Monday, 13 April 2020

$$$ Bug Bounty $$$

What is Bug Bounty ?



A bug bounty program, also called a vulnerability rewards program (VRP), is a crowdsourcing initiative that rewards individuals for discovering and reporting software bugs. Bug bounty programs are often initiated to supplement internal code audits and penetration tests as part of an organization's vulnerability management strategy.




Many software vendors and websites run bug bounty programs, paying out cash rewards to software security researchers and white hat hackers who report software vulnerabilities that have the potential to be exploited. Bug reports must document enough information for for the organization offering the bounty to be able to reproduce the vulnerability. Typically, payment amounts are commensurate with the size of the organization, the difficulty in hacking the system and how much impact on users a bug might have.


Mozilla paid out a $3,000 flat rate bounty for bugs that fit its criteria, while Facebook has given out as much as $20,000 for a single bug report. Google paid Chrome operating system bug reporters a combined $700,000 in 2012 and Microsoft paid UK researcher James Forshaw $100,000 for an attack vulnerability in Windows 8.1.  In 2016, Apple announced rewards that max out at $200,000 for a flaw in the iOS secure boot firmware components and up to $50,000 for execution of arbitrary code with kernel privileges or unauthorized iCloud access.


While the use of ethical hackers to find bugs can be very effective, such programs can also be controversial. To limit potential risk, some organizations are offering closed bug bounty programs that require an invitation. Apple, for example, has limited bug bounty participation to few dozen researchers.
Related articles
  1. Hacker Tools Github
  2. Growth Hacker Tools
  3. Tools For Hacker
  4. Pentest Tools For Android
  5. Ethical Hacker Tools
  6. Hacker Tools Windows
  7. Hack Rom Tools
  8. Hack Tools Pc
  9. Hacker Tools Mac
  10. Kik Hack Tools
  11. Hack Tools Online
  12. Pentest Reporting Tools
  13. Hacker Tools Mac
  14. Usb Pentest Tools
  15. Hacking Tools 2020
  16. Free Pentest Tools For Windows
  17. Hacker
  18. Hacking Tools For Windows Free Download
  19. Pentest Tools Windows
  20. Growth Hacker Tools
  21. How To Install Pentest Tools In Ubuntu
  22. Hack Tools For Mac
  23. Hacker Security Tools
  24. How To Make Hacking Tools
  25. Hacking Tools 2019
  26. Pentest Tools For Android
  27. Pentest Tools Nmap
  28. Hacker Search Tools
  29. Hacking Tools

10 Best Wifi Hacking Android Apps To Hack Others Wifi (Without Root)

 Top 10 Best wifi hacking apps to hack wifi^s.   

Today, a smartphone without internet is like a decade ago featured phone which is mainly used to dial and receive the call. No one would even want such a phone today. The Internet is now a necessity for every mobile user. They can't live without the internet and unfortunately; if the Internet is not working due to some signal issues; they get frustrated and sometimes depressed too.


Generally, we need to pay for the Internet subscription package to run mobile data on our smartphone. But what to do if I don't want to spend money on the Internet? The solution is to connect your mobile with WiFi. You can access the internet from there. Easy, right? NO, it's not easy until you know the password of WiFi. But what if you don't know.

Two ways possible in this situation

  1. Either you ask for the password to the owner; he will provide you to use his internet through Wi-Fi
  2. You have to hack the Wi-Fi password of other's network and use the internet as an unauthorized person.

First is not reliable when you don't know the person so, you only have a second option. Today, I am going to share a few apps that help you steal the password and allow you to use the internet from others' account.

1. WiFi WPS WPA Tester

This is the foremost tool to hack the WiFi password without knowing even the root. This is a preferred choice of numerous smartphone users to decipher the pin and get access to the Wi-Fi. As time passes, a tool is upgraded and now even hack the WiFi networks while it was used to check if an access point is highly vulnerable to the rancorous attacks or not.

