Show newer

@thor @inference The most impressive malware I've encountered in the wild was something that sounded much like MosaicRegressor. Kaspersky Labs found the aforementioned malware on a diplomats computer and they were unable to do much analysis on it.

What I encountered was modular, flexible, persistent but able to erase evidence. The malware infected the computer but what it did next was insane.

So I was around a company when someone complained that their computer wouldn't work with a recent hardware change. The company didn't mind me taking a look. It's just not loading the driver or it needs to be configured.

I worked on that computer for around 72 hours over 5 days. I didn't determine that it had malware until about 5 hours in and I didn't realize that it was related for a few more minutes.

So what I discovered was something that managed to infect all the way into UEFI with the latest security module and latest generation of chipset. I didn't have the ability to take it apart so I could clone the SOIC and it was the newer one with more pins.

I could get around the malware for most things after I used a trick on UEFI that stops the secure boot sequence. I was able to boot Ubuntu (signed by Microsoft) after this. The hardware was perfectly fine and functional, I watched the network traffic and it was normal. Back in Windows I had a thought as the internet stopped working on it within the first hour and I analyzed the network traffic. There was network traffic, connections to servers, RX TX and yet the OS acted like it had no connection.

I think it was closer to 96 hours of work to get it fixed. I had my whole kit with me. It was really labor intensive but I am sure that I got rid of it as it was. It could have just patched itself and remained hidden but I took precautions. It was also flagged by IT after I reported what I found. It's likely still being monitored.

In conclusion, I discovered something in the wild that I had never heard of before. This was more professional than some of the software used to manage servers. The only reason I discovered it was because it cut network access and blocked other boot media that was whitelisted. It wasn't sluggish, using excessive resources nor causing any other issues.

@inference @thor What is the most impressive malware that you have encountered?

@GNUxeava Snap and Flatpacks somehow exist while I've never met someone who didn't say they were trash. Existence with them is pain.

@inference @thor Nintendo sent a guy to prison because they can't make everyone pay for games while they sell the same games on every generation of console they release.

I remember stories of a hacker called DarkAlex that was eventually confronted by Sony and went quiet. The rumor is that they found the hacker, made a proposal where they would be hired and paid money up front to stop the development of the CFW.

@thor If your country is anything like mine, you'll be put on a list of people that will likely not get housing again. It's a fucked up system with many more fucked up systems associated with it.

In the US, a bad credit rating will keep someone from getting gainful employment and they are overqualified for other jobs. The bastards will make one suffer instead of allowing one the opportunity to pay the debt.

@BowsacNoodle @doomspiral I'd rather wear a solid color BDU and boots. The fit will never be an issue.

@BowsacNoodle The suit is the pinnacle of inconvenience. Dry clean only and the shoes are perfect for ending up at the bottom of stairs parkour style.

@Coyote @Quandale @Nidoking The more accurate design won. The bad trigger and sloppy short recoil design are still talked about on the Gs. There's the G18 and G41 if one wants to say something positive about the manufacturer.

The trigger pull on the 1911's were amazing if they weren't bone stock. The M92FS is well balanced with a good stock trigger pull.

@thor It's not limited by the human mind but by the management who try to make it absolute garbage.

@BowsacNoodle @Godcast @mkultra @randbot @TurboNormie @Wormwood Not on FBI Agents, they stay sharp. They might not smoke anymore or have a 1911A1 or HiPower in a shoulder holster made of quality leather but they would look the same as the G Men.

@thor @Hyolobrika Signals can be filtered using multi sampling and separation. If encryption tasks are running, the AC system is working harder.

It might seem like there's so much interference that the data is just noise. This is an appropriate use so I will say that servers go brrr under such loads. The power use can give some subtle hints but people should be using sophisticated UPS.

@Hyolobrika @thor Most of the information observed would be useless without other readings.

Perhaps I am overlooking something.

@thor It's something that would be done in pen testing. Have you ever picked up an MCU by accident with an SDR? It's confusing at first but really cool to see. It's fun to see what signals are being sent through the air even if they aren't able to be read.

Show older
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.