Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
Shame Boy
Mar 2, 2010

kinda weird that they mentioned "our findings will have less or no value" or whatever, like yeah that's the point of responsible disclosure in the first place, to not disclose until the information is no longer "valuable"

not that i think they did wrong or anything, obviously not seeing anything done for that long is unacceptable, it just stood out to me :shrug:

Adbot
ADBOT LOVES YOU

Dex
May 26, 2006

Quintuple x!!!

Would not escrow again.

VERY MISLEADING!
neato sudo/selinux bug http://www.openwall.com/lists/oss-security/2017/05/30/16

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

jre posted:

1. To know the exact model of pacemaker you victim has
2. to buy at least 1 pacemaker of the same type as your target
3. to buy the hardware needed to programme the device
4. the knowledge to reverse engineer and rewrite the firmware for this device
5. a good enough knowledge of physiology to make your changes harmful
6. have access to all of the above and be willing to kill someone

1. dump some medical records that you've backdoored with an 0day you've hoarded
2. set up a shell company or just get the VA to do it for you
3. see above
4. this is a skill, it can be taught and learned
5. see above
6. you know that hypothetical questiuon "if you had a button that killed a random person and gave you some amount of money, would you press it?" what if the person was a foreign war criminal on tier with dick cheney and the reward was a nebulous national security thing. you'd have the people in steps 4 and 5 going all :f5:

oh and instead of following someone on the street with a laptop, surreptitiously do it on a flight, or in an uber, or overnight in a hotel room

watch more bourne movies, gently caress

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

the person who uses the pacemaker exploit is going to buy it for 30 bitcoins off a Croatian forum, while Brian Krebs watches it go down. it's going to work on the most popular 15 pacemakers, BYORPI

five years later they'll buy a "pacemaker RF tester" off AliExpress for $35

Partycat
Oct 25, 2004

I think at that point you'd just "hack" your target with something that has better range and battery life , like a gun or a bow and arrow. Or drop a bowling ball on them or something.

History has proven that any opportunity for exploit will be taken if the circumstances allow for it, with motivation. Not being security minded in the design and development of things nowadays is the fuckup. Going through fan fiction and b movies for plot lines to secure against above and beyond still breaks the cost/risk curve.

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

the real threat is that someone will demo it at defcon and papers will pick it up, causing thousands of people to refuse pacemakers that could save their lives

but if you can't tell why someone might be willing to kill someone with undetectable brief pacemaker failure, but not shoot them obviously, I'm not sure how to close that gap

Agile Vector
May 21, 2007

scrum bored



RISCy Business posted:

https://stablebit.com/CloudDrive

is this a secfuck, someone linked it in a group chat i'm in

sounds like the new pied piper platform tbh

Lysidas
Jul 26, 2002

John Diefenbaker is a madman who thinks he's John Diefenbaker.
Pillbug

Cocoa Crispies posted:

1. dump some medical records that you've backdoored with an 0day you've hoarded
2. set up a shell company or just get the VA to do it for you
3. see above
4. this is a skill, it can be taught and learned
5. see above
6. you know that hypothetical questiuon "if you had a button that killed a random person and gave you some amount of money, would you press it?" what if the person was a foreign war criminal on tier with dick cheney and the reward was a nebulous national security thing. you'd have the people in steps 4 and 5 going all :f5:

oh and instead of following someone on the street with a laptop, surreptitiously do it on a flight, or in an uber, or overnight in a hotel room

watch more bourne movies, gently caress

yeah the point was that this is relatively easy for a nation state level attacker, as you have just supported, good job agreeing with an antagonistic tone

surebet
Jan 10, 2013

avatar
specialist


if someone with a life sustaining implant drops dead today, is there anyone that does forensics on the devices? like i'm sure if dick cheney farted out right now without an obvious cause of death, maybe?

but if joe schmoe pacemaker dude with a couple trustfund kids bites it, is there anything that happens except for a tech that checks to see if the device still powers on?

random stats i pulled from fbi.gov says ~50% of murders committed are done by people who knew the victim, and half of those by immediate family. that's your proximity, and surely at least one of those geniuses are able to gently caress around with a btle stack or whatever.

burning swine
May 26, 2004




lol a linux bug involving not properly parsing spaces in filenames

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

Subjunctive posted:

the real threat is that someone will demo it at defcon and papers will pick it up, causing thousands of people to refuse pacemakers that could save their lives

but if you can't tell why someone might be willing to kill someone with undetectable brief pacemaker failure, but not shoot them obviously, I'm not sure how to close that gap

this is legit the same kid of psyops that stuxnet was supposed to be

Angela Merkle Tree
Jan 4, 2012

the definition of open: "mkdir android ; cd android ; repo init -u git://android.git.kernel.org/platform/manifest.git ; repo sync ; make"
College Slice
nobody will kill people by hacking pacemakers because there's far easier ways to do it. just like how nobody would ever kill someone with radioactive pellets fired from an umbrella gun instead of just stabbing them.

if i were a dissident with a pacemaker i'd absolutely include hacking in my personal threat model.


e: consider the political motives for being able to kill someone at a time of your choosing (say, a political summit) because you owned their pacemaker months ago when they slept at a hotel in moscow

Angela Merkle Tree fucked around with this message at 03:21 on May 31, 2017

Shame Boy
Mar 2, 2010

Angela Merkle Tree posted:

nobody will kill people by hacking pacemakers because there's far easier ways to do it. just like how nobody would ever kill someone with radioactive pellets fired from an umbrella gun instead of just stabbing them.

