DEF CON 32 - Why are you still using my server for your internet access - Thomas Boejstrup Johansen

แชร์
ฝัง
  • เผยแพร่เมื่อ 21 ธ.ค. 2024

ความคิดเห็น • 89

  • @alzeheimersgaming
    @alzeheimersgaming หลายเดือนก่อน +214

    Most danish presenter ever, no context, no intro, just right into the presentation. Fun talk!

    • @robertbruce7686
      @robertbruce7686 หลายเดือนก่อน +3

      His ancestors were also pretty straighforward too am sure 😂😂 (think longboats....). Great talk!!

    • @ChristianHaschek
      @ChristianHaschek หลายเดือนก่อน +2

      and spelling "w" as "v" :D

    • @fullfungo
      @fullfungo หลายเดือนก่อน +2

      And I still have no idea what the presentation was about 😅

    • @ngDetecter
      @ngDetecter 10 วันที่ผ่านมา

      @@fullfungo he was pretending that his entire career (which seemingly consists of understanding 15 nginx config properties) is harder than mopping a floor.

  • @Jergling
    @Jergling 2 หลายเดือนก่อน +213

    The web is a nightmare of 40 years of band-aids holding together spaghetti. My god, this is bleak.

    • @stansteez
      @stansteez 2 หลายเดือนก่อน +14

      It's a miracle that it works at all :)

    • @quantumbacon
      @quantumbacon 2 หลายเดือนก่อน +2

      So that's why it's called TCP.

    • @RonaldChmara
      @RonaldChmara 2 หลายเดือนก่อน +9

      40 years ago it was band-aids holding together spaghetti from 40+ years before *then*.... that's all it's ever been, or will be, and yet we still manage to do amazing things.

  • @trudyandgeorge
    @trudyandgeorge หลายเดือนก่อน +46

    This is absolutely mind blowing. And the presentation was top notch. He totally foreplayed us all and when he bought the domain I knew it was gonna be a total show. Just. Amazing.

  • @kataseiko
    @kataseiko 28 วันที่ผ่านมา +9

    His error message should have included "if the problem persists, please contact your network administrator or upgrade to a current operating system".

  • @ZedaZ80
    @ZedaZ80 2 หลายเดือนก่อน +46

    This is pretty funny, great work! It's wild this still works

    • @ZedaZ80
      @ZedaZ80 2 หลายเดือนก่อน +7

      Buddy, I cackled out loud about the crowd strike thing. A true hero!

    • @MiddlePath007
      @MiddlePath007 2 หลายเดือนก่อน +2

      He got me a few good times

  • @7rich79
    @7rich79 2 หลายเดือนก่อน +12

    Great talk. I was in too much of a good mood with my weekend starting. Fixed.

  • @BastetFurry
    @BastetFurry 27 วันที่ผ่านมา +7

    *opens pi-hole*
    adds wpad to the block list
    o.o

  • @RedSntDK
    @RedSntDK 2 หลายเดือนก่อน +33

    As a Dane it's hilarious how many times he uses "eller" instead of "or". Cute.
    13:32 "Eller hvad hedder det.." 😅

    • @nirv
      @nirv 2 หลายเดือนก่อน

      So man foreigns.

  • @mibdev
    @mibdev 2 หลายเดือนก่อน +28

    Completely unrelated, but I was watching this with my SO beside me, and then they went "He sounds danish", then four more seconds pass and there's a domain ending in ".dk". It's funny how you can just hear these things! :)

    • @RedSntDK
      @RedSntDK 2 หลายเดือนก่อน +6

      To be fair, he has a quite thick accent and also uses "eller" several times. And the way he pronounces "data" is exactly like Danes do.

    • @Blommefeldt
      @Blommefeldt หลายเดือนก่อน +1

      @@RedSntDK The same with Java. In danish the J is more soft, and will sound like the english "yah" or "yea". So it would be kinda like "Yava".

  • @storm4246
    @storm4246 2 หลายเดือนก่อน +8

    Great talk!

  • @ehsnils
    @ehsnils 2 หลายเดือนก่อน +22

    The ad-proxy thing could be that some ISPs are trying to inject their own ads into the web page.

    • @alfonzo7822
      @alfonzo7822 2 หลายเดือนก่อน +2

      Definitely!

