- 56
- 72 425
SYNACK Time
United States
เข้าร่วมเมื่อ 18 มี.ค. 2023
We aim to bring you educational and informative content about anything and everything IT. This could range from open source projects, to security news and tools. We're very happy that you stopped by our channel and we hope that you find value in the services we provide!
Official site - synacktime.com
LinkedIn - www.linkedin.com/company/synacktime/
Official site - synacktime.com
LinkedIn - www.linkedin.com/company/synacktime/
Ghost vs. WordPress: Who Ya Gonna Build With?!
In this video, we summon the spirit of Ghost CMS and take it for a spooky spin! 👻 Watch as we conjure a sleek, self-hosted site using Docker, Portainer, and Nginx Proxy Manager-no magical incantations required. Along the way, we pit Ghost against WordPress in a battle of the platforms to see which one will haunt your heart (in a good way). Will Ghost spook you with simplicity, or will WordPress remain the king of the content castle? Tune in to find out... if you dare! 🕸️🎃
Chapters:
0:00 - Welcome to SYNAAAAAAAACK Time
0:12 - The why
0:55 - Let's scare up some knowledge on Ghost!
14:48 - Not scared of installations, are you?
15:25 - Deploying the stack
20:48 - Setting up our DNS
21:38 - Configuring Nginx Proxy Manager
24:47 - Initial setup of Ghost
25:43 - You survived! Let's wrap this up!
Resources:
Ghost CMS Official page - ghost.org
Ghost dockerhub - hub.docker.com/_/ghost
ThemeForest Ghost themes - themeforest.net/category/blogging/ghost-themes
SYNACK Time- synacktime.com
SYNACK Time github - github.com/SynAckTime/
SYNACK Time's Racknerd Deals - synacktime.com/racknerd/
#GhostCMS #WordPress #CMSBattle #SelfHosted #DockerSetup #TechTutorial #NginxProxyManager #Portainer #WebsiteBuilding #OpenSourceCMS #GhostVsWordPress #SpookyTech #WebDevelopment #ContentManagement #TechHumor #GhostHosting #HauntedWebsite #DigitalTools #TechFun #DIYWebDesign
Chapters:
0:00 - Welcome to SYNAAAAAAAACK Time
0:12 - The why
0:55 - Let's scare up some knowledge on Ghost!
14:48 - Not scared of installations, are you?
15:25 - Deploying the stack
20:48 - Setting up our DNS
21:38 - Configuring Nginx Proxy Manager
24:47 - Initial setup of Ghost
25:43 - You survived! Let's wrap this up!
Resources:
Ghost CMS Official page - ghost.org
Ghost dockerhub - hub.docker.com/_/ghost
ThemeForest Ghost themes - themeforest.net/category/blogging/ghost-themes
SYNACK Time- synacktime.com
SYNACK Time github - github.com/SynAckTime/
SYNACK Time's Racknerd Deals - synacktime.com/racknerd/
#GhostCMS #WordPress #CMSBattle #SelfHosted #DockerSetup #TechTutorial #NginxProxyManager #Portainer #WebsiteBuilding #OpenSourceCMS #GhostVsWordPress #SpookyTech #WebDevelopment #ContentManagement #TechHumor #GhostHosting #HauntedWebsite #DigitalTools #TechFun #DIYWebDesign
มุมมอง: 70
วีดีโอ
AliasVault: The Ultimate Open Source Tool for Secure Passwords and Private Identities
มุมมอง 663วันที่ผ่านมา
In this video, I review AliasVault, an open-source, end-to-end encrypted password and alias manager designed to protect your privacy by creating unique identities, passwords, and email addresses for every website you use. We'll walk through the installation process, including setting up the built-in email server and configuring DNS settings to ensure seamless operation. By the end of this tutor...