if i were a dissident with a pacemaker i'd absolutely include hacking in my personal threat model.


e: consider the political motives for being able to kill someone at a time of your choosing (say, a political summit) because you owned their pacemaker months ago when they slept at a hotel in moscow

those were ricin pellets, the radioactive stuff went in tea :colbert:

surebet
Jan 10, 2013

avatar
specialist


in non-pacemaker, idiots using my email news, the insurance company of a senior politician with who i share a name has sent me a renewal contract that includes the following:
- full address
- sin
- cc info
- policy number
- data on immediate family members
- a line level recap of last year's pharma & specialist claims
- dob of everyone involved
- responses to what i assume were questions discussed regarding travel to specific countries

looking forward to receiving another threatening email telling me to delete everything (already done)

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe

surebet posted:

in non-pacemaker, idiots using my email news, the insurance company of a senior politician with who i share a name has sent me a renewal contract that includes the following:
- full address
- sin

i too email my full address and sins i have committed to people with similar names to mine

Zil
Jun 4, 2011

Satanically Summoned Citrus


RISCy Business posted:

i too email my full address and sins i have committed to people with similar names to mine

if the pope can have a twitter account why couldn't there be online confessional?

Optimus_Rhyme
Apr 15, 2007

are you that mainframe hacker guy?

I'm just glad I can watch a movie with my wife and not scoff at the scene where the politician with a pacemaker dies from a hacker in some Amsterdam hacker space

Midjack
Dec 24, 2007



Zil posted:

if the pope can have a twitter account why couldn't there be online confessional?

then you get to have a wonderful debate over whether the online communion involves transfiguration of the data packets upon receipt or if you are downloading the actual body and blood of christ

vOv
Feb 8, 2014

Midjack posted:

then you get to have a wonderful debate over whether the online communion involves transfiguration of the data packets upon receipt or if you are downloading the actual body and blood of christ

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

:cripes:

Shame Boy
Mar 2, 2010

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

boooooooooooooooooooooooooooooooooooo

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender

Midjack posted:

then you get to have a wonderful debate over whether the online communion involves transfiguration of the data packets upon receipt or if you are downloading the actual body and blood of christ

jre
Sep 2, 2011

To the cloud ?



vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

:boom:

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

RISCy Business posted:

i too email my full address and sins i have committed to people with similar names to mine

my_sins.txt

Kassad
Nov 12, 2005

It's about time.
Turns out that Windows XP probably didn't contribute much to the spread of WannaCry:

quote:

It must be noted however that Windows XP is not safe from infection when the WannaCry binary is executed locally on the host. The ransomware will install successfully and encrypt the host’s files. That being said, since the main infection vector here was the SMB exploit, it seems like XP did not contributed much to the total infection counts. To be clear, the Windows XP systems are vulnerable to ETERNALBLUE, but the exploit as implemented in WannaCry does not seem to reliably deploy DOUBLEPULSAR and achieve proper RCE, instead simply hard crashing our test machines. The worst case scenario, and likely scenario, is that WannaCry caused many unexplained blue-screen-of-death crashes.

Saved by the blue screen of death.

Dex
May 26, 2006

Quintuple x!!!

Would not escrow again.

VERY MISLEADING!

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

lol

fishmech
Jul 16, 2006

by VideoGames
Salad Prong
https://news.netcraft.com/archives/2017/05/31/stanford-uni-site-infested-with-hacking-tools-and-phish-for-months.html


This is neat. Apparently someone hosed up their blog and php installs on a Stanford University subdomain and there were dozens of remote shells and phishing sites hosted through it in the past 5 months.

Volmarias
Dec 31, 2002

EMAIL... THE INTERNET... SEARCH ENGINES...

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

Thanks Dad.

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum
oops http://gizmodo.com/1795669632

Shaggar
Apr 26, 2006

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

FlapYoJacks
Feb 12, 2009

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

https://www.sadtrombone.com/?autoplay=true

haveblue
Aug 15, 2005



Toilet Rascal

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

:discourse:

flakeloaf
Feb 26, 2003

Still better than android clock

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

:rolleye:

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe

Security Fuckup Megathread - v13.70 - “Oh, no. It’s Booz Allen again.”

Meat Beat Agent
Aug 5, 2007

felonious assault with a sproinging boner
let he who is without SYN broadcast the first stone

AARP LARPer
Feb 19, 2005

THE DARK SIDE OF SCIENCE BREEDS A WEAPON OF WAR

Buglord

vOv posted:

it's the former, because you can't send jesus over tcp

he was free from SYN :haw:

omg

pseudorandom name
May 6, 2007

COACHS SPORT BAR posted:

lol a linux bug involving not properly parsing spaces in filenames

its more of a "/proc is a moronically designed festering shithole" bug

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

proc is very bad

jre
Sep 2, 2011

To the cloud ?



COACHS SPORT BAR posted:

lol a linux bug involving not properly parsing spaces in filenames

The amount of linux system stuff that is a badly written shell script which explodes on unexpected white space never fails to depress.

Adbot
ADBOT LOVES YOU

pseudorandom name
May 6, 2007

jre posted:

The amount of linux system stuff that is a badly written shell script which explodes on unexpected white space never fails to depress.

it isn't a shell script in this case, its a proc file serializing data as plain text with fields delimited by spaces and one of the fields is a file name

it is literally impossible to safely parse

and this is ignoring the fact that nobody ever bothered to define the format or how it should be parsed in the first place

  • Locked thread