@alex_02@infosec.pub cover
@alex_02@infosec.pub avatar

alex_02

@alex_02@infosec.pub

Just a hardware nerd.___

This profile is from a federated server and may be incomplete. For a complete list of posts, browse on the original instance.

alex_02 ,
@alex_02@infosec.pub avatar

Wasn't this obvious from the beginning?

alex_02 ,
@alex_02@infosec.pub avatar

I have a freezer full of ice cream again.

alex_02 ,
@alex_02@infosec.pub avatar

A bit late again, but I've been busy and dealing with life... I finally got my PinePhone up and running, mostly. I'm quite proud. I ended up going with Arch + Phosh image and not disappointed. Found a bunch of apps that work well on it as well. I'm definitely happy for once since it is basically usable now as a regular smartphone and as a mobile device for uh more nerdy things.

I am also debating which smartphone to buy to have as a backup phone, and there are three I looked at. All three have official Lineage OS support and one has Calyx OS support. I might end up buying 2 out of the 3.

Also been brainstorming and experimenting with a few ideas in labs and on my devices. Have a lot written down as a rough draft of what I want, and just need to go through my list to figure out what to prioritize to code and test in labs first. I am glad I wasted way too long figuring out this stuff because things are starting to turn out a lot better quality. I also have a nice list of hardware I want to buy... looking forward to being able to explore RF more and play with a lot of interesting hardware toys.

I have a lot of plans right now and just taking everything a bit each day.

Defiently still have way too much doubt in myself and questioning if this is really my thing, but life is confusing and sometimes sucks.

Also, here are a couple of pics of the pinephone:

https://infosec.pub/pictrs/image/c8f27e81-fd73-4dff-be69-611da857c200.jpeg
https://infosec.pub/pictrs/image/263af256-64f3-4def-b673-3e71ac98a05d.jpeg

alex_02 ,
@alex_02@infosec.pub avatar

I just accept I'm an asshole, and I'm an emo furry.

alex_02 ,
@alex_02@infosec.pub avatar

I'm late, but been wrestling with the PinePhone. I've ultimately decided on Mobian with Phosh + TLP + UFW and probably other stuff. I have decided to take a bit of a short break from most of my projects, but will probably be back to them in a week or so. Just exhausted right now, but something's are starting to look up for once.

alex_02 ,
@alex_02@infosec.pub avatar

Make it more usable without having to do too many mental backflips. I'm going to try to see if I could make a better DE with XFCE + Openbox + dmenu + the sxmo gesture daemon. Have a rough draft in my head.

alex_02 ,
@alex_02@infosec.pub avatar

I was told there were furries on Fridays.

alex_02 ,
@alex_02@infosec.pub avatar

Brainstorming ways to deal with the overheating on PinePhone and have a few ideas to try. Been coding a lot in various different languages that are mostly newer to get a feel for them to see if they're interesting enough. At some point, I want to try to get into developing some stuff with the Pogo pins on the PinePhone. Need to get to emulating firmware on QEMU to start playing with IoT and whatnot...

I have a lot going on. xD

alex_02 , (edited )
@alex_02@infosec.pub avatar

He's kind of cute looking.

EDIT: Do any of you guys that downvoted me ever have fun?

alex_02 ,
@alex_02@infosec.pub avatar

You mean It's a bad idea to put government secrets in the cloud of a large company whose only working department is their PR department?

https://infosec.pub/pictrs/image/28eccc50-a021-4ed6-bb38-77a4d9f7ff82.jpeg

alex_02 ,
@alex_02@infosec.pub avatar

Are you a child or just dense?

alex_02 ,
@alex_02@infosec.pub avatar

It probably won't be used in the majority of environments because it would be an administration nightmare.

