* Posts by Captain Badmouth

624 publicly visible posts • joined 1 Aug 2015

Page:

NFTs not annoying enough? Now they come with wallet-emptying malware

Captain Badmouth
Devil

Re: Idiots

A boris?

Brewdog might make an OK pint but its security sucks: Flaw opened door to free beers for anyone

Captain Badmouth
Happy

I mean, my mum doesn't even know what Flash is

Not even for the kitchen floor?

US House Rep on cyber committees tweets Gmail password, PIN in Capitol riot lawsuit outrage

Captain Badmouth
Devil

Re: Excellent

Ahem.

Boris Johnson

Chris Failing-Grayling

Dildo Hardon

etc.

You English are doomed.

US declares emergency after ransomware shuts oil pipeline that pumps 100 million gallons a day

Captain Badmouth
WTF?

Re: Been there, done that...

I didn't think they'd be compromising their own oil company.

Captain Badmouth
Holmes

Been there, done that...

Meanwhile, the Russian/ Chinese/ Iranian/ N Korean (delete as/if necessary) state-employed Black Hats are spitting blood waiting to see if their little compromise software, sitting quietly in a dark corner of a server somewhere, will be uncovered by the security measures introduced following this mal(ware)arkey.

Voyager 2 receives and executes first command in 11 months as sole antenna that reaches it returns to work

Captain Badmouth
FAIL

Re: It's a different world

Like the TSR2 before it...

The curse of knowing a bit about IT: 'Could you just...?' and 'No I haven't changed anything'

Captain Badmouth
Pint

Re: XP and network discovery?

@Steve Davies 3

+1 for the Mary Hopkin reference.

Anyone else read "12BoC" as 120BC?

Some days it feels like it...

I need a drink.

Trump fires cybersecurity boss Chris Krebs for doing his job: Securing the election and telling the truth about it

Captain Badmouth
Happy

Reply Icon

I was quite disappointed to find out there is no red button - it is actually a biscuit that allows the President to lunch....

fixed.

What a Hancock-up: Excel spreadsheet blunder blamed after England under-reports 16,000 COVID-19 cases

Captain Badmouth
Pirate

Re: Ouch

The lack of adequate funding probably explains the old software in use. Another manufactured "failure" of the NHS and an excuse to hand out contracts in it's ongoing privatisation.

Privateers everywhere.

Proposed US fix for Boeing 737 Max software woes does not address Ethiopian crash scenario, UK pilot union warns

Captain Badmouth

Reply Icon

Welcome aboard the all-new Boeing Windscale.

Fixed, name changing not allowed.

Microsoft leaks 6.5TB in Bing search data via unsecured Elastic server. *Insert 'Wow... that much?' joke here*

Captain Badmouth

Re: I was unaware

Dido Harding hung around their offices some time back.

Fixed.

It has been 15 years, and we're still reporting homograph attacks – web domains that stealthily use non-Latin characters to appear legit

Captain Badmouth
Headmaster

Re: A þorny problem, to be sure

Oh, R0n...

Cyber-security super-brain Rudy Giuliani forgets password, bricks iPhone, begs Apple Store staff for help

Captain Badmouth
FAIL

Website scores

I see his website scores a "T" due to certificate mismatch here:

https://www.ssllabs.com/ssltest/analyze.html?d=www.giulianisecurity.com

and, as you may have guessed, an "F" here:

https://securityheaders.com/?q=www.giulianisecurity.com&followRedirects=on

Laughed? I almost opened that attachment...

Dixons hits back at McAfee's £30m antivirus sueball: Your AV didn't work on Windows 10S

Captain Badmouth
Windows

Crap retailer sells crap o/s with crap antivirus that doesn't work.

Who new?

It's enough to drive one to drink.

Here's to you: UK.gov praises Reg-reading techies for keeping on top of cybersecurity

Captain Badmouth
Big Brother

Re: Let's ponder on Long AI Marches

"Have you found them to be refreshingly proactive, Olaf, and could this relatively anonymous communication channel be one of their creation and iteration?

You know, NCSC doing some Deep and Dark See Phishing for Blighty in the Almighty Strange Waters of a Cutting Edge Publication Hosting here. ..... for those more than just interested in taking and making a Walk on the Wild Side?"

Don't go solving the crypto-puzzle or, if you do, don't go phoning the no. given for the prize of 2 yrs. subscription to the magazine of your choice...

Mystery of the Chinese woman who allegedly tried to sneak into Trump's Mar-a-Lago with a USB stick of malware

Captain Badmouth
Thumb Up

Re: 5 years ...

