eyed version of jesus so many people are familiar

with in modern times.

It would be, needless to say, a shock.

And then there's the question of whether or not people would believe him when he said

that he was jesus.

2018 is not the 1st century AD.

Most people believed in the supernatural 2 thousand years ago, people these days are

far more sceptical.

But this is jesus we're talking about, he's not some televangelist, he's the real deal.

Jesus would probably start performing miracles to prove he was the son of god, and start

gaining a following.

If jesus were alive today, its likely that he would use the media to preach his message.

In the days of social media, word of a modern day jesus would spread very quickly.

Needless to say, if jesus suddenly started performing miracles, there would be video

coverage of it because everyone has smartphones.

Videos of jesus' miracles would be posted to youtube, where he would most certainly

go viral.

People would dissect every second of these videos, judging the authenticity of jesus'

miracles.

It would be a really hard thing to grasp.

A real life jesus?

There's no way.

This has to be a hoax.

But its not.

Jesus is everything everyone hoped he would be and more, and he proves it to the masses.

Plus, he's a pretty chill guy.

Soon enough, jesus would be mainstream.

He would be invited to speak on ellen, oprah.

He would be invited to the white house, and to the UN, where he would preach his message.

The world is very different now than it was 2000 years ago, and yet, in many ways the

world is very similar.

Jesus preached about overthrowing an immoral and unjust society where the poor were controlled

by a corrupt ruling class, and when you think about it, things haven't changed all that

much in that regard.

We still live in a society that is plagued by imbalances between the rich and the poor.

There are still 40 million slaves in the modern world.

There are still unjust wars.

There are still A modern day jesus would see that and would still try to change it.

Jesus said time and time again that he was against violence.

Theres no doubt in my mind that he would detest how our society glorifies violence in the

media, in films, in video games.

Jesus was also extremely anti materialistic, think about how he would feel about the consumer-driven

society we live in today?

He said, do not store up treasures for yourself on earth and sell everything you have and

give it to the poor.

This sounds great in hindsight but it definitely wouldn't be received well by corporations.

Its likely that in their own interest, and to keep making money, they would try to discredit

jesus and everything he stands for.

If jesus were alive today, he would likely have a lot to say about how the bible was

written.

The new testament was written many years after jesus lived, and have been changed many times.

Its been rewritten to include teachings that contradict the teachings of jesus.

Many have died in jesus' name since he was alive.

People who used the bible as justification have been wreaking havoc on the world for

centuries.

The crusades, wars, slave trades, sexual abuse in the church.

Its quite likely that jesus would have a lot of negative things to say about how people

have distorted his teachings for their own personal gain, and that includes the present

day catholic church.

For this reason, its quite likely that the present day catholic church might not accept

a modern day jesus.

Which sounds weird to say, but think about it.

Jesus was crucified because he continued to be an issue for roman authorities.

Jesus preached about love and acceptance, which directly contradicts many branches of

Christianity.

And what about other religions?

How would they accept jesus?

If jesus gained a following in modern day, what does that say about Hinduism or islam.

Would they suddenly renounce their religions and become Christian?

I would imagine that some religious fanatics would take it upon themselves to try to assassinate

jesus because his presence directly contradicts what they believe in.

Elton John once said in an interview that if jesus were alive today, he would support

gay marriage, because he is all about love and compassion and forgiveness and trying

to bring people together, and that is what the church should be about.

And Elton john is technically right.

Jesus once said that every human being is precious in the eyes of god, including the

poor, the oppressed and the marginalized.

That includes gay people.

If jesus were alive today, its quite possible he would want to rewrite the bible, so that

we have a new religion to follow.

One that is less altered by history, one that will bring us together instead of tear us

apart.

He would tell us to be kind to each other, to help the poor and to except one another

for who we are because we are all human.

We all make mistakes, we all deserve to live life to the fullest, we all deserve to love

and be loved.

But now I open up the question to you, how do you think jesus would feel about our modern

society?

Let us know in those comments.

For now, I'm going to wrap up this video by responding to some comments from my video

Julie Pavlovic – why is this in my recommended.

I don't know Julie, its probably based on some of the videos you've watched in the

past.

Why don't you tell me why its in your recommended.

Tessa Geary – Watching this channel makes me feel smart.

Hey, working for this channel makes me feel smart so I can see where you're coming from.

Timer – remember when this thannel once had good questions.

Nope I don't.

Mommy 143 love – what if all animals talked like humans.

We have actually already answered this question.

What if Animals could talk.

Definitely check it out after you're done this video.

Marcus – I am slowly catching up on all the videos I've missed.

that might take you a while, but the playlist that's going to be flashing on your screen

in just a few seconds might help you out.

We have reached the end of the video, if you want to continue watching LBQ, check out the

playlist that's currently flashing on your screen.

And On behalf of life's biggest questions, Happy holidays to all of our wonderful subscribers,

and may this season bring you so much happiness and time spent with family and friends.

That is it for me, and thanks for watching life's biggest questions.

For more infomation >> What If Jesus Was Alive Today? - Duration: 6:42.

-------------------------------------------

Indonesia Tsunami 2018: What is Anak Krakatoa that has killed 373 till now? I History - Duration: 1:50.

For more infomation >> Indonesia Tsunami 2018: What is Anak Krakatoa that has killed 373 till now? I History - Duration: 1:50.

-------------------------------------------

What Ole Gunnar Solskjaer did when a reporter let slip he was a Liverpool fan - Duration: 3:15.

 Ole Gunnar Solskjaer's widely regarded as a breath of fresh air after the drudgery of the Jose Mourinho era

 Just look at what he managed to do in the tunnel in his first game.   After the maiden win, Solskjaer began the process of bringing the warmth back to Manchester United after the final frosty days of Jose

  United were 5-1 winners away at Cardiff on Saturday evening - the first time the team has scored five goals in a game since the final match of Sir Alex Ferguson's tenure in May 2013

 And afterwards in the tunnel at Cardiff City Stadium, caretaker boss Solskjaer took a moment to shake the hand of Sky Sports presenter Jim White, the kind of gesture that would have been unthinkable from the belligerent Mourinho

Read More Ole Gunnar Solskjaer's tunnel exchange proves he's nothing like Jose Mourinho  The smiling Norwegian said: "All the best, cheers", before taking a moment to speak cheerily to other journalists assembled in the tunnel

 But is he always that jovial? And what if Jim White was a Liverpool fan?  Irish journalist JJ Devaney has a slightly different take on things

  He told the Caught Offside podcast about when he covered Sligo Rovers' Champions League qualifier against Solskjaer's Molde back in 2013

Read More Transfer news LIVE: Man Utd, Chelsea, Arsenal and Liverpool latest  Devaney attended Solskjaer's post-match press conference after Molde's 1-0 win and approached him at the end to shake his hand

 As they shook, Devaney revealed he was a Liverpool fan - and Solskajer just couldn't help reacting

 "I went up and there were a few journalists gathered around," said Mr Devaney.  "You know me in social situations - shameless and straight to the point - so I stuck out my hand and I said, 'Ole, I'm delighted to meet you'

 "And he fixed me with those blue eyes and they are kind of piercing and he does look younger than the age he actually is

 "So I shook hands with him and said, 'Listen I thought you were a fantastic player, brilliant player, and even though I'm a Liverpool fan I just wanted to shake your hand

'  "You would think that's really nice. He didn't move a muscle in that face. His eyes fixed on me and he said, straight up, with no jocularity: 'If I'd known you were a Liverpool fan, I wouldn't have shaken your hand

'"  Ouch.

Không có nhận xét nào:

Đăng nhận xét