On 6/8/21 9:57 AM, Chrome wrote:

On Tuesday, June 8, 2021 at 10:48:14 AM UTC-4 Chrome wrote:

    On Tuesday, June 8, 2021 at 10:40:30 AM UTC-4 unman wrote:

        On Tue, Jun 08, 2021 at 06:38:44AM -0700, Chrome wrote:
        >
        > Good Morning again,
        >
        > I got the OSINT VM about 95% setup. Thank you all for your
        help on it. I
        > ran into problems during the install of a few recommended
        tools in the Mike
        > Bazzell OSINT manual. These programs are as follows:
        EyeWitness,
        > theHarvester, pipenv, and kazam.
        >
        > Kazam seems like something I don't actually need but I'd
        still like all
        > tools set up. Below is the terminal text I saved in a "todo"
        txt file. Any
        > help understanding the error messages and what I need to do
        to resolve them
        > would be appreciated. I recognize everyone on here is quite
        busy but this
        > n00b would definitely appreciate the help. Thank you.


        You have not said where, or how, you are trying to install
        these - in Template,
        Standalone, or template based qube.

        >
        >
        
=========================================================================
        > 1. Fix Eyewitness
        >
        #######################################################################

        > # EyeWitness Setup #
        >
        #######################################################################

        >
        > [Error]: \S is not supported by this setup script.

        Clear - look in the setup script. You are using a parameter
        "\S" that is
        not supported.

        >
        > [user@OSINT-Template setup]$
        >
        > 2. Fix theHarvester
        > 3. Fix pipenv


        You have repeated error 502 - this is "Bad Gateway"- change
        your routing
        to these sites.
        You do not have right python installed - the requirement is
        specific -
        >=2.7, but less than 3.0.
        Install and configure your python(s) as necessary.

        > 4. Fix kazam
        > [user@OSINT-Template kazam-1.4.4]$ sudo python3 setup.py
        install
        > Traceback (most recent call last):
        > File "setup.py", line 8, in <module>
        > from DistUtilsExtra.command import *
        > ModuleNotFoundError: No module named 'DistUtilsExtra'
        > [user@OSINT-Template kazam-1.4.4]$
        >

        You need to install DistUtilsExtra - in Debian based qubes you
        should
        install python-distutils-extra or python3-distutils-extra ,
        depending on
        your python version.


    1. Roger
    2&3. Sounds like I need to install some sort of 2.x python
    version. I imagine 2.9 should be sufficient if I can find it.
    4. I'll see what I can find on my own with a Fedora based qube via
    dnf. Do you happen to know what it would be for fedora? Thank you
    for your help.

Re: 1, the EyeWitness issue. I still have a problem.
I went into the setup.sh file with gedit to look at the code. The only relevant line of code seems to be this.

echo "[Error]: ${osinfo} is not supported by this setup script."

There was no \S parameter for me to edit out. And, despite pulling this via git clone, it seems that the setup.sh script does not support Fedora. I'm going to google around and see what I can find. Certainly there has to be a version of this program that likes Fedora. Otherwise I guess I need to try this again with debian and put up with Firefox ESR.

Floyd: If you see this, let me know if you have any feedback. It would definitely be appreciated since you commented on my posts before and have done something similar to what I'm trying to do re: OSINT VM's on Fedora. I know you settled on debian but I just want to finally call this setup complete and get on with it, ya know? Thanks again all.
--

I found my notes - basically a print out of the install document Bazzell provided on his website, IIRC. I printed it from an editor that provided line numbers (notepad++ ?). I also used info from the 7th edition of his book, which is earlier than the one you're using IIRC.

I don't see any notes regarding issues with python3-pip or installing Python in general. I used the Qubes generic Debian 10 template and cloned it before making the mods.

I do see a note about needing a git account (which I do not have, I don't think) for EyeWitness. My notes indicate I reached a section of Bazzells notes that involved git cloning - Sublist3r, Photon, theHarvester - when I apparently stopped. Huh. My template shows EyeWitness installed, but it does not run. Maybe that one did not need an account. Looking at some of the time stamps in the template it's been over a year since I worked with the template and almost as long with the test case VM. In fact, there are enough of the apps I did install that now do not work that leads me to think I may have an issue with the template. I use Qubes as my daily driver for everything unless I absolutely need a proprietary Windows app. Everything else is working.

My notes indicate I stopped after the install of "amass" - whatever that is.

I also did not do any of the steps in his Updates section. Based solely on the numbered lines of the printout, there are approximately 100 install steps, of which I did ~80% before stopping. The steps do NOT include anything related to installing an actual OS (Ubuntu in this case), but does include tweaking Firefox. It does not include any steps from the Updates: section. In my 7th Ed version, there do appear to be some apps that are actually initially installed in the Updates: section - Skiptracer, Sherlock and a couple of crawlers.

I found the Firefox stuff and his scripts to be useful when working the test case. I was working with known current data, so I had some insight. I also had data dumps from commercial databases as well for comparison. As I stated, it has been awhile since I played with the OSINT VM, but these tools require more hands on that what I have given them. I also did not have any occasion to use, other than to test, many of the tools Bazzell recommended. That said, these are useful tools and OSINT has a place in an investigators toolbox. Bazzell has done an excellent job of sharing his knowledge and experience.

My *nix background is limited, especially in the desktop area. I dealt with servers, hypervisors and appliances. Some of the replies from far more knowledgeable and experienced Qubes users have been on point, detailed and educational. Qubes is a natural for OSINT I think, but most of the world runs on standalone installs or relatively uncomplicated virtualization solutions that mostly just work.

You have sparked my interest in acquiring the most current edition of his book. In my experience, Bazzell really puts a lot of work into his editions. His Privacy books are excellent. It's also timely in that my upcoming OSINT CE (continuing education) course begins in a couple of weeks. Be interesting for me to compare and contrast.

Regarding browsers, Firefox is mostly sufficient, but I prefer others, and they are not based on Chrome. It's a question of whom do you trust. And what browser supported the required extensions.

Regarding video CODECs, my issue is that the Firefox in Fedora didn't have them installed. Firefox ESR in Debian plays everything I've needed without installing any CODECS. In fact, I've been using a Debian VM a lot more for daily work because it just works. YMMV.

I'm giving serious thought to a fresh install of Qubes on much larger drives. Space has become an issue and I'd like to do a couple of things different this time.


--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/6cc54e86-872f-7f3c-63ad-f948c3a93545%40bauernhof.us.

Reply via email to