If you are using Lollipop or above version on your android mobile phone; you don't even need to root your device to crack a WiFi network.

Android App

Pros

  • Easy to use
  • Free
  • Decrypt the password in no time.
  • Implementation of several algos like Zhao, Arris, Dlink and more.

Cons

  • Need root access if you are using the version below Lollipop.

2. WPS Connect

Routers which has enabled a WPS protocol can be hacked with this app. The important thing is that almost all routers found in public places and homes fall under this category. In short, you will have what you want. Moreover, you can focus on your router & examine that it's vulnerable to any malicious attack or not. It helps you hack the WiFi password without root and also strengthen your WiFi network.

Once you identify the vulnerable (accessible) network, you can quickly get the password and start using the internet without any hassle. It uses algorithms like easyboxPIN and Zhao. Although, this app is not compatible with various Android phones as it is tested on Android devices like the Galaxy series, Nexus and more.

Android App

Pros

  • It's free and easy to use
  • Powerful algorithms (Zhao & easyboxPin) to crack the password
  • Supports pinning of Wi-Fi routers

Cons

  • Incompatible with few android devices
  • Couldn't identify the network automatically.

3. WiFi WPS WPA Tester Premium

This is an excellent app to decrypt the WiFi network password on your android phone. This works fine on rooted & non-rooted android phones. If you can root the Android device; you can have a better chance to hack into. Today,  security is the primary concern and so, many people use the highly secured wireless router, I think. For such networks, this app will not work as it should be. But, still it can work for numerous times with the help of WPS; not all the time. Every time, you have to try your luck to get access to other's WiFi network. This WPS WPA tester is a premium apk.

Android App

Pros

  • Works for both rooted and non-rooted android devices
  • Find the nearby network and connect your mobile with it.

Cons

  • It's a premium apk.
  • You have to try your luck to get access to the nearby network.
  • Not good to connect with highly secured wireless routers.

4. AndroDumpper Wifi (WPS Connect) – Discontinued

If you want to connect to a router which is WPS enabled; download this app immediately without going down to browse for other apps. Just open the app, start its interface & find the nearby wireless networks, you want to connect with. The app will provide an excellent option to regain the password of a selected network with & without root. Once you implemented the algorithm; it will display the password in app screen & connect to the network. Isn't it easy for you?

Android App

Pros

  • It's Free on Google Play Store
  • Easy to use and faster than some other tool.
  • Works fine for rooted & non-rooted devices
  • A dedicated blog is available for the tool (Get guidance anytime)
  • Supports for giant company routers (Vodaphone, Asus, Huawei, Dlink, etc.)

Cons

  • Rooting is required if you are using a version below android 5.0
  • Works only for WPS enabled routers.

5. Wi-fi Password Hacker Prank

Wifi Password hacker prank is a free app for the android users and can help you to connect your android phone to wifi networks available nearby. This free app simulates a process of hacking the wireless network with your smartphone. With this app, you can hack all wifi network passwords with just one key. The Prank word itself says it's a funny app used to prank with your friends. Sometimes, girls can be impressed with this prank as well. But try this at your own risk. Look excellent and professional in front of your friends and colleagues.

Steps to Hack Wifi using the Wifi Password Hacker Prank:

  • Catch up the wireless networks near to you and then select the secure network you wish to hack.
  • Wait for a while & a dialogue will be opened with the wifi password.
  • Bingo! Paste the password and start using others' Internet without spending single money.
  • Watch your favourite show and movie in High-Definition quality without worrying about your mobile data.
Android App

6. WiFi Warden

WiFi Warden is one of the finest and free android WiFi hacking apps to get access to others WiFi with ease. With WiFi Warden, a user can Analyze the WiFi networks, connect to your WiFi using the passphrase and WPS and view saved WiFi passwords without root.

By analyzing the WiFi networks, you can see all necessary information that can be discovered on the wireless networks around including BSSID, SSID, Channel bandwidth, encryption, security, router manufacturer, distance and channel number, etc.

