Daily Weekly Monthly

Weekly Shaarli

All links of one week in a single page.

Week 20 (May 11, 2020)

butt - broadcast using this tool

butt - broadcast using this tool
by Daniel Nöthen
Main Window
About

butt (broadcast using this tool) is an easy to use, multi OS streaming tool.
It supports SHOUTcast and Icecast and runs on Linux, Mac OS X and Windows.
The main purpose of butt is to stream live audio data from your computers Mic or Line input
to an Shoutcast or Icecast server. Recording is also possible.
It is NOT intended to be a server by itself or automatically stream a set of audio files.

If you are looking for an iOS streaming tool have a look at iziCast.

Messagerie email éthique : comment préserver sa vie privée en 2020 (et celle de son entourage) – Blog Libre

Messagerie email éthique : comment préserver sa vie privée en 2020 (et celle de son entourage)

Ce billet est une mise à jour de celui publié en septembre 2017 sur le petit monde des messageries email.

L’email reste un outil majeur malgré l’usage massif des réseaux sociaux et des messageries instantanées. Nous avons besoin d’un email pour communiquer avec nos semblables et pour nous inscrire à des services web divers et variés dans le cadre de nos usages numériques éducatifs, ludiques, administratifs et professionnels.

Une boite email comporte une grande partie de nous mêmes : il s’agit de notre correspondance numérique, qui va de l’email le plus banal (confirmation d’une commande d’achat) au plus intime (échanges familiaux et amoureux) au plus confidentiel (email officiel des impôts !).

A qui confier la responsabilité de conserver avec respect notre vie numérique ? Je vais tenter de répondre à cette question 🙂

  1. Résultats courts
    Pour les plus pressés, voici les résultats.
    .
    1.1. Les services emails que je conseille

    Infomaniak
    Kolab Now
    Mailfence
    Mailbox
    Mailden (ajout 2 mai 2020)
    Migadu
    Neomailbox
    Posteo
    Protonmail
    Runbox
    Soverin
    Tutanota
    Vivaldi

1.2. Les services de messagerie qu’on peut utiliser, éventuellement…

Autistici
Disroot
Fastmail
Gandi
Gozmail.bzh
La Poste
Mail Lilo
Mailo (anciennement NetCourrier)
Mail.fr
Mail.be
OVH
Riseup
Sud Ouest
Yulpa
Zaclys

1.3. Les services à ne pas utiliser

Gmail
GMX
GreenNet
Msgsafe.io
Newmanity
Novo Ordo
Openmailbox
Outlook / Hotmail
Scryptmail
Startmail
Yahoo
YandexMail
Zoho
InfoSec Handlers Diary Blog

Looking at our patch Tuesday list, I looked a bit closer at CE-2020-1048 (Print Spooler Privilege Escalation) and Microsoft's ratings for that one. Microsoft rated this as:

Disclosed: NO
Exploited: NO
Exploitability (old and new versions)

Unfortunately, this vulnerabiltiy was actually disclosed to Microsoft by the research community (see below), so the code to exploit it absolutely does exist and was disclosed, and a full write-up was posted as soon as the patch came out:
https://windows-internals.com/printdemon-cve-2020-1048/

Long story short, on an unpatched system, you can plant a persistent backdoor on a target host with this one-liner in PowerShell:

  Add-PrinterPort -Name c:\windows\system32\ualapi.dll

Then "print" an MZ file (DOS excecutable) to that printer to light it up.

As noted, this backdoor is persistent, and will remain in place even after you apply the patch!

Moral of the story? For me, there are a couple of them:

  • Don't put too much stock in risk ratings assigned to patches. "Lows" and "Mediums" can bite you just as badly as vulnerabilities rated as "High". This goes for patches as well as scan results or pentest results. If your policy is to patch only Severe and High rated issues, you'll pay for that eventually.
  • Also, it's a good thing that more vendors are going to monolithic patching. If you apply the current patch set from Microsoft, you get them all - there's no more "cherry picking" allowed!
HSTS Preload List Submission

hstspreload

Installation d'un noyau Debian chez ovh. — Le Wiki de debian-fr.xyz

Installation d'un noyau Debian chez ovh.
Sauter à la navigation
Sauter à la recherche
Sommaire

1 Intérêts
2 Prérequis
3 Choix du noyau
    3.1 Renommer le noyau ovh
4 Installation du noyau 2.6.32-5-amd64
    4.1 Mise à jour de grub
    4.2 Vérifications
    4.3 Terminé! Rebooter le serveur