TokenSmith Meets Evilginx: Token Theft Combined with Entra Conditional Access Bypass
มุมมอง 76614 วันที่ผ่านมา
I demonstrate how to combine TokenSmith's powerful capabilities with Evilginx to showcase advanced phishing simulations, focusing specifically on the Intune bypass feature of TokenSmith. TokenSmith generates Entra ID access and refresh tokens, making it a versatile tool for adversary simulations, penetration testing, or administrative tasks. With its built-in Intune bypass feature, it can bypas...
Take Your LEGO Organization to the Next Level with BrickTracker
มุมมอง 17014 วันที่ผ่านมา
Is your LEGO collection spiraling out of control, with bricks invading every corner of your home? Don’t worry-you’re not alone! Meet BrickTracker, a brilliant self-hosted, open-source tool created by Frederik Baerentsen. This software is your new best friend for organizing your LEGO chaos into a beautifully cataloged system. In this video, I’ll show you how to install and use BrickTracker, so y...
How to Install WeddingShare using Docker and Portainer | Full Setup Guide & Review!
มุมมอง 10321 วันที่ผ่านมา
In this video, I’ll be reviewing WeddingShare, a simple yet effective platform designed to help couples and their guests capture and share memories leading up to and during their big day. WeddingShare makes it easy to create multiple galleries, each with its own shareable link or QR code, allowing guests to upload and view photos from events like dress shopping, cake tasting, and venue tours. W...
Bypass Intune Compliant Device Conditional Access Using TokenSmith and ROADtools
มุมมอง 69628 วันที่ผ่านมา
Today we're going to take a look at a very new exploit that bypasses the Intune Compliance conditional access policy. Combine this attack with Evilginx and you have a way to gather a ton of information about an environment, even one that tries to restrict you from everything. Once we have our refresh token, we'll be heading off to ROADtools so we can learn everything we would ever want to know ...
pfsense Update to Explode Malware Safely: Setting Up Your Flare-VM Lab
มุมมอง 42328 วันที่ผ่านมา
In this video we cover the new way you get pfsense and we'll set up a VirtualBox machine and I give you some additional tips on getting your machine up and running! In this video we go ahead and set our pfsense to 192.168.99.1 so keep this in mind when you're working with the Flare-VM initial setup. Resources: Original video - th-cam.com/video/bKxrnU-o8NQ/w-d-xo.html Continuing setup of pfsense...
NO MUSIC -Discover n8n - Open-Source Automation You Control!
มุมมอง 92828 วันที่ผ่านมา
In this video, I introduce you to n8n, a powerful open-source workflow automation tool designed for no-code and low-code development. I walk you through the installation process step-by-step using Docker, Portainer, and NGINX Proxy Manager to set up a robust and scalable environment. You'll also learn how to integrate a PostgreSQL server with your n8n stack, enabling seamless database connectio...
Better Than Zapier? Discover n8n - Open-Source Automation You Control!
มุมมอง 47128 วันที่ผ่านมา
In this video, I introduce you to n8n, a powerful open-source workflow automation tool designed for no-code and low-code development. I walk you through the installation process step-by-step using Docker, Portainer, and NGINX Proxy Manager to set up a robust and scalable environment. You'll also learn how to integrate a PostgreSQL server with your n8n stack, enabling seamless database connectio...
Nextcloud - Your Own Self Hosted Private Cloud and Collaboration Software
มุมมอง 1.1Kหลายเดือนก่อน
Today we look at Nextcloud and I show you around what is arguably one of the best self hosted private cloud projects. I'll also show you how to install it using Docker, Portainer and Nginx Proxy Manager. We'll also cover setting up or own Collabora container and for speed, we'll use Redis for memory caching! So much packed into one video! Chapters: 0:00 - Intro 1:27 - Time to sign in! 2:15 - Br...
ownCloud - Your Own Self Hosted Private Cloud and Collaboration Software
มุมมอง 914หลายเดือนก่อน
Time to check out ownCloud! Geared more towards enterprise use, we explore this project that has a special place in the community and with optional paid support, makes for a great alternative to services like Dropbox, OneDrive or Google drive. ownCloud has been around for over 10 years and shows it by offering stability and ease of use. Let's explore ownCloud and look at the features it has. We...
