#ot1-perplexing-regexing
1 messages · Page 203 of 1
@bleak lintel your pfp scared me
yes
@rough sapphire is this better? :P
Why is there a margin around each window
Am I the only one who doesn't use i3 🤔
I use plasma
Plasma seems pretty nice
@cosmic quiver what do you use instead?
I used to use Budgie but I just use gnome now
People say it's slow but I don't have any issues with it
¯_(ツ)_/¯
budgie
gnome 
same for me, gnome is nice
not a fan of gnome's UI/UX, but if it's fine for you then go ahead
I mean I tweaked it to look better
I use arc-red theme or whatever it's called, dash-to-dock and arcmenu
And probably something else I'm forgetting
But it looks pleasant
screenshot?
dash-to-dock 👍
yea you can make it look better, that's not what I really ment tho... I just don't like how it wants you to use it
¯_(ツ)_/¯
also not a fan of alot of the programs that come with gnome
It also uses wayland
I'm booted into windows to play video games @lone otter
Making it not an option for me
oh understandable
Nvidia drivers don't work with wayland
ye that as well
I haven't had issues
idk it's the one I have
I know nouveau does support wayland
but that driver sucks for games (compared to nvidia's own)
Nouveau's performance is basically non-existent
yes it is
And it doesn't actually even work
You get lots of black boxes
If I start having issues I'll just switch back to using budgie 
haha
i remember i tried running ubuntu with wayland at first
and was like "huh, why are all my cores maxed out"
and it was so laggy, nothing worked

i was thinking "hmm, this book said wayland is the new up-and-coming thing, so might as well give it a shot"
Does anyone here have any experience with sms apis like twilio? Or similar stuff?
A while back, I was able to receive verification codes from an app using numbers from twilio, but now the app switched to short code numbers I think? And I can’t receive the verification codes anymore
Anyone know if any sms apis support messages from short code numbers?
Yeah I used to use twilio
They deliberately don't support those numbers
To stop the exact thing you're trying to do
Ik 😦 I read all their info - u don’t know any other services that do tho?
Fraid not
Twilio is amazing for everything except this and talking in voice calls
Besides, you're breaking all kinds of moral codes and terms of service by automating that
I don’t feel too bad, it’s more for the learning experience than like generating 1k accounts
Also do u know if there’s a reason why u can’t msg +1 (non twilio) numbers using a non +1 twilio number?
Doesn’t really explain in docs
If you're on the free trial credit you can't send messages to numbers that haven't explicitly confirmed they want to get texts from your numbers
No i’ve paid - I sent the message and it gave me an error
It is generally smart to have a number in the region you're sending to though
My workaround rn is to send from my phone to GB twilio to US twilio to US number
Since then the person you're sending the message to doesn't get charged for it
Hmm didn’t think of that
Also my plan was to send straight from GB twilio to us number and straight from US twilio to gb number, but I realised that’s not a great idea 😂
Do u have anyone u recommend for voice calls? I found someone and they seem pretty cheap, but haven’t tried them yet
😂😂 I promise i’m not human trafficking
Wait ppl get charged for receiving msgs from other countries? (Just read your comment properly, misread it the first time)
o_O
this is why i dont add milk
i eat the cereal dry 😃
i drink milk alongside
rather than have soggy cereal drenched in milk
how long do you wait before eating your cereal? It only gets soggy after like 10 min
I also drink the milk along side
means better cereal and milk
but I generally don’t do cereal; coffee or tea is my breakfast
Gwyndolin gets it 😃
c:
i think i am going to make a couple batches of sun tea tomorrow :D
should go well with light salads during the heat wave c:
I'd take a discord skin for my OS
^
[23:22] jms53: I'm no Bisk, but something sounds wrong about that
[23:22] jms53: almost as bad as cereal with Orange Juice
it's infused milk
it's a beverage, not a broth
also wtf at the dude who just drinks a glass of milk with a bowl of dry cereal
the best part is you overload it on milk, then eat the cereal quickly before it goes soggy
then you have cereal infused milk left over to drink
no, it's their right to be wrong if they want to be.
but this is the outrage generation!! anything and everything can/does cause offence 😄
Did you just stereotype this generation as Outrageous?
yup!
