Viewing profile — haxrob
haxrob
HN member- Joined
- Tue, Feb 28, 2023, 2:31 AM UTC
- HN karma
- 856
- Public activity
- 68 items
- HN profile
- View on Hacker News ↗
About haxrob
Recent public activity
- story
-
comment
Comment #42456641
Can attest, having searched through literally thousands of pages of documentation in an attempt to attribute the payment processing switch vendor when analysing the ATM jackpotting…
- story
-
comment
Comment #41105456
"CrowdStrike cash on hand for the quarter ending April 30, 2024 was $3.702B, a 26.38% increase year-over-year." [1] [1] https://www.macrotrends.net/stocks/charts/CRWD/crowdstrike/c…
-
comment
Comment #41091910
> Not to downplay it but at least this requires users to download the Onavo app, which isn’t so common. 10 million installs on Android, according to AndroidRank[1]. What we don't k…
-
comment
Comment #41091595
Thanks, I have modified the wording and also quoted you and linked this HN post on the blog page.
-
comment
Comment #41091422
> This wasn’t simply Facebook hijacking random people’s traffic because they accepted the ToS or used the Facebook app Do you have further insights or references on what was the "t…
-
comment
Comment #41091399
The analytics domain was "sc-analytics.appspot.com" in which the lack of pinning is described at the tail end of the blog post.
-
comment
Comment #41091290
> Victims that were being paid to participate I believe you might be referring to what happened in 2019? [1] This is a separate issue. [2] I do clarify this in the blog post, altho…
-
comment
Comment #41091220
> from what I can tell FB paid SC users to participate in “market research” and install the proxy. The app was available on both the Google Play and Apple App stores for anyone to …
- story
-
comment
Comment #39599104
For those wondering, danielwmayer is one of the authors of the CrowdStrike article linked in the parent.
-
comment
Comment #39599096
Thanks Mike for sharing your insights.
-
comment
Comment #39597185
Recommend taking a read of CrowdStrike's write up on this [1]. The threat actor maintains a presence on the roaming exchange through compromising "at least 13 telecommunication com…
-
comment
Comment #39596145
> I believe them to be an adjacent team to the more well known Mustang Panda This is interesting - the attribution for this actor has remained elusive for quite some time due to th…
-
comment
Comment #39365808
Could you describe the smell?
- comment
-
comment
Comment #38812254
By "extensibility" does this mean the ability to write your own extensions? Being able to develop and contribute plugins back to the community (similar to Burp's BApp store) could …
- comment
-
comment
Comment #38804064
Caido[1] a interception proxy written in Rust, is positioning itself as a "lightweight" alternative to Burp. It can't compete yet with Burp in terms of functionality, although the …
-
comment
Comment #38802330
This is not a new plugin; it (and similar extensions) have been available for Burp and a staple for testers for a few years now. Automating authorisation checks has less to do with…
-
comment
Comment #38793106
In the Q&A section, the speaker remarks: "There is a part of the talk where I am trying to perform a little bit.. the thing that I'm also talking about. My background is in art .. …
-
comment
Comment #38790078
Perhaps a physical switch that connects or disconnects the electrical signal from the microphone to the handset could be a more convenient approach. There is a photo of Mark Zucker…
-
comment
Comment #38789128
How frequent?
-
comment
Comment #38787904
In a week, a lot of data can be exfiltrated. Then after you have rebooted, the threat actor reinfects your device. Frequently rebooting the device can’t hurt but it likely isn’t go…