Quickdrop - Open Source, Self hosted and Encrypted File Sharing
มุมมอง 1.1Kหลายเดือนก่อน
The Quickdrop platform offers a user-friendly file management system that allows users to upload, store, and share files without the need for an account. Key features include adjustable file size limits, download link generation, flexible file management options, password protection, file encryption, shareable links with token-based access control, QR code generation, and an admin panel for com...
Quickly Convert Images and Documents with This Open Source Tool!
มุมมอง 412หลายเดือนก่อน
Quickly Convert Images and Documents with This Open Source Tool!
Forget Port Forwarding! Let's Look at Cloudflare's Zero Trust Tunnels
มุมมอง 747หลายเดือนก่อน
Forget Port Forwarding! Let's Look at Cloudflare's Zero Trust Tunnels
Stay Ahead of Docker Container Updates with What's Up Docker (WUD)!
มุมมอง 5202 หลายเดือนก่อน
Stay Ahead of Docker Container Updates with What's Up Docker (WUD)!
Portchecker.io Tutorial: Open Source Scanner with API Integration & Self-Hosting
มุมมอง 2262 หลายเดือนก่อน
Portchecker.io Tutorial: Open Source Scanner with API Integration & Self-Hosting
Configuring and Using Dropbox with Docker-Volume-Backup
มุมมอง 1112 หลายเดือนก่อน
Configuring and Using Dropbox with Docker-Volume-Backup
Let's Learn Elasticsearch! Setup Your First ELK Stack and Discover Kibana
มุมมอง 1292 หลายเดือนก่อน
Let's Learn Elasticsearch! Setup Your First ELK Stack and Discover Kibana
By Request - Installing Ubuntu Server on an Old Laptop
มุมมอง 1832 หลายเดือนก่อน
By Request - Installing Ubuntu Server on an Old Laptop
Are Your Docker Volumes Safe?? Back up Your Important Data with this Open Source Tool!
มุมมอง 2243 หลายเดือนก่อน
Are Your Docker Volumes Safe?? Back up Your Important Data with this Open Source Tool!
By Request - Wekan on the LAN - Only Local Traffic
มุมมอง 2293 หลายเดือนก่อน
By Request - Wekan on the LAN - Only Local Traffic
Better Than Linkwarden?! Does Grimoire's Magical Touch Have What It Takes?
มุมมอง 3753 หลายเดือนก่อน
Better Than Linkwarden?! Does Grimoire's Magical Touch Have What It Takes?
Organize, Backup and Share All of Your Bookmarks with Linkwarden
มุมมอง 7144 หลายเดือนก่อน
Organize, Backup and Share All of Your Bookmarks with Linkwarden
Stirling PDF - Open Source PDF Editor - No Subscription Required - Acrobat Alternative
มุมมอง 1.6K4 หลายเดือนก่อน
Stirling PDF - Open Source PDF Editor - No Subscription Required - Acrobat Alternative
Wekan - Open Source Alternative to Trello - Kanban Self Hosted Intro and Setup Guide
มุมมอง 2.4K4 หลายเดือนก่อน
Wekan - Open Source Alternative to Trello - Kanban Self Hosted Intro and Setup Guide
Hacking WordPress with Kali and WPScan for Beginners
มุมมอง 8245 หลายเดือนก่อน
Hacking WordPress with Kali and WPScan for Beginners
RustScan - The Modern Port Scanner on Kali Using Docker
มุมมอง 2125 หลายเดือนก่อน
RustScan - The Modern Port Scanner on Kali Using Docker
Create Your Own Docmost Website with Portainer and Nginx Proxy Manager
มุมมอง 6825 หลายเดือนก่อน
Create Your Own Docmost Website with Portainer and Nginx Proxy Manager
Quick Tips - FlareVM Networking with VMWare
มุมมอง 1595 หลายเดือนก่อน
Quick Tips - FlareVM Networking with VMWare
thanks a lot, works perfect, really well done
You're welcome!