Rude
@rough sapphire Your current username does not comply with our username policy. Please add a nickname which complies with the nickname policy specified here: https://pythondiscord.com/about/rules#nickname-policy

i get crawlers trying to aggregate webpages, and bots checking login pages to see if im vulnerable, but wtf is this?
probably some server is vulnrable to having wacky methods sent to it
the HTTP/0.9 protocol didn't have a version declaration
so if your server is interpreting something as an HTTP/0.9 request with a weird method, that just means it's popping off the first whitespace-separated word from the first line. Probably some garbage that isn't even HTTP being sent to your port.
oh
@sand goblet stop hovering over the console for the game
What?
which part of the game are you currently in?
The main game, or the little console that pops up behind it?
because, IIRC, this points to that little console.
there is no console
yes there is
Not on linux there isn't
Fair enough, I guess.
i enjoyed it, i like games like that though
i used to love uplink
that game was awesome
I liked this one better than uplink
yeah its a lot more current, and uplink is pretty damn old
17 year old 😄
actually hackmud looks interesting!
Use a command-line interface to explore a vast, dangerous and ever-changing computer network. In the MUD, trust is everything and fortunes can be stolen in a moment. Develop your programming and hacking skills as you learn to exploit security flaws and protect your winnings.E...
$19.99
542
there was one i used to play, came on one of those tiny cd's it was soooo good!
cant remember its name though
I just got hacked
and my hacknetOS "linux" machine crashed with a bluescreen...
tsk tsk...
omegalul
Is hacknet still free?

Ahh wait it still is apparently
free giveaway ends in 40 minutes
Eh I can't be bothered installing steam
..
@worn kite You can prevent that if it happens again :P
If you see your RAM filling up, you can find the process with ps and kill it
Veeeeery important for multiplayer
@torn ridge oh I remember those tiny CDs
So cute
And usually had interesting stuff
Except for the modem vendor ones, but those were usually full size
hmm, can I switch back to an older faction to complete their tasks after joining the next one? (Hacknet again)
oh isn't he the guy who made requests?
Yup
I want context behind that
i think its this
oh my god
you're asking a lot out of me, and i've already put a tremendous amount of time into this, and it's a holiday right now. patience is a virtue. so the solution is obviously to close the issue
@iScrE4m Just remove the python_version requirement from Pipfile if your intend is to support multiple Python versions. lol
It’s even better cuz he closed it then
2-3 comments down one of the other contribs is like “yeah we can add it”
pretend to work
has somebody here used gitea? trying to figure out how to add attachments to wiki posts
I have, but I can't remember ever having had a need for attachments
writing some wiki post on how to use our gitea instance and having screenshots would've been nice
weeb Byte and tea addict hemlock as helpers


your loss ¯_(ツ)_/¯
class Ores():
instances = {}
def __init__(self, name, rarity, emoji):
self.name = name
self.rarity = rarity
self.emoji = emoji
Ores.instances[name] = [int(rarity), emoji]
wood = Ores("wood", 1, "🌲")
stone = Ores("stone", 3, "🗿")
coal = Ores("coal", 5, "🔥")
else:
found = "nothing!"
for item in Ores.instances.keys():
num = Ores.instances[item][0]
random = randint(0, num)
if random == num:
found = item + Ores.instances[item][1]
break
embed = discord.Embed(
title='Mined for ore and found {}'.format(found),
description="Copyright of Sharp",
colour=member.colour)
embed.set_author(icon_url=member.avatar_url, name=str(member))
await ctx.send(
content='', embed=embed)
I think this is quite cool.
Copyright of Sharp
@ebon quarry ecks dee
The code is cool tho right?
Means i can add new materials in one line of code
Why do you have the class at all if you're just using it as a dict...?
I can already feel the next issue
>>> class Foo:
... instances = {}
... def __init__(self, name):
... self.name = name
... self.instances[name] = self
...
