Nobody Cares: PRS

bubblesort

Well-known member
Joined
Nov 16, 2018
Messages
1,990
no you didn't. while you thought you had someone who knew even less than you .. you were happy to gaslight and bully, but the minute someone who actually knew something about it called you out.,.. you weewee'ed your pants and started grovelling..

your life must be dull if you need to come troll a niche forum.
LOL, you're seriously trying to give me crap because I change my mind when presented with better information? I think that has to be the weirdest self own I've ever seen.

You really should try changing your mind when presented with better information, some time, like I do, because if you do it enough times, you actually end up knowing things. If you know enough things, then maybe someday people might actually care about what you think!
 

WolfEyes

Well known member no one knows
Joined
Sep 20, 2018
Messages
4,502
SL Rez
2004
Joined SLU
2009

I think this is a fine idea.

I do think the situation is not quite as dire as some people make it out to be. When I'm out around town I still see kids playing outside here and there. This seems more like a localized problem where you have just certain communities where a few people will call the police whenever they see a child in public and there isn't an adult standing right next to them. For cases like that I think a law like this is useful.
You also have to consider where you live. The people of Alex are still about 20 years behind the times. Not all of them but most of them. I doubt that will ever change. But it's also one of the reasons I keep contemplating moving back there if something ever happened to Troy. Then the memories come flooding back and puts a stop to that.
 

Katheryne Helendale

🐱 Kitty Queen 🐱
Joined
Sep 20, 2018
Messages
10,551
Location
Right... Behind... You...
SL Rez
2007
Joined SLU
October 2009
SLU Posts
65535

I think this is a fine idea.

I do think the situation is not quite as dire as some people make it out to be. When I'm out around town I still see kids playing outside here and there. This seems more like a localized problem where you have just certain communities where a few people will call the police whenever they see a child in public and there isn't an adult standing right next to them. For cases like that I think a law like this is useful.
I was a free-range child growing up, rarely under direct adult supervision when I was playing outside. Plus, back then, most kids played outside anyways. I think it's an awful shame that they don't anymore.
 

Katheryne Helendale

🐱 Kitty Queen 🐱
Joined
Sep 20, 2018
Messages
10,551
Location
Right... Behind... You...
SL Rez
2007
Joined SLU
October 2009
SLU Posts
65535
LOL, you're seriously trying to give me crap because I change my mind when presented with better information? I think that has to be the weirdest self own I've ever seen.

You really should try changing your mind when presented with better information, some time, like I do, because if you do it enough times, you actually end up knowing things. If you know enough things, then maybe someday people might actually care about what you think!
You really need to learn to quit when you're behind.
 

CronoCloud Creeggan

Eliza, because Free says so.
VVO Supporter 🍦🎈👾❤
Joined
Sep 26, 2018
Messages
2,516
Location
Central Illinois
SL Rez
2006
Joined SLU
07-25-2012
SLU Posts
278
LOL, you're seriously trying to give me crap because I change my mind when presented with better information?
You have made a habit of pontificating without having good information in the first place. I think you should do more and better “research“ before you embarrass you self by spouting misinformation. Being a techy autist who obviously hangs out in some internet cesspools like the “chans“, you are Very vulnerable to misinformation.

In other words, you are not as smart and well informed as you think you are.
 

bubblesort

Well-known member
Joined
Nov 16, 2018
Messages
1,990
I really don't care much about the people in this thread who seem to be calling me names and laughing at me for learning stuff. That's not really what's happening at all, anyway, because they don't actually believe what they say. I mean, if they actually believed what they said, they would never have learned to tie their shoes. It would be impossible for them to even type on this forum, so they clearly aren't as dumb as they act.

Clearly, what is happening here, is that they are all post-graduate level experts in evaluating aptitude, and they all think I'm not too bright. I think that's a lovely conversation to have, and I would never dream of interrupting them.

For people who are just skimming the thread, though, these aptitude experts might give you the wrong impression regarding the Durham hack. I did make a mistake, but my conclusion has not changed.

This hack is absolutely more significant than the Clinton defenders would have you believe. Follow along in your browser with me, and I'll show you why...

According to reports, the hackers got Trump's DNS request data from his upstream provider. Just to kind of give you an idea of what that might look like, lets look at your browser history. The browser history is not actually the same as DNS history from an ISP, but it's a starting point to show you what kind of data we are talking about.