Thanks for sharing this. I am a heavy user of SimpleLogin passwords. While different, AliasVault has some useful features. I like how it automatically creates user identities. Also, increasingly SimpleLogin domains are being blacklisted and are not usable. That may happen with AliasVault one day but it is a good backup.
Amazing tutorial. One question, for host-only adapters, should the promiscuous mode be set to allow all, allow VMs, or deny, and for which vms? please and thank you.
I believe I just went with the default of having it off. I made an updated video for the newer versions of virtualbox, here's the link! th-cam.com/video/UXxaocM_Ovs/w-d-xo.html Hope that helps!
There's 0 mitigation for this, correct?
Pretty much.. There's a section in the article from Jumpsec that talks about defense, but he's not very optimistic about it. Sunny Chau, the author of the article is having a webinar this Friday at 5:00 GMT if you're interested, here's the link! app.livestorm.co/jumpsec-labs/please-mind-the-cap?s=e2a95bd6-ac5c-4ae9-839d-a25781cafaad
Great vid. One question would be what about when Windows Hello has been setup on a device? Does it behave and you can get the token or does it behave enough like a passkey. It’s good to know that even the password less push still leaks it. Always seems to get people a little confused with password less vs passkey.
I haven't tested hello, but from what I've read, Evilginx can bypass Windows Hello for Business if insecure fallback methods like SMS OTP are enabled. Basically it downgrades the MFA method if the tenant is configured to allow it. blog.hypr.com/thwarting-evilginx-attacks-on-microsoft-entra-id There's a paragraph about Windows hello. Also check out my video about Tokensmith!
First
Maybe you guys want me to bust out my l33t hacker skillz :)
Great video, well explained. However, I'm getting an error on my Admin page: You are using a plain text `ADMIN_TOKEN` which is insecure. Please generate a secure Argon2 PHC string by using `vaultwarden hash` or `argon2`. Even though i followed your process on getting the Argon2 PHC string. I received the string and added it to my env. string. Any chance you would know how I can troubleshoot that? I see they mention that in the Enabling Admin Page wiki, but i'm lost 🙃. Any help would be appreciated
Sure thing, happy to help! Hit me up at info@synacktime.com and I'll see what I can do.
excellent video
Thank you! I need to remake it since they've changed a few things around 😊
Thanks. Reduce resolution of your screen while making videos please.
Thank you for the suggestion! I've started zooming in with OBS recently, if you see any of my new videos, let me know if you think it's better!
Hey Ben, great video, very informative! Just to let you know a lot has changed in the 2 weeks since you've posted this video so the UI may look slightly different. I've also included many new features such as an improved admin area UI, video upload support, multiple display modes for those that want to project their gallery onto a display at their event, identity checking to allow users to add their name to uploads, dark mode, import/export of data, downloading and sorting and much more with many more features and improvements in the backlog to work through so keep posted for more changes.
Nice job!! Thank you for the update, I'll be sure to check it out!
It would be really nice if bitwarden or Vaultwarden integrated this functionality into their product because they are already 80% there, you can also store logins and identities in it.. however the identities are really meant for for like family members
Yep! I have a few sock puppets I use for OSINT and just set them up with bitwarden accounts, but this would make it much easier to track any email they received. It's a very interesting project :)
Hi. I want to use wekan to create different kanban boards (1 for every client of mine) and so i want them to be able to see their kanban but not any other one. Is this possible? Does wekan have any kind of limitation about amount of boards or users than can be created?
Great questions! You can create as many boards as you'd like and Wekan has an awesome permission system so you can give access only to the people you want, it's not an all or nothing thing. I think this would very much fit all your needs. The only commercial thing they really offer is commercial support, but it's been around for quite some time and has a very engaged community.
How about for your android phone? Do they have an app or is it only for web?
You can totally use the bitwarden mobile app to connect to a self hosted server like vault warden. It should be under the settings menu of the app.
Is there a way to import all of your sets quickly rather than manually searching/adding each individual set?