>>>
>>> def make_foo(name):
... f = Foo(name)
... print(f.name)
... print(f.instances)
...
>>> make_foo('Jack')
Jack
{'Jack': <__main__.Foo object at 0x7febfc16fd68>}
>>> Foo.instances
{'Jack': <__main__.Foo object at 0x7febfc16fd68>}
>>>
>>> from weakref import WeakValueDictionary
>>>
>>> class Foo:
... instances = WeakValueDictionary()
... def __init__(self, name):
... self.name = name
... self.instances[name] = self
...
>>> def make_foo(name):
... f = Foo(name)
... print(f.name)
... print(dict(f.instances))
...
>>> make_foo('Bob')
Bob
{'Bob': <__main__.Foo object at 0x7febfc11ec88>}
>>> dict(Foo.instances)
{}
Well this usually doesn't cause issues but it doesn't leave useless objects in memory which is nice
lol
😂
there's so much i would do to have an official CLI client for discord
@tulip palm there is a discord-cli in golang already, and some of it's forks actually do work
the problem is that an unofficial client would break discord's terms of service, as gdude said.
ye I guess that'd count as selfbotting 😦
I'd pay for Nitro if it got me a CLI client
sadly my terminal cannot show rich content
mine can't either, but I'm not too worried about anything beyond the actual text content
I use the video calls and stuff
oooh
id be fine with just text content
yeah that'd be perfect for me, Discord devs pls make it happen
I'll start giving you my money
@tired osprey submitted a suggestion for it i think. did you vote?
oooh
anyone elses discord just die?
it's been doing that on and off all day
Yeah heard google cloud is having issues
Some days I get reminded that programming can be really hard
Especially when you try to keep too much complexity in your head at once
Isn't the point of programming to get the complexity out of your head?
Yes
But keeping in mind the use cases for a new design so I don't miss one is difficult for me
Name my Yacht in GTA
Failure
YEAH BOI SPOTIFY'S BACK
Man they've gotten slammed the last week or two
Multiple minor outages, then Spotify breaking, then the big outage today apparently
rip
lol
I'm sitting here trying to figure how to MitM the RPC traffic between Discord and Spotify
After poking around in the processes and folders of both clients
When it hits me, "Oh CTRL-SHIFT-I in Discord"
And low and behold [Spotify] WS Connecting
Watching the numbers in the HTML change as the song progresses is strange
Yeah, so I think the Spotify integration is mostly happening inside discord
speed running in GTA 👌🏾
Reverse engineering is 👌
We're so close to the WR
Even tho I'm a total noob at it
18 seconds off
For load time?
Same
same
But you're actually in school
...true
Oh man I really want to switch from smokeping to this, but this logo though: https://github.com/20c/vaping
What would you use?
I'm still using smokeping to monitor a network of about 50 nodes
set it up in like... 2010
Also using librenms but smokeping gives way more info at a glance
I use datadog for monitoring
I don't know anything about datadog except that I want that free tshirt
I can guarantee you this nonprofit will not go for that
I'm monitoring 47 nodes, some of which are endpoints and not network components, but 24 of which are Ubiquiti devices and also set up in AirControl
That's not counting the UniFi stuff which is controlled through the UniFi Controller
I did use munin at one point
Which is nice for graphs but is a pain to set up and doesn't do alerts
The reason I set up LibreNMS was that I wanted alerts, but I found that it gave a lot of spurious alerts due to changing wireless conditions and never really bothered looking into it further
It tended to give "host down" alerts on small numbers of dropped packets
Reminds me of OVH's bundled monitoring
Can't ping? OH SHIT ALERT THE TEAM LET'S GET THE FEDS DOWN TO THAT RACK
Yeah my phone was blowing up
what haha
I'm just like.. Yeah, I use iptables, thanks
Don't @ me
And they disable it
The monitoring, I mean
Maybe I'll look into tuning librenms
Apparently, it has smokeping support. Did not know this.
Wanna hear a joke?
Snapchat and discord both had downtime Cause of Google :^?