Android App

Pros

  • Find the less crowded channel to get WiFi access.
  • You can root your device on all Android versions.
  • Easy to use and connect with the router quickly.
  • All features of this app are available for free.

Cons

  • This app doesn't work on all types of router, use a passphrase instead.
  • Access Point (AP) must have enabled WPS.
  • Require Android version 6 (Marshmallow) or higher version is necessary to display Wi-Fi networks around you.
  • Some of the features are in the testing phase. So, use it your own risk.

7. WiFi Password

'WiFi Password' is a completely free app for those who don't want to get away from the Internet even when their internet data is running out. You can connect with others' WiFi routers and use their Internet.

If you are using Android Version 5 or above; 'WiFi Password' can be the right choice for you to watch your favorite shows on YouTube in HD without even worrying about Mobile Data.

Android App

Pros:

  • Millions of WiFi Hotspots
  • Scan and detect the WiFi security
  • Connect WiFi Hotspot nearby without knowing the WiFi Password
  • You can simply add a free WiFi Hotspot by sharing the passwords with others.

Cons :

  • Still, there are some glitches in it but works well.

8. WiFi Kill Pro

WiFi Kill is one the best WiFi network controller application which can disable the Internet connection of others who are connected to the same network. Yes, this is true. It is a useful tool for internet users who want to improve their data speed by disabling other's internet connection and allocate all the bandwidth to your device only.

Currently, this app is only for Android users and needs root access to perform well.

Android App

Pros


    • You can see all connected device on the same network you are connected.

    • Display the data transfer rate of all devices

    • Monitor network activity

    • You can cut the network connection of any connected device.
  • It works well on tablets too.

Cons


    • Require root access
  • Require Android version 4.0.3 or up to use this app.

9. Penetrate Pro

A popular Wifi hacker app for android users, Penetrate pro is free and works well on Android devices. This app is widely used to find WEP and/or WPA keys to connect the devices with network routers without knowing the wifi password. Just install the app and search for the network; this app starts automatically displaying the WEP/WPA keys on the screen. Tap on the network you want to connect; one it gets connected; you can start watching videos on YouTube. Quite interesting, doesn't it?

Android App

Pros


    • Easy to search nearby free wifi networks.

    • Connect the network without knowing keys
  • Available for Free

Cons


    • Not available on Google Play Store; need to download manually.
  • Works well only for the rooted android devices

So, you have got the list of apps that help you use the internet from other's wireless network without getting caught. If you have any idea of any other Wi-Fi password hacking app; just let me know. We would love to discuss it here.


Disclaimer: VR Bonkers is not responsible for any consequences if you face while using any of the above apps. This is just a list and we are not taking any responsibility for the same. So, use them at your risk.


@EVERYTHING NT

More info


  1. Hacker Tools 2020
  2. Termux Hacking Tools 2019
  3. Top Pentest Tools
  4. Hacker Tools Apk
  5. Pentest Tools For Windows
  6. Hack Website Online Tool
  7. Hack Tools For Ubuntu
  8. Hacking Tools For Games
  9. Pentest Tools Framework
  10. Hacker Tools Free Download
  11. Pentest Tools For Mac
  12. Hackers Toolbox
  13. Computer Hacker
  14. Growth Hacker Tools
  15. Hacker Tools List
  16. Hacker Tools
  17. Pentest Tools Url Fuzzer
  18. How To Hack
  19. Hacking App
  20. Hacking Tools For Mac
  21. Growth Hacker Tools
  22. Top Pentest Tools
  23. Hacker Security Tools
  24. Hack Tool Apk
  25. Hacking Tools Name
  26. Hack Website Online Tool
  27. Hacking Tools And Software

HOW TO HACK WHATSAPP ACCOUNT? – WHATSAPP HACK

In the last article, I have discussed a method on WhatsApp hack using SpyStealth Premium App. Today I am gonna show you an advanced method to hack WhatsApp account by mac spoofing. It's a bit more complicated than the last method discussed and requires proper attention. It involves the spoofing of the mac address of the target device. Let's move on how to perform the attack.

