Temple of Zeus — The Assembly of the Gods

adepts in Cyber Security

Lucifigus

LucifigusActive Translator
#1

Hi! Im beginner in Cyber Security but want to help Satan. Is here anyone who is adept and could tell me where to start? There is a lot of courses on udemy.com and i was thinking to start with Bug Bounty Hunting. I would be happy if i could join in ToZ Team for Cyber Security, but i will understand if im not good enough in Cyber Security so i will learn and maybe in the future if i will have a lot of knowledge i could join your team.

HAIL ZEUS!

Discussion

SerbonEdited
#21
AgainstAllAuthority wrote:
Serbon wrote:
AgainstAllAuthority wrote:

I agree with The Alchemist, you could help a lot with the security of our websites.

Give me the source of ToZ-astro and I'll make a portable version of it (open source of course).

Please email HPZM about this
[email protected]

MastermindEdited
#22
Serbon wrote:
AgainstAllAuthority wrote:
Serbon wrote:

I agree with The Alchemist, you could help a lot with the security of our websites.

Give me the source of ToZ-astro and I'll make a portable version of it (open source of course).

Please email HPZM about this
[email protected]

I'm not begging anybody to offer my help.
Here's my email : [ email redacted ]

SerbonEdited
#23
AgainstAllAuthority wrote:
Serbon wrote:
AgainstAllAuthority wrote:

Give me the source of ToZ-astro and I'll make a portable version of it (open source of course).

Please email HPZM about this
[email protected]

I'm not begging anybody to offer my help.
Here's my email : [ email redacted ]

It isn't beginning :D

High Priest Zevios Metathronos
#24

This is an official call here from members, we are currently 4 in working in this.

#25
AgainstAllAuthority wrote:
Serbon wrote:
AgainstAllAuthority wrote:

I've already shared plenty of cybersecurity tips that are crucial. If people are not going to listen then what is the point?
I have a feeling of hostility from people here despite my best attempts at trying to help them. I'm not handing out any more help.

Brother, I guarantee you that many members here really appreciate your threads about cyber security, including me.

I guess it's wrong to punish everyone just because of a few bad apples.

AgainstAllAuthority is based and Redpilled and knows what he's talking about when it comes to all topics he's talking about. I wait for his posts when they come out.

Hrodrik Avernus [SG]
#26
HP. Zevios Metathronos wrote:

This is an official call here from members, we are currently 4 in working in this.

I wasn't sure if this was real or not but I did send an email. I would like to learn more and help in any way I can.

Soaring Eagle 666Edited
#27
AgainstAllAuthority wrote:
The Alchemist7 wrote:
AgainstAllAuthority wrote:

I've already shared plenty of cybersecurity tips that are crucial. If people are not going to listen then what is the point?
I have a feeling of hostility from people here despite my best attempts at trying to help them. I'm not handing out any more help.

I have seen no hostilty from anyone to you for sharing cyber-security advice. In the worst case as far as I've read you had some opinion exchange with members who also have knowledge in the field to a degree. As I said before, the vast majority of members here are not knowledgeable into cyber-security, therefore having the expectations from them to apply your advice will likely lead to dissapointment (or it led already). The general advice from ToZ was to use a paid VPN plus Tor and a protonmail account for communication to protect their identity, location, PC features etc. and most likely those 3 points would suffice for the purpose of keeping someone anonymous and safe while visiting and logging into this forum. Anything more than this (like the advice you have been providing) require extra time, extra resources or software, extra knowledge, which most people don't have. What I was thinking is since you are an expert in cyber-security, you can help HP Zevios Metathronos and the members involved into making the ToZ forums and websites as `protected` as possible from attacks given the number of times the sites were taken down or the worst, when the forums had to be moved to new domains, this of course if you wish to. While cyber-security may not have many adepts among the members, it is definitely of extreme importance to keep cybernetic attacks away from this place.

If creating and sharing a PGP key is too hard then we are doomed.

