Live data from Hacker News

Viewing profile — haxrob

haxrob

HN member
Joined
Tue, Feb 28, 2023, 2:31 AM UTC
HN karma
856
Public activity
68 items

About haxrob

https://x.com/haxrob

Recent public activity

  1. story
  2. comment
    Comment #42456641

    Can attest, having searched through literally thousands of pages of documentation in an attempt to attribute the payment processing switch vendor when analysing the ATM jackpotting…

  3. story
  4. comment
    Comment #41105456

    "CrowdStrike cash on hand for the quarter ending April 30, 2024 was $3.702B, a 26.38% increase year-over-year." [1] [1] https://www.macrotrends.net/stocks/charts/CRWD/crowdstrike/c…

  5. comment
    Comment #41091910

    > Not to downplay it but at least this requires users to download the Onavo app, which isn’t so common. 10 million installs on Android, according to AndroidRank[1]. What we don't k…

  6. comment
    Comment #41091595

    Thanks, I have modified the wording and also quoted you and linked this HN post on the blog page.

  7. comment
    Comment #41091422

    > This wasn’t simply Facebook hijacking random people’s traffic because they accepted the ToS or used the Facebook app Do you have further insights or references on what was the "t…

  8. comment
    Comment #41091399

    The analytics domain was "sc-analytics.appspot.com" in which the lack of pinning is described at the tail end of the blog post.

  9. comment
    Comment #41091290

    > Victims that were being paid to participate I believe you might be referring to what happened in 2019? [1] This is a separate issue. [2] I do clarify this in the blog post, altho…

  10. comment
    Comment #41091220

    > from what I can tell FB paid SC users to participate in “market research” and install the proxy. The app was available on both the Google Play and Apple App stores for anyone to …

  11. story
  12. comment
    Comment #39599104

    For those wondering, danielwmayer is one of the authors of the CrowdStrike article linked in the parent.

  13. comment
    Comment #39599096

    Thanks Mike for sharing your insights.

  14. comment
    Comment #39597185

    Recommend taking a read of CrowdStrike's write up on this [1]. The threat actor maintains a presence on the roaming exchange through compromising "at least 13 telecommunication com…

  15. comment
    Comment #39596145

    > I believe them to be an adjacent team to the more well known Mustang Panda This is interesting - the attribution for this actor has remained elusive for quite some time due to th…

  16. comment
    Comment #39365808

    Could you describe the smell?

  17. comment
  18. comment
    Comment #38812254

    By "extensibility" does this mean the ability to write your own extensions? Being able to develop and contribute plugins back to the community (similar to Burp's BApp store) could …

  19. comment
  20. comment
    Comment #38804064

    Caido[1] a interception proxy written in Rust, is positioning itself as a "lightweight" alternative to Burp. It can't compete yet with Burp in terms of functionality, although the …

  21. comment
    Comment #38802330

    This is not a new plugin; it (and similar extensions) have been available for Burp and a staple for testers for a few years now. Automating authorisation checks has less to do with…

  22. comment
    Comment #38793106

    In the Q&A section, the speaker remarks: "There is a part of the talk where I am trying to perform a little bit.. the thing that I'm also talking about. My background is in art .. …

  23. comment
    Comment #38790078

    Perhaps a physical switch that connects or disconnects the electrical signal from the microphone to the handset could be a more convenient approach. There is a photo of Mark Zucker…

  24. comment
    Comment #38789128

    How frequent?

  25. comment
    Comment #38787904

    In a week, a lot of data can be exfiltrated. Then after you have rebooted, the threat actor reinfects your device. Frequently rebooting the device can’t hurt but it likely isn’t go…