Live data from Hacker News

Hackers ship their exploits directly to their target’s mailroom

techcrunch.com

81–90 of 172 posts

Re: Hackers ship their exploits directly to their target’s mailroom

#81
post #61

Earlier quoted context omitted.

This is why we have rainbow tables.

Rainbow tables don't work here because the password is salted.

A salt can't do it's job when it's reused.

There are WPA rainbow tables for common ssid's available online.

If your ssid is "Linksys" it takes only moments to look up a weak password.

Re: Hackers ship their exploits directly to their target’s mailroom

#82

IBM have a service to sell. Hence this 'fear'. Real world attacks using this method? Show me one. It is like putting superglue in locks. In theory anyone could invest in $5 of superglue and put a large building out of business for a few hours. It doesn't happen. But if you were an IBM type of company you could offer this as a service to companies wanting to test their contingency plans. Seems that is what is going on…

I don't know why you're getting down voted but this is exactly what I was about to post. It's a piece to hire IBM's X-force. I can understand if these where spotted in the wild. If anything, they have given ideas to attackers. ;) But what do they care, the more vector of attack the money there's money for the security company to make.

Re: Hackers ship their exploits directly to their target’s mailroom

#83
post #75

I had an idea to do exactly this but I never did it

Careful. The Norwegian postal service almost ripped me a new one for having the gall to ship a microcontroller, a thermometer and a couple of accelerometers to myself; apparently, buried somewhere deep in some regulation is the fact that shipping live datalogging equipment is a big no-no. Their legal department assured me this was par for the course for UPI (International Postal Union) menber countries. Among the obs…

> Among the observations I made was that the tallest drop a package had to endure going through the sorting machine in Trondheim was 62cm (2ft).

And now you know why live datalogging is forbidden, it exposes the possibility of finding out how negligent the postal workers are.

Re: Hackers ship their exploits directly to their target’s mailroom

#84

Find someone who's out on leave for a while (just look for who's having a baby on IG) and ship the package to him/her! They won't discover it for weeks and you'll have plenty of time for your package to sit in the mailroom or on someone's desk. The danger is when the package is opened, the company may realize they've been hacked. Or have it there permanently: Ship an executive a fancy illuminated globe or desk clock…

Or just give them a giant wooden carving of the US presidential seal: https://en.wikipedia.org/wiki/The_Thing_(listening_device)

given the cheapness and compactness of modern electronics any furniture can carry a factory (or during shipping) installed chip these days, even without getting into smart/cloud connected office tables and chairs territory. One can hope at least NSA X-rays their furniture :)

Re: Hackers ship their exploits directly to their target’s mailroom

#86
post #17

>Once the warship locates a Wi-Fi network from the mail room or the recipient’s desk, it listens for wireless data packets it can use to break into the network. The warship listens for a handshake — the process of authorizing a user to log onto the Wi-Fi network — then sends that scrambled data over the cellular network back to the attacker’s servers, which has far more processing power to crack the hash into a reada…

If the password is a predictable, low-length alphanumeric password it’s not going to take long for something like a multi-GPU machine with some dictionaries to break it.

Maybe with a separate cellular antenna the device could capture all of the wifi data, communicate it to a server with more processing power and possibly break it there and communicate it back to the device.

Re: Hackers ship their exploits directly to their target’s mailroom

#87
post #75

I had an idea to do exactly this but I never did it

Careful. The Norwegian postal service almost ripped me a new one for having the gall to ship a microcontroller, a thermometer and a couple of accelerometers to myself; apparently, buried somewhere deep in some regulation is the fact that shipping live datalogging equipment is a big no-no. Their legal department assured me this was par for the course for UPI (International Postal Union) menber countries. Among the obs…

How did they discover you were shipping that stuff?

Re: Hackers ship their exploits directly to their target’s mailroom

#88
post #81
post #61

Earlier quoted context omitted.

Rainbow tables don't work here because the password is salted.

A salt can't do it's job when it's reused. There are WPA rainbow tables for common ssid's available online. If your ssid is "Linksys" it takes only moments to look up a weak password.

[deleted]

Re: Hackers ship their exploits directly to their target’s mailroom

#89
post #75

Earlier quoted context omitted.

Careful. The Norwegian postal service almost ripped me a new one for having the gall to ship a microcontroller, a thermometer and a couple of accelerometers to myself; apparently, buried somewhere deep in some regulation is the fact that shipping live datalogging equipment is a big no-no. Their legal department assured me this was par for the course for UPI (International Postal Union) menber countries. Among the obs…

How did they discover you were shipping that stuff?

I stupidly thought they'd find the idea amusing, so I sent them a copy of the write-up I did afterwards. (School project.)

They were not amused.

Re: Hackers ship their exploits directly to their target’s mailroom

#90
post #74

Earlier quoted context omitted.

When I’ve been hired to do red teams we always use giant antennas and find a nice parking lot a few blocks away to capture the necessary handshakes. This works great even in downtown SF where the RF interference is absurd.

Yea, this ^. This attack approach is interesting but any company that's serious about security needs to realize that anything opened up on wifi is a big hole - this used to be more amusingly exploited by war-driving, just driving around a neighborhood looking for someone with an open network that spills out into the street so you could download the latest episode of friends. I don't work in this sort of security and…

The social engineering side is 100x the threat. Handshake brute forcing is a show pony trick.
Post reply on HN