Totally agree with you on this! It's been requested on his site and it looks like that's something he's considering. As it stands right now though, it's a one by one process. Great question!
this is neat tool as it convert to .pdf. But the only thing that you (or rather I) need a Portainer and the whole programming/setting up of Linux?
It is possible to run without Portainer, but it will definitely make things a lot easier to manage! I do have a video on how to build your own server with docker and portainer if that helps!
I'd never setup a local server with a docker. how do you do this?
Basically the same way! I'd start with Portainer first. I'll see if I can dig up the instructions tomorrow!
Can you run this on just Windows, w/o "a server"?
Yup! You can run docker on Windows if you want :)
How does this compare to Windows Remote Desktop?
I think it's much more secure and you don't have to open any ports since your client connects to the server, so do you and that's how communication is established.
So why host vaultwarden instead of the official bitwarden selfhost? Is it a preference for rust?
Great question! Some people just enjoy the open source transparency of a project, even if it's providing the exact same function. There are also others who prefer not to pay for the software but want all the bells and whistles.
@synacktime well bitwarden is also open source last I checked
You're totally right, didn't know if their server was open source. I saw some discussion a few months back about them changing some of their open source policies. Personally I pay for them, I think they provide an excellent service. Looks like VaultWarden's main reason is that their software is much less resource intensive.
@@synacktime yeah I believe they have a newer docker beta option that is supposed to reduce the resources
@ Which one would you prefer to run? Official or unofficial? I think I'd probably lean more towards official if I was hosting it commercially, but on the fence about personally :)
You are in luck I am not into Lego's. I watched this video, because I know someone who is into Lego's and self-hosting. I ended up really liking your video for your clear explanation about Docker .env files and access lists and ended up learning a thing or 2 :) .
Woo! As long as I helped a bit, that's all that matters :) I learned a thing or two about Portainer this weekend as well, can't wait to share!
great content, also very good explanation of a step by step process of deployment of roadrecon.
Thank you!!
If you have JIT(just in time) entra ID access control will this capture toke session as well.
Really? I'll have to check it out! In my video from yesterday I combined tokensmith and evilginx so I wouldn't need anything from the user's browser. 😁
Somehow i dont have internet access on flareVM
Can you ping an IP address like 8.8.8.8?
hey, I followed the Dropbox video you made off the back of this - thanks for that. What command do I run to execute a backup on the spot, like you have done here (14:40)?
Hey bud! Try this command.. I think this should work for you! You'll have to setup all the keys first ;) docker run --rm \ -v data:/backup/data \ --env DROPBOX_REFRESH_TOKEN="REFRESH_KEY" \ --env DROPBOX_APP_KEY="APP_KEY" \ --env DROPBOX_APP_SECRET="APP_SECRET" \ --env DROPBOX_REMOTE_PATH="/somedir" \ --entrypoint backup \ offen/docker-volume-backup:v2
That was great but I dont have access to a linux computer.
Have you considered running it on a virtual machine? There's also raspberry pis or you can do what I do and that's renting a VPS for about 20 dollars a year. Happy to discuss any of those with you!
Great info. I dont have an Nidia chip so Im running on Google Colab. Kind of frustrating because sometimes it will just cut you off and you have to re-install. Can you explain how to add the Loras through Colab?
Haven't used colab before, I'll take a look at it though! Thank you for the suggestion :)
One of the things I found hard w/ fooocus is that it was hard to get it to do body movements like bent knees, for example. It seemed to be procing all of my images with the hands on top of the head. So I found it was doing the opposite of what I told it. So I used reversed psychology & prompted, "hands on head" and it would put hands any where else when using random.
Interesting! I'll have to give that a try :)
agree to n8n tutorials that are actually applied real use cases, like setting up a local RAG ai. please use as much open source and self-hosted software. maybe one to actually set it up? It's hard to set up a self-hosted instance of n8n in linux for me. thanks!
