Earlier quoted context omitted.
Why would anyone go to jail for this?
The nail that sticks up gets hammered. If someone else later does something bad with the publicly accessible printer and there's a witch hunt for the responsible party, and the only lead they have is that you emailed them about the possibility in advance...then they'll go after you, even though you were just trying to do a good thing. And if you're expecting the victim / police / legal system to understand that, tech…
Google has indexed thousands of publicly accessible HP printers
131–140 of 149 posts
Re: Google has indexed thousands of publicly accessible HP printers
#132Earlier quoted context omitted.
Why would anyone go to jail for this?
The nail that sticks up gets hammered. If someone else later does something bad with the publicly accessible printer and there's a witch hunt for the responsible party, and the only lead they have is that you emailed them about the possibility in advance...then they'll go after you, even though you were just trying to do a good thing. And if you're expecting the victim / police / legal system to understand that, tech…
Re: Google has indexed thousands of publicly accessible HP printers
#133Earlier quoted context omitted.
Yeah - this was in 1997...
I think that law dates back decades. I don't think it applies to non USPS carriers though. That said my Google-fu is weak against this particular law.
Re: Google has indexed thousands of publicly accessible HP printers
#134Re: Google has indexed thousands of publicly accessible HP printers
#135Some of the IPs are registered to large US universities, who list abuse/tech support email addresses in their records. I've already emailed several with a headsup and had a couple of "thank you!"s in reply.
You're lucky you haven't gotten accused of "hacking" yet.
Re: Google has indexed thousands of publicly accessible HP printers
#136So is the secret service going to knock on my door if I click a link? I can't tell anymore.
Re: Google has indexed thousands of publicly accessible HP printers
#137Earlier quoted context omitted.
The same goes for smart tvs. Most of them you can push stuff to via dnla without a password. Much amusement to be had.
I think the Sony TV's offer an onscreen pop-up before accepting commands from unregistered DLNA controllers although maybe that can be faked (and maybe there is a flaw, I've never explored it deeply).
Re: Google has indexed thousands of publicly accessible HP printers
#138So within 24 hours, lots of people are going to find out what a goatse is I reckon. Even better, a lot of people in the UK have Thomson routers which have an easily calculable WPA default password. Most of these also have smart tvs these days too which will allow anything to be pushed to them.
> Even better, a lot of people in the UK have Thomson routers which have an easily calculable WPA default password. // That rather looks to oversteps the legal line.
Re: Google has indexed thousands of publicly accessible HP printers
#139I've written about this before.[1] Many network-connected printers simply assume that the local network they connect to will be securely protected from external threats, so they're not configured to withstand even the simplest of attacks. This is exactly the opposite of what many security experts recommend: devices should be secure regardless of whether the network they're on is secure or not. Bruce Schneier's person…
IMO Bruce Schneider should be more careful because lots of routers are very capable general-purpose computers and he's definitely responsible for what goes out of his IP address.
And it's Schneier.
Re: Google has indexed thousands of publicly accessible HP printers
#140Earlier quoted context omitted.
Who says I am not authorised? I can claim that public access is an implicit authorization, like any website! And there is no warning or message in the public control panels.
If I leave my keys in the car, leave the car turned on with the door opened, are you authorized to drive my car?