SO, HOW TO HACK WHATSAPP ACCOUNT?                                                          

STEP TO FOLLOW FOR WHATSAPP HACK

Here I will show you complete tutorial step by step of hacking WhatsApp account. Just understand each step carefully so this WhatsApp hack could work great.
  1. Find out the victim's phone and note down it's Mac address. To get the mac address in Android devices, go to Settings > About Phone > Status > Wifi Mac address. And here you'll see the mac address. Just write it somewhere. We'll use it in the upcoming steps.
  2. As you get the target's mac address, you have to change your phone's mac address with the target's mac address. Perform the steps mentioned in this article on how to spoof mac address in android phones.
  3. Now install WhatsApp on your phone and use victim's number while you're creating an account. It'll send a verification code to victim's phone. Just grab the code and enter it here.
  4. Once you do that, it'll set all and you'll get all chats and messages which victims sends or receives.
This method is really a good one but a little difficult for the non-technical users. Only use this method if you're technical skills and have time to perform every step carefully. Otherwise, you can hack WhatsApp account using Spying app.
If you want to know how to be on the safer edge from WhatsApp hack, you can follow this article how to protect WhatsApp from being hacked.
Related links

ASIS CTF Quals 2015 - Sawthis Writeup - Srand Remote Prediction


The remote service ask for a name, if you send more than 64 bytes, a memory leak happens.
The buffer next to the name's is the first random value used to init the srand()


If we get this value, and set our local srand([leaked] ^ [luckyNumber]) we will be able to predict the following randoms and win the game, but we have to see few details more ;)

The function used to read the input until the byte \n appears, but also up to 64 bytes, if we trigger this second condition there is not 0x00 and the print shows the random buffer :)

The nickname buffer:



The seed buffer:



So here it is clear, but let's see that the random values are computed with several gpu instructions which are decompiled incorrectly:







We tried to predict the random and aply the gpu divisions without luck :(



There was a missing detail in this predcitor, but there are always other creative ways to do the things.
We use the local software as a predictor, we inject the leaked seed on the local binary of the remote server and got a perfect syncronization, predicting the remote random values:




The process is a bit ugly becouse we combined automated process of leak exctraction and socket interactive mode, with the manual gdb macro.




The macro:



















More articles


  1. Hacking Tools For Windows 7
  2. Hacker Tools Hardware
  3. Pentest Automation Tools
  4. Computer Hacker
  5. Hacking Tools For Kali Linux
  6. Hack App
  7. Hack Tools Download
  8. Hacking Tools For Games
  9. Pentest Tools Review
  10. Hacker Tools Free
  11. Pentest Tools Framework
  12. Pentest Tools Port Scanner
  13. What Is Hacking Tools
  14. Pentest Tools Tcp Port Scanner
  15. Nsa Hacker Tools
  16. Hack And Tools
  17. Hackrf Tools
  18. Pentest Tools List
  19. Pentest Tools Find Subdomains
  20. Hack Tools Pc
  21. Hack Website Online Tool
  22. Pentest Tools Linux
  23. Hacker Tools Software

DSploit

DSploit

After playing with the applications installed on the Pwn Pad, I found that the most important application (at least for me) was missing from the pre-installed apps. Namely, DSploit. Although DSploit has tons of features, I really liked the multiprotocol password sniffing (same as dsniff) and the session hijacking functionality.

The DSploit APK in the Play Store was not working for me, but the latest nightly on http://dsploit.net worked like a charm.

Most features require that you and your target uses the same WiFi network, and that's it. It can be Open, WEP, WPA/WPA2 Personal. On all of these networks, DSploit will sniff the passwords - because of the active attacks. E.g. a lot of email clients still use IMAP with clear text passwords, or some webmails, etc. 

First, DSploit lists the AP and the known devices on the network. In this case, I chose one victim client.


In the following submenu, there are tons of options, but the best features are in the MITM section. 


Stealthiness warning: in some cases, I received the following popup on the victim Windows:


This is what we have under the MITM submenu:


Password sniffing

For example, let's start with the Password Sniffer. It is the same as EvilAP and DSniff in my previous post. With the same results for the popular Hungarian webmail with the default secure login checkbox turned off. Don't forget, this is not an Open WiFi network, but one with WPA2 protection!


Session hijack

Now let's assume that the victim is very security-aware and he checks the secure login checkbox. Another cause can be that the victim already logged in, long before we started to attack. The session hijacking function is similar to the Firesheep tool, but it works with every website where the session cookies are sent in clear text, and there is no need for any additional support.

In a session hijacking attack (also called "sidejacking"), after the victim browser sends the authentication cookies in clear text, DSploit copies these cookies into its own browser, and opens the website with the same cookies, which results in successful login most of the time. Let's see session hijacking in action!

Here, we can see that the session cookies have been sniffed from the air:


Let's select that session, and be amazed that we logged into the user's webmail session.




Redirect traffic

This feature can be used both for fun or profit. For fun, you can redirect all the victim traffic to http://www.kittenwar.com/. For-profit, you can redirect your victim to phishing pages.


Replace images, videos

I think this is just for fun here. Endless Rick Rolling possibilities.


Script injection

This is mostly for profit. client-side injection, drive-by-exploits, endless possibilities.

Custom filter

If you are familiar with ettercap, this has similar functionalities (but dumber), with string or regex replacements. E.g. you can replace the news, stock prices, which pizza the victim ordered, etc. If you know more fun stuff here, please leave a comment (only HTTP scenario - e.g. attacking Facebook won't work).

Additional fun (not in DSploit) - SSLStrip 

From the MITM section of DSploit, I really miss the SSLStrip functionality. Luckily, it is built into the Pwn Pad. With the help of SSLStrip, we can remove the references to HTTPS links in the clear text HTTP traffic, and replace those with HTTP. So even if the user checks the secure login checkbox at freemail.hu, the password will be sent in clear text - thus it can be sniffed with DSniff.

HTML source on the client-side without SSLstrip:


HTML source on the client-side with SSL strip:


With EvilAP, SSLStrip, and DSniff, the password can be stolen. No hacking skillz needed.

Lessons learned here

If you are a website operator where you allow your users to login, always:
  1. Use HTTPS with a trusted certificate, and redirect all unencrypted traffic to HTTPS ASAP
  2. Mark the session cookies with the secure flag
  3. Use HSTS to prevent SSLStrip attacks
If you are a user:
  1. Don't trust sites with your confidential data if the above points are not fixed. Choose a more secure alternative
  2. Use HTTPS everywhere plugin
  3. For improved security, use VPN
Because hacking has never been so easy before.
And last but not least, if you like the DSploit project, don't forget to donate them!
Read more

Ps-Tools - An Advanced Process Monitoring Toolkit For Offensive Operations


Having a good technical understanding of the systems we land on during an engagement is a key condition for deciding what is going to be the next step within an operation. Collecting and analysing data of running processes from compromised systems gives us a wealth of information and helps us to better understand how the IT landscape from a target organisation is setup. Moreover, periodically polling process data allows us to react on changes within the environment or provide triggers when an investigation is taking place.
To be able to collect detailed process data from compromised end-points we wrote a collection of process tools which brings the power of these advanced process utilities to C2 frameworks (such as Cobalt Strike).

More info about the tools and used techniques can be found on the following Blog: https://outflank.nl/blog/2020/03/11/red-team-tactics-advanced-process-monitoring-techniques-in-offensive-operations/

The following functionality is included in the toolkit:
Psx: Shows a detailed list of all processes running on the system.
Psk: Shows detailed kernel information including loaded driver modules.
Psc: Shows a detailed list of all processes with Established TCP connections.
Psm: Show detailed module information from a specific process id (loaded modules, network connections e.g.).
Psh: Show detailed handle information from a specific process id (object handles, network connections e.g.).
Psw: Show Window titles from processes with active Windows.

Usage:
Download the Outflank-Ps-Tools folder and load the Ps-Tools.cna script within the Cobalt Strike Script Manager.
Use the Beacon help command to display syntax information.
This project is written in C/C++
You can use Visual Studio to compile the reflective dll's from source.

Credits
Author: Cornelis de Plaa (@Cneelis) / Outflank
Shout out to: Stan Hegt (@StanHacked) and all my other great colleagues at Outflank




via KitPloitRelated links
  1. Hacker Tools For Ios
  2. Pentest Tools Free
  3. Hacking Tools Name
  4. Hacker Tools Github
  5. Pentest Tools Alternative
  6. Hacker Tools 2019
  7. Underground Hacker Sites
  8. Hacker Security Tools
  9. Hacking Tools Github
  10. Hack Tool Apk
  11. World No 1 Hacker Software
  12. Hacking Tools 2020
  13. Pentest Tools Github
  14. Hak5 Tools
  15. Computer Hacker
  16. Hacker Tools Free

Saturday, 11 April 2020

I Don't Want That


Normally, OSR blog posts lack any real divisiveness.  I mean, we all kind of agree on certain things, and where we disagree, we're mostly fine accepting those differences.

Well, I've stumbled onto something I'm really passionate about - a subject that my friend is equally passionate about.  Yay, an argument!

The following is a copy/paste from the comment section beneath his review of Old School Renaissance Like A Fucking Boss.  It might make more sense if I included Endzeitgeist's review of Crimson Dragon Slayer D20 for context, as well as, my own blog post response to it.

While it may seem obvious, let me mention it here - I like old school for the most part, I play old school for the most part, and I create old school content for the most part, but that doesn't mean I slavishly adhere to it at all costs.  If this renaissance doesn't grant us a modicum of freedom, then what the fuck are we doing here?

______________

Care for a fun experiment / playtest?
Let's do a 5-minute Roll20 or 10 email posts (for each of us) combat scene. You can play a cleric with 2 allies against 5 goblins. I'll GM. Then we'll see if the cleric is broken or not.
Also, thanks for the review and shout-out, hoss!

_____________

Your suggestions for the frame of the playtest make clear that you do not understand, or do not want to understand, the root of the issue.
The very foundation of the mathematic baselines and narrative tensions underlying any D&D-adjacent game are based on a degree of tactics and resource-attrition to some degree or another.
Particularly the OSR tradition uses this and considers it to be a virtue and one of the pillars of player skill. Same goes for 5e.
Your game professes to be based on both for branding, but purposefully flaunts the very central pillar on which this is based.
As a direct consequence, your infinite healing clerics and, as a consequence, infinite casting wizards are BROKEN because they invalidate the central baseline.
You *can* call that deliberate and skew encounter-difficulty to make (almost) every encounter hinge on nigh annihilation (see what Cha'alt's Black Pyramid often does), only to have everyone miraculously regain all resources after the encounter.
However: Encounters are not tied to time in-game; they make no sense as a metric in-game.
Doing so invalidates any notion of survival struggle or danger…beyond excessive damage output and save-or-suck.
That might work for a small one-shot, sure. It wrecks any long-term appeal of your rules-lite games, though…because you don't ever really are rewarded for doing anything but throwing your best damage at the enemy as fast as possible. Because you either are fine, or you're dead.
You're walking into a dead-end for design and tension, and have been for some time. And I really think that you're better than that.
In the long run?
You can't erect a system with any degree of longevity on it, because this relegates EVERY single challenge to being just a different coat of paint over the same metrics. Unless the players are super easy to please, this "oh, we almost died to damage/oh, some died to save or suck – oh well, we're good now!" as the only type of danger to be encountered EVERY ENCOUNTER will turn stale very fast.
Infinite healing powering infinite spellcasting has, AUTOMATICALLY, this long-term effect.