So open your browser history by hitting ctrl-H, or hitting the sidebar button in Firefox, or the kebab > history > history in Chrome. If you are in Firefox, in the History side bar, click the view drop down and select "By Date and Site." If you are in Chrome, you won't be able to follow along as easily, because Chrome does not sort sites like this. Just imagine that each web domain in your history has only one entry.

Now, when this conversation started, I thought what was hacked was the entire URL for every site visited, because I was confusing traffic logs with DNS request history. Traffic logs are absolutely one of the most valuable types of file for an attacker to target. Sometimes, the traffic logs are all the attacker wants. Like, this history file could be the entire end game, because it could reveal enough information to arrest, blackmail or embarrass a target. At the very least, it almost always gives enough technical information to know what hardware and software you are trying to hack in order to take over the machine, if you wanted to. It also tells you about the technical skill level and general life of the target. If you have a stalker, this is not information you want them to have.

So I was wrong assuming that the Durham attack was about traffic history. Why did I make such a bad assumption? Because nobody ever goes straight after DNS history at the ISP level. That just seems bizarre to consider, at first. Thankfully, Argent and Essence set me straight.

What's the difference between this list and the DNS history from an ISP?

When you go to a URL, your browser needs to take the domain from the URL, and tranalate that domain into an IP address. To do that, it checks it's own cache first. Your history is a version of this cache. If it doesn't find it there, then it goes up a level. If you are at a big company, you probably have your own company DNS server. If somebody else in the company has been to this domain since the cache was last cleared, then it gets the IP address and goes from there. If not, it goes up a level, and maybe another level, and eventually it goes up to the ISP level. This is where Verizon's DNS server lies. If nobody from your company has gone to the URL since all the DNS servers below it, then you get the IP address here. It can go up from there, all the way to the 13 root DNS servers that the internet runs on. So it's a hierarchy.

So lets say you have DNS history from Trump tower, directly from their ISP. I don't know who their ISP is, but lets say it's Verizon, just to keep things less wordy. What does this DNS history look like?

It looks like the history in your browser, but with only domains specified, and no domain is repeated more than once. It also is time sensitive, because if cache was cleared on the client's broswer or in the client's company DNS server, then it shows almost every domain visited. So lets say we assume the caches were cleared a month ago. Could be a few hours ago, could be a month, lets just use a month to illustrate this on your browser.

If you are in Firefox, and still have your history sidebar open, then click the View drop down, and select This month. Don't open any of the folders inside This month, just open this month and see what's in there. This is kinda what it would look like, if we got your DNS history from your ISP. Obviously, there would be no (local files) entry, and there would be more holes, because of the caching, but this is a general idea of what Clinton's attacker had on Trump.

The ISP's DNS history would also have history from applications other than your browser. If your software or operating tries to resolve a URL to run updates, or if your drivers try to update they will create logs, as well. I probably won't know which model of video board you have from this, but I can probably tell if you are running intel or AMD. I can also tell if you have Windows, BSD, Linux, or Apple OS. Did your Adobe products check for updates today? Got that, too. Probably can't tell what products, exactly, but I know adobe is there. Did your browser check for updates? You see where this is going...

You can't see frequency of requests, or the full URLs of requests, but you can see what requests are being made to what domains, and that is useful, on a technical level.

That's just the information I get from this file that's useful for a technical hack, where I determine the software and hardware I need to exploit in order to break in and do bad things.

What about more social attacks?

Social engineering attacks commonly involve calling somebody up or spear phishing them or generally doing whatever it takes in order to get them to click on something, or fill out a form on your web site. In order to do that, one common attack vector is spoofed web sites. This DNS history is a directory of sites that are going to be easier to spoof, because the target may have seen them before. If the target sees a brand new web site, they might scrutinize it, but if you see a site you go to all the time, like NPR or VVO, then your eyes might glaze over, and you might just do as it says, when it asks you to log in with 2 factor authentication. If it's a spoofed site, the attacker now has your 2 factor auth information.

If you want to see an example of how this works in the wild, check out Kitboga's YouTube channel. He uses social engineering to screw with scammers by using spoofed web sites on them. It's hilarious. Also, I love what he does with his voice. He's like a one man Crank Yankers for Gen Z.

So in the end... yeah, that file is meaningful. Not as meaningful as full network logs, but still very meaningful, and damaging for somebody to have. You do not want your stalker to have this information!

The crazy thing is, how did the attacker get this? Like Argent said, to get something like this by purely hacking it with a technical attack, you would have to hack the entire perimeter of Trump's network, in which case, you would be pulling all kinds of crazy stuff, and DNS logs like this would be small ball kiddie stuff. Either that, or you hacked Verizon's DNS server, in which case, again, just reading this file is small ball stuff. It would be like killing a fly with a howitzer. This is why I thought they had full network logs at first. Nobody targets an ISP's DNS history log. It's just weird.

