Categories
Uncategorized

Summer (in)Security 2013

I return from Holiday and am catching up on security news.  I’ll update this thread as the day and season proceeds.  Stay Frosty. :shank:

 

Microsoft hijacks domains in attempted botnet takedown.  The problem here, is how disruptive this effort was and the security researchers it screwed in the process.

 

NSA is Balls Deep in 100% Verizon call monitoring and far beyond.  Image attached is from EFF article.  Shit is out of any sort of logic or reasonable action, by our Gov’t Overlords.  Thank you Mr Snowden, for peeling away the veneer of privacy bluffs.

 

In the UK, A Bank lost 74 laptops, over 6000 accounts and 20000 user records.  Asset Manage, much? Guess not.

 

Personal experience:  Apple sessions can be hijacked.  Unless a friend’s kid grabbed my phone and somehow guessed my iTunes password, I saw a ‘Blackjack’ program downloaded to my phone while on Holiday.  I deleted it to see some mandarin text show for the program description.  I was unable to report the program as a security exploit.

So all is not flawless in the land of Apple, as the same for Android devices.  Like kernel flagging level exploits

 

In a sudo-humorous result of the NSA sniffing, Cloud Storage is just about as insecure (business especially) as we feared.

 

So I guess the EU wants to behead ‘Hackers’?  How else can you increase the penalties?

 

Back on the global auditing of the internet by the US, I’d advise joining Mozilla and friends in signing the petition against the NSA auditing.

Attached Thumbnails

  • nsa.jpg

Categories
Uncategorized

Windows Server 2012

I avoided Windows 2012 due to the same crap moves as Windows 8, but I’ll be damned as there are some 2012 servers in house now.

 

Seriously.  Using a server without a start menu and needing to do the top right corner thing for tiles, is a complete pain in the (counter-intuitive) ass.  On top of the basic failures there, Exchange 2013 is pretty much a hot piece of shit.

 

Exchange 2013 is like ‘Admin interface?  Oh you mean login to a webpage for a sudo-office 365 experience’.  Needless to say, I’m not a fan.  I support change when it makes sense, but when you are making shit harder to navigate for the sake of a new release, fuck you.

 

That’s my love letter to Microsoft on the 2012 – 2013 releases.  Stop smoking meth and making shittier programs.  It’s not cool.

Categories
Uncategorized

Java updates

I wanted to share my encounters with Java 7 update 17, aka version 1.17.  It may have been a previous version, but the 17 update looks to silently remove any JRE6 folder paths from your machine.  Run some web-based queries or sites and you’ll find the details of what’s missing hiding in the broken functionality.

Sharing for anyone who sees previously working java applications die out.  Square one is to check for what Java version is installed and when it was so.  I updated to 7v17 on Friday, so I had a few hours of tracing out my mistake. :o

Remove latest version and reinstall a compliant 6.xx build and you are back in business.  I would still Disable Java in the Web browser when and wherever possible.  You can do this via Control Panel | Java | Security Tab, on your windows based machines.

Categories
Uncategorized

BSOD on Laptops after late Feb update

Working my way through an issue with a laptop that started BSOD rebooting after install of Windows Update KB2670838.  Apparently hybrid video solutions (Intel on CPU video and ATI/Nvidia GPU) on laptops are a common on some laptops release in the last few years.

If you can stay booted long enough, try removing the update in Programs and Features under Installed Updates.  This should work in Safe Mode too, but if you have to remove Intel HD or ATI drivers, you will not be able to in safe mode, due to their installer methods.

Fair warning if any laptops start acting up, especially in droves.  Time frame is roughly the end of February 2013 when this update started being pushed out by updates.

EDIT: I think a another person I know is experiencing this.  Having them just try the update removal, because I think the other person’s PC is also reacting to a USB DisplayPort docking station.

Categories
Uncategorized

Object Flicker on latest nVidia drivers

Let me start by saying this is my observation with using the 310.xx series (310.70 and 310.90 as of this post date) of nVidia drivers on my 570 GTX.  The issue that I address (and have seen in earlier drivers) relates to textures being displayed with quality issues, relating to specific objects.

My video card model is MSI N570GTX Twin Frozr II, running default clocks and reaching a full load (in-game) of 65 C.  I share this, since some of these issues sound similar to old school video overclocking issues.
I do have my CPU overclocked to 4300 MHz.  This is on default voltage with only modifier being changed.  I did however confirm the issues still occur at stock CPU frequencies.

By reading that, you could guess this is pretty enigmatic to confirm… until drivers 310.xx came along.  Reading the summary release notes on the download page, you will see the % performance increases for some newer games.  I have come to my own conclusion that this comes at the cost of disabling, less commonly components to boost the overall FPS output in certain games.

My control for tying this to the 310 series of drivers is thanks to the Final Fantasy XIV Benchmark. (FTB Download Link)  The telling indicator is at the end of the 1st custscene, where it puts the camera behind the standing character model.  You want to look at the goldish-yellow bottle on the table.
If you see it flickering, check to see if you are on 310 series drivers.  I was able to downgrade drivers back to 306.97 and the flicker has gone away.

I will try to do a fraps rip to give a visual on this issue.  Far Cry 3 seemed to also suffer from a little of this, and what was prompted me to roll back my video driver to 306.96.  The signs I was seeing here were some odd object pop-in, that looked like mis-rendered objects, that shortly afterward corrected themselves.

Another fairly recent game that also has similar issues, is Deus Ex: Human Revolution.  The HR issue tended to show up with awning like models.  What I would see is kind of like a broken reflection on the texture.  Only came up in certain areas on specific objects.

Anyone else able to reproduce or at least confirm some of these theories is welcome to share feedback.  I’ll try to gather more information, as I’ve gathered enough info to semi-intelligently track these issues.

Video rip by phone of flicker, as I mention in next post that Fraps video rip doesn’t capture flicker.

Attached Thumbnails

  • FFXivBench01-310.90.png

  • FFXivBench02-310.90.png

  • FFXivBench03-310.90.png

Categories
Uncategorized

Task Scheduler skips scheduled jobs

Allow me to try and save you some time.  I’ve had an issue where Task Scheduler on Windows machines will run a scheduled task fine if you manually Run it, but any Next Run Time scheduled items will be skipped and unlogged by Windows.  The Task History would also log nothing for the skipped ‘Last Run Time’ process.

Trying to find info on this issue was largely unhelpful.  What I had were jobs that failed to execute as defined by schedule and/or triggers, but a right-click Run for said tasks was fine.  It turns out my issue was related to a Task with a Pending Status.  I tracked said process down in the following tree:

  • Task Scheduler Library
  • Windows Live
  • SOXE

Task name:
Extractor Definitions Update Task

I ended up having to disable this task, as trying to end it, left it in a Pending state.  Upon disabling this I got ~21 ‘Application1’ named windows erroring out, that looked like my cmd tasks scheduled into oblivion.  Closing these error tasks, I jumped back to my main Task list.

To my delight, the custom and desired tasks returned to running on their correct, automatic schedules.
Hopefully this helps you in any instance where Scheduled Tasks do not run, on a Windows box.

TLDR; Check entire TaskScheduler for any Status = Pending tasks.  Try to end them, if that doesn’t work, disable said task.  Mystery fail jobs should return to auto-executing.

Categories
Uncategorized

DVI-I to DVI-D mod

It’s been a bit since I ordered any DVI cables and in my haste, I got the wrong one for my LCD.  The NEC LCD I have only accepts DVI-D inputs, while the Video card accepts either one.  Since an RMA on a $10 cable would be nearly the cost, I took to seeing my self-fix options.

Looking at the pin-outs, it turns out the 4 pins and the vertical large one aren’t needed for a digital signal.  If you want to make those DVI-I cables still useful for an LCD, grab your Dremel and get to hacking off those 5 pins.

I just applied said fix and it took about 5 minutes.  Hooked my cable up and confirmed it to be a winner mod.  Extra fun fact.  The vertical pin is larger for DVI-I than DVI-D.  I tried to lo-tech bend the other 4 pins, then noticed the vertical one was larger.

Categories
Uncategorized

Creative Recon3D PCI-e

Instead of a sudo-review thread, I’ll cut to the cause for return on a Creative Labs Recon3D PCI-e.  Everything was pretty good, except when my front channels got blasted across the wrong speaker placement.

Windows 7 x64 is my OS.

To ‘fix’ the glitch,  I had to use the CP from Creative, to go headphone or from another mode back to 5.1 ch.  If I did a Test run in the CP when it was trippin out, I’d get my mapped channels scattered from their actual placement.  Toggle the output mode and the test was back to right physical outputs.

Luckily local shop didn’t hassle when I returned for faulty surround sound.  I also saw other folks have the same issue (at least since feb ’12) with unsupported promises from Creative for ‘fix in next version’.  Since there aren’t any other viable local card options, to the ordermobile I shall be going.

Looking for an Optical In capable card that will also play it on Stereo mix.  I really would have been set, if this card would properly do 5.1, but alas and goodbye Creative I’ll get the cheaper same spec card and fix it myself.  I hear a few other cards develop an occasional static feedback…  I’d be forced to smash that thing into a rage of rubble.

Edit to retort on stalking them if still an issue with alt, as everything else was pretty enjoyable.  Other options weren’t really sizing up and back on PCI is like my antib0x.

Categories
Uncategorized

BSOD Debugging

I ran into an issue a few years back where a production server was kicking BSOD messages after an OS upgrade.  I had my suspicions but no evidence of what driver was borked, so I grabbed the Windows Debugging Tools.

The cut of that jib is that you’ll be able to run a BSOD dump file and it will process the .dll or similar cause of your BSOD.  I thought I had a topic about this from before but my searches came up dry.

Like most Microsoft tools, their documentation is really shitty.  Peep this MJ post for the overview on how to get rolling for your BSOD debugging.

Today’s cause is 2 like machines with only 1 crashing every 24-36 hours.  One appears to be fixed by video update, while the other remains to be a pain.  Not to be a troll, but these are also Mini ITX machines with AMD CPU and GPU action.  Point there being the temperatures are pretty shitty, but not outside of moderate operational acceptance.

Categories
Uncategorized

Daedalus

Check this virtualized network security grid out.  While it’s all sorts of flashy, I really appreciate the relevant information presented in the details of flagged objects.

1995 like a Mofo on that virtualization, except it looks to provide viable functionality instead of massive manual port and log scanning.