__________


Your contention that "I don't understand" or my game "flaunts the very central pillar" smacks of badwrongfun.  Rather than what I'd call macro-tension that might be better suited to the long haul of a extensive campaign, my focus is micro-tension; certainly better suited to one-shots and shorter campaigns.  You sacrifice one for the other.  That means in order to fulfill the one, you neglect the other.  Sure, some try to have it both ways, but we both know that's not easy to find, let alone maintain. 

Essentially, you're treating combat like some kind of gritty and desperate sport, but still a sport.  All things must be in alignment or balanced, uphill and against the current, so combat turns into a long-game of pick-your-poison suffering and resource management masturbation. 

Crimson Dragon Slayer D20 treats combat as war, but a potentially winnable war focused on the immediate, the here and now.  I have no interest in incentivizing the 5-minute workday or making certain classes suck because the rules treat them as one-hit wonders... but awesome after level 5.

I've allowed everyone to have a valuable role, a seat at the proverbial table, regarding combat.  That's one of my favorite things about the OSR.  It's not so rooted in old school play-styles from decades past that it can't innovate depending on the creator's design goals.

There are some things that just don't work for me regarding early D&D, that's why I came up with my own thing.  If I merely wanted to play the game as it was played back in 1980, I would just play B/X and call it a day.  Your acting like my personal revelation is nothing aside from the madness of delusion.

Falling into the same tired mistakes, the design dead-ends and cul-de-sacs of our predecessors doesn't help us pursue those strange new avenues necessary to birth RPGs catering to those looking for something different.  Not inherently better or worse... just different.

My "ultimate RPG" is going to be subjective, it has to be, or else RPG designers are chasing the "standard gamer audience" dragon of mainstream utilitarianism.  Other designers are welcome to it, but I don't want that.

VS
______________


Feel free to post your thoughts below...

Wednesday, 8 April 2020

Square Tiling Of A Sphere, Part 3/3

In the previous post I described how I learned about the cube/sphere geometry so that I could put a square grid on a sphere. I ended up spending too much time on that, because it turns out the mapping from cube to sphere wasn't as useful as I had thought. This happens to me sometimes, where I find something fascinating, spend a lot of time on it, and it turns out to be not that important.

As the final step in learning how to work with square tiles on a sphere, I wanted to make something on the sphere. I decided to make a dungeon map.

Dungeon map on a sphere
Dungeon map on a sphere

Despite my interest in procedural generation, I've never made a dungeon map before. I wasn't sure how hard it would be to work with the cube/sphere geometry so I decided to keep the dungeon part of it simple. I started out making a dungeon on a single square face of the cube, and was hoping I could easily extend it to work on the entire cube. It worked out but not without some missteps. I think geometric dungeon-making techniques like binary space partitioning may be more difficult in the cube/sphere map than graph-based techniques like Delaunay triangulation or graph grammars, but it's hard to know until someone tries them.

I wrote my notes about making a planet-shaped dungeon.

Thoughts:

  • extending a square grid to a sphere is not too hard, as long as the player is mostly looking at the grid and not the sphere
  • the 8 corners of the cube are problematic, and it's easiest if you can have the player avoid them
  • some algorithms will extend to the cube/sphere much more easily than others
  • sometimes instead of modifying an algorithm to work on the cube/sphere, it's easier to have an algorithm pretend it's on a flat surface and then "fold" the coordinates onto the next side of the cube

I think that's it for this little exploration. It was fun and I learned a lot but I'm ready to move on to another project.

BTC

Doge

LTC

BCH

DASH

Tokens

SAMPAI JUMPA LAGI

SEMOGA ANDA MEMPEROLEH SESUATU YANG BERGUNA