Thứ Tư, 2 tháng 1, 2019

News on Youtube Jan 2 2019

ChatnCooking With Mahreen

Cardamom , Sugar , Tea , 1 Glass Water And 2 Glass Of Milk

For more infomation >> Kadak Chai Recipe In Urdu || Doodh Pati Chai Bilkul Diver Hotel Jaisi - Duration: 4:17.

-------------------------------------------

GAST.FREUNDE.NÜRNBERG - Karin Schuldenzucker vom Living Hotel Nürnberg - Duration: 2:23.

Hello and welcome to the Living Hotel Nuremberg,

in Gostenhof, a part of town affectionately known as GoHo.

My name is Karin Schuldenzucker,

I've been director of this hotel for more than eight years.

Recently, I took on a new and enthusiastic helper, Fanny,

who I would like you to meet. And we'd like to show you our city.

We're happy to meet two-legged friends and four-legged:

Whether dog, cat or mouse, everyone is welcome here.

And Fanny loves to play with new friends.

To take care of all creature comforts,

we like to go next door to ZeroHero.

There, Fanny has to wait outside,

because there's not only tempting dog food and delicious soap for her fur,

but also food for those of us with two legs.

Our concept here is that you bring your own containers.

Customers weigh them on our scale, put on a sticker

and fill them up with as much as they want.

This helps reduce food waste and plastic trash.

When I go for a walk with Fanny and her friends,

I can always discover the many unique corners of Gostenhof.

Not far from the Old Town, centrally located, but also colorful, creative and sometimes even chaotic.

A walk past the Kleinweidenmühle leads us to the path to the Kontumazgarten.

This park is not just for dogs, but also for children and adults,

who can play, run around or relax on the new terrace on the river Pegnitz.

So here we are at the end of our walk and back in Gostenhof.

I'm standing in front of the Schanzenbräu Brewery and will go in and eat a Schäufele.

And if Fanny behaves, she's sure to get a doggy-bag with a bone.

I hope I've made you interested in Nuremberg

Nuremberg and will welcome you someday soon: Whether two- or four-legged.

Farewell!

For more infomation >> GAST.FREUNDE.NÜRNBERG - Karin Schuldenzucker vom Living Hotel Nürnberg - Duration: 2:23.

-------------------------------------------

CLIFFSIDE | FINAL SPACE | STEVEN UNIVERSE | MYSTERY SKULLS | HAZBIN HOTEL | LO MEJOR DEL 2018 - Duration: 10:05.

Welcome to Dart Toons, I am Polaris

and today I bring you the best that 2018 has left us

I will talk about series, movies, events and much more, so, let's start.

To start I would like to highlight the contribution that Netflix has represented for the animation industry in 2018

from the incredible appearance of Final Space, a series produced by Olan Rogers

which tells us the misadventures of Gary and the countdown to his release

in the same way, another great premiere on the platform was Hilda, a charming animation

which tells us the adventures of a little girl in her quest to discover and register new creatures

This year we also had the return of She-ra: The Princess Of Power

an interesting bet on the part of Netflix that many thought

that would be another progressive animation with Calarts style

but that, on the contrary, end up being very well received by the community.

Another project that had a very good reception was the second step in Guillermo del Toro's ambitious project with Tales Of Arcadia

which this year premiered the third part of "TrollHunters" and the first part of "3 Below"

thus advancing towards the future premiere of "Wizards"

remember that this project is an animated trilogy of Dreamworks and Netflix

which are connected to each other by sharing the same universe, and that will find its climax in "Wizards"

where the heroes of Arcadia will join forces in an apocalyptic war for the control of the magic that will decide the fate of the entire galaxy

And to finish with everything that Netflix has left us this year, we have the magnificent 5th season of Bojack Horseman

which left us with a bitter taste after all that happened in this season that in the end

takes care of leave us with a possible ray of hope for the chaotic life of Bojack.

Jumping into the world of th big screen, I would like to highlight the work of Pixar in the "Incredibles 2"

which after 14 years, bring us back to this heroic family, where in a turn of events

Elastic Girl will take on the heroic responsibilities of the family

on the other hand, Sony brought us to the big screen, Spiderman: Into the Spiderverse

which focuses on Miles Morales, a boy who is involved in a dimensional conflict

where he will join forces with his counterparts from other universes to restore order before it's too late

On the other side, this year was also full of surprises and farewells

as is the case of the surprise revelation of the true identity of Rose Quartz

who turned out to be Pink Diamond in the episode called "A Single Pale Rose"

and without getting too far away Cartoon Network, this year we had to say goodbye to our little Clarence

who after great adventures with Jeff and Sumo, said goodbye

who also said goodbye in an epic and nostalgic episode, were Fin and Jake

who in the episode "Come Along With Me "closed the cycle of 8 years of adventures

who even after all the controversy caused, did not say goodbye, it was Apu.