I love n8n, just need to figure out what to do with it :D
thank you so much for all your work! cheers
Thank you for the kind words! :)
Very informative, thanks a lot
My pleasure!
Great video! Teaches about n8n and applying it to real use case is the best thank you !
Thank you! I'm really enjoying it so far!
Thanks for the video ... and happy new year 2025 :-)
Happy new year to you too!! Thank you for the comment ☺️
Thank you very much. Hope you will come up with more videos like this.
I'll do my best! Thank you! 😊
Rushed this video out of the door pretty quickly guys, so production quality might not be super amazing :) Wanted to make sure you all had as much information as possible about this new attack.
😎
lol didn't realize the background music was so loud :D My bad :)
So I uploaded a version without music if it's driving you guys crazy :D th-cam.com/video/JrINlFLvTW0/w-d-xo.html
Recently found your channel, really enjoying the videos. Good information presented clearly ! Thanks !
Thank you, Blaine!! Nice to have you here :)
What’s special about the NV most phislet doesn’t seem to work anymore comedy out no result got any fix for that?
Yea, that's true. Evilginx is old too and most threat actors have moved on to more sophisticated software that's not open source. Funny thing is that Microsoft's phishlet still works and they're still a huge target. There are tutorials out there on making your own phishlets. I've personally never tried, but it didn't look too complicated and required the use of burpsuite.
Wow
Yup :)
good Job. thx for the video 🙂 greetings from Switzerland
Thank you so much! I may have to come visit one day, heard it's beautiful over there! :)
Why not infinite scale?
Good question! Mostly because I had never heard of it :D Honestly just went with what popped up when I typed owncloud docker into google :) Maybe I should give it a look!
does this work on arm ?
That is an excellent question! I can't find any information about that, probably too new to know. If you try it and it doesn't work, I'd love to know!
@synacktime I did on my Pi5 and it didnt work, it seems that Arm package isn't available then.
Thank you for the update! Hopefully that'll be something he'll support. I know this is really new and with developers like this, they're usually open to suggestion! I'll start a feature request on his github.
@@epsipsychpt I put a request in and Mitch said he didn't have any issues running it on his Pi5. Check out the thread here - github.com/dendianugerah/reubah/issues/11
@@synacktime hey I've seen your issue and I am sorry for my confusion I guess, I've now tried again compiling reubah through docker on my pi5 and it works , but I could swear that last week I tried and it wasn't working my bad, but since I could see no mention of arm support I got confused. Thank you for your support and recommendation of this software, great channel btw!
I've heard of ownCloud awhile back when I was looking into the various options. I did end up landing on NextCloud but how would you compare the two and which do you prefer?
When I was an IT director for a small business, I started with ownCloud but switched to nextcloud because we wanted to have more features and we were ok with community support. I think nextcloud is more modern and bleeding edge. Last I heard they were still running it. 😊
Thank you for covering my app ❤ Soon there will be a "Quality of Life" kind of update to the UI and workflow
You're doing a great job! Thank you for your generosity!
Thanks, great video. I watched after installed FlareVm and Remnux, and I was still afraid about my host only network. I will try pfsense idea later
As I was thinking to write something like this for myself -- here it goes into my hands :) Thank you mate, subscribed!
Happy to help and thank you for the sub! 🙌
This is awesome. If rhis could sync files to your desktop, I could say bye bye to microsoft one drive!
Have you looked at owncloud? I could do a video about that, but that would basically do exactly what you're looking for. :)
sir , while downloading pfSense , even though I configured the settings in Network , it is asking me for WAN and PAN Interface , what do I do?
Did you get this working? I don't think I've ever heard it ask about a PAN interface and when I google it, looks like that's a Palo Alto term. Was PAN a typo?
@@synacktime no sir , it did not work yet :( and no sir it is not a typo
@@rdt777 Weird! They must be changing things around. Maybe I need to do an update to this video. I'll investigate today or tomorrow!
@@rdt777 Made this update for you, let me know if it helps! th-cam.com/video/UXxaocM_Ovs/w-d-xo.html