2real4fun
@bleak lintel
i use web all the time because fuck electron
lol
i just almost wrote "mi profesor de religión es un coño" on my spanish homework lmao
it's probably not even correct but whatever
people say not to use google translate because it's wrong, but that's just cause you need to use it correctly :P
@knotty beacon are u online and want to realm royale
people say not to use google translate because it's wrong, but that doesn't matter when i can't speak any other fucking language does it
does well for basic communications
¯_(ツ)_/¯
the people who said don't use google translate, said it a long time ago
then, for the most part, people have just repeated it
thing is, google translate has come a long way
it's fairly inoffensive for most of the languages I speak when I test it. it can't do edge cases too well but it can do the shit outta common stuff.
english -> norwegian is pretty good. same with swedish, danish, and as far as I can tell without a native command of them, german and spanish too
they all used to suck at one point
English to German and back has proven very reliable for me
French is mostly right too. If you know a bit, you can avoid most mistakes too
Ah, bien sûr, il y a du baguette sur la Tour Eiffel. 🥖 🗼
(nvm that Discord only has a Tokyo Tower emoji...)
What these systems will never get is how words change based of emotions and feelings
So googles neutral stance is better than what we will have for awhile
100% german
that's pretty german I guess
The new Mac book with an i9 in it runs too hot to utilize the CPU :D
the cooling is so wank that under heavy load the CPU actually throttles itself
and never reaches the turbo boost frequency
it's basically just as fast as the i7 version
You have a virus
lul
Waiting for a windows 10 vbox to download and unpack zzzzzz
Trying to pretend to be busy
@bleak lintel any way for a normal human being to get the list of all the ot channel names?

Ye basically
What kind of website could i build to use most of back-end, for example api's and databases?
@twilit delta I mean you could show statistics...
That way it's just a static website that pulls data from database
I have been writing decoders from binary, base64, vigenere, rot N
but they dont really touch any more complex data structures or OOP in general
.... Why when most lans do that anyways?
Just for a general interest in them
Fair enough
Hmm, should i try to make some sort of web which would show charts of crypto prices
but i have been looking around and could't find a source from which all those websites compile those prices
There’s a bunch of crypto exchanges
yea, but do they really just rely on their api's?
Well prolly its a wrong place to ask such question

its addictive and u wanna continue with it to push the limits,and before you know it you spent $200 on a server - and thats just the start
its a gateway drug leading into a dangerous world
Lmao
you do notice how every of your messages is ambiguous in context of the image above?
thats the point lol (wait ambiguous means u cant tell if im being serious or just going along with the image right?)
-The people who are doing it probably don't enjoy it very much 😂 😂
k, wasn't sure if it's intentional or not 😛
I'm 1/16 german
im pretty german
Subscribe to AFM Records here: http://bit.ly/1Ag5sAW "Gunman" is taken from the new ORDEN OGAN studio record "Gunmen" - to be released 7/7/2017 via AFM Recor...
some German music matching the channel name... 🤘
(would fit in Lord Inver's death metal moshpit too)
although it's rather power metal
Subscribe to AFM Records here: http://bit.ly/1Ag5sAW ###ORDEN OGAN “Gunmen” Tour 2017 (special guests Rhaposdy Of Fire)### 13.10.17 DE Bochum Matrix 14.10.17...
ORDEN OGAN “Gunmen” Tour 2017 (special guests Rhaposdy Of Fire): 13.10.17 DE Bochum Matrix 14.10.17 DE Herford X 15.10.17 FR Paris Le Petit Bain 16.10.17 DE ...
Big data is fun once you know how to handle it
@granite lake hey can i handle your Big Data™?
😂
Wow
Wasted 45 minutes trying to figure out why my windows service wasn't started
Turns out just had to run a post-install script for pywin32
🤦
python 'C:\Program Files\Python36\Scripts\pywin32_postinstall.py' -install
boom fixed
le sigh
lol
Known doesn’t love me enough to help me with unit tests 😦
“Look I’m all for a health and mindfulness kick or whatever, but she needs a full on kick up the arse,” explained Roisin, who admitted to occasionally using the word but only with ‘bitches’ coming directly after it.
lmfao
have you seen that shirt on instagram all the yogic people are wearing that says "namaste as fuck"
so painful
Hi Guys, so I was reading the book titled “Think like a programmer” which I think many people here have read before!