    • @sb0373
      @sb0373 หลายเดือนก่อน +3

      or just block all ads. thats how I do it. I hate ads.

  • @yescats3327
    @yescats3327 2 หลายเดือนก่อน +46

    If you are using the VeinMaster Iot 5ghz wifi butt plug, you have to twist the sac counter clockwise to access the proxy settings. Your welcome.

    • @gordslater
      @gordslater 2 หลายเดือนก่อน +14

      I tried this but it just buzzes "404 not found" in morse code. Is there a root shell? Because there's always a root shell...

  • @pete3897
    @pete3897 2 หลายเดือนก่อน +35

    I gotta get me some of that Yavascript for my Veepad :)

  • @szaszm_
    @szaszm_ หลายเดือนก่อน +6

    The guy who only proxies ads is probably blocking ads.

    • @Amzdgg
      @Amzdgg 23 วันที่ผ่านมา

      and then ddossing whoevers IP he puts there? cool botnet idea

  • @rabidpb
    @rabidpb 2 หลายเดือนก่อน +15

    He implies in a few places that his proxy can intercept HTTPS traffic, which is not the case. There's a lot of useful data in the plaintext though.

    • @FuckYoutubeCensorshipCunts
      @FuckYoutubeCensorshipCunts 2 หลายเดือนก่อน +3

      Anyone can intercept HTTPS traffic. Whether or not they can decrypt it is another question

    • @seansingh4421
      @seansingh4421 2 หลายเดือนก่อน +3

      It could be done if someone has access to certain TLS’s private pki information. Then there’s nothing stopping someone.

    • @alfonzo7822
      @alfonzo7822 2 หลายเดือนก่อน +3

      I'm guessing he's just used to saying Https instead of http.. just a little brain blip

    • @cmusgrave
      @cmusgrave 2 หลายเดือนก่อน +8

      -I think he's redirecting https to a http connection- re-watching the video, at about 10 minutes, he's using the wpad proxy script to ensure that all connections to his proxy server are on port 80 / unencrypted connection

    • @rabidpb
      @rabidpb 2 หลายเดือนก่อน

      @@cmusgrave only works if he can offer a trusted cert matching the request URL (in which case bigger things are broken)

  • @Jorn-sy6ho
    @Jorn-sy6ho 2 หลายเดือนก่อน +4

    Very academic this approach! When will we see Hacking as a dedicated acedemic field?

    • @realdavidpain
      @realdavidpain 2 หลายเดือนก่อน +4

      It is my friend, it is...

    • @MrMatthijsr
      @MrMatthijsr 2 หลายเดือนก่อน +5

      It already is? There are dedicated conferences and journals focused on cyber security..

    • @Jorn-sy6ho
      @Jorn-sy6ho 2 หลายเดือนก่อน +1

      @@MrMatthijsr cool! I probably had a very specific idea in my head ;)

    • @Sonyboj
      @Sonyboj หลายเดือนก่อน +2

      You mean computer science ? To hack something you must understand it.

  • @Sonyboj
    @Sonyboj หลายเดือนก่อน +3

    How are they getting a wpad proxy on their machines in the first place? Just using the browser or they set it in settings?

    • @trudyandgeorge
      @trudyandgeorge หลายเดือนก่อน +3

      +1. I wanted to know this too. At first I figured it's set at the OS level, maybe in some proxy discover daemon as part of the networking daemon ...but the more I think about it the more I reckon it's at the application-level. It must be the browser runtime reaches out, or the antivirus reaches out, or the Steam client itself reaches out, etc (he does mention to set a rule in /etc/hosts to resolve it locally 127.0.0.1).
      I wonder if my machine does it too? I'm going to setup a rule in my /etc/hosts then setup an nginx server to capture any requests. I'm on Ubuntu.
      (This is really blowing my mind. Best talk so far imo)

    • @_mr_andersson
      @_mr_andersson หลายเดือนก่อน

      All Microsoft software, and many third party applications, use the IE/Edge proxy settings and they have WPAD enabled by default.

    • @Sonyboj
      @Sonyboj หลายเดือนก่อน

      @@_mr_andersson But then EVERY PC would be connected to this?