"a restricted area" - whatever one of those is defined to be.

The hamberder stall, innit?

TP-Link 'smart' router proves to be anything but smart – just like its maker: Zero-day vuln dropped after silence

Captain Badmouth
Devil

Re: Nearshore?

Quite, although TP-Link seem to recommend DD-WRT.

But, no warranty!

"To Use Third Party Firmware In TP-Link Products

Some official firmware of TP-Link products can be replaced by the third party firmware such as DD-WRT. TP-Link is not obligated to provide any maintenance or support for it, and does not guarantee the performance and stability of third party firmware. Damage to the product as a result of using third party firmware will void the product's warranty."

Huawei savaged by Brit code review board over pisspoor dev practices

Captain Badmouth
Happy

Re: Real point here

"Surly they'd give it the stamp of approval"

I'm sure they'd be quite nice about it, actually...

Data breach rumours abound as UK Labour Party locks down access to member databases

Captain Badmouth

He's got a copy of the electoral register so he probably thought he was being polite. By register I mean the complete register, not just the "public" register available to anyone - at least that used to be the case. Not sure how current data regulations have changed that.

Use an 8-char Windows NTLM password? Don't. Every single one can be cracked in under 2.5hrs

Captain Badmouth
Paris Hilton

I suggest

supercallousflagellisticexpertcunnilingus

Ticketmaster tells customer it's not at fault for site's Magecart malware pwnage

Captain Badmouth
Happy

Re: I guess this is lawyer talk for..

"All because whoever is coding their site, isn't checking the legitness (is that a word?) of the code they are embedding."

Legitimacy. hth.

Captain Badmouth
Happy

Re: Just out of curiosity

Also:

https://www.theregister.co.uk/2018/09/12/feedify_magecart_javascript_library_hacked/

Captain Badmouth
Thumb Up

Re: Offsite scripts GAH!

Sorry for that, we'll understand in future.

Captain Badmouth
Happy

Re: Just out of curiosity

The page you are looking for :

https://www.theregister.co.uk/2018/09/11/british_airways_website_scripts/

Captain Badmouth
Headmaster

Re: Offsite scripts GAH!

"F.F.S. people if its an even vaguely secure area no script that you have not copied locally and validated does what you think it does goes in, is this so hard to understand."

Without proper punctuation, yes.

Worrying Windows 10 wrecking-ball weapon weirdly wanders wildly on worldwide web

Captain Badmouth
FAIL

"It can be exploited by a malicious logged-in user or malware on an already infected computer to arbitrarily delete or tamper with anything from application .dll files to critical system components."

The silly man has just discovered the latest windows update.

Sealed with an XSS: IT pros urge Lloyds Group to avoid web cross talk

Captain Badmouth
WTF?

Re: Multi-layered security controls across our systems

"I got a similar answer from EDF when I asked them why I needed to disable 'Auto remove overlays', 'uBlock Origin' and Safescript in order to access the site."

With noscript you have to enable google.com and gstatic.com and sometimes an amazonaws script in addition to the edf script in order to log in. The google and gstatic scripts seem to be there for supplying the captctha. The amazonaws is not always present but if it is you have to enable it. I've complained about this excessive use of 3rd party stuff but they seem not to understand, their ssl labs rating was a B until I told them about it, they've since improved it.

The Reg takes the US government's insider threat training course

Captain Badmouth
Devil

Trusted individuals

"You might also be a person who tends to underestimate the value of the information being sought or given."

In which case you should be put on the white house, er, white list I mean.

No, black list, black list...hide that piece of paper...

When is a patch not a patch? When it's for this McAfee password bug

Captain Badmouth

Re: I always refer to it as.........

McCRAPAFee.

In which case you should use the trouser extension...

Revealed: British Airways was in talks with IBM on outsourcing security just before hack

Captain Badmouth

Re: BT was going to outsource security says leaked memo.

BA?

C'mon, if you say your device is 'unhackable', you're just asking for it: Bitfi retracts edgy claim

Captain Badmouth
Holmes

A solution

Mr Mcovfefe should have put antivirus or something on it I was told by my mate who heard it in an internet cafe from an expert...

Bank on it: It's either legal to port-scan someone without consent or it's not, fumes researcher

Captain Badmouth
Terminator

Re: Scanning for free?

Money for nothing and your scans for free...

Nah, that can't be right.

RBS bank manager ---->>>

Captain Badmouth
FAIL

Security?

Well I've just scanned their site on the sophos security header website, and they get a "C" grade, failing 4 out of 7 tests. The result is not hidden on the sophos site for all those interested.

