HN user

thatfunkymunki

265 karma
Posts2
Comments146
View on HN

it's not "just to get that data", it's to confirm level of access, check for potential other exploiters or security software, identify the machine you have access to, identify what the machine has network connectivity to, etc. The attacker then maintains the c2 channel and can then perform their actual objective with the help of the data they have obtained.

interesting that the most balanced one is extremely similar to the default, which is not so:

\#198 (\texttt{QNBRKBNR})is the most balanced, with both evaluation and asymmetry near zero... Remarkably, the classical starting position-despite centuries of cultural selection-lies far from the most balanced configuration.

Completely agree- the coverage of MUNI + BART is actually pretty good (with some notable exceptions) and in my experience (ymmv obviously) less stressful than driving and seeking parking.

I'd put it in the zero-trust category if the server (or owner of the server, etc) is the issuer of the client certificate and the client uses that certificate to authenticate itself, but I'll admit this is a pedantic point that adds nothing of substance. The idea being that you trust your issuance of the certificate and the various things that can be asserted based on how it was issued (stored in TPM, etc), rather than any parameter that could be controlled by the remote party.

Agreed. It's interesting how much analysis is given to the outcomes of these less cruel positions, at the same time that one hears calls for "more policing" as if that is not literally advocating for greater rates of incarceration and authoritarian violence without further consideration.

[dead] 2 years ago

These were a great read. It's extremely sad we've reached this point.