I say the only way it makes sense for an attacker to get this file is if a Verizon representative just gave it to them. I am not a lawyer, but my understanding of the law says that this would have been legal for Verizon to do.

Everybody agrees that this is unethical, though. I bet if you go back to historical VVO forum posts regarding ISP's ability to sell your traffic history, you will find that absolutely nobody here is defending their right to do this kind of thing. You might even find some of the aptitude experts who posted above freaking out about such things. Why defend the practice now? Seems like they are defending this hack because it helps Hillary Clinton. They don't care about ethics, beyond what helps and hurts their political candidates. I find that disturbing.

Anyway, the point is that this Durham hack is a much bigger deal than the neolibs would have you believe. It is probably legal, but that does not mean you should not be outraged about it. It was wrong.
 
  • 1Thanks
Reactions: Essence Lumin

Soen Eber

Vatican mole
VVO Supporter 🍦🎈👾❤
Joined
Sep 20, 2018
Messages
3,977
I'm going to wait for one or two certified network engineers or security experts to chime in before I come to any sort of opinion on this.
 

Argent Stonecutter

Emergency Mustelid Hologram
Joined
Sep 20, 2018
Messages
7,587
Location
Coonspiracy Central, Noonkkot
SL Rez
2005
Joined SLU
Sep 2009
SLU Posts
20780
DNS caching is set in the DNS record itself. It can be as low as minutes for dynamic IP DNS services where you don't have your own address you just register every time you go online, because it needs to change often. But usually it's many hours or days so your DNS server doesn't get spammed and you can run it on an old 486/50 in the facilities closet.

It's also even less useful than you suggest. Let's consider this site. A good fraction of the messages have images in them, and they could be hosted anywhere. And just browsing VV1 site will generate DNS lookups on sites that have good pictures without referrer checks (like, say, NPR).

Also, "neolibs" are generally on the right. Neoliberalism is a conservative philosophy associated with extreme capitalism and neocolonialism.

And most likely they got the list from browsing SHODAN and finding an insecure FTP server at Verizon.

Disclaimer: the old 486/50 I was running DNS service on was actually on a shelf at my ISP's facilities closet.
 

bubblesort

Well-known member
Joined
Nov 16, 2018
Messages
1,990
DNS caching is set in the DNS record itself. It can be as low as minutes for dynamic IP DNS services where you don't have your own address you just register every time you go online, because it needs to change often. But usually it's many hours or days so your DNS server doesn't get spammed and you can run it on an old 486/50 in the facilities closet.

It's also even less useful than you suggest. Let's consider this site. A good fraction of the messages have images in them, and they could be hosted anywhere. And just browsing VV1 site will generate DNS lookups on sites that have good pictures without referrer checks (like, say, NPR).
Yeah, the data is definitely noisy, but I mean... it's still useful. If I see logs for microsoft, and none for apple, or for various linux distros, I generally know I'm dealing with a Windows system, right? Also, if I see reddit or the New York Times, I know I might want to prepare a spoofed clone to attack with later.

What I'm getting at is that I think we can agree that this is not totally harmless. If you had a stalker, you would not want them to get this data on you, right?

Also, "neolibs" are generally on the right. Neoliberalism is a conservative philosophy associated with extreme capitalism and neocolonialism.
I said what I said! Basically, yeah, I say the Clintons are conservative. In recent years, neoliberalism has really become more of a description of the current political system, though. Like here, for example:

And most likely they got the list from browsing SHODAN and finding an insecure FTP server at Verizon.

Disclaimer: the old 486/50 I was running DNS service on was actually on a shelf at my ISP's facilities closet.
Unfortunately, I highly doubt we will ever find out where the file came from, because I don't think the Biden administration wants to investigate the Clintons for this kind of thing. All we can do is speculate.

That said, in your version, the attacker would have had to break the law to exploit an insecure FTP server. In my version, they keep everything legal, so we can't investigate. In both versions, they behave unethically, but I'm speculating that they didn't break the law, which is why my conjecture is simpler, in some ways.
 

Argent Stonecutter

Emergency Mustelid Hologram
Joined
Sep 20, 2018
Messages
7,587
Location
Coonspiracy Central, Noonkkot
SL Rez
2005
Joined SLU
Sep 2009
SLU Posts
20780
Yeah, the data is definitely noisy, but I mean... it's still useful. If I see logs for microsoft, and none for apple, or for various linux distros, I generally know I'm dealing with a Windows system, right? Also, if I see reddit or the New York Times, I know I might want to prepare a spoofed clone to attack with later.
If your site is more than like two people in a strip center, you're going to see all of the above. Apple software runs on Windows and Windows software runs on MacOS and embedded Linux is everywhere.

In recent years, neoliberalism has really become more of a description of the current political system, though.
Then you're saying "everyone" and your statement has no information content.
 

bubblesort

Well-known member
Joined
Nov 16, 2018
Messages
1,990
If your site is more than like two people in a strip center, you're going to see all of the above. Apple software runs on Windows and Windows software runs on MacOS and embedded Linux is everywhere.
Oh yeah, fair enough. Maybe it's not as useful for the technical data as a simple port scan, then. Still useful for background on social engineering, though. Might also be able to fingerprint the domains by what other domains they cluster with, if you have time and money to burn (this is a presidential campaign, so they might). I'm no hacker, but I know enough to know I wouldn't want a stalker getting this information on me.

Then you're saying "everyone" and your statement has no information content.
Nah, the current political system is neoliberal because neoliberals have all the power, on both sides of the aisle. That doesn't mean people without power just disappeared, it just means the neolibs win control, all the time, for now. The increased labor activity and protests against the police over the past couple years is not coming from the current political system. It's coming from people who are outside the political system. These systems change more than most people realize, and this current system is over 40 years old already. The Hegelian cracks are showing. The Methuselahs in congress and the presidency can't live forever.

That is a bit wordy, though. Maybe I should use more concise language: They're all assholes! LOL
 

Argent Stonecutter

Emergency Mustelid Hologram
Joined
Sep 20, 2018
Messages
7,587
Location
Coonspiracy Central, Noonkkot
SL Rez
2005
Joined SLU
Sep 2009
SLU Posts
20780
Nah, the current political system is neoliberal because neoliberals have all the power, on both sides of the aisle. That doesn't mean people without power just disappeared, it just means the neolibs win control, all the time, for now. The increased labor activity and protests against the police over the past couple years is not coming from the current political system. It's coming from people who are outside the political system. These systems change more than most people realize, and this current system is over 40 years old already. The Hegelian cracks are showing. The Methuselahs in congress and the presidency can't live forever.

That is a bit wordy, though. Maybe I should use more concise language: They're all assholes! LOL
No, that doesn't make sense in context. You were clearly using "neolibs" as a side, and the side that would be defending the Democrats specifically.
 

Innula Zenovka

Nasty Brit
VVO Supporter 🍦🎈👾❤
Joined
Sep 20, 2018
Messages
24,137
SLU Posts
18459
I'm always somewhat confused about what people mean when they talk about "neoliberals."

I would expect them to be opponents of neoconservatives, but the way the term is used, it's not always clear that's the case.

What's the difference between a liberal and a neoliberal, and what are the main areas of disagreement between neoliberals and neoconservatives, please?

Economic liberalism has both a right- and a left-wing, I think -- Keynes and Hayek were both liberals, to my mind, though they obviously differed profoundly in what they considered important.
 
Last edited:

Free

It's all in my head.
VVO Supporter 🍦🎈👾❤
Joined
Sep 22, 2018
Messages
42,876
Location
Moonbase Caligula
SL Rez
2008
Joined SLU
2009
SLU Posts
55565
TOO MANY REPONSES...LOGIC BOARD ON FIRE...
 
  • 1Agree
Reactions: Govi

Argent Stonecutter

Emergency Mustelid Hologram
Joined
Sep 20, 2018
Messages
7,587
Location
Coonspiracy Central, Noonkkot
SL Rez
2005
Joined SLU
Sep 2009
SLU Posts
20780
Liberal US means centrists who think they're left wing. Milkwater progressive/labor.

Liberal Australia/UK/Europe means conservative capitalists.

Neoconservative is the US term for conservative/nationalists colonialist capitalists.

Neoliberal is the rest of the world term for nationalist/colonialist capitalists and Paulist libertarians. Also used in the USA because Neocons are too strongly associated with Bush and Cheney and the whole Gulf War II fuckup.
 

Ashiri

√(-1)
Joined
Sep 20, 2018
Messages
936
Location
RL: NZ
SL Rez
2007
SLU Posts
-1
I'm always somewhat confused about what people mean when they talk about "neoliberals."
I'm come to view the term as meaning free market enthusiasts who believe the state should get out of the economy while somehow having a blind spot with regard monopolies.