[05:49] morning boys and girls. [06:38] morning [06:39] morning [07:23] howdy all [07:24] G'ning [07:49] http://imgur.com/a/SYs5z what just happened? [07:49] my email on a spam list overnight? [07:55] foobarry: there's a setting in hangouts which disables unsolicited chat [07:56] also, I have noticed a large uptick in comment spam on G+ this week, maybe related [07:57] strange that i never needed it before [07:58] but i got a mail from haveibeenpwned this week [07:58] In late 2016, a huge list of email address and password pairs appeared in a "combo list" referred to as "Exploit.In". The list contained 593 million unique email addresses, many with multiple different passwords hacked from various online systems. The list was broadly circulated and used for "credential stuffing", that is attackers employ it in an attempt to identify other online systems where the acco [07:58] unt owner had reused their password [11:03] Aloha [11:12] Ah, goood morning! === alan_g is now known as alan_g|lunch === alan_g|lunch is now known as alan_g [13:15] corebird 1.4.2 from 'diddledan' installed [13:15] Is that this diddledan ? [13:15] * diddledan scurries for cover [13:16] hah [13:20] Doesn't work for me, loads if I run from terminal, no desktop icon ( tried logging on and off ) but Request ping/create account doesn't do anything currently. Do I need to reboot for this sort of thing ? [13:21] The name com.canonical.SafeLauncher was not provided by any .service files [13:21] the request pin button won't work unless you have snapd-xdg-open installed on your host system [13:22] this is a known issue that the snappy devs STILL haven't fixed months after it was reported [13:22] ta fanx, installing now [13:22] it seems the plan is to move the functionality of that apt package into snapd itself [13:23] Just went on snapcraft but thought I'd prod you too [13:23] Works better now [13:24] as to the desktop icon, it seems somewhat flaky - sometimes I get it to install the icon other times I don't [13:24] Works ta, will write my own I guess.. [13:24] I don't know if I'm packaging the snap wrong, or if it's a snapd issue [13:24] * diplo will try and remember where .desktop files go [13:25] for your own sessions only, not system wide, .desktop files can go in ~/.local/share/applications/ [13:26] ta [13:27] the systemwide path is /usr/share/applications [13:27] or at a pinch I think /usr/local/share/applications will work, too [13:35] my Winsider is busted [13:35] Cheers, guessing I'll need to logout for it to be available [13:36] somehow Windows' drivers for NVidia believe my discrete GTX960 card is actually in a laptop (it's in a desktop) running in Optimus mode [13:45] wait, is Trumpet saying he's copying Nixon's usage of recording devices? https://twitter.com/sarahjeong/status/863027192371961856 [14:14] I've set /ignore to most things trump [14:14] But I do follow sarah [14:37] http://www.bbc.co.uk/news/health-39899646 [14:46] Been following that on twitter, knew it wouldn't be long [14:46] Always wondered why they had external access on the machines they keep our records on [14:47] "Trusts and hospitals in London, Blackburn, Nottingham, Cumbria and Hertfordshire have been affected." [14:47] yeah, seems a bit wonky to allow remote access to their systems [14:47] to/from [14:47] if they need the internet then they should use a different PC [14:49] Yup or a tablet or something, whilst I've been at the docs they've googled before :P [14:49] when someone says "80% chance of happening" do they mean that in terms of 50% means equal chance of happening as that of not happening, and 0% chance meaning definitely won't happen? [14:50] diplo: I hope they weren't googling your symptoms :-p [14:50] Well drugs for my symptoms [15:39] oh goddddddddd it's finally raininggggggggggggg [15:40] the allotment is like ":)))))))))))))))))))))))))))))))" [16:05] blind man coding is epic: https://channel9.msdn.com/ [16:50] You can have our rain. [16:50] We've even had a bit of a flood. [16:50] but we'll never take your jaffa cakes? :-P [16:50] No Jaffa cakes :-( [16:51] said by an australian in an american film about scotland made in canada [16:51] ... no jaffa cakes... what hell have we sunk too... [16:51] ok, maybe not made in canada. I donno about that bit [16:51] also made in ireland [16:52] ok, so lets celebrate scotland, by making a film in ireland for an american audience with an australian actor [16:53] totally makes sense [16:53] the irish army supplied the extras iirc [16:54] well them lot would probably like to give the scots a good hiding [16:54] ever since the giants' causeway incident [16:54] that scottish giant was a big meanie! [16:55] well the battle went well and created the isle of man... [16:56] the land of the three legged folk [16:58] and tailess cats === alan_g is now known as alan_g|EOW [17:30] does anyone else think this nhs cyber attack is really fishy? [17:31] triggered by someone who wants to show the NHS are failing, rather than some random russian dude? [17:32] i'm not