On the “Figure 1-5” (Tile puzzle) the author demonstrates a rule of thumb on how to solve the challenge.
What I want to know however, is why does the suggested technic works? Is there a mathematical concept behind it? If so please share
Oof, good question. I cant think of any relevant maths, only CS algorithmic stuff. Might be able to fit group theory but wouldnt help too much
also nice pfp and nick
good season
I've been thinking about this tile and googling it, but I seem to not find anything
I can find some maths on solvability
None on actual solving
graph theory seems to come into play somehow
some more @edgy pier http://www.cs.cmu.edu/afs/cs/academic/class/15859-f01/www/notes/15-puzzle.pdf
that is graph theory because you can visualize each potential move as a graph @edgy pier
when you are trying to model a problem like that you want to thing about the possible number of moves per turn
If only I knew the black magic of discrete maths :P
I need to crash course discrete maths in the summer
That and Operations research, looks fun
if you spend about 20-30 minutes going over combinations and permutations you should be ok
discrete math is like a smattering of “tools” in math
I can do combinations and permutations just fine, I just want to formally study graph theory, some pure algebra etc
I'm an applied maths person so I don't really get the chance to study it, much less formally learn proofs and all
ah gotcha
Would be nice to see the other side, yknow
graph theory is pretty fun
I hate mostly everything else, because they made it such a chore at my school
The physics and maths faculty at my school designs and organises subjects in a much nicer way than the engineering faculty so maths subjects have been my favourite
I was planning on doing a graduate level control engineering course as an elective but now I'm thinking of doing the 4th year pure control theory course instead because the physics/maths faculty is cooler
that sounds good
do stuff you enjoy in school
if you take very stressful courses you won’t learn as much imo
My first physics course was stressful, but I enjoyed the shit out of it
(ALG based 😢 )
Twice as much work as a calc based, and it was my first class after not having been in school for 12 years
I enjoyed all my maths I’ve taken
Physics and maths ftw.
I started as a math major
I started as a Network Admin major
and quickly went, "nope"
CS: Security major now
earlier I was installing the wrong python package for two hours
I was supposed to install pycrypto instead of crypto 👌
noice
how can make AI in HTML
c++ god
lolwut.gif
Any chance you’re up for walking me through how tf u use vs code
I got it to write small c++ scripts and i’m finding it confusing af
Get specific extensions to make it better for you
No it’s more like I thought u could write and compile a script using it? But I don’t even get how to do that 😂
VSCode is an editor, not a compiler/full IDE
You dont
I mean you can, but I tried to use it a while back and gave up after a couple hours
Normally it’s used for small scripting projects and stuff, apparently it’s nice to use once setup
But I’m not about to waste even more time trying
yeah
Just has like 80 menu options that need an event handler twice and trhen a couple other things
for a C++ exercise in class
C++ is a weird language
in an ideal world, everything is python and elixir / erlang
in an ideal world we dont use languages but think the program
In an ideal world we could just insult the computer until it does what we want... no wait, that's the real world.
thats how scratch works
oh hello bytecommander
Humblest greetings.
🎩
o shit @rough sapphire is a cop now
quick, hide the 🌿
i think the word you are referring to is cyberman
👀
yes exactly
ood
oods are nice
gifs taken from https://www.youtube.com/watch?v=n4hhWiqS7K4 btw
The cast and crew of Doctor Who celebrate the end of the Tenth Doctor's era by singing and dancing along to The Proclaimers '500 Miles' (Copyright The Procla...
that video is nice too
1>Sketcher.obj : error LNK2001: unresolved external symbol "public: void __thiscall CAboutDlg::OnBrushcolorViolet(void)" (?OnBrushcolorViolet@CAboutDlg@@QAEXXZ) thank god C++ has descriptive error messages
what does it mean tho
it failed
yes
it is too embarrassed to explain the reason to you
did you know the almighty jvm requires you to set a stack size and max local variable amount for your programms
requires?
