• 0 Posts
  • 53 Comments
Joined 2 years ago
cake
Cake day: August 2nd, 2023

help-circle
  • While I do agree GitHub is a place where people collaborate, it’s also a pretty handy place to store stuff without having to host your own. If the project doesn’t invite people to contribute, don’t expect a polite response forever. It’s like stopping your neighbor on the street corner to tell them they should paint their house white for the thermal benefits, yeah people collaborate on the street, yeah you are right, it’s their house though.






  • I feel like he might be referring to Miracle Whip as it is (or at least was when I was paying attention in the 80s/90s) sold as “salad dressing”. No clue why they called it that but it was a cheap alternative to mayonnaise that had a tangy zip.

    Now I have real mayonnaise made with eggs in my house (my mom was always weirded out by non-refrigerated egg products).







  • As someone who wishes someone had told me… Adults don’t know what we are doing either. It took me way too long to realize I’m not an imposter pretending to be an adult, we are all just kind of winging it.

    As you grow older you’ll have seen more stuff and it will be a little easier, but I can attest I don’t have a clue what’s for dinner, just like I don’t know what new headache the next meeting will bring. Live life for life’s sake, the clock will keep ticking whether you’re ready or not.


  • Welcome to today’s 10,000 (totally not trying to be offensive, learning is great).

    TrustedInstaller is actually a service that was introduced with Windows Vista with the intention of preventing modification of system files. It typically is the “owner” of damn near everything in default Windows directories.

    A fun way I typically show off the limitations of the system account is by telling people to try to delete a protected resource, like Windows Defender’s directories. Then try it again when running with TrustedInstaller’s rights and you’ll possibly find yourself just staring at your screen thinking about how useful that could be.



  • Edit: I was scrolling back up and realized I responded to the wrong person about the psexec thing. I apologize for any misunderstanding (I’m gonna leave it because its still kind of good info in there and I suck at typing on mobile).

    I’m not a fan of psexec anymore, in a lot of environments is blocked or gets picked up by overzealous AV. Might I suggest using using something like NTObjectManager to just spawn a child process of TrustedInstaller?

    It works really well, I’ve never seen it flagged by AV, and it’s nice being able to remove shit that system can’t. One thing I had a hard time getting away from PSExec for was remote sessions when remote management was turned off. Thankfully you can just invoke-command to call cmd and enable WinRM remotely… Goddamn I hate Windows but love the simplicity to utilized it’s “under documented” features.