collections: lantian add dn42, nix: cleanup space, scann: 水蓝石

This commit is contained in:
dongdigua 2022-09-23 14:53:51 +08:00
parent d4905bacc7
commit 71eb60c0d1
6 changed files with 91 additions and 36 deletions

View File

@ -3,7 +3,7 @@
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
<!-- 2022-09-23 五 09:30 -->
<!-- 2022-09-23 五 14:12 -->
<meta http-equiv="Content-Type" content="text/html;charset=utf-8" />
<meta name="viewport" content="width=device-width, initial-scale=1" />
<title>Internet Collections</title>
@ -233,7 +233,7 @@
<h3 id="orgc5b7016"><span class="section-number-3">1.3.</span> <a href="http://xahlee.info">XahLee</a></h3>
<div class="outline-text-3" id="text-1-3">
<div id="org100af7e" class="figure">
<div id="orgd5f7b21" class="figure">
<p><img src="http://xahlee.info/emacs/misc/i/Marisa_Kirisame_emacs_magic.png" alt="Marisa_Kirisame_emacs_magic.png" width="256px" /><br />
</p>
</div>
@ -569,7 +569,7 @@ from ruanyifeng<br />
<h4 id="org53d0d4d"><span class="section-number-4">1.39.1.</span> <a href="https://lantian.pub/article/chat/how-i-nuked-my-btrfs-partition.lantian/">我把硬盘换到了新电脑上,这是 Btrfs 上的数据发生的变化</a></h4>
<div class="outline-text-4" id="text-1-39-1">
<div id="org6447585" class="figure">
<div id="orgb6c4db0" class="figure">
<p><img src="https://lantian.pub/usr/uploads/202112/chubbyemu.jpg.thumb.png" alt="chubbyemu.jpg.thumb.png" /><br />
</p>
</div>
@ -578,17 +578,22 @@ from ruanyifeng<br />
<div id="outline-container-org7e9eab7" class="outline-4">
<h4 id="org7e9eab7"><span class="section-number-4">1.39.2.</span> <a href="https://lantian.pub/article/forward/foolish-code-typo.lantian/">最傻的代码错误:一个空格酿成的血案</a></h4>
</div>
<div id="outline-container-org7735e98" class="outline-4">
<h4 id="org7735e98"><span class="section-number-4">1.39.3.</span> <a href="https://lantian.pub/article/modify-website/static-build-tiny-docker-images.lantian/">静态编译制作微型 Docker 镜像</a> <a href="https://lantian.pub/article/modify-website/4kb-infinite-sleep-docker-image.lantian/">制作只有 4KB 大小的永久挂起程序</a></h4>
</div>
<div id="outline-container-orgadcbd8d" class="outline-4">
<h4 id="orgadcbd8d"><span class="section-number-4">1.39.4.</span> <a href="https://lantian.pub/article/modify-website/serve-gopher-with-nginx.lantian/">用 nginx 建立 Gopher 网站</a></h4>
<div class="outline-text-4" id="text-1-39-4">
<h4 id="orgadcbd8d"><span class="section-number-4">1.39.3.</span> <a href="https://lantian.pub/article/modify-website/serve-gopher-with-nginx.lantian/">用 nginx 建立 Gopher 网站</a></h4>
<div class="outline-text-4" id="text-1-39-3">
<p>
gopher://gopher.lantian.pub<br />
</p>
</div>
</div>
<div id="outline-container-orgad2b8ca" class="outline-4">
<h4 id="orgad2b8ca"><span class="section-number-4">1.39.4.</span> <a href="https://lantian.pub/article/modify-website/dn42-experimental-network-2020.lantian/">DN42 实验网络介绍及注册教程</a></h4>
<div class="outline-text-4" id="text-1-39-4">
</div>
<ol class="org-ol">
<li><a id="org59c307a"></a><a href="https://lantian.pub/article/modify-website/how-to-kill-the-dn42-network.lantian/">如何引爆 DN42 网络</a><br /></li>
</ol>
</div>
</div>
<div id="outline-container-org3e14a36" class="outline-3">
<h3 id="org3e14a36"><span class="section-number-3">1.40.</span> <a href="https://bryanbrattlof.com/">Bryan Brattlof</a></h3>
@ -1093,7 +1098,7 @@ a webos using oxygen visual design<br />
<div id="postamble" class="status">
<p class="date">Date: 2022-06-05 日 00:00</p>
<p class="author">Author: dongdigua</p>
<p class="date">Created: 2022-09-23 五 09:30</p>
<p class="date">Created: 2022-09-23 五 14:12</p>
</div>
</body>
</html>