Now at this point I would like to make a special mention to those talented personalities who this year said goodbye

The tragedy was present on May 15, when the renowned dubbing actor José Lavat passed away

who for many years lent his voice in the spanish narration of the animation of Japanese origin of Dragon Ball

as well as different roles in Death Note, Sailor Moon, Slam Dunk, and others.

In the month of October we lost Adam Burke, a veteran in the world of animation from Pixar

who worked on different projects such as Cars, Wall-e, Toy Story 3, The Incredibles 2, and more

On November 12, the awesome Stan Lee, famous writer, editor and producer of Marvel Comics

passes away, he will be always remember in his beloved creations and works with Jack Kirby

such as Spiderman, The Fantastic 4, Daredevil, Iron Man, The X-Men, and many others.

Again in the month of November, after a long fight against the disease of E.L.A, he died on the 26th Stephen Hillenburg

animator, producer and American biologist known for being the creator of the animated series SpongeBob SquarePants.

In the month of December, specifically on the 18th, our beloved Angeles Bravo

a talented Mexican dubbing actress, leaves us, who participated in projects such as Courage

, the Cowardly dog, in the role of Muriel, in the Simpsons as Mrs. Agnes Skinner

or as Gumball's grandmother Jojo.

After this emotional moment, I would like to emphasize that this year there was a particular event in the world of animation

and it's that Rick and Morty, have received an extensive renovation with more than 70 episodes

which have only achieved, renowned animations such as The Simpsons, SpongeBob, South Park, among others.

On the other hand, I would like to make a special mention to the work that Cartoon Network has done this year

because even though in 2017 we had said goodbye to Regular Show, and this year to Adventure Time

they follow their vision of innovating with series as Summer Camp Island

series centered on Oscar and his best friend Hedgehog, who are left in a surrealist camp

giving rise to strange events such as horse that are transformed into unicorns,

talking sharks, sticky notes with parallel dimensions and much more.

We also had the premiere of Craig Of The Creek which revolves around Craig and his friends

in this universe there are different tribes of children who reign over the typical forts on trees

these children live various adventures in this species of wild childish civilization on the west side of New Jersey

But without a doubt, what I most want to highlight on behalf of Cartoon Network is the support it has given to indie animation

as it happened with Golpea duro Hara, animation series of Chilean origin made by Marmota Studio

which tells us the journey of Hara through the infinite tournament

in order to prove that she is the strongest woman in the Kallpa continent

I'll leave you in the description the link so you can watch all the episodes.

And since we talk about independent animation, this year was undoubtedly the best moment for it

since we have great events that give a new breath to the effort put by great creators

as is the case of Mystery Skulls

who after two years of absence they returned with a magnificent video that broadens even more the "Lore" behind all this world

created by the talented team of Ben Mangum

This year, in addition, we have the premiere of the pilot of Cliffside, an independent animation

created by Liam Vickers

which has quickly gained a place in the Fandom of animation

hopefully this coming 2019 brings with it the opportunity that this series is acquired for its complete production

personally I think Netflix would be a good place for this series. What do you think?

Now if we talk about series that surprised with their sudden appearance and that also won a great place in the hearts of lovers of the Cartoons

we must mention Emara Emirates Hero, a 5-episode American-Arab miniseries produced by Eating Stars Studios

Emara, is a superhero from the Arab Emirates, which has the power to turn her arms into a variety of weapons

the truth is that this seems fantastic, since it is a true sign of progress due to the incredible work and effort that is behind

as well as the message left by this series

which truly shows a struggling woman who must deal with the death of her father

and is able to support her mother to maintain the family business and is also able to fight crime

And finally, this year also brought us the confirmation of something that many in this community have been waiting for and is that Vivziepop

finally managed to reach the goal set in both Patreon and Ko-fi to bring us Hazbin Hotel

a series that I already have mentioned in innumerable occasions in this channel

since it is a series that even with the little that it has been able to show, it has stolen my heart

this supposes that she will be making animations clips monthly, delighting us with small shorts

waiting to the hopes that this series, as with Cliffside

can be taken by some great producer and taken them to the small screen

Well, this has been all for today, if you think I miss some mention, I invite you to leave it in the comments

remember to like the official Facebook page for more news

I'll leave the link in the description along with my Instagram to follow me, without no more to add

I wish you happy holidays, I remind you that I am Polaris, and this was, Dart Toons.