Has ethernet become illegitimate? A librarian flipped out after spotting me using ethernet

I plugged into ethernet (as wifi w/captive portal does not work for me). I think clearnet worked but I have no interest in that. Egress Tor traffic was blocked and so was VPN. I’m not interested in editing all my scripts and configs to use clearnet, so the library’s internet is useless to me (unless I bother to try a tor...

alex_02 ,
@alex_02@infosec.pub avatar

Idk what I read because it is so stupid.

alex_02 ,
@alex_02@infosec.pub avatar

I want to slap congress for this stupidity.

A bit of an update on my RPi builds

I've been working on and off on several of my tools and toys, specifically my raspberry pis that I bought long ago. I'm at a bit of a gripe now for buying the boards from Raspberry Pi Foundation, mostly because I do not like the direction the company is going, but I still have three of the boards lying around before everything...

AI Can Tell Your Political Affiliation Just by Looking at Your Face, Researchers Find ( gizmodo.com )

A study recently published in the peer-reviewed American Psychologist journal claims that a combination of facial recognition and artificial intelligence technology can accurately assess a person’s political orientation by simply looking at that person’s blank, expressionless face. Read more...

alex_02 ,
@alex_02@infosec.pub avatar

I'm politically affiliated with that rich nasa furry that makes six figures.

alex_02 ,
@alex_02@infosec.pub avatar

I cleaned up my room, which took a total of five hours. I'm proud of that one. I just need to vacuum and call it a day. Also been doing a lot of research and coding again. Hoping some of these interview line up so I can start making money to waste all on new hardware toys.

alex_02 ,
@alex_02@infosec.pub avatar

Well, currently I'm open to anything, but I go back to school in the fall and should get workstudy so was thinking of checking the IT Helpdesk first at the school, but think I have enough personal experience that I could in theory do something like Junior Sysadmin or Junior Pentester. The main issue is that I live in a dead end state right now, and any job would have to be remote for the most part, which most companies won't do. Another problem is that I don't exactly have a great reputation because of assholes that I've had the displeasure of dealing with since I was a teenager. There is also the dumb case of my record with an online article that basically defames me and doxxes me. Also, a lot of misinfo. That article shows up when you google my name and also the stupid case, so idiots in HR get weird about it which ruined several job opportunities, and also I was harassed for months online which cost me my last job along with that dumb article... So think I'm going to just look for something outside the tech industry because so far the way I've been treated has been foul.

alex_02 ,
@alex_02@infosec.pub avatar

I'm a huge fan of Golang, but I've started looking at writing in Java because a lot of APIs have Java SDK. Before, I have coded a lot more in C/C++. I also love shell scripting and have written a lot of scripts in bash and sh. I'm planning on coding more stuff in various different languages and for Windows I've started dabbling in C# because it is specifically built for Windows, so I tolerate it.

alex_02 ,
@alex_02@infosec.pub avatar

I wanted to do red teaming when I was 18/19, but it is so niche that I don't think I can get my foot in the door. I'm a hardware nerd and the past several months I have also started looking at overlooked protocols. I do plan on getting into more embedded and designing my own boards. Thing is, hardware is very overlooked which I feel like nobody is taking it serious enough. I still have an interest in the tech industry, but kind of just letting life do its thing and wherever I end up, I end up there.

alex_02 ,
@alex_02@infosec.pub avatar

You mean taking hardware apart or reverse engineering the software/firmware? Been planning on getting into reverse engineering firmware, but I take hardware apart a lot to figure out how they work because most of the time I can build something better and cheaper.

alex_02 ,
@alex_02@infosec.pub avatar

I have. I hate Rust. I think it is overhyped. I have heard good things about Zig, and it looks more promising. Crystal and Dart also look promising, but unfortunately the hype is fucking Rust, which I think is a garbage language.

alex_02 ,
@alex_02@infosec.pub avatar

Yeah. Life keeps getting in the way, but I've been having plans to at least start emulating firmware with QEMU and poke around a bunch of publicly available firmware. The biggest problem I do see with the learning curve is the machine language, but I don't see it being too much of trouble once I grasp the basics enough to get a better idea what is going on. Finally got around to getting qemu up and running, so will try to get started with firmware once I get other more important things taken care of first.

alex_02 ,
@alex_02@infosec.pub avatar

The syntax reminds me of what python, javascript, c# would look like combined if they somehow mated and had a child in their threeway relationship. The community also has very stupid people that think it is great making everything twenty times harder because of some hypothetical insecurity introduced by the user or something dumb like that when Rust is supposed to be a memory safe language and the hand holding has allowed some very dumb but arrogant asshats get it to their head.

It just seems over all like a cobbled up, overhyped mess that is driven a lot by pseudo-intellects and ego. A lot of the articles I've read have the author throwing around a bunch of fancy words that don't really make sense and just make them look dumb, also a lot of times it seems unneededsly complicated with how someone does x and explain it overcomplicated. This is especially with when I tried to look at the state of encryption and cryptography in rust. The issue is that crypto is easy to get wrong even by very, very smart people, so what I saw just from glancing and trying to figure out tf I'm looking at with the libraries and also the focus on more of "X is faster than other much better audited crypto library or whatever" and made me unable to trust the libraries to use in my programs since I did not want to introduce possibly vulnerabilities that could be catastrophic.

Also, ironically not long after idiots touted C/C++ being dead or something after the federal gov here decided to make the announcement of moving to memory safe languages, there was some silly cve that allowed rce via some weird batch script. I think it is just better for me to be cautious right now with the language since right now I'm very, very skeptical and from experience if I have doubts about something in tech, I'm probably right.

alex_02 ,
@alex_02@infosec.pub avatar

OSINT and trying to take care of myself.

alex_02 ,
@alex_02@infosec.pub avatar

Well, my Flipper Zero is finally getting delivered today (It got delayed twice). Been writing a bunch of scripts and programs to help me with my projects and research. Mostly just getting and handling data properly. Hoping to get back to writing and building what I enjoy more because it has been a bit boring and tedious.

alex_02 ,
@alex_02@infosec.pub avatar

I do have a GitHub, but nothing impressive, me thinks. Also have a blog, but can't be arsed to write on it often. Mostly been writing tools and scripts to help me with my osint which can get extremely tedious especially when gathering data. The flipper is definitely stupid useful, but I have yet to use it for more things. Already wrote a bunch of BadUSB scripts for it and working on figuring out how access controls work.

alex_02 ,
@alex_02@infosec.pub avatar

A bit late (sorry, been busy and distracted), but my new toy came in, and it is all pimped out. Only thing missing is a type c to USB female OTG or whatever, so I can plug in an external Wi-Fi adapter. Been writing way too many scripts in Golang and python, so been losing my sanity, but hey shit works.

alex_02 ,
@alex_02@infosec.pub avatar

Looked at this a while ago. This has been a study for a while. Def interesting, but it requires time to train the model, and also it doesn't work on just any keyboard. Also isn't accurate always with figuring out what was typed and takes a lot of guesswork with machine learning.

alex_02 ,
@alex_02@infosec.pub avatar

Thanks for saying the same thing just differently.

alex_02 ,
@alex_02@infosec.pub avatar

Ok buddy. You're either a dumbass or you have such an inflated ego that you're illiterate or just couldn't be arsed to read my original comment. Before this became more mainstream, I actually looked into it and read a number of papers on how it works. It doesn't work on just any keyboard because it requires to be able to pick up the keys using sound, which a lot of membranes ones would be extremely difficult to do. Also, you have to factor in the surrounding noises as well. In a controlled lab yes it is much easier to do, but the technology is just not there yet and there is a guy who has been doing acoustic key logging research for years, and it still required a ML model that has to be trained for it to even start deciphering the keystrokes. I trust that guy over a moron with a cliché username such as xor. Now fuck off and come back when you actually know what you're talking about.

alex_02 ,
@alex_02@infosec.pub avatar

i stopped reading at “dumbass”

seriously just… you’re a [redacted]

this is not the same technique that you read about… it’s new, novel, and works on timing not the sound of the keyboard

just read

idiot

Yknow, I tried to be nice before, but clearly you're more useless and pathetic than the idiots at the bottom "reacting" to content on YouTube. I pointed out how stupid your response was, but clearly you proved my point that you're illiterate.

If you can't be bothered to read the full comments (you probably did and just trying to make it seem as if you didn't), then don't bother replying, cunt. See, unlike you, I don't redact my words and bitch call me whatever you wanted in redacted. Please do because I don't care what a useless shitbag such as yourself says, since we can get more intelligence from Fox News. Go cry to your mother. Nobody needs your immature, almond sized brain responses. Your ego is so fragile that it makes glass bombproof, and you're a cesspool worse than aids. GTFO because nobody wants your pathetic waste of space of an existence on here.

alex_02 ,
@alex_02@infosec.pub avatar

At least I don't redact what I say like a coward. Cope and seethe, loser.

alex_02 ,
@alex_02@infosec.pub avatar

There is a term that we call you: pseudo-intellect. The only one that is getting butt hurt is you, and now it is just funny. The blocking button is there for a reason. Learn to use it. Also, you didn't correct me at all, and your stupidity is both cringe and hilarious. Cope and seethe.

alex_02 ,
@alex_02@infosec.pub avatar

Thank you! I do apologize, your parents never loved you. ^_^

Also, good job. You didn't redact whatever to try to insult me.

alex_02 ,
@alex_02@infosec.pub avatar

Lockpicking. Scripting so I can automate a bunch of stuff. Not much. Been procrastinating and taking it easy lately.

alex_02 ,
@alex_02@infosec.pub avatar

So basically, some data hoarder decided to collect data breaches and somehow that is a cause for alarm even though that is normal behavior by a lot of us who collect data like this since they become useful to us in our projects?

alex_02 ,
@alex_02@infosec.pub avatar

Been debating about going back to school or not. It might be just easier to start trying to create a job for myself based on my work and experiences, but not sure. Both would take a lot of work, but based on what I do now, I'm not sure if I would be able to deal with the boredom of going through all the classes that might be too basic for me and I don't test well so I don't know if it would be worth pouring money into things that I might fail at because colleges, universities, etc. can't give me the accommodations that I know I need.

alex_02 ,
@alex_02@infosec.pub avatar

Applying for jobs that require a degree or stupid amount of experience and a case that is biting me in the ass even though I served my time with probation and would rather stupid people in middle management and hr would mind their own business instead of googling up my name and finding an article that is riddled with misinfo and other stuff that isn't true which is already causing me problems. Been debating about suing for defamation of character on multiple "journalist" platforms on articles that really are defamation of character and also dox my info plus other shenanigans.

alex_02 ,
@alex_02@infosec.pub avatar

Yeah. Pretty awful. Took a look at WGU and will definitely give it a try with some of its standalone courses before committing to a full degree program. Also looking at several other unis and colleges. Might be a good idea to go somewhere out of state, so I can get away from some of my stress.

alex_02 ,
@alex_02@infosec.pub avatar

Been needing to take a step back from a project and focus on other things. Thinking while taking the break I'm going to focus on writing some scripts and take some old code and make it better. I wrote a bunch of tools for windows a while ago, but I think I can write them better now.

Trump team argues assassination of rivals is covered by presidential immunity ( thehill.com )

Former President Trump’s legal team suggested Tuesday that even a president directing SEAL Team Six to kill a political opponent would be an action barred from prosecution given a former executive’s broad immunity to criminal prosecution....

alex_02 ,
@alex_02@infosec.pub avatar

Project 2025. https://www.project2025.org/ and there is a lot more.

Fuck this Nazi and wannabe hitler 2.0

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • test
  • worldmews
  • mews
  • All magazines