Author

Topic: Wall Observer BTC/USD - Bitcoin price movement tracking & discussion - page 8303. (Read 26710700 times)

legendary
Activity: 1862
Merit: 1530
Self made HODLER ✓

Most linux distributions can be run on read-only filesystems (same as from cd) BUT the only true security hole is running them as root, because volumes can be remounted in rw mode on the fly. I'm using this strategy on my raspberryPi that is running the game console emulators for the kids. They don't do no shutdown, they just pull the plug/wallwart. Roms are stored on etx4 USB, mounted read-only. This one is just mounted in rw mode on the PC, to manage the roms and emulator binaries.

Just make sure you run linux as unprivileged user. Privilege escalation is a thing though, but unlikely on patched systems. However, when you're not connected to the net, i doubt there is a fair chance of catching a successful exploit via USB.

Again, your postulated security described above is utterly dependent upon the rando USB device implementing only a storage class endpoint.

Whatevs. Good luck with that.

I would care less if i am running as unpriv. user on a system that is not network connected. I didn't mention that i'd never use a host with actual user data on it. I thought that would be clear because i was replying to Dabs' "frozen sysimage" approach. I would definitely not use a guest VM but a dedicated box that i can reset via dd or similar disc imaging tools, i wasn't clear on that, as i just recognize while typing this.
And yes, it's part of the very basics: there is no 100% security, only 100% security against certain (and therefor known) attack vectors.

I’m gonna say this one last time. Your postulated recovery is weaksauce against anything other than a disk-resident vector.

dd ain’t gonna do nothing for you if malware-containing USB infects the BIOS.

Forget about badUSB/badBIOS as it has already been perfectly documented and evidenced... Maybe you are the right person to ask this, depending on how low level your work or knowledge goes... I have always thought another theoretical attack vector would be in the HD firmware from which it would be possible to on-the-fly replace a call to the boot sector adding some payload to it. I still think so but... have you ever seen any real practical example/exploit of that? Even as a PoC "lab test"?

Well, if you can program new drive FW, and you can get it programmed into the drive’s FW store, then yes - that would be trivial.

Indeed, I’ve shipped devices that provided canned boot sector data before - not as an exploit, but because the operating environment needed such in order to function. Of course, that was a ‘from the factory’ thing, not a field exploit.

However, drive FW development is non-trivial. Embedded computers without public data on memory maps, peripheral specs, etc. Nonstandard SoCs, built on various ISAs, dependent upon lots of in-house developed tools. Very difficult. Albeit doable in theory.

However^2, most (all?) contemporary drives will not load FW that does not have a valid crypto signature. I have never heard of any case of a successful exploit of a drive’s FW sig being cracked.

Though drive companies are just collections of people, and some people in the chain of custody for the root certs may not fully understand their responsibilities. I could see the possibility of a leak of keys happening some day by some vendor or another. At which point, such an exploit again becomes plausible.

Nice. Good to know it is something that hasn't been seen in the wild yet even though I guess, from your description, it is not something completely out of reach for a determined (and resourceful) enough attacker.

It also sounds as something that YOU (or someone you know) could probably do given enough time and motivation. And when I say YOU, I can perfectly mean some/many others. So the risk is real. I guess the real reason it hasn't happened yet is mainly because there are plenty of WAY more cost effective attack vectors. If it were the only one, it would be exploited for sure.

Quote
Indeed, I’ve shipped devices that provided canned boot sector data before - not as an exploit, but because the operating environment needed such in order to function. Of course, that was a ‘from the factory’ thing, not a field exploit.

Yeah, that's exactly what THEY wanted you to believe Tongue

Just kidding. Or maybe not... Was that "canned boot" somehow easily replaceable with a different one afterwards? Ie: the canned boot residing in another area of the HD which could be updated or using a custom tool? Or just reusing all the developed firmware, replacing the "canned boot" and generating the payloaded firmware?
legendary
Activity: 1891
Merit: 3096
All good things to those who wait
Just bought 0.0777BTC immediately withdrawn to my cold storage.   Hopefully more people will learn to do the same, instead of looking for a quick profit.  The more bitcoins are removed from exchanges the better. Wink

sr. member
Activity: 1197
Merit: 482
The establishment chicken littles are starting to crow. I wonder how much is corona virus effect as stated and how much is them just saying it is to cover their rears...
https://news.yahoo.com/coronavirus-will-wipe-out-corporate-profit-growth-in-2020-and-may-trigger-recession-goldman-sachs-122739601.html
Quote
The coronavirus may wipe out corporate growth in 2020, perhaps completely.

Goldman Sachs said Thursday in a note U.S. companies will generate no earnings growth in 2020. Underlying the call is Goldman’s view that the coronavirus is expected to spread around the globe and severely harm economic activity.
hero member
Activity: 1204
Merit: 755
Homo Sapiens Bitcoinerthalensis
Actually I would like to hear r0ach’s opinion about the corona-virus....

Beware of what you wish for dude.
He's probably gonna go with the - it's all good scenario, "hope everyone dies".

For once, I don't give a single fuck, on what that kind of person thinks about anything.
I mean, look at Ibian - he's already feasting on this, hoping that this the one. Why would I give a fuck to this kind of approach?

#




https://www.youtube.com/watch?v=aowSGxim_O8
legendary
Activity: 1862
Merit: 1530
Self made HODLER ✓
#random Retirement is strange. I'm primarily living off of Bitcoin-funded fiat investments, that pay me out monthly over the next couple decades or so, and I find it highly amusing that I'm using portions of those disbursements to re-buy corn-dip.

