PHZine00_it.html 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395
  1. <!DOCTYPE html>
  2. <html lang="en">
  3. <head>
  4. <meta charset="utf-8">
  5. <title>Polybius Hacklab</title>
  6. <meta name="viewport" content="width=device-width, initial-scale=1.0">
  7. <meta name="description" content="open source, hacklab, linux, libertarian, free, open, gpl">
  8. <meta name="author" content="">
  9. <!-- Le styles -->
  10. <link href="css/bootstrap.css" rel="stylesheet">
  11. <style type="text/css">
  12. body {
  13. padding-top: 60px;
  14. padding-bottom: 40px;
  15. }
  16. </style>
  17. <link href="css/bootstrap-responsive.css" rel="stylesheet">
  18. <!-- HTML5 shim, for IE6-8 support of HTML5 elements -->
  19. <!--[if lt IE 9]>
  20. <script src="js/html5shiv.js"></script>
  21. <![endif]-->
  22. <!-- Fav and touch icons -->
  23. <link rel="apple-touch-icon-precomposed" sizes="144x144" href="ico/apple-touch-icon-144-precomposed.png">
  24. <link rel="apple-touch-icon-precomposed" sizes="114x114" href="ico/apple-touch-icon-114-precomposed.png">
  25. <link rel="apple-touch-icon-precomposed" sizes="72x72" href="ico/apple-touch-icon-72-precomposed.png">
  26. <link rel="apple-touch-icon-precomposed" href="ico/apple-touch-icon-57-precomposed.png">
  27. <link rel="shortcut icon" href="ico/favicon.png">
  28. </head>
  29. <body>
  30. <div class="navbar navbar-inverse navbar-fixed-top">
  31. <div class="navbar-inner">
  32. <div class="container">
  33. <button type="button" class="btn btn-navbar" data-toggle="collapse" data-target=".nav-collapse">
  34. <span class="icon-bar"></span>
  35. <span class="icon-bar"></span>
  36. <span class="icon-bar"></span>
  37. </button>
  38. <a class="brand" href="#">Polybius</a>
  39. <div class="nav-collapse collapse">
  40. <ul class="nav">
  41. <li><a href="index.html">Home</a></li>
  42. <li><a href="about.html">About</a></li>
  43. <li><a href="materiali.html">Help Us</a></li>
  44. <!--li><a href="#about">About</a></li>
  45. <li><a href="#contact">Contact</a></li-->
  46. <li class="dropdown">
  47. <a href="#" class="dropdown-toggle" data-toggle="dropdown">Docos<b class="caret"></b></a>
  48. <ul class="dropdown-menu">
  49. <li><a href="ht_exploitation_en.html">{en}Phineas Fisher - Pi$$ing on HT</a></li>
  50. <li class="active"><a href="#">{it}PHZine00</a></li>
  51. <!--li class="divider"></li>
  52. <li class="nav-header">Nav header</li>
  53. <li><a href="#">Separated link</a></li>
  54. <li><a href="#">One more separated link</a></li-->
  55. </ul>
  56. </li>
  57. </ul>
  58. <!--form class="navbar-form pull-right">
  59. <input class="span2" type="text" placeholder="Email">
  60. <input class="span2" type="password" placeholder="Password">
  61. <button type="submit" class="btn">Sign in</button>
  62. </form-->
  63. </div><!--/.nav-collapse -->
  64. </div>
  65. </div>
  66. </div>
  67. <div class="container">
  68. <!-- Example row of columns -->
  69. <div class="row">
  70. <div class="span11">
  71. <h1>{it} PHZIne 00</h1>
  72. Versione 00 di PHZine: ezine di hacking pre-hackmeeting di contenuti tecnici, asciiart, howto, codice, links, recensioni, sripts, eccetera.
  73. <p><pre><code>
  74. &gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;&gt;
  75. _______ _______
  76. ( ____ )|\ /|/ ___ )
  77. | ( )|| ) ( |\/ ) |
  78. | (____)|| (___) | / )
  79. | _____)| ___ | / /
  80. | ( | ( ) | / /
  81. | ) | ) ( | / (_/\ numero: 00 - dOqpio0z3r0 h4cKm33tln6
  82. |/ |/ \|(_______/ fUcK c()qYr1gh7 MMXVII
  83. ____
  84. _.' : `._
  85. .-.'`. ; .'`.-. ::::::::::::::
  86. __ / : ___\ ; /___ ; \ __
  87. ,'_ ""--.:__;".-.";: :".-.":__;.--"" _`,
  88. :' `.t""--.. '&lt;@.`;_ ',@&gt;` ..--""j.' `; ezine sperimentale
  89. `:-.._J '-.-'L__ `-- ' L_..-;'
  90. "-.__ ; .-" "-. : __.-" a scadenza pseudocasuale
  91. L ' /.------.\ ' J
  92. "-. "--" .-"
  93. __.l"-:_JL_;-";.__ ::::::::::::::
  94. .-j/'.; ;"""" / .'\"-.