'Fibre broadband' should mean glass wires poking into your router, reckons Brit survey

Captain Badmouth
Happy

Re: Surfboard modems

"The first cable modems they supplied were Surfboard modmes. They used a soft config file sucked off the server and stiored in EPROM. The config file set you up/down speed, otherwise all you had was 64k to the server and no other connectuion. It turned out to vbe suprisingly easy to sniff config files as they zoomed past, save them, read them, reset the mac address of the modem, then copy up the config file. You paid for 128k but got 10Mb"

You sure they weren't Surfboard mod-me's?

Captain Badmouth
Coat

Re: It was always fibre though, right?

Collecting code books from adjoining areas so you could dial various exchanges to check for faulty ones ( dial remote exchange from local exchange then code for local exchange from remote location) to see if paybox gets bypassed. Rinse and repeat. Result : faulty exchange bypasses paybox- free phone calls.

Otherwise dial exchanges in a string to avoid long distance charges- gets noisier with more hops.

I've said too much...

Mines the one with all the little red books in it. ( No, not those little red books...)

US military manuals hawked on dark web after files left rattling in insecure FTP server

Captain Badmouth
Paris Hilton

Re: Well for the record....

"I have even seen night vision devices and and electronic sites at pawn shops."

Pwn shops shirley...?

Paris, knows all about porn shops... (allegedly)

Dr Symantec offers quick and painless checkup for VPNFilter menace on routers

Captain Badmouth
Devil

That's the problem gents, by the time you've enabled (one at a time) the first few scripts, you find the check doesn't work. Of course you look again to see a whole new shitload of other scripts waiting for your permission. I'd be more trusting if I hadn't remembered that Todd Davis (Symantec co-founder) had his identity stolen 13 times!

Would you want to steal his identity?

Captain Badmouth

How many separate scripts would you say are necessary?

Captain Badmouth

How nice to see a web page, that purports to check your router security, crawling with javascript.

Cryptography is the Bombe: Britain's Enigma-cracker on display in new home

Captain Badmouth

Re: When?

Possible mix-up of dates. I seem to recall that the Poles had early warning of invasion due to being able to decrypt some Nazi signals, so got out early- 1938 perhaps?

Stop us if you've heard this one: Adobe Flash gets emergency patch for zero-day exploit

Captain Badmouth
Big Brother

Re: McAfee Antivirus

" think it's funny that when you install Flash from the Adobe website, there's a checkbox to install McAfee Antivirus."

Funny? It's hilarious. Not just one security hole but two!

Someone, somewhere has your computer by the goolies.

Rowhammer strikes networks, Bolton strikes security jobs, and Nigel Thornberry strikes Chrome, and more

Captain Badmouth
Devil

Re: Mixed signal?

Silly boy, it's all about draining the other guy's swamp, not the trumpswamp ©.

Brit healthcare system inks Windows 10 install pact with Microsoft

Captain Badmouth
Gimp

Dear Patient

I'm afraid we have had to cancel your appointment for the 15th of july as our records computer is still downloading updates...

ct scan patient after radiology dept. updated to win10. ---->>>>>>

Great Western Railway warns of great Western password reuse: Brits told to reset logins

Captain Badmouth
Happy

Re: Spam email or not?

"Before downloading them? You think people still use email clients?"

Yes, I don't like leaving sh*t lying around on a server somewhere when it could be *safe* at home with me.

Captain Badmouth

Spam email or not?

Windows users should be taught to use the likes of mailwasher to preview their emails before downloading them. Viewing everything in plaintext is very useful to see through the html links.

Microsoft patches patch for Meltdown bug patch: Windows 7, Server 2008 rushed an emergency fix

Captain Badmouth
WTF?

Re: Patching hell...

I'll wait for the patch for the patch for the patch for the patch.

Thanks.

On second thoughts...

Captain Badmouth
FAIL

Patching hell...

I'll wait for the patch for the patch for the patch for the patch.

Thanks.

Mad March Meltdown! Microsoft's patch for a patch for a patch may need another patch

Captain Badmouth
Holmes

I'm getting

too old for this shit.

I'll have some of what he's smoking........------------>

It's March 2018, and your Windows PC can be pwned by a web article (well, none of OURS)

Captain Badmouth
Thumb Up

Re : Reports on reddit

Thanks for the heads-up, no win7 updates for me atm.

$14bn tax hit, Surface Pro screens keep dying – but it's not all good news at Microsoft

Captain Badmouth
Pint

Re: Another RoHS victim?

And possibly they've been manufactured by the same clowns who produced those wonderful HP laptops of fame a few years back.

Anyway, it's beer o clock...

Page: