Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
neilwillgettoit
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
1.
▲
by
neilwillgettoit
1y ago
https://github.com/ereuter/PyEOT - Eric did a great job breaking down the protocol that was impacted.
2.
▲
All Trains in the USA are vulnerable to wireless RF command injection
(cisa.gov)
2 points
by
neilwillgettoit
1y ago
|
2 comments
3.
▲
by
neilwillgettoit
1y ago
I originally reported this to ICS-CERT in 2012. The American Association of Railroads denied, deflected, and dismissed the claims for 13 years until CISA finally agreed with me that publication was the only option left to pressure the rail
4.
▲
0x01 – Killing Windows Kernel Mitigations
(wetw0rk.github.io)
118 points
by
neilwillgettoit
2y ago
|
13 comments
5.
▲
by
neilwillgettoit
11y ago
Before the switch, 80% of the time I would get the unsolvable ones.
6.
▲
by
neilwillgettoit
11y ago
The move to the new reCAPTHA alone has made it a lot more usable for tor users.
7.
▲
UBNT AirVision Auth Bypass – One Way Shodan.io Gets Images
(medium.com)
3 points
by
neilwillgettoit
11y ago
|
0 comments
8.
▲
by
neilwillgettoit
11y ago
That share via email in their demo is just ripe for abuse.
9.
▲
by
neilwillgettoit
11y ago
I'd rather not be forced to sign up with twitter.
10.
▲
by
neilwillgettoit
11y ago
How is this 'analysis' ?
11.
▲
by
neilwillgettoit
11y ago
That's a great point. It's one thing to be able to program it yourself, and another to understand enough to ask the right questions about the code to learn how it works. If they had the ability to QA the outsourced team's wor
12.
▲
by
neilwillgettoit
11y ago
I think it would be a much more positive indicator if they had chosen to learn the skills necessary to create their product.
13.
▲
by
neilwillgettoit
11y ago
I would not take a startup that is outsourcing their development seriously. All of the institutional knowledge of how a product works goes right out the door. If you cannot fix your own product if it breaks, do you really own it?
14.
▲
by
neilwillgettoit
11y ago
That is a fantastic response.
15.
▲
by
neilwillgettoit
11y ago
Replace 'older candidates' with 'candidates who are less likely to sacrifice their work/life balance.' 1. Candidates that demand compensation for sacrificing their work/life balance are more expensive. Tech isn
16.
▲
by
neilwillgettoit
11y ago
You don't need a complex guidance package when traditional direction finding and triangulation will produce coordinates that can be used to direct artillery, air strikes, IED, etc. Sigint targeting is quite common.
17.
▲
by
neilwillgettoit
11y ago
higher power. The n900's transmitter was 15nW (1.5e-8 W), which is why it was legal. For a claimed 6km radius, I would assume this is about 3-7W output.
18.
▲
by
neilwillgettoit
11y ago
It's just a low power FM station with a raspberry pi in it as a controller. It would be highly illegal to use this device in most modern nations without a license.
19.
▲
by
neilwillgettoit
11y ago
This seems like a bad idea. It would make targeting dissent with kinetic means very easy. It's one of the whole reasons that shortwave broadcasts are still around.
20.
▲
How Threat Intelligence can work against you
(medium.com)
2 points
by
neilwillgettoit
11y ago
|
0 comments
21.
▲
by
neilwillgettoit
11y ago
http://www.thetruthaboutguns.com/2015/05/robert-farago/break... It looks like tracking point is closing up shop.
22.
▲
by
neilwillgettoit
11y ago
Do you guys dump anonymized link data into https://threatexchange.fb.com/ ?
23.
▲
by
neilwillgettoit
11y ago
It is known that you guys do regularly use Webroot to scan links in messages, so it's not a stretch that Recorded Future can be setup on a similar type program. http://www.eweek.com/security/facebook-webroot-expand
24.
▲
by
neilwillgettoit
12y ago
they could use some caching for this site.
25.
▲
How Government Can Prepare for and Respond to Social Media Hacks
(youtube.com)
2 points
by
neilwillgettoit
12y ago
|
0 comments
26.
▲
by
neilwillgettoit
12y ago
This sounds like a lot of buzz words.
27.
▲
Gitrob – OSINT gathering tool for GitHub
(michenriksen.com)
63 points
by
neilwillgettoit
12y ago
|
7 comments
28.
▲
by
neilwillgettoit
12y ago
It could be as simple as they saw a bunch of UDP traffic with a spoofed src that was a dprk ip block.
29.
▲
Facebook – Taking Down the Lecpetex Botnet
(facebook.com)
2 points
by
neilwillgettoit
12y ago
|
0 comments
30.
▲
by
neilwillgettoit
12y ago
As a security researcher, the most impressive part of this is the response timeline from Facebook's security team. 3~ hours from first report to temporary patch! That's insane.
More ›