going to speculate about motive [17:32] but it seems odd that all the computers in a national organization would get infected at exactly the same time [17:33] i mean do they have a shared network drive accessible by all the millions of computers in the country? [17:38] okay not millions, more like 50,000 probably [17:40] ali1234: Telefonica is also hit -- there are rumours there's some kind of "port 445" based worm going around [17:40] quoting my ISP friends/ex-coworkers here [17:40] i dont think they all are infected [17:40] port 445 as in samba? [17:40] quite a lot I imagine [17:40] and precautionary take them all offline [17:40] so no more get infected [17:40] ali1234: port 445 as in SMB over IP [17:41] i doubt they have the ability to take all systems offline remotely [17:42] given the way the NHS is structured, and the fact they only centralized the records what, 4 years ago? [17:43] oh, apparently they scrapped it anyway [17:43] so are these systems even connected together at all? [17:45] ali1234: check out this: https://twitter.com/search?q=445&src=typd [17:45] people are claiming it's a MS17-010 based thing [17:45] is that the thing that was in the news yesterday/this morning? [17:46] well it's from march, but it's a RCE (system privs, basically "root") in the service that handles port 445 [17:49] there is also the bug that MS patched on Tuesday in Windows Defender [17:49] ah yes thats the one i was thinking about [17:50] isn't that email related? [17:50] and you know how bigs orgs like to CC all... [17:51] the one that Tavis Ormandy alerted them to - basically anything that can get a file into the realtime scanner (so an email arriving in your mail client counts, even if you don't read it) can exploit it [17:51] you may find even email that gets into your spam box will get scanned [17:52] just downloading a file in your browser will probably be a vector, again even if you never open it [17:52] people downloading wouldn't hit a nationwide org in a matter of hours though [17:53] true [17:53] an email sent to everyone could though [17:53] ali1234: it would if it was an image embedded on some website they all use [17:53] it does seem somewhat fishy that so many systems went down together [17:53] point, MartijnVdS ! [17:54] (some ad even maybe) [17:54] iiiiiits FRIDAY PIZZA time [18:06] I've worked at placed where pretty much the entire company was nuked in one day [18:06] popey: you did a good hack there [18:06] i was the only one who could carry on working because i had a debian laptop [18:07] everyone else was on windows [18:07] they went and played golf, i was sat there still working :S [18:07] not sure who won there :) [18:07] was it your responsibility to clean up the mess? [18:08] no [18:08] phew [18:08] i think it was sasser or blaster or something [18:08] aah yeah they were nasty beasts [18:09] I tried reading the code of melissa way back in time [18:57] i'm betting its not a zero day and failure to patch systems effectively [18:58] i recently watched a programme about stuxnet that was amazing [18:58] did anyone see it? [20:05] apparently the hospital ransomware attack used a CIA tool (released under the vault7 dump) [20:05] https://twitter.com/wikileaks/status/863122677820731393 [20:05] oh I misread [20:05] NSA tools, not the Vault7 tools [20:05] https://arstechnica.com/security/2017/05/an-nsa-derived-ransomware-worm-is-shutting-down-computers-worldwide/ [20:06] also on the intercept: https://theintercept.com/2017/05/12/the-nsas-lost-digital-weapon-is-helping-hijack-computers-around-the-world/ === Seeker` is now known as Seeker === Seeker is now known as Seeker` [20:24] any reliable evidence of that? [20:26] this sure is a huge mess [20:27] http://www.cnbc.com/2017/05/12/samsung-galaxy-s8-dex-station-review.html [20:27] "I tried using the latest Samsung smartphone to replace my work computer — now I'm convinced it's the future" [20:28] some sites are saying its eternalblue. [20:29] yeah but are they basing it on anything more than "because wikileaks said so" [20:30] https://www.theregister.co.uk/2017/05/12/spain_ransomware_outbreak/ [20:30] "It's understood" [20:30] fake news heh [20:31] doesn't all quite add up yet [20:31] variant not detected by antimalware tools? [20:32] patched or unpatched systems? in NHS maybe unpatchable [20:32] just as likely the attackers made their own exploit for a know bug [21:49] Can someone tell me if I am being dumb here. I have rsnapshot backing up my laptop to my media server. df -h --total reports 6.3G used on the laptop and 230G free. du -h -d 1 tells me the backup folder is at 24G and the backup is still running?! [21:56] i thought the nhs has speant a large sum of money to keep getting patches for the winxp systems? [22:03] they did [22:04] doesn't mean they're doing anything with them though [22:04] well that's money well spent then... [22:04] like installing them or something [22:08] at least we'll see how bad their backup system is out of this... [22:14] aye [22:23] :D [22:23] good to know