Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
raffi
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
31.
▲
Phishing System Profiles without Phone Calls
(blog.strategiccyber.com)
1 points
by
raffi
13y ago
|
0 comments
32.
▲
Why is notepad.exe connecting to the internet?
(blog.strategiccyber.com)
4 points
by
raffi
13y ago
|
0 comments
33.
▲
Hacking through a Straw (Pivoting over DNS)
(blog.strategiccyber.com)
1 points
by
raffi
13y ago
|
0 comments
34.
▲
Staged Payloads - What Pen Testers Should Know
(blog.strategiccyber.com)
3 points
by
raffi
13y ago
|
0 comments
35.
▲
That'll never work--we don't allow port 53 out
(blog.strategiccyber.com)
2 points
by
raffi
13y ago
|
0 comments
36.
▲
DNS Command and Control Added to Cobalt Strike
(blog.strategiccyber.com)
1 points
by
raffi
13y ago
|
0 comments
37.
▲
Goading Around Firewalls
(blog.strategiccyber.com)
1 points
by
raffi
13y ago
|
0 comments
38.
▲
Western Regional CCDC - A Red Team Perspective
(blog.strategiccyber.com)
1 points
by
raffi
14y ago
|
0 comments
39.
▲
A Vision for Distributed Red Team Operations
(blog.strategiccyber.com)
1 points
by
raffi
14y ago
|
0 comments
40.
▲
by
raffi
14y ago
I noticed from last month's Ruby on Rails vulnerabilities that many in the HN crowd had not heard of or used the Metasploit Framework before. I wrote a comment "What is Metasploit?" that many of you found helpful. This blog post expands on
41.
▲
Getting Started with Armitage and the Metasploit Framework (2013)
(blog.strategiccyber.com)
1 points
by
raffi
14y ago
|
1 comments
42.
▲
by
raffi
14y ago
Very good. I brought a project to Automattic a few years ago and was able to work on it with nearly the same autonomy and freedom I had when I was on my own. Well, one difference, I had more resources and reach to see how far I could take m
43.
▲
by
raffi
14y ago
Hi guys, there's been a lot of news on HN lately about the Java 0-day, the Ruby on Rails exploit, etc. There's a lot of misconceptions about hacking and what it looks like now. This blog post attempts to raise awareness about what a targete
44.
▲
Tactics to Hack an Enterprise Network
(blog.strategiccyber.com)
3 points
by
raffi
14y ago
|
1 comments
45.
▲
by
raffi
14y ago
It's a collection of attacks. The open source framework doesn't have this kind of automation. It's used by professionals to conduct manual hacks.
46.
▲
by
raffi
14y ago
For those who aren't familiar with the Metasploit Project, it's an open source collection of safe and vetted exploits. Once an exploit module makes it into the Metasploit Framework, it's immediately available to ~250K users. The Metasploit
47.
▲
How to Milk a Computer Science Education for Offensive Security Skills
(blog.strategiccyber.com)
7 points
by
raffi
14y ago
|
0 comments
48.
▲
by
raffi
14y ago
So what you're suggesting is we should teach these people how to administer WordPress sites?
49.
▲
Offense in Depth
(blog.strategiccyber.com)
2 points
by
raffi
14y ago
|
0 comments
50.
▲
Beacon - Covert C2 for Penetration Testers
(advancedpentest.com)
1 points
by
raffi
14y ago
|
0 comments
51.
▲
by
raffi
14y ago
Thank you for the correction. My intent was not to speak to the state of Groupon. Groupon has had far more success and impact than anything I have created to date. I felt it best to not argue with the parent and focus on the attitude behind
52.
▲
by
raffi
14y ago
Most companies fail. It's a safe bet to predict failure. It's pretty lame to celebrate that failure from the sidelines. Vision is not "how is this guaranteed to fail?" but how could it possibly succeed despite the odds? Which voice do you
53.
▲
by
raffi
14y ago
I joined Hacker News 1,570 days ago (~4 years). I launched my first two ventures here. One of them, Feedback Army, was concieved and built entirely from my interaction in this community. Three years ago, the feel of this community was very
54.
▲
Go Down the Stack Young Man – Story of a (Network Performance) Bug
(blog.strategiccyber.com)
7 points
by
raffi
14y ago
|
0 comments
55.
▲
by
raffi
14y ago
Agreed. I feel like I see this in nearly every discussion now.
56.
▲
I lost my voice before speaking to 1,000 people at DEFCON
(blog.strategiccyber.com)
2 points
by
raffi
14y ago
|
1 comments
57.
▲
by
raffi
14y ago
I think the tool looks useful. I'd appreciate something like this for manually poking web servers when conducting a security assessment. [Edit: removed HN snarky comment]
58.
▲
by
raffi
14y ago
When asked by folks I occasionally give advice to, I try to push them towards creating something new and talking about it, writing an article, or contributing to an open source project. This is a much better way to join a professional commu
59.
▲
Show HN: Advanced Penetration Testing Software
(advancedpentest.com)
5 points
by
raffi
14y ago
|
0 comments
60.
▲
by
raffi
14y ago
As someone who just retained legal help in this area, export control is not as simple as many of you make it out to be. An export happens when material ends up in the hands of a foreign national, whether it's inside the border or not. Busin
More ›