yes
I know you can, and sometimes have to if your application is a too fucking huge beast, but mandatory?
otherwise it will default stacksize and local var amount to zero which will cause the jvm to crash
wish thinking
wish thinking
no
you have to actually write an instruction into the .class file
telling it stack size and local var amount
which was the reason i spent 5 hours yesterday shouting at my jvm to fkin work
because i didnt know that was a thing
this error is so triggering
then javac does a reasonable job
(except for when it doesn't, because you write a monolithic ecommerce platform in it)
LMAO
wowowow
discord updated their developer portal
Step up your game with a modern voice & text chat app. Crystal clear voice, multiple server and channel support, mobile apps, and more. Get your free server now!
fancy!
I really want to set up my server to send mails to me when noteworthy stuff happens somehow
I always thought I could only send mails locally
But with postfix, that could change
You don't want postfix.
Why not?
You think you want postfix but what you really want is smtplib
Postfix will take you several days to set up properly
Well, the last time the only set up thing I was missing was actually fixing the sender address, the rest worked out of the box..
Yeah it works out of the box, but then what you're running is a spam relay
I didn't add the anti spam record stuff at that point though
ANd I'm not sure what postfix has to do with that
Anyways, I can't find any package named smtplib on DO's Ubuntu mirrors
Where can I find that?
smtplib comes with Python
as in, a MTA?
yes
It's just a CLI tool
but you need a MTA to send mail?
hmm
Junked, I mean
ahh
did this channel name not change?
or is it not time yet?
It's always possible for it to be the same name for two or more days
That's how random numbers work
Yeah ofc, i was just curious if it stayed the same or if my brain was playing tricks on me
#ot1-sticky-channel-names
Byte appears in memory
bot.otnames.add("sticky-channel-names")
hmmmmmmmmmmmmmmmmmmm maybe not plural
bot.otname.add("sticky-channel-names")
:ok_hand:
hmmm
Not the sort of thing you want to make public
Empty vulnerable hosts are a tool for miscreants to use in attacking someone else. I wouldn't leave that running when you aren't using it.
All they have to do is upload their own bot software and run it hidden
They can even manipulate the server so they can see what you type into it
If you use your password to do any administrative things, they can find it
Lol
Malware doesn't have to create new files
It can latch onto existing ones
It's a trivial matter to inject a process that makes it so they can always regain control
It's just a friendly warning
keep talking guys i am taking notes and preparing my attack
I once had a botnet installed on my PC through a minecraft server
Well, none of us are going to do that
I knew it was through the minecraft server because it was running in the minecraft server account, and (fortunately) did not get root access
If I had the inclination I wouldn't be talking about it or warning you 😛
if all they can get is A password there might not be much harm?
Depends if the password is reused anywhere else
But the main danger is what the free server can be used for
seems like the shell is gone
good
i did rm -rf XD
That's a pretty grey area, I wouldn't do that.
@sinful copper wow
A botnet can instal, on your pc through minecraft
lol
whats your server
lemme test the security
deleting files on someone else's server is a grey area
oh
Even if they "give permission," that doesn't necessarily mean they actually have the rights to the server to allow you to do things like pen testing it
Why do you think they wouldn't?
@rough sapphire make it so they can't delete it
Remove the shell?

Anyone who wants to, because you gave them permission to
already gone, apparently
For the record, we really don't support that kind of request. Plenty of people can say they own a site and even show things that act as "proof"
create index.php that is not easily erased
@rough sapphire Can't you add some permission thing to make it only readable
then how is it being deleted ?
If the shell itself has rwx
^
Possibly? not sure how the F he has this going
lol
That's just my first guess.
to prevent a file from being deleted generally the directory it is in can't be writable
huh, it's as if letting people run arbitrary commands is a bad idea
maybe that's a sign you shouldn't be doing this
you know godaddy was against net neutrality right?
You might get your godaddy account in trouble.
seems up for me
doesn't really matter
one does not simply give access like that
you basically spam processes until you run out of memory
you can do it in one line of bash, it's pretty easy
volcyy what is your profile picture meant to be
its not very good
that's a windows forkbomb isn't it?
doesn't look like bash to me either
the bash forkbomb is :(){ :|: & };:
I have a question

inb4 'batch is a programming language'
in what sense is it not
cpan is perl
lol okay
I'd be surprised if anyone owns up to that, lol
No
"who punched me after I said punch me while my eyes are closed?"
😦
yeah, to be fair, you pretty much asked for someone to break it
well, we did tell you that
:P
GoDaddy will probably be pretty pissed you shelled their server
batch is just some dos commands
You might also read the "Abusive Activities and Other Threats" section of the Hosting Agreement you signed: https://www.godaddy.com/agreements/showdoc.aspx?pageid=HOSTING_SA
I could care less if you learn the hard way ^_^
GodlyOre - Today at 9:49 AM
i really want someone to attack it
HarrisonOwns - Today at 9:49 AM
:finger_gun_dank:
well, I guess this is one way to learn, eh?
The Hard Way ™
generally also the worst way. :P
whats going on?
@rough sapphire welcome to the internet
@clear moss are you a "whitehat"?
@elfin oar we discussing something about this dude's server
How did you manage to pick the two worst webhosts in the world?
000webhost is good
I am a security enthusiast, so I guess you could call me a whitehat
Not professionally though
what do you do professionally ?
Healthcare IT
I'm not quite a whitehat either, but on my way towards
same
Security major working in Applications Engineering atm
I just play with tools
@clear moss do you hold a CAHIMS by any chance in that case
"Ah, we see the shell was uploaded from your IP, using your FTP account"
"RIP your account"
most hosts provide a jailshell that can't run that sort of thing
surprising they didn't
ssh in, stop the parent process, first guess
IF you even can
I'm not familiar with a fork bomb until just now, but that's my first guess.
Well, not familiar with their management system, but it needs to be shutdown
@rough sapphire if you get it fixed, understand that there are some commands you must block
Their sysadmin got an alert, "dude_001's server is taking up a fuckton of resources"
or it was automatic
Or that, as well
they have bad management
Could have just alloted a specific amount of memory to him
automatic or no, that it happened at all suggests that the server was not really private, and that the fork bomb was affecting other users
otherwise all they could notice was electrical consumption
mfw when it's almost been 25 minutes since someone has decided to help me
did you buy the help DLC?
Don't forget to also wear your help hat with the extendable flag pole.
what does the flag pole say
high fives Bisk got'em
@languid kelp I don't have a CAHIMS, still need another year or so experience in the healthcare field before I qualify
The top of the pole says, "beep, beep, I'm a truck."
The shell sucks I can't even give it proper arguments
In general, just stop lol
There's no way to verify that it is yours
and not pretending to ask for "help" to attack someone by proxy
There are several ways to verify its his
and generally just not very smart
As has been proven to you in under 10 minutes of your first, "I want to be attacked."
and generally just not very smart
where'd the shell go
zzzz
lol
i just tried to ls
this isn't a shell
it's an error generator
LMAO
it's now been almost 40 minutes
and the only 'reply' ive gotten wasn't even a reply it was another question
i got a new error, btw
@unkempt ermine need to buy that dlc
this is starting to get out of hand
@rough sapphire you probably had some fun having your machine broken, but it's time to get rid of the shell and stop breaking the terms of service of your webhosts
"All" -mistake #1
@rough sapphire its fixed ?
i wonder what it takes for me to get suspended from AWS
that is indeed an AWS
I've managed to get myself rate limited on some of my AWS servers
accidentally nmap scanning while still connected to a VPN
Had to have it on a short delay for that
I've done it no problem before, didn't do anything though
(on a professor's server lol)
yeah, i was supposed to be hitting a public IP from the LAN inside it
instead blasting out a 65k port scan through my EC2 :3
I wonder what DO thinks if you do that on their server
idk :o
give it a go
;)
Amazon just sends you an email like "FUCK YOU STOP THAT AND YOU'RE GROUNDED FOR 24H"
No limits, you say?
I have to say, it is a bit suspicious that you're pumping out these websites @rough sapphire
Especially considering that we already provide a paste service
Tell me, is your paste service GDPR-compliant?
Yeah, and what does that have to do with Python?
Did you write it?
Then it doesn't have anything to do with us
Well, this is a Python server lol, what else would #303934982764625920 be about?
Also yeah XSS is a very standard security feature
Everything should have it
Almost everything does
How do u protect against xss?
CSRF token
Oh
It needs to be present in the form data and also present in a cookie
And they have to match
If they don't match or one isn't present, you reject the input
It's pretty simple
Never made a website that takes user input before, so never had to deal with that
isn't XSS also what can happen if you don't escape user input properly?
that's usually not the fix for that
XSS is what can happen if some other site doesn't escape user input properly
oh I see
actually there is no XSS protection
Yeah in fairness, it’s pastebin - what r u protecting against?
Oh
Hey did someone say unlimited?
Apparently
that isn't XSS protection
I have a 3GB text file, can I try uploading it?
Who wants a terabyte of 9's?
you're just preventing script injection
A terabyte? Fuck lol
nah it won't get that far
I got a half gig line at my disposal
but I do have an idea on how to break it
A tb is being Nice
Gdude gonna spend the next 30m trying to break godly’s pastebin 😂
I'll split it across pastes though
yeah, you'd have to
I have 1TB total transfer per month before I gotta pay for it :/
Aah
Is it is?
*js
It's so boring to break it's barely worth the effort
Everyone runs out of drive space eventually
Lol
Unless u has an unlimited space thing on aws
Then realistically he won’t run out of space
Oh
@sullen thorn Are you on DO?
Yup
ah, same
Well most stuff is on do, got something on aws
digitalocaen
Yeah do is awesome 😃
I keep thinking "woah that limit is annoying" but I will probably never hit it lol
Lol i’m at I think 10GB rn
Lmao you’re not even at a gig yet 😂
Man I LOVE DO's web dashboard
It's so great
It's clean, and simple to navigate
and I like blue 
ah
well my droplet doesn't do anything useful tbf
The only thing that really eats CPU (and very few of it) is Erlang
Lol u could always change that - make yourself a discord bot in python
Then it’ll be useful 😃
ironically
it originally was Python
but I can't make that work on multiple cores and I was unhappy with a bunch of things so I rewrote it from scratch in Elixir
And it is useful
And it works very well 😊
Wait u can’t make python work on multiple cores?
What if u multithread or multiprocess it?
asyncio is single-threaded IIRC
and discord.py uses asyncio
to be fair, I don't really need the ability to scale it across cores
But I could, and maybe it would make sense, maybe if it had more than 7 servers 🚛
I learnt a lot of Elixir while rewriting it and that is one of my key takeaways from it. It makes you think a lot different than Python
Like, I have a mod log module, and it's possible to temporarily mute the mod log using a command
how do you store this in Python? Probably an attribute on your mod log cog, containing a set of guild IDs where it's muted
but in Erlang / Elixir, you store state differently, you just spin up a process to keep it
I never figured out how to use async on python 😂
to be specific, an Erlang process, and those are very lightweight, so it's common to have thousands if not millions
i've grown to dislike it 🤷
the issue is either full async or not, at least for most things
Hmm
I just threaded stuff I needed to, and the rest was in the same thread
(Or some stuff was processed)
mhm
make sure you don't get forkbombed again
🚛
Huh, where's rochdale?
I think UK people are sleeping at this time
its only 6PM in the UK
Now someone form canada did a http request
but without using the website
How can you tell?
Everyone on this Discord is from the UK except you.
Yeah, but how can you tell they're not using the site itself?
Shhh
Ah right, I see
that looks like uhh
that russian tracking pixel site
the fuck was it called again?
3yes?
something like that
A crawler or bot is possible
@gentle moss u gonna do a good stream?