  95. .' /:`. "-.: .-" .'; `.
  96. .-" / ; "-. "-..-" .-" : "-. :: hackmeeting warm up ::
  97. .+"-. : : "-.__.-" ;-._ \
  98. ; \ `.; ; : : "+. ; whonix, signal, password,
  99. : ; ; ; : ; : \:
  100. ; : ; : ;: ; : tor, ed2219, facebook,
  101. : \ ; : ; : ; / ::
  102. ; ; : ; : ; : ;: twitter, thegrugq, activism,
  103. : : ; : ; : : ; : ;
  104. ;\ : ; : ; ; ; ; poisontap, hack back!
  105. : `."-; : ; : ; / ;
  106. ; -: ; : ; : .-" : phineas fisher, osint
  107. :\ \ : ; : \.-" :
  108. ;`. \ ; : ;.'_..-- / ; :::::::::::::::::
  109. : "-. "-: ; :/." .' :
  110. \ \ : ;/ __ :
  111. \ .-`.\ /t-"" ":-+. :
  112. `. .-" `l __/ /`. : ; ; \ ; fUcK c()qYr1gh7 MMXVII
  113. \ .-" .-"-.-" .' .'j \ / ;/
  114. \ / .-" /. .'.' ;_:' ;
  115. :-""-.`./-.' / `.___.'
  116. \ `t ._ /
  117. "-.t-._:'
  118. .:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:.
  119. -## INTRO
  120. "Noi creeremo una civilta' della Mente nel Ciberspazio"
  121. (John Perry Barlow)
  122. "Non c'e' giustizia nel seguire leggi ingiuste."
  123. (Aaron Swartz)
  124. "Socializzare saperi senza fondare poteri"
  125. (Primo Moroni)
  126. INTRO ##-
  127. .:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:.
  128. -## ASCOLTA LA MUCCA
  129. (__)
  130. (oo) * Se vuoi navigare con un sistema in cui il DNS leaking e'
  131. /-------\/ impossibile e in cui persino un malware con privilegi di
  132. / | || root non saprebbe trovare il tuo vero IP: prova WHONIX
  133. * ||----|| https://whonix.org
  134. ^^ ^^ Ma ricordati sempre che nessuno e' perfetto:
  135. https://www.whonix.org/blog/advanced-deanonymization-attacks
  136. * Se usi Signal attiva sempre la funzione &lt;Disappearing Messages&gt; (__)
  137. configurando il timer per la cancellazione dei messaggi letti. (--)
  138. https://medium.com/@mshelton/signal-for-beginners-c6b44f76a1f0 /-\/-\
  139. /| |\
  140. ~ | | ~
  141. (__) | |
  142. (DD) /----\
  143. /-------\/ * Non riusare le password. / \ \
  144. / | ||_\_/ Usa un password manager. ~ * ~
  145. * ||----| E cerca di scegliere password difficili.
  146. ^^ ^ https://www.keepassx.org
  147. * Sai che puoi usare Tor per accedere al tuo computer (__)
  148. in ssh, sempre, ovunque, anche quando e' dietro NAT? (DD)
  149. Basta attivare un hidden service sulla porta 22 \/-------\
  150. Per extraparanoia configura il servizio in stealth \_/_|| | \
  151. in /etc/tor/torrc: |----|| *
  152. HiddenServiceDIr /var/lib/tor/ssh_hidden ^ ^^
  153. HiddenServicePort 22 127.0.0.1:22
  154. HiddenServiceAuthorizeClient stealth username
  155. cat /var/lib/tor/ssh_hidden
  156. xxx.onion token # client: username
  157. ora metti nel torrc del torbrowser del client
  158. HidServAuth xxx.onion token
  159. (__)
  160. nel ~/.ssh/config del client (oo)
  161. Host *.onion \/------\
  162. proxyCommand nc -x 127.0.0.1:9150 %h %p ||____|\
  163. ^^ ^
  164. ora, con il torbrowser attivo, usa ssh da shell per raggiungere
  165. in modo super discreto l'hidden service, che essendo in modalita'
  166. stealh risulta not discoverable da estranei, nemmeno conoscendo
  167. l'indirizzo xxx.onion.
  168. ssh username@xxx.onion
  169. (__)
  170. (oo)
  171. ~~~~~~~~~~~~~~~~~~~~
  172. * ssh-keygen -t ed25519
  173. Le curve ellittiche sono sexy. Usa sempre le chiavi ssh
  174. e disabilita &lt;PasswordAuthentication&gt; nel /etc/ssh/sshd_config.
  175. ASCOLTA LA MUCCA ##-
  176. .:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:.
  177. -## SOCIAL
  178. __
  179. * Usi Facebook? __/o \_
  180. Ci sono cose che devi assolutamente sapere. \____ \
  181. https://veekaybee.github.io/facebbok-is-collectin-this / \
  182. __ //\ \
  183. __/o \-//--\ \_/
  184. \___ ____ \ |
  185. * Hacktivismo con Twitter? || \ |\ |
  186. the grugq "The Twitter Activist Security" _|| _||_||
  187. https://medium.com/@thegrugq/twitter-activist-security-7c806bae9cb0
  188. SOCIAL ##-
  189. .:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:.
  190. -## HACKING
  191. * PoisonTap, tempo di sigillare le porte usb?
  192. https://samy.pl/poisontap
  193. siphons cookies, exposes internal router & installs web backdoor
  194. on locked computers.
  195. (___)
  196. .o"o. * HackBack! a DYI guide
  197. `-0-' di Phineas Fisher. Ti ricordi di Hacking Team?
  198. / | | \ https://pastebin.com/0SNSvyjJ
  199. \ \ / /
  200. (/o\)
  201. / \ * Awesome OSINT
  202. _| |_ Una lista di link di open source intelligence.
  203. https://github.com/jivoi/awesome-osint
  204. HACKING ##-
  205. .:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:.
  206. -## CALL
  207. PHZ cerca contributi, esperimenti, codice, progetti, resistenze,
  208. ispirazioni acare per il prosssimo numero a scadenza pseudocasuale.
  209. forwarda questa email alla mailing list del tuo hacklab!
  210. dillo ai tuoi amici h4k3rZ.
  211. ~~~~~~~~~~~~~~~~~~~~~~~~~~~
  212. fai robe? scrivi codice che fa qualcosa o che non fa niente in un modo
  213. meraviglioso? come ti piacciono i computer? sei un'hacker? un cypherpunk?
  214. usi tor? sei paranoico? ti piace condividere? pentesti? arpspooffi?
  215. scrivici! aiutaci a preparare il prossimo numero!
  216. benvenuti contributi anonimi e criptati!
  217. NO razzisti, sessisti e fasci!
  218. PIU' H4k3rZ PER HACKMEETING! NO PERDITEMPO!
  219. e per i contenuti migliori RICCHI PREMI dal cyberspazio
  220. ~~~~&gt;&gt; Solo ASCII massimo 100 righe (:set textwidth=75) &lt;&lt;~~~~
  221. CALL ##-
  222. .:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:.
  223. -## CONTATTI
  224. per scriverci o mandare contributi:
  225. email: phzine&gt;AT&lt;cryptolab&gt;DOT&lt;net
  226. -----BEGIN PGP PUBLIC KEY BLOCK-----
  227. mQENBFiyJxYBCADFQCJZtjHTbYSjiKmsty3V9FSV63DRlliy5abq8j1coINX50d6
  228. vEkeaupMVq0vsV6qxSpcgvu375KYVIguXE5jjdR18lCAeBzyXXMsZq4MFokHym15
  229. 3luag8+u7z/WFalJGSn8gsAyF6jzDS1so5Qd/AXV1GS28Z73mUJOhFeA0sePeOiU
  230. qYAZ2Z4LMAT3Ps8zBSNgiEIPZEe9jjROJN5zS/Oso6HwAYRJjj0oAC7GeJs0El0c
  231. dt22u29oI2+kxD0tVrTr7W12A99WKB7Qty4CbhLJ2hTg2jZDty+d877R9q9RNgei
  232. Etz6bvRy2PByBkZCcCzq9isgFtqdzqqAsgYZABEBAAG0GXVuY2xldCA8dW5jbGV0
  233. QGdycmx6Lm5ldD6JAT0EEwEKACcFAliyJxYCGwMFCQHhM4AFCwkIBwMFFQoJCAsF
  234. FgIDAQACHgECF4AACgkQFjpsxuv3NOFjIQf8C1xONcIrRSY1YGrbWWMGCmCs7uUN
  235. Wno7P11osM24b5WuP3k5FdKgVOUEmaqA1v3d6JPyEDZvVnAkc2I5RHoY72gumqMH
  236. Leg7po15d4KnHULJACXF4O+dXM2gbE69w4XkSPLDEXxjxAFn/JAPomR6AWbVo1zp
  237. Sw3gdTvAhYHhMHXhfRqX5tn6obhsa0BDSKvgCsqzRv4nmIYIwy0duQFSsQJyvlWF
  238. gz/g50uOORvpc8qPCtjaK2ftDdHDasM9Y0jownajFsfx04Ubvf4N7v4ke77hVlJc
  239. CYCFpBLUzguiWcMZ1p2AK60dJps7VkTo3GAkFojUAPeFMw9JKcJ/4FdPcbkBDQRY
  240. sicWAQgA04c0n3J3qGK11d0QaF60UMkS6wFGIUOt0S01eUlkBLgIjAMYViLgvdLw
  241. t7NZCOAV5jHNcMbIAtRmJdLlX2n9CaKNpmz5W+izeJq4ys+RAW87zM5MyCJcHkwQ
  242. xHQVKuwOtXDy98cBapBU+qDcSvBwFAXK5PoQOB+CxU0SCyoeswiEicN8XkbpvADu
  243. HeVrJExmqJez5J2/yTwPR2gFmN1hGrKn4ZdzSgUPNlFM1s2jNQaSsePT6ok7pBJ+
  244. P57Myxeezc94froz1nu4Cvp1zlDbXCRlCxHDLeC9zVk/dtmT7dBb+IOy5DKbMOwj
  245. gzTkqu7fKyvE6gxN1o05Uu1Z8odd2wARAQABiQElBBgBCgAPBQJYsicWAhsMBQkB
  246. 4TOAAAoJEBY6bMbr9zTh84wIALlujwsatNf3SyBVXV775D8F/et6aLjUobW4g5b5
  247. Qe53Yxn54eK2OJ+Q44bY+00UxPQTW7mea0l1oS9gVuwGGBaWx5XF70h2KyEbNj/7
  248. PuYaMo+BjFOPjYT6ZxxPMWMOl8AHIQp63S87hBopdydf5T+PPTIOSslyJt3QKWIr
  249. lTSsdoePOOEGYdIG/BOILNaaQvpdYcXbMr4VW9i0aq4Lo+hP2wvxJE6qpx+q26Zb
  250. 8cMnJJdYBxfOj4PfQJZlXFs6Mcu0VXEKh0aksgMiIZWkBvLHBwCqURthMqvlxu73
  251. mjzFeqSvgDDA9oE3Ua3GonaK3o06Y5JbLtvvG1OUC6gtSv0=
  252. =lZCj
  253. -----END PGP PUBLIC KEY BLOCK-----
  254. sempre grazie a:
  255. hackmeeting, freaknet, autistici, ccc, riseup, decoder,
  256. torazine, museo informatica funzionante, indivia, moca,
  257. metro olografix, ecn, phrack, dyne, satana.
  258. CONTATTI ##-
  259. .:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:._.:*~*:.
  260. &lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;&lt;
  261. </code> </pre>
  262. </p>
  263. </div>
  264. </div>
  265. <hr>
  266. <footer>
  267. <p>CC BY-NC</p>
  268. </footer>
  269. </div> <!-- /container -->
  270. <!-- Le javascript
  271. ================================================== -->
  272. <!-- Placed at the end of the document so the pages load faster -->
  273. <script src="js/jquery.js"></script>
  274. <script src="js/bootstrap-386.js"></script>
  275. <script src="js/bootstrap-transition.js"></script>
  276. <script src="js/bootstrap-alert.js"></script>
  277. <script src="js/bootstrap-modal.js"></script>
  278. <script src="js/bootstrap-dropdown.js"></script>
  279. <script src="js/bootstrap-scrollspy.js"></script>
  280. <script src="js/bootstrap-tab.js"></script>
  281. <script src="js/bootstrap-tooltip.js"></script>
  282. <script src="js/bootstrap-popover.js"></script>
  283. <script src="js/bootstrap-button.js"></script>
  284. <script src="js/bootstrap-collapse.js"></script>
  285. <script src="js/bootstrap-carousel.js"></script>
  286. <script src="js/bootstrap-typeahead.js"></script>
  287. <script src="js/bootstrap-affix.js"></script>
  288. <script>
  289. _386 = { onePass: true, speedFactor: 0.825 };
  290. </script>
  291. </body>
  292. </html>