Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
Midjack
Dec 24, 2007



Volmarias posted:

Someone please post the picture of the swastika brand soap or whatever it was that says "gently caress the Nazis, we were here first and we're not changing our brand because of those assholes"

Adbot
ADBOT LOVES YOU

Volmarias
Dec 31, 2002

EMAIL... THE INTERNET... SEARCH ENGINES...

Thank you

Shame Boy
Mar 2, 2010

RFC2324 posted:

the pc master race thing came from a goon who does video game reviews

tbf he wasn't exactly a goon by the time he made that joke

though he did namedrop supergreatfriend in an interview after that which made me all :3:

RFC2324
Jun 7, 2012

http 418

ate all the Oreos posted:

tbf he wasn't exactly a goon by the time he made that joke

though he did namedrop supergreatfriend in an interview after that which made me all :3:

he still longs into SA several times a week

don't think he actually posts tho

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

RFC2324 posted:

the pc master race thing came from a goon who does video game reviews

yeah and /pol/ came from a goon who honked it to animes one too many times

the forums don't make something good, see https://forums.somethingawful.com/showthread.php?threadid=3824975&userid=187373 for an example

Shame Boy
Mar 2, 2010

if u think about it, SA is directly responsible for the downfall of western civilization

makes u think

Haquer
Nov 15, 2009

That windswept look...

ate all the Oreos posted:

if u think about it, SA is directly responsible for the downfall of western civilization

makes u think

i thought SA was just dedicated to goons playing eve online?????

RFC2324
Jun 7, 2012

http 418

Cocoa Crispies posted:

yeah and /pol/ came from a goon who honked it to animes one too many times

the forums don't make something good, see https://forums.somethingawful.com/showthread.php?threadid=3824975&userid=187373 for an example

i was just heading off the reddit bashing, since in this case it wasn't reddit


ate all the Oreos posted:

if u think about it, SA is directly responsible for the downfall of western civilization

makes u think

this is a true statement. SA has ruined modern society

g0del
Jan 9, 2001



Fun Shoe
The "glorious PC gaming master race" joke came from a Zero Punctuation review of The Witcher published on Jan 23, 2008, three days after Obama took office. The political zeitgeist of the time was decidedly different. In hindsight, the fact that so many people took an insult based on Nazi imagery and began unironically using it to describe themselves should have been more worrying.

goddamnedtwisto
Dec 31, 2004

If you ask me about the mole people in the London Underground, I WILL be forced to kill you
Fun Shoe

Haquer posted:

i thought SA was just dedicated to goons playing eve online?????

you mean the well-known cia communications channel where they plot to destroy western civilisation?

Shame Boy
Mar 2, 2010

holy poo poo the witcher is almost a decade old jesus

cinci zoo sniper
Mar 15, 2013




ate all the Oreos posted:

holy poo poo the witcher is almost a decade old jesus

kids born after 9/11 can drive cars in some states

Thanks Ants
May 21, 2004

#essereFerrari



this reads like a work-in-progress and i will check in on it to see how things develop and for a writeup/presentation when more is known. i'm confused why this person would suspect they were being targeted by somebody who would use physical access to their machines to drop in an exploit, but still leave them unattended without any sure-fire way to tell if they've been physically tampered with.

yoloer420
May 19, 2006
Schizophrenia imo

ymgve
Jan 2, 2004


:dukedog:
Offensive Clock
only took a glance at it, but is it possible that the exploits were always there from the moment he received the machines, so whoever did it doesn't currently have physical access, like nsa did with cisco gear

on the other hand, shcizophrenia

Thanks Ants
May 21, 2004

#essereFerrari


i might be understanding it wrong but he seems to claim that the machines went in for logic board replacements and then ended up with the exploit back on the machine, when they presumably weren't there right after coming back from apple.

30 TO 50 FERAL HOG
Mar 2, 2005



pull up, thread

Mo_Steel
Mar 7, 2008

Let's Clock Into The Sunset Together

Fun Shoe

NEED MORE MILK posted:

pull up, thread



huge security flaw

Mo_Steel fucked around with this message at 15:10 on Oct 15, 2017

cinci zoo sniper
Mar 15, 2013




NEED MORE MILK posted:

pull up, thread

?????????

Hexyflexy
Sep 2, 2011

asymptotically approaching one

Thanks Ants posted:

this reads like a work-in-progress and i will check in on it to see how things develop and for a writeup/presentation when more is known. i'm confused why this person would suspect they were being targeted by somebody who would use physical access to their machines to drop in an exploit, but still leave them unattended without any sure-fire way to tell if they've been physically tampered with.

My MacOS RE mates reckon it's bullshit, I guessed the guy was nuts when I first read it.

cinci zoo sniper
Mar 15, 2013




https://twitter.com/SwiftOnSecurity/status/919576772991160320

fishmech
Jul 16, 2006

by VideoGames
Salad Prong

well both pages in the medium article appear to be overloaded or deleted now

duTrieux.
Oct 9, 2003


on a completely unrelated note, do faraday privacy bags actually work? don't they need to be grounded?

spankmeister
Jun 15, 2008






duTrieux. posted:

on a completely unrelated note, do faraday privacy bags actually work? don't they need to be grounded?

No, a Faraday cage does not have to be grounded.

duTrieux.
Oct 9, 2003

thx

hobbesmaster
Jan 28, 2008

duTrieux. posted:

on a completely unrelated note, do faraday privacy bags actually work? don't they need to be grounded?

that’s a fancy name for “antistatic bag”

a witch
Jan 12, 2017

https://twitter.com/kennwhite/status/919522184384729089

so uhhh

apseudonym
Feb 25, 2011


I always rant that you shouldn't trust the network in any capacity but this gonna be fun

Thanks Ants
May 21, 2004

#essereFerrari


but september finished two weeks ago

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

there's a similar thing in the UK, but it's even worse because it's used for payments

the four uk mobile phone operators have conspired with the 12 companies listed here http://www.payforit.org/api/ to provide a one-click "charge it to my phone" service

this has two parts:

- "header enrichment", in which the telco intercepts traffic destined for the partner payment processors, and injects the visitor's mobile phone number into the http headers. that's the theory anyway. they also sometimes gently caress up and inject it into every request to every website https://nakedsecurity.sophos.com/2012/01/25/smartphone-website-telephone-number/

- a private api which the payment processors can use to put a charge on a phone bill, given a phone number and amount. they are supposed to only issue charges through this api when the phone owner has given them explicit permission to do so

however at least one of the companies (txtnation) has/had a bug in their code that lets retailers circumvent the "are you sure" payment confirmation. as recently as last year, this was being exploited in the wild via rogue ads to hit people with charges without any confirmation

when a payment goes through, your mobile phone operator sends an sms receipt. there are two problems with this:
- it looks scammy as gently caress and people will likely not understand the message and ignore it
- if you can't receive sms's - e.g. if you're using a mobile internet dongle on a laptop - you never see the sms so you don't even know you've been hit. (because the header enrichment occurs on the upstream network, this scam can be triggered through normal desktop browsing too, you don't have to be using a mobile phone just the mobile phone network)

in summary mobile phone operators are loving scum

goddamnedtwisto
Dec 31, 2004

If you ask me about the mole people in the London Underground, I WILL be forced to kill you
Fun Shoe

spankmeister posted:

No, a Faraday cage does not have to be grounded.

technically it's not a faraday cage if it's not grounded but non-grounded will be more than good enough to block mobile and wifi.

ohgodwhat
Aug 6, 2005


https://twitter.com/kennwhite/status/919525719927087104

Hed
Mar 31, 2004

Fun Shoe
Is there a non-AIDS way of viewing that conversation? So far I see a twitter that links to someone else's twitter that links to a music video.

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum

Hed posted:

Is there a non-AIDS way of viewing that conversation? So far I see a twitter that links to someone else's twitter that links to a music video.
that is the conversation

mrmcd
Feb 22, 2003

Pictured: The only good cop (a fictional one).

apseudonym posted:

I always rant that you shouldn't trust the network in any capacity but this gonna be fun

Remember when Facebook was sending session cookies over http and didn't do poo poo about it until someone literally made a Chrome extension that let you 1-click hijack the account of anyone on the same starbucks wifi network?

Good times.

fishmech
Jul 16, 2006

by VideoGames
Salad Prong

mrmcd posted:

Remember when Facebook was sending session cookies over http and didn't do poo poo about it until someone literally made a Chrome extension that let you 1-click hijack the account of anyone on the same starbucks wifi network?

Good times.

remember how that was how like 99% of the web was doing things at the same time and had been for well over a decade?

Midjack
Dec 24, 2007



duTrieux. posted:

on a completely unrelated note, do faraday privacy bags actually work? don't they need to be grounded?

some of them kind of work okay but you have to be gentle with them. damage the mesh and it stops working. there are a bunch of lovely ones that just sew aluminum foil into the bag, obviously avoid those

pseudorandom name
May 6, 2007

https://github.com/vanhoefm/krackattacks/blob/gh-pages/index.html

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum
"none reuse"

Adbot
ADBOT LOVES YOU

Thanks Ants
May 21, 2004

#essereFerrari


guessing thats meant to say nonce reuse

  • Locked thread