    • @_mr_andersson
      @_mr_andersson หลายเดือนก่อน +1

      @@Sonyboj Not every pc, but many. You have to have automatic proxy discovery enabled, you can't have a DHCP server that sets a custom WPAD address, your FQDN has to be under a top level domain where he controls the wpad domain, and there can't be any higher level wpad domain existing.

    • @trudyandgeorge
      @trudyandgeorge หลายเดือนก่อน +2

      @@_mr_andersson They also need the implementation to be wrong; I believe he mentioned the spec said to recursively fetch, but not all the way to the top level domain. (perhaps I am misremembering as I saw this video a week ago)

  • @godnah
    @godnah 2 หลายเดือนก่อน +11

    He speaks out of one side of his mouth. That's red team activity through and through.

  • @andrewdunbar828
    @andrewdunbar828 2 หลายเดือนก่อน +6

    I was having a smaller Yaver script but the technical behind it was very technique.

  • @bonsairobo
    @bonsairobo 2 หลายเดือนก่อน +7

    GET THIS ERROR MESSAGE WHEN TRYING TO USE NETBANK

    • @trudyandgeorge
      @trudyandgeorge หลายเดือนก่อน +2

      Dude really? 😂🤯 Adjust your hosts file my friend. And if it's not a personal machine then 1000% tell your IT / networking people.

    • @dangerfox1776
      @dangerfox1776 หลายเดือนก่อน +6

      @@trudyandgeorge he is quoting the presentation... also yeah just tell grandma to adjust her host file... This needs to be fixed on an OS level.

  • @5z436
    @5z436 หลายเดือนก่อน +1

    lmao! this presentation is sooo funny~🤣🤣🤣 Also, he is a Master Troll! *bows*

  • @gijsyo
    @gijsyo 2 หลายเดือนก่อน +3

    Haha this guy. Great and sad at the same time.

  • @howwitty
    @howwitty 2 หลายเดือนก่อน +4

    38:45

    • @ngDetecter
      @ngDetecter 10 วันที่ผ่านมา

      what a fuckin waste of time. feel bad if there was anyone in the audience lol

  • @jacksonfive5180
    @jacksonfive5180 2 หลายเดือนก่อน +4

    besically it should be criminal to inform you close a bug and its still there.

    • @rwz
      @rwz หลายเดือนก่อน +1

      The definition of "bug" is very loose.

    • @jacksonfive5180
      @jacksonfive5180 หลายเดือนก่อน

      ​@@rwz​@rwz Once you talk about closing it you do have opportunity to explain what are you closing and how.

  • @paxdriver
    @paxdriver หลายเดือนก่อน

    So, so soooo funny

  • @NinaMcmunn
    @NinaMcmunn 2 หลายเดือนก่อน +37

    I thought the audio would be better at a computer nerd convention

    • @Algoinde
      @Algoinde 2 หลายเดือนก่อน +44

      Sadly audio is provided by the venue. Or so I've heard. And the venue audio is usually the worst and the most rundown thing you can have. I'm a bit surprised defcon doesn't just run their own audio at the venue... could be achieved by using digital runs and one flight case worth of stuff nowadays.

    • @zwapz
      @zwapz 2 หลายเดือนก่อน +10

      Nerds type, radio dj's talk. ;)

    • @NinaMcmunn
      @NinaMcmunn 2 หลายเดือนก่อน +1

      @@zwapz this is a talk 👀

    • @NinaMcmunn
      @NinaMcmunn 2 หลายเดือนก่อน +1

      @@Algoinde that makes a lot of sense, if they streamed the event the issues would probably solve themselves with the stream implementation and would actually be worthwhile to do.

    • @smartyhall
      @smartyhall 2 หลายเดือนก่อน +12

      Unfortunately, A/V nerds are security nerds are rarely the same. What makes it more painful for the someone like myself who is into both is that fact that most of the A/V problems they have could be solved by the audio equivalent of a couple of Raspberry Pis and a bit of creative thinking for almost nothing in either monetary or time investment. (I speak as someone who has decades of experience with the cheapest of clients - charities and churches.)

  • @Zeftax
    @Zeftax หลายเดือนก่อน +1

    >Using AI for the presentation

  • @TESTA-CC
    @TESTA-CC หลายเดือนก่อน

    MINIX.

  • @Sonyboj
    @Sonyboj หลายเดือนก่อน +3

    .local and .ad... yesssss