You had a really good idea with your PGP post. But the command prompt is not user-friendly. The idea of asymmetric encryption is easy for everyone to understand, but it should not require people to run all those commands. It's also not very user-friendly to save message to local files before operating on them. I had gone through your whole procedure and posted my PGP key, and you did a great job, but I can see why so few people have done it, and it's not your fault. To be user-friendly, and thus more popular, people should be able to just click a button to generate keys, sign, or encrypt, etc, without needing any tech knowledge. There are online PGP generators that do this, but it's hard to find a trustworthy one.

Also, PGP is way over-complicated for just emergency messaging or proving one's identity. If Zevists here want such a tool, I could make a simple webpage that does this (with well-commented code for people to audit). You could simply click one button to generate the key pair, then copy and paste each one and be done in 30 seconds. Encrypt, sign, verify, and decrypt would be equally easy with buttons. And without all the PGP overhead, the keys can be just 32 bytes long each! I'd guarantee you that more people would use that, even though it's functionally the same as what you posted.

#28
Jack wrote:
AgainstAllAuthority wrote:
Serbon wrote:

Brother, I guarantee you that many members here really appreciate your threads about cyber security, including me.

I guess it's wrong to punish everyone just because of a few bad apples.

AgainstAllAuthority is based and Redpilled and knows what he's talking about when it comes to all topics he's talking about. I wait for his posts when they come out.

same

MastermindEdited
#29
Soaring Eagle 666 [JG wrote:

" post_id=334670 time=1647375187 user_id=346]

AgainstAllAuthority wrote:
The Alchemist7 wrote:

I have seen no hostilty from anyone to you for sharing cyber-security advice. In the worst case as far as I've read you had some opinion exchange with members who also have knowledge in the field to a degree. As I said before, the vast majority of members here are not knowledgeable into cyber-security, therefore having the expectations from them to apply your advice will likely lead to dissapointment (or it led already). The general advice from ToZ was to use a paid VPN plus Tor and a protonmail account for communication to protect their identity, location, PC features etc. and most likely those 3 points would suffice for the purpose of keeping someone anonymous and safe while visiting and logging into this forum. Anything more than this (like the advice you have been providing) require extra time, extra resources or software, extra knowledge, which most people don't have. What I was thinking is since you are an expert in cyber-security, you can help HP Zevios Metathronos and the members involved into making the ToZ forums and websites as `protected` as possible from attacks given the number of times the sites were taken down or the worst, when the forums had to be moved to new domains, this of course if you wish to. While cyber-security may not have many adepts among the members, it is definitely of extreme importance to keep cybernetic attacks away from this place.

If creating and sharing a PGP key is too hard then we are doomed.

You had a really good idea with your PGP post. But the command prompt is not user-friendly. The idea of asymmetric encryption is easy for everyone to understand, but it should not require people to run all those commands. It's also not very user-friendly to save message to local files before operating on them. I had gone through your whole procedure and posted my PGP key, and you did a great job, but I can see why so few people have done it, and it's not your fault. To be user-friendly, and thus more popular, people should be able to just click a button to generate keys, sign, or encrypt, etc, without needing any tech knowledge. There are online PGP generators that do this, but it's hard to find a trustworthy one.

Also, PGP is way over-complicated for just emergency messaging or proving one's identity. If Zevists here want such a tool, I could make a simple webpage that does this (with well-commented code for people to audit). You could simply click one button to generate the key pair, then copy and paste each one and be done in 30 seconds. Encrypt, sign, verify, and decrypt would be equally easy with buttons. And without all the PGP overhead, the keys can be just 32 bytes long each! I'd guarantee you that more people would use that, even though it's functionally the same as what you posted.

There are graphical programs as well.
Linux: gpa https://www.gnupg.org/related_software/gpa/ which should be in most distro's repositories. On ubunto or debian you'd just run sudo apt install gpa
Windows: https://www.gpg4win.org/

It is true that PGP is a bit complicated but it's absolutely necessary.
What stops me from creating an account somewhere else and impersonating you? Btw there are plenty of people that stopped logging into the forums. I could create an account and claim that I lost the password to an old account. Then get their reputation or even ruin their reputation.
These problems are solved with PGP as one can verify their identity wherever they are.

When it comes to communicating with multiple people (more than 5), PGP would not be the tool to use as the message would have to be encrypted for each recipient.
This is solved by simply giving everyone a symmetric key, encrypted with PGP. Once everyone has the same symmetric key, infinite messages can be encrypted and decrypted by infinite amount of people without adding any overhead.

ApolloAbove [SG]
#30

I can probably lend a hand, since I manage websites and I've been doing it my whole life.

The Alchemist7 [SG]Edited
#31
Soaring Eagle 666 [JG wrote:

" post_id=334670 time=1647375187 user_id=346]

AgainstAllAuthority wrote:

The PGP key is a great idea but if you are wondering why are most members not creating one, we should also ask ourselves, what is the benefit of a PGP key in our case? I am saying this because the majority of members here don't even have a protonmail account and don't communicate with anybody outside the forum. If a PGP key is meant to represent an encrypted communication mean, it is of no use for someone who doesn't communicate with anybody outside the forum, since as I said most of them don't use even protonmail. An encrypted communication mean like the PGP key would be very useful for someone who does work outside the forum and needs to communicate privately with other members, which not many of us do. I did not have time to research but I would happily quit protonmail and use a PGP key instead if is faster as safer, but this only if people who I collaborate with outside the forum will do the same, otherwise I will create the PGP key but have nobody to use it with. As I said @AgainstAllAuthority your help will be really important in the security and safety of the forums and websites since your knowlegde goes much beyond what you already shared. Hopefully HP Zevios Metathronos or other involved members will contact you in private about this.

Soaring Eagle 666Edited
#32
The Alchemist7 wrote:
Soaring Eagle 666 [JG wrote:

" post_id=334670 time=1647375187 user_id=346]

AgainstAllAuthority wrote:

The PGP key is a great idea but if you are wondering why are most members not creating one, we should also ask ourselves, what is the benefit of a PGP key in our case? I am saying this because the majority of members here don't even have a protonmail account and don't communicate with anybody outside the forum. If a PGP key is meant to represent an encrypted communication mean, it is of no use for someone who doesn't communicate with anybody outside the forum, since as I said most of them don't use even protonmail. An encrypted communication mean like the PGP key would be very useful for someone who does work outside the forum and needs to communicate privately with other members, which not many of us do. I did not have time to research but I would happily quit protonmail and use a PGP key instead if is faster as safer, but this only if people who I collaborate with outside the forum will do the same, otherwise I will create the PGP key but have nobody to use it with. As I said @AgainstAllAuthority your help will be really important in the security and safety of the forums and websites since your knowlegde goes much beyond what you already shared. Hopefully HP Zevios Metathronos or other involved members will contact you in private about this.

Yes. For the vast majority of members here, PGP has only one use: To prove who's who if these forums ever get shut down and we have to create new accounts.

That certainly is important, but PGP is overkill for something so simple. And if in the future someone needs all the features of PGP, it is always possible to create and exchange PGP keys, if you can verify who's who.

MastermindEdited
#33
The Alchemist7 wrote:
Soaring Eagle 666 [JG wrote:

" post_id=334670 time=1647375187 user_id=346]

AgainstAllAuthority wrote:

it is of no use for someone who doesn't communicate with anybody outside the forum, since as I said most of them don't use even protonmail. An encrypted communication mean like the PGP key would be very useful for someone who does work outside the forum and needs to communicate privately with other members, which not many of us do. I did not have time to research but I would happily quit protonmail and use a PGP key instead if is faster as safer, but this only if people who I collaborate with outside the forum will do the same, otherwise I will create the PGP key but have nobody to use it with. As I said @AgainstAllAuthority your help will be really important in the security and safety of the forums and websites since your knowlegde goes much beyond what you already shared. Hopefully HP Zevios Metathronos or other involved members will contact you in private about this.

PGP can be used to encrypt messages on the forum to make sure that outsiders can't read them.
When it comes to winning a war, the element of surprise (not letting the enemy prepare) is crucial. Example: if we decide to post links on youtube that don't directly lead to ToZ but do so indirectly, there would be no way for youtube mods to know what's going on until it's too late. If we share the plan here on the forums, the enemy can prepare and filter out the links as soon as you post them on their platform because they know what you are going to do.
Having secrets lets one verify the integrity of the group.
Lets say there's a spy in our midst and (s)he shares all secrets. How do you stop it?
You split people in two. Give one group one secret and another group another secret. Then check out on which side the secret leaked. Then split the suspect group in two again and repeat the procedure.
It'd take 10 iterations to find a spy out of 1000 people (2^10).
5 iterations if the groups are split in 4.
The formula is log(people)/log(x) where x is the times the groups are split.

It takes less time to create and share a PGP key than to write that post.

SerbonEdited
#34
DeepScrub wrote:

I can probably lend a hand, since I manage websites and I've been doing it my whole life.

You need to email HPZM

The Alchemist7 [SG]
#35
AgainstAllAuthority wrote:

PGP can be used to encrypt messages on the forum to make sure that outsiders can't read them.
When it comes to winning a war, the element of surprise (not letting the enemy prepare) is crucial. Example: if we decide to post links on youtube that don't directly lead to ToZ but do so indirectly, there would be no way for youtube mods to know what's going on until it's too late. If we share the plan here on the forums, the enemy can prepare and filter out the links as soon as you post them on their platform because they know what you are going to do.

That's a good idea for using a PGP key, although by links that lead indirectly to ToZ I assume you mean links like tinyurl or other software which hides a real link behind a fake one that leads to the same adress. These can be generated without having to be neccesarily shared here. If youtube knew we are using tinyurl to spread ToZ among the comments, they cannot shadowban all tinyurl links because many people use them for many purposes. But definitely I fully agree if there will be a sort of project that require confidential planning a PGP key is the best way to keep it private as with protonmail there are still risks of emails being collected and sent who knows where.

Head Guardian Sophiles PhylaxEdited
#36
AgainstAllAuthority wrote:

...

The main problem is that it is inconvenient or confusing for people to implement these things. It is not that they are not useful. I would try to synthesize a few of the key items out of it, such as something that makes a good difference, yet is also relatively easy.

It is not that your work was wasted, nor your efforts unappreciated. Rather I think most people didn't understand how to make sense of or apply, what you provided. Given the nature of our world, your talents will always be valued, and I assume you are already helping HPZM with Cybersecurity as well. This will become a bigger problem as the enemy tries further restrictions.

I am also curious about what you think of the comment that people are already flagged or marked, due to prior activity, therefore negative some of the benefits of hiding themselves? Obviously, there are benefits to continued privacy, but I am not sure if 100% privacy could be attained at that point. I am interested in what you feel about this.

#37
Blitzkreig [JG wrote:

" post_id=336976 time=1647980582 user_id=21286]...

Also what I shared is just scratching the surface. If people would be willing to put in the effort I'd take you to levels of stealth that are literally impossible to detect. Mainly extremely long range radios that emit power at a few orders of magnitude under the noise floor and the emissions look completely random. Fuck the internet and their infrastructure.

The Alchemist7 [SG]
#38
AgainstAllAuthority wrote:

Also what I shared is just scratching the surface. If people would be willing to put in the effort I'd take you to levels of stealth that are literally impossible to detect. Mainly extremely long range radios that emit power at a few orders of magnitude under the noise floor and the emissions look completely random. Fuck the internet and their infrastructure.

I've send you an email. I am really curious about this.

#39
The Alchemist7 wrote:
AgainstAllAuthority wrote:

Also what I shared is just scratching the surface. If people would be willing to put in the effort I'd take you to levels of stealth that are literally impossible to detect. Mainly extremely long range radios that emit power at a few orders of magnitude under the noise floor and the emissions look completely random. Fuck the internet and their infrastructure.

I've send you an email. I am really curious about this.

The Alchemist7 wrote:

Hello I'm The Alchemist7. I wanted to ask if you wish to elaborate this message you send to Blitzkreig

„Also what I shared is just scratching the surface. If people would be willing to put in the effort I'd take you to levels of stealth that are literally impossible to detect. Mainly extremely long range radios that emit power at a few orders of magnitude under the noise floor and the emissions look completely random. Fuck the internet and their infrastructure.”

I am also curios if the efforts you imply require hardware modifications or is only down to the software.

Custom made hardware. There's maybe only 1000 people in the world that know how to make such a thing.