For more infomation >> CLIFFSIDE | FINAL SPACE | STEVEN UNIVERSE | MYSTERY SKULLS | HAZBIN HOTEL | LO MEJOR DEL 2018 - Duration: 10:05.

-------------------------------------------

NoMad Las Vegas Park MGM Hotel Review - Duration: 6:50.

For more infomation >> NoMad Las Vegas Park MGM Hotel Review - Duration: 6:50.

-------------------------------------------

Hacking a hotel's system for free Wifi - Duration: 5:56.

I

Recently went to a hotel which unfortunately didn't have free Wi-Fi.

However, it did have paid Wi-Fi. The Wi-Fi login page looks something like this.

It had a place to put in the access code and also a place to get one.

The place we're going to be focusing on is the access code. Here,

We're gonna try and look in if we can get the Wi-Fi for free.

The first step in the process of ethical hacking is reconnaissance.

Reconnaissance is extremely important.

It's the act of information gathering. This could mean getting things like what OS the server is running on and other things.

So if we would look at the URL at the top, we can go the index of that webpage.

Even though we got a 401 response we get something critical. At the bottom

it shows us Red Hat Linux which means that the server is running Linux.

Just for this case, I'm gonna create a web page that can accept the code and validated it.

For the purpose of this video I'm gonna print any error messages.

The backend for this website is written using flask and SQLite for the simplicity of this video.

If you want to try it for yourself, I love the link in the description to do so.

The first thing that comes to mind would be to try every single combination.

However, this is definitely not a valid option in our case.

We would have a string with the length of four, but in a real case the code would be six or more characters.

Let's say we're using ASCII which has 256 characters.

the number of possible codes is

256 to the power of 4

Which is about 4 billion. If the request takes a second to establish and send the form it would take over

136 years. In reality if they were using 6 characters it would take about 900,000 years.

This makes trying every possible code not a valid option.

Let's try to be a little bit more smart.

This is how the structure of our program could look. We have

JavaScript and HTML running on a browser and a flask API that connects to a SQL database.

But first of all, what's a database? Think of a database as being an Excel spreadsheet.

We can have tables with rows and columns and each of the columns have a name,

With the rows being the data. In this case, we can have a database with all the codes possible which could look like this.

SQL is a language that's used for manipulating databases.

It's incredibly popular and our website uses it too. Let's go over a few SQL statements.

The create table creates a table like creating a spreadsheet in Excel or Google sheets. Here,

You can specify the names of all the columns and the type of data that goes in like integer, text.

There's also something called private key. This means that this field is always unique.

The insert into statement allows us to insert data into our database. We can make queries with the Select statement.

This is the most important one for us.

For example we can select all the data from a table.

We can also select with some condition. In this case the Select statement for our website could look like this.

This changes based on what's inputted into the text field.

The way we test for vulnerability is

by using the escape character

quote like single quote.

You can see how the statement would throw an error the quote never completes itself.

If the text is inputted into the SQL statement without any validation,

We can manipulate the statement to always determine something such an SQL statement could look like this.

If we could get the SQL statement to look like this we would have successfully accomplished what we are trying to do.

If we insert something like this, it successfully completes the statement.

Okay, let's actually see how we can do this here.

I've printed every single possible code so you can see 1XFF, you know, so now let's go to a login page,

And,

Let's try the code 1XFF.

Here you can see it says Wi-Fi connection established.

And I actually printed out the SQL statement so we can see what's going on. Now. Let's try doing like 1234.

Here you can say you see it says

Invalid code because 1234 does not exist in the database.

Now let's try what we did before so we're gonna complete this quote.

So we're gonna do that and

Then we do all 1 =1 like we said before it's gonna get everything from the database. Now,

we're gonna do another or and

Then we have to complete this quote. So we're gonna do open quote again.

You can see it says Wi-Fi connection established.

And this SQL statement will select everything from the database just because of this 1= 1

Although we did this manually there are a lot of great tools to do the work for us. For the Kali Linux distribution,

you can use a SQLMAP or SQL ninja to find which text fields are vulnerable and

Perform the injection. There's also an other one called JSQL injection, which can make

Automated SQL injections. They're all in the description. Keep in mind do not use this on any website in the real world. It's highly illegal.

This video is for educational purposes only.

Không có nhận xét nào:

Đăng nhận xét