View File

@ -3,7 +3,7 @@
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
<!-- 2022-09-20 二 09:12 -->
<!-- 2022-09-23 五 14:12 -->
<meta http-equiv="Content-Type" content="text/html;charset=utf-8" />
<meta name="viewport" content="width=device-width, initial-scale=1" />
<title>Build a Minimal NixOS LiveCD with swaywm</title>
@ -212,6 +212,7 @@
<li><a href="#org88d987a">1.2. in normal user, libseat permission deniened</a></li>
<li><a href="#org5d4223e">1.3. egl error</a></li>
<li><a href="#org0344a05">1.4. config files from outside</a></li>
<li><a href="#org28deb3c">1.5. cleanup builds</a></li>
</ul>
</li>
<li><a href="#org068eea9">2. reference</a>
@ -257,12 +258,29 @@ enable 3D acceleration in VirtualBox<br />
<div id="outline-container-org0344a05" class="outline-3">
<h3 id="org0344a05"><span class="section-number-3">1.4.</span> config files from outside</h3>
<div class="outline-text-3" id="text-1-4">
<div id="org7c15ec1" class="figure">
<p><img src="../images/irc-nixiso.png" alt="irc-nixiso.png" /> <br />
<p>
<img src="../images/irc-nixiso.png" alt="irc-nixiso.png" /> <br />
but it is copied using xoriso to <code>/iso/</code><br />
so I need to write a systemd service to automagically sync it at boot<br />
</p>
</div>
</div>
<div id="outline-container-org28deb3c" class="outline-3">
<h3 id="org28deb3c"><span class="section-number-3">1.5.</span> cleanup builds</h3>
<div class="outline-text-3" id="text-1-5">
<p>
<code>/nix/store/</code> takes too much space after build<br />
</p>
<div class="org-src-container">
<pre class="src src-sh">unlink result
nix-store &lt;path&gt;
</pre>
</div>
<p>
and there're a few tools for visualising disk size:<br />
<a href="https://nixos.wiki/wiki/Cleaning_the_nix_store">https://nixos.wiki/wiki/Cleaning_the_nix_store</a><br />
</p>
</div>
</div>
</div>
@ -284,7 +302,7 @@ enable 3D acceleration in VirtualBox<br />
<div id="postamble" class="status">
<p class="date">Date: 2022-09-17 六 00:00</p>
<p class="author">Author: dongdigua</p>
<p class="date">Created: 2022-09-20 二 09:12</p>
<p class="date">Created: 2022-09-23 五 14:12</p>
</div>
</body>
</html>

View File

@ -1,6 +1,6 @@
#+TAGS: elixir(e) rust(r) c(c) lisp(l) python(p)
#+TAGS: lowlevel(w) frontend(f) backend(b) emacs(m) hack(h) algorithm(a) linux(x) iot(i)
#+TAGS: math(t)
#+TAGS: lowlevel(w) frontend(f) backend(b) hack(h) algorithm(a) math(t)
#+TAGS: emacs(m) linux(x) iot(i)
#+TAGS: rssable(s) rssub(u)
#+OPTIONS: toc:1 ^:{}
@ -115,9 +115,10 @@ from ruanyifeng
*** [[https://lantian.pub/article/chat/how-i-nuked-my-btrfs-partition.lantian/][我把硬盘换到了新电脑上,这是 Btrfs 上的数据发生的变化]]
[[https://lantian.pub/usr/uploads/202112/chubbyemu.jpg.thumb.png]]
*** [[https://lantian.pub/article/forward/foolish-code-typo.lantian/][最傻的代码错误:一个空格酿成的血案]]
*** [[https://lantian.pub/article/modify-website/static-build-tiny-docker-images.lantian/][静态编译制作微型 Docker 镜像]] [[https://lantian.pub/article/modify-website/4kb-infinite-sleep-docker-image.lantian/][制作只有 4KB 大小的永久挂起程序]]
*** [[https://lantian.pub/article/modify-website/serve-gopher-with-nginx.lantian/][用 nginx 建立 Gopher 网站]]
gopher://gopher.lantian.pub
*** [[https://lantian.pub/article/modify-website/dn42-experimental-network-2020.lantian/][DN42 实验网络介绍及注册教程]]
**** [[https://lantian.pub/article/modify-website/how-to-kill-the-dn42-network.lantian/][如何引爆 DN42 网络]]
** [[https://bryanbrattlof.com/][Bryan Brattlof]]
*** [[https://git.sr.ht/~bryanb/bootloaders-101/tree][ossu2022 bootloaders 101]]
** [[https://ulyc.github.io/][UlyC]] :python:

View File

@ -11,6 +11,16 @@ login as user, not root
enable 3D acceleration in VirtualBox
** config files from outside
[[../images/irc-nixiso.png]]
but it is copied using xoriso to =/iso/=
so I need to write a systemd service to automagically sync it at boot
** cleanup builds
=/nix/store/= takes too much space after build
#+BEGIN_SRC sh
unlink result
nix-store <path>
#+END_SRC
and there're a few tools for visualising disk size:
https://nixos.wiki/wiki/Cleaning_the_nix_store
* reference
** [[https://sr.ht/~guido/nixos-init-freedom/][nixos without systemd?]]

View File

@ -3,22 +3,31 @@
#+OPTIONS: toc:nil
* [[https://stretchoid.com/][stretchoid opt-out]]
this domain's workers are comstantly scanning the WHOLE internet
it's this domain's workers that COMSTANTLY scanning the WHOLE internet
* [[https://isc.sans.edu/diary/MGLNDD_%2A+Scans/28458][SANS internet storm center diary]]
about the scanner and IP range
** [[https://cybersafenv.org/2022/03/20/mglndd-scans-sun-mar-20th/][repost on cybersafenv]]
* [[http://www.hackdig.com/04/hack-81133.htm][知名网络空间普查与网络测绘组织研究报告 第一期-组织名录篇]]
* [[https://www.bilibili.com/read/cv16357621][my post on bilibili]]
* [[https://duanmofan.com/archives/librarymanagementsystem][【水蓝石】 近日图书馆出入人员信息逸事和小恶魔创造【持续更新】]]
#+BEGIN_COMMENT
青金石--幸福笔记
黑曜石--学习史记
水蓝石--研究记录
#+END_COMMENT
#+BEGIN_QUOTE
博客主评价有很多包括stretchoid.com的组织有的是把自己伪装成科研实验用数据并没有恶意有的是什么理由也不给只是不停地扫描全网的网站。
其中也包括像密歇根大学,加州大学伯克利分校的访问信息。因为网络安全领域没有类似于“希波克拉底誓言”的东西,所以不能像医生一样信任
就像到处晃别人家的门把手而不打开不是犯罪,但是真正的打开就混在发现没有锁门,而晃门把手时。
#+END_QUOTE
*** [[https://www.hackerfactor.com/blog/index.php?/archives/775-Scans-and-Attacks.html][HackerFactor: Scans & Attacks]]
* [[https://github.com/dongdigua/portscan-listener/blob/main/log/some_strange_logs.md][my listener and some other logs]]
** [[https://www.bilibili.com/read/cv16357621][my post on bilibili]]
* [[https://zhuanlan.zhihu.com/p/67186794][zhihu:repost-translation: 如何建立一个基本的蜜罐]]
the original post is gone
#+BEGIN_QUOTE
您还可以开始执行DNS和WHOIS查找以找出每次扫描背后的人员。
在这个简短的样本中我找到了一个伪“研究员”107.170.202.111解析为“zg-0301f-15.stretchoid.com”。根据他们的网站
...
Stretchoid不能识别他们是谁。他们没有确定他们正在做什么或为什么他们在161 / udp扫描我的蜜罐。
端口161 / udp是为简单的网络管理协议SNMP保留的并且经常容易受到攻击。
在这个简短的样本中我找到了一个伪“研究员”107.170.202.111解析为“zg-0301f-15.stretchoid.com”。
他们没有确定他们正在做什么或为什么他们在161 / udp扫描我的蜜罐。端口161 / udp是为简单的网络管理协议SNMP保留的并且经常容易受到攻击。
是的他们把“malicious”拼错了 - 因此它可能不会出现在谷歌搜索“stretchoid and malicious”的结果中。
#+END_QUOTE
* [[https://www.digitalocean.com/community/questions/why-is-digital-ocean-showing-in-my-router-connecting-to-a-ps4][Why is Digital Ocean showing in my router, connecting to a PS4?]]
* [[https://www.ironcastle.net/mglndd-scans-sun-mar-20th/][on ironcastle, but deleted]]

View File

@ -3,7 +3,7 @@
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en">
<head>
<!-- 2022-09-15 四 12:06 -->
<!-- 2022-09-23 五 14:51 -->
<meta http-equiv="Content-Type" content="text/html;charset=utf-8" />
<meta name="viewport" content="width=device-width, initial-scale=1" />
<title>Something About MGLNDD Scans</title>
@ -207,7 +207,7 @@
<h2 id="org3afb71e"><span class="section-number-2">1.</span> <a href="https://stretchoid.com/">stretchoid opt-out</a></h2>
<div class="outline-text-2" id="text-1">
<p>
this domain's workers are comstantly scanning the WHOLE internet<br />
it's this domain's workers that COMSTANTLY scanning the WHOLE internet<br />
</p>
</div>
</div>
@ -225,11 +225,28 @@ about the scanner and IP range<br />
<div id="outline-container-org341b79a" class="outline-2">
<h2 id="org341b79a"><span class="section-number-2">3.</span> <a href="http://www.hackdig.com/04/hack-81133.htm">知名网络空间普查与网络测绘组织研究报告 第一期-组织名录篇</a></h2>
</div>
<div id="outline-container-orgd4cfe7b" class="outline-2">
<h2 id="orgd4cfe7b"><span class="section-number-2">4.</span> <a href="https://www.bilibili.com/read/cv16357621">my post on bilibili</a></h2>
<div id="outline-container-orgd8581cc" class="outline-2">
<h2 id="orgd8581cc"><span class="section-number-2">4.</span> <a href="https://duanmofan.com/archives/librarymanagementsystem">【水蓝石】 近日图书馆出入人员信息逸事和小恶魔创造【持续更新】</a></h2>
<div class="outline-text-2" id="text-4">
<blockquote>
<p>
博客主评价有很多包括stretchoid.com的组织有的是把自己伪装成科研实验用数据并没有恶意有的是什么理由也不给只是不停地扫描全网的网站。<br />
其中也包括像密歇根大学,加州大学伯克利分校的访问信息。因为网络安全领域没有类似于“希波克拉底誓言”的东西,所以不能像医生一样信任<br />
就像到处晃别人家的门把手而不打开不是犯罪,但是真正的打开就混在发现没有锁门,而晃门把手时。<br />
</p>
</blockquote>
</div>
<div id="outline-container-orgdd5ef89" class="outline-4">
<h4 id="orgdd5ef89"><span class="section-number-4">4.0.1.</span> <a href="https://www.hackerfactor.com/blog/index.php?/archives/775-Scans-and-Attacks.html">HackerFactor: Scans &amp; Attacks</a></h4>
</div>
</div>
<div id="outline-container-org639d326" class="outline-2">
<h2 id="org639d326"><span class="section-number-2">5.</span> <a href="https://github.com/dongdigua/portscan-listener/blob/main/log/some_strange_logs.md">my listener and some other logs</a></h2>
<div class="outline-text-2" id="text-5">
</div>
<div id="outline-container-orgd4cfe7b" class="outline-3">
<h3 id="orgd4cfe7b"><span class="section-number-3">5.1.</span> <a href="https://www.bilibili.com/read/cv16357621">my post on bilibili</a></h3>
</div>
</div>
<div id="outline-container-orge8c93a7" class="outline-2">
<h2 id="orge8c93a7"><span class="section-number-2">6.</span> <a href="https://zhuanlan.zhihu.com/p/67186794">zhihu:repost-translation: 如何建立一个基本的蜜罐</a></h2>
@ -240,10 +257,8 @@ the original post is gone<br />
<blockquote>
<p>
您还可以开始执行DNS和WHOIS查找以找出每次扫描背后的人员。<br />
在这个简短的样本中我找到了一个伪“研究员”107.170.202.111解析为“zg-0301f-15.stretchoid.com”。根据他们的网站<br />
&#x2026;<br />
Stretchoid不能识别他们是谁。他们没有确定他们正在做什么或为什么他们在161 / udp扫描我的蜜罐。<br />
端口161 / udp是为简单的网络管理协议SNMP保留的并且经常容易受到攻击。<br />
在这个简短的样本中我找到了一个伪“研究员”107.170.202.111解析为“zg-0301f-15.stretchoid.com”。<br />
他们没有确定他们正在做什么或为什么他们在161 / udp扫描我的蜜罐。端口161 / udp是为简单的网络管理协议SNMP保留的并且经常容易受到攻击。<br />
是的他们把“malicious”拼错了 - 因此它可能不会出现在谷歌搜索“stretchoid and malicious”的结果中。<br />
</p>
</blockquote>
@ -252,14 +267,11 @@ Stretchoid不能识别他们是谁。他们没有确定他们正在做什么或
<div id="outline-container-org425aa2c" class="outline-2">
<h2 id="org425aa2c"><span class="section-number-2">7.</span> <a href="https://www.digitalocean.com/community/questions/why-is-digital-ocean-showing-in-my-router-connecting-to-a-ps4">Why is Digital Ocean showing in my router, connecting to a PS4?</a></h2>
</div>
<div id="outline-container-orgcd49f93" class="outline-2">
<h2 id="orgcd49f93"><span class="section-number-2">8.</span> <a href="https://www.ironcastle.net/mglndd-scans-sun-mar-20th/">on ironcastle, but deleted</a></h2>
</div>
</div>
<div id="postamble" class="status">
<p class="date">Date: 2022-08-17 三 00:00</p>
<p class="author">Author: dongdigua</p>
<p class="date">Created: 2022-09-15 四 12:06</p>
<p class="date">Created: 2022-09-23 五 14:51</p>
</div>
</body>
</html>