/shrugs

That's how hedging works. You did secure your retirement, and you did it the way you had to do it (in fiat investments). Now that you are safe it is ok if you prefer to use some of the surplus income coming from those investments into whatever you feel like (ie. more BTC instead of more spending you probably don't "need").

All is well Smiley
legendary
Activity: 2856
Merit: 1520
Bitcoin Legal Tender Countries: 2 of 206
Inn daa wall street house the soundtrack of the whole day:

hero member
Activity: 1204
Merit: 755
Homo Sapiens Bitcoinerthalensis
i would do it just to piss Ibian off  Grin

Thanks, the reason is irrelevant, but it will do I guess. Grin
hero member
Activity: 1204
Merit: 755
Homo Sapiens Bitcoinerthalensis
The old greeks would likely stab themselves in shame, if they'd know what "democracy" looks like today.

Nah, they knew it was flawed.
More likely to get a response: "I told ya so" Tongue
legendary
Activity: 4354
Merit: 3614
what is this "brake pedal" you speak of?
i wish

aaah to be young again

WHAT IF, in the near future this was possible.
The only thing would be, as it's crazy expensive - to give all your BTC & start over from scratch.

Would you do it?

*. I think I know the answer, just looking for a mere confirmation.


i would do it just to piss Ibian off  Grin
legendary
Activity: 3388
Merit: 4775
diamond-handed zealot
legendary
Activity: 2744
Merit: 13618
BTC + Crossfit, living life.
Actually I would like to hear r0ach’s opinion about the corona-virus....
In Belgium news there was a conspiracy article in the news... that it’s the next kind of Kalergi plan thing for governments etc  Roll Eyes Roll Eyes what would that idiot of a r0ach have to say about it
sr. member
Activity: 1197
Merit: 482
Those wacky slavs...
https://cointelegraph.com/news/it-exec-at-kyiv-prosecutors-office-illegally-mined-crypto-on-office-systems
Quote
According to the Prosector’s Office, he illegally used the network equipment and systems to mine crypto with malware installed on the machines.

Furthermore, the defendant also allegedly provided placement to third parties on the office’s servers in exchange for money.
hero member
Activity: 1204
Merit: 755
Homo Sapiens Bitcoinerthalensis
i wish

aaah to be young again

WHAT IF, in the near future this was possible.
The only thing would be, as it's crazy expensive - to give all your BTC & start over from scratch.

Would you do it?

*. I think I know the answer, just looking for a mere confirmation.

#

Greece confirmed today 3 people with Coronavirus and all carnivals canceled as a start....

Maybe, I guess we will see.
legendary
Activity: 1652
Merit: 4393
Be a bank


-the end of the 'silent but deadly'
-keep your pants on
-#themayorknew
-where is that guy anyway
hero member
Activity: 994
Merit: 707
Stock Boyz are in some deep shit.

Stocks go down from the virus and Trumps election chances go down. As people realize Bernie gets more likely to be elected they freak out more and sell even more stocks. These two catalysts feed of each other and we get the current stock market meltdown.

King Bitcoin meanwhile just sits on his throne counting the days till halving and letting mom an pop and institutional newbs looking for sanctuary flee into the safety of his kingdom.


via Imgflip Meme Generator
sr. member
Activity: 1197
Merit: 482
legendary
Activity: 938
Merit: 2540
<>
The fact of the matter is that it was the boomers who voted in socialism in practically the entire world. They deserve to die, and they need to die before we have even the possibility of building something better.

And I'm saying this as someone with old parents. Good parents at that, even. But a few worthwhile people, if they are, do not make up for an entire world run by old people who deliberately make things worse.

If Corona-chan kills most people over 60 and stops unlimited immigration, then it may in the long run turn out to be a good thing. Even better if the world turns on the chinese for releasing it.



Ha,ha, You do not know what you say, I hope to see somehow what your generation will do.
sr. member
Activity: 1197
Merit: 482
The fact of the matter is that it was the boomers who voted in socialism in practically the entire world. They deserve to die, and they need to die before we have even the possibility of building something better.

And I'm saying this as someone with old parents. Good parents at that, even. But a few worthwhile people, if they are, do not make up for an entire world run by old people who deliberately make things worse.

If Corona-chan kills most people over 60 and stops unlimited immigration, then it may in the long run turn out to be a good thing. Even better if the world turns on the chinese for releasing it.
Our elders still have a lifetime of valuable experiences to share, I'm not quite ready to give them up.
No they don't. An easy and safe life does not breed wisdom.

I'd wager you have had it 100x easier and safer. I'm not a boomer but I have no desire to see them killed. Everyone of those people you casually and cruelly dismiss has a full lifetime of experience, pain, heartache, joy, and knowledge.

Have some heart and if you can't muster up a basic level of humanity at least think of self preservation. Icygreen has it absolutely correct.

Maybe you should actually talk to some older people sometime instead of living out your bigoted uneducated self-defeating prejudices online. When/if the shit really hits the fan many will be completely unprepared for reality and relying on some aging boomer to show them how to find clean drinking water or repair an engine or a million other skills people learned as a matter of course pre-internet.

You think they had it easy because they spent their lifetimes helping make YOUR life easy. Wishing death on millions because you think they are in your way is juvenile at best and psychopathic at worst.
hero member
Activity: 994
Merit: 707
I havent felt this bullish since December 2018 when we got into the 3ks and the new Bull Market was born.

Jump to: