Netsec – Telegram
Netsec
7.38K subscribers
22.3K links
This channel posts the feed from r/netsec.
For any suggestions dm @streaak
Donate to keep the bot running https://www.paypal.me/akhilgv
Download Telegram
Is Aria2 downloads detectable by web servers?
A couple of months ago I signed up for a paid online course. Their terms of service indicate that these video lectures are for streamed viewing and not to be downloaded. There's a 2 hour commute from my home to work and back. Recently I've been downloading these videos and watching a lecture a day during commute.I've been using FlashGot add-on in FireFox with aria2 downloader installed in Ubuntu to download the video lectures. I've set the max-connection-per-server=1 option in aria2. My question is:Will the web servers be able to detect my downloads?

Submitted May 05, 2018 at 04:11PM by endofline786
via reddit https://ift.tt/2HSdcWD
Trading on phone LTE network with VPN - Is this secure?
Not sure if im posting in right place - new to reddit. I would like to start trading on iphone LTE and would like to know if VPN secure enough. Thank you.

Submitted May 06, 2018 at 12:06AM by redditor_r
via reddit https://ift.tt/2rnfmTH
Visual Recon – A beginners guide
https://ift.tt/2IkWazX

Submitted May 06, 2018 at 06:48AM by itsecurityguard
via reddit https://ift.tt/2jyXVv4
Security Feed OPML
https://ift.tt/2Fk6TER

Submitted May 06, 2018 at 02:02PM by MrTouchHK
via reddit https://ift.tt/2KFK8iX
FDA provides regulatory guidance for SMART technology used in medical devices
https://ift.tt/2wjOCse

Submitted May 06, 2018 at 12:43PM by Iot_Security
via reddit https://ift.tt/2HUkTLI
"Your password is too weak". (funny)
https://twitter.com/cibercrimen/status/992796640368054272/photo/1

Submitted May 06, 2018 at 03:12PM by antdude
via reddit https://ift.tt/2rn9tpC
Any once else experienced this automatic sync warning with a Microsoft account? Denoscription in comments.
https://ift.tt/2HYC9f5

Submitted May 06, 2018 at 03:02PM by Bango-Fett
via reddit https://ift.tt/2jzXX6b
ShellPop - Generate Easy and Sophisticated Reverse or Bind Shell Commands for Penetration Tests
https://ift.tt/2wecj5d

Submitted May 06, 2018 at 07:59PM by TechLord2
via reddit https://ift.tt/2KFwhZV
I made a web extension to provide another 2FA possibility for websites - I would love any thoughts, technical and otherwise
The idea is pretty simple. You install this web extension and then when you go to a website that supports it (there are none yet, I just finished coding the extension), you can enter a secret in the web extension and on the site. Without this secret, you are denied access.Basically what it means is that if you set this up, the only people who will be able to access your account on supported websites is if they are on your device, using a browser with the web extension installed and the secret for the domain saved, or if they steal your secret.The project is at https://github.com/PalFed/2-FactorialTechnically how it works:You put the secret in the extension and on the site (different secrets per site)When you request a page, your browser sends two extra headers, one with a SHA256 hash, one with a saltThe website checks the hash and only allows access if it matches the same hash generated from the website's copy of the secret with the salt.I would love any thoughts as to whether this has value, how it could be improved or made more secure, where it might fail etc. etc. I mostly created it because I have been wanting to learn how to create web extensions, then I had this thought and ran with it!

Submitted May 07, 2018 at 04:52AM by lindymad
via reddit https://ift.tt/2winauX