GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by kajer (kajer@infosec.exchange)

  1. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Friday, 13-Jun-2025 04:19:56 JST kajer kajer
    in reply to
    • Doughnut Lollipop 【記録係】:blobfoxgooglymlem:
    • doskel

    @tk @doskel

    The system, is down.

    In conversation about 3 days ago from gnusocial.jp permalink
  2. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Saturday, 07-Jun-2025 03:56:21 JST kajer kajer
    in reply to
    • Kevie 🇬🇧🇨🇾

    @kevie @beersofmastodon

    It was a wonderful time! I'd go back in a heartbeat. The Tow driver got us in touch that night. Funny thing was, that exact rock was a known hazard that the tow driver has rescued plenty of people prior to my run-in. The tow driver was petitioning the council to remove it. That was 2015.

    In conversation about 9 days ago from gnusocial.jp permalink
  3. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Saturday, 07-Jun-2025 03:51:24 JST kajer kajer
    in reply to
    • Kevie 🇬🇧🇨🇾

    @kevie @beersofmastodon

    I loved Stornoway when I was on the outer islands. Until i clipped a rock near the Isle of Harris gun club and had to be towed back to Stornoway, on a sunday with 2 flat tires.

    Cheers to the owner of Stornoway Spares at 8 Bells Rd. for getting me fixed up on a Sunday evening so I could get back to Tarbert to make the morning ferry.

    Also, I happened to be there the weekend they converted the airport to a drag strip. So much fun that night!

    In conversation about 9 days ago from infosec.exchange permalink
  4. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Thursday, 05-Jun-2025 04:11:49 JST kajer kajer
    in reply to
    • Ryan Castellucci :nonbinary_flag:

    @ryanc 3des is where it's at

    In conversation about 11 days ago from infosec.exchange permalink
  5. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Sunday, 01-Jun-2025 05:35:28 JST kajer kajer
    in reply to
    • Ryan Castellucci :nonbinary_flag:

    @ryanc it's forced read receipts

    In conversation about 15 days ago from infosec.exchange permalink
  6. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Sunday, 01-Jun-2025 05:35:17 JST kajer kajer

    cool, cool, the ISP for the transmitter site gave us a /29 net block. But..... 3 of the addresses in "our" block are in use by other customers,.. Windows IIS default page... Sophos VPN portals...

    seems like "our" /29 is not ours. FUN!!!

    In conversation about 15 days ago from infosec.exchange permalink
  7. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Friday, 23-May-2025 09:19:51 JST kajer kajer
    in reply to
    • cR0w :cascadia:
    • Ryan Castellucci :nonbinary_flag:
    • darf 😈
    • legacv6

    @ryanc @darfplatypus @cR0w @legacv

    In conversation about 24 days ago from infosec.exchange permalink

    Attachments


  8. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Friday, 23-May-2025 09:14:03 JST kajer kajer
    in reply to
    • cR0w :cascadia:
    • darf 😈
    • legacv6

    @darfplatypus @cR0w @legacv During the first few years of OpenCTF at Defcon ~16ish we ran an open http server on our network full of linux ISOs. Stuff like Ubuntu Live images, KALI, etc, including the matching .MD% and .SHA256 files

    but these ISOs were all root kitted with open SSH servers and pre-populated root credentials. We ran a server that these ISO images did reverse SSH tunnels to, so we had root on nearly every other teams laptops because they all booted off the live ISO we had provided them.

    no points for this, just a lot of full screen shock images.

    In conversation about 24 days ago from infosec.exchange permalink

    Attachments

    1. No result found on File_thumbnail lookup.
      Them/Tem nedre – – nær 4000 år med historie
  9. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Thursday, 22-May-2025 06:43:07 JST kajer kajer

    Holy fucking shit Broadcom:

    As no new order(s) for subscription licenses and support services has been executed between the parties, Support
    Services are no longer available for the perpetual Software listed in the Order(s) and such Software licenses deployed
    in your environment are running unsupported.
    VMware, therefore, immediately demands that all use of Support Services associated with VMware Software, including
    Maintenance Releases/Updates, Minor Releases, Major Releases/Upgrades extensions, enhancements, patches, bug
    fixes or security patches (with the exception of zero-day security patches for vSphere 7.x and 8.x, CVSS score greater
    than or equal to 9.0, so long as those are generally provided by VMware at no cost) be ceased.
    The implementation of any of the aforementioned (excluding select zero-day patches as defined above) past the
    Expiration Date must be immediately removed/deinstalled. Any such use of Support past the Expiration Date constitutes
    a material breach of the Agreement with VMware and an infringement of VMware’s intellectual property rights,
    potentially resulting in claims for enhanced damages and attorneys’ fees.
    Additionally, Customer must comply with any post-expiration reporting requirements related to the Order(s) and
    governing license agreement. Failure to comply with such requirements may result in a breach of the Agreement by
    Customer and VMware may exercise its right to audit Customer as well as any other available contractual or legal
    remedy.

    In conversation about a month ago from infosec.exchange permalink
  10. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Saturday, 10-May-2025 04:47:51 JST kajer kajer
    in reply to
    • Viss
    • Ryan Castellucci :nonbinary_flag:

    @ryanc @Viss https://old.reddit.com/r/itrunsdoom/ is another place of weird doom ports.

    I personally liked the Cisco CDP hack to then get a java applet running on a 8841 phone.

    In conversation about a month ago from gnusocial.jp permalink

    Attachments


  11. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Thursday, 08-May-2025 05:28:30 JST kajer kajer
    in reply to
    • Ryan Castellucci :nonbinary_flag:

    @ryanc I used a ATS02= command prior to connection, your hax wont work here!

    In conversation about a month ago from gnusocial.jp permalink
  12. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Thursday, 08-May-2025 05:24:43 JST kajer kajer

    ATH0

    In conversation about a month ago from infosec.exchange permalink
  13. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 23:43:54 JST kajer kajer
    in reply to
    • Ryan Castellucci :nonbinary_flag:

    @ryanc there may be a bonus update today...

    In conversation about a month ago from gnusocial.jp permalink
  14. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 16:29:37 JST kajer kajer
    in reply to

    This camera was OEM branded a few other places too, but the best I can find is this is originally a VHD-V50U camera.

    Finding firmware images from 15 years ago is not as easy as I was hoping for. SO MANY MANUALS though... :(

    In conversation about a month ago from infosec.exchange permalink
  15. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 16:29:37 JST kajer kajer
    in reply to

    I went down the rabbit hole of "free stuff is not free" and here I am.

    In conversation about a month ago from infosec.exchange permalink
  16. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 16:29:37 JST kajer kajer

    If anyone here has a PTZoptics 20X Generation1 camera, I would like a word please. I need some firmware that the vendor claims they don't have.

    The firmware can be extracted and stored as a backup using their archaic update tool that isn't shady looking at all.

    In conversation about a month ago from infosec.exchange permalink
  17. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 16:29:36 JST kajer kajer
    in reply to

    Getting desperate - found someone from the OEM on linked in that was offering firmware files via DM/email for various VHD-based camera models. I sent and email asking for VHD-V50U usb/fpga bin files. Let's see if this pans out.

    get it, pans, as in PTZ camera?
    thatsthejoke.jpg

    In conversation about a month ago from infosec.exchange permalink
  18. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 16:29:36 JST kajer kajer
    in reply to

    Sadly due to CSS and JS fuckery back in 2017, the wayback machine doesn't have the page or links to the old firmware files published by ptzoptics. The firmware page uses onclick to show things, and wayback can't handle that, at least not back in 2017 archives.

    I really hate javascript.

    In conversation about a month ago from infosec.exchange permalink
  19. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 16:29:36 JST kajer kajer
    in reply to

    Lol, the one youtube video showing how to update firmware for that camera mode is from the same support person telling me they don't have firmware files for that camera.

    🤦♂️

    In conversation about a month ago from infosec.exchange permalink
  20. Embed this notice
    kajer (kajer@infosec.exchange)'s status on Tuesday, 06-May-2025 16:29:35 JST kajer kajer
    in reply to

    Final PTZ camera update:

    It's e-waste. Nobody anywhere, even the OEM, has the USB/FPGA firmware bin files needed to unbrick the camera.

    The SoC works, and I can interact with the webapp, but the camera functions and PTZ controls are cooked. We can even flash an older firmware image which is the USB firmware+JFFS2 filesystem, but no FPGA code anywhere.

    :(

    In conversation about a month ago from infosec.exchange permalink
  • Before

User actions

    kajer

    kajer

    Computer Hacker / security professional / former CCNP / Amateur wannabe car mechanic / IPv6 advocate

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          137497
          Member since
          18 Jun 2023
          Notices
          132
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.