Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
sloshnmosh
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
sloshnmosh
4y ago
Just say No to push notifications! There is a huge problem with spammy push notifications that trick users into accepting push notifications by using fake media players and fake CAPTHAs that if accepted will push all manner of SPAM on victi
2.
▲
by
sloshnmosh
4y ago
Have you gone to the VA? I know our local Vetrans hospital has a small sleep study room for diagnosis and will supply CPAP to those in need.
3.
▲
by
sloshnmosh
5y ago
Walgreens has always tried to harvest every single penny they could squeeze from their customers, mainly by selling the customers PII to anyone and everyone, so this is no big surprise to me. It reminds me of the obnoxious talking gas pumps
4.
▲
by
sloshnmosh
5y ago
I heard that ads were able to circumvent DNS by using canonical names. But uBlock origin and PiHole both do CNAME inspection to block this. Is there other ways that ads are circumventing DNS ad-blockers such as PiHole?
5.
▲
by
sloshnmosh
5y ago
I came here to say the same. I even purchased a LAN throwing star to look to see if my Asus router was sending anything to TrendMicro but never did get around to it. But I will now for sure.
6.
▲
by
sloshnmosh
5y ago
Google is complicit in this by their refusal to ban larger app developers that create malicious apps. Google may kick the malicious app off the play store for a couple weeks and make the developer remove the malware (or obfuscate it better
7.
▲
by
sloshnmosh
5y ago
The software being used to push this malware is from Propeller ads and more recently AdMaven but is protected by Russian DDoS services.
8.
▲
by
sloshnmosh
5y ago
Be VERY careful on accepting push notifications! There is a huge malvertising campaign targeting mobile users (especially Android) that tricks users into accepting push notifications with fake CAPTCHAs or fake media player buttons that push
9.
▲
by
sloshnmosh
5y ago
Hmmm. My tinfoil hat tells me that Comcast may be doing this to tie users Twitter accounts to their real names and addresses.
10.
▲
by
sloshnmosh
5y ago
Excellent article! What’s also very interesting is that the article links to page from TrendMicro about malicious Android apps using Java’s version of SSH to infiltrate internal corporate networks. TrendMicro’s own Android app ALSO containe
11.
▲
by
sloshnmosh
5y ago
I was hoping this was an article about packing different executables into images like I saw on Twitter.
12.
▲
by
sloshnmosh
5y ago
+1 for the zerohedge comment. A few months ago something happened over at Zerohedge.. The site became unviewable with JavaScript disabled so I stopped going to the site. But it looks like they’ve had a change of heart and can now be viewed
13.
▲
by
sloshnmosh
5y ago
Fun fact.. The first 4 smartphones I ever owned all came with preinstalled malware or malware was added after a “security update”
14.
▲
by
sloshnmosh
5y ago
One of the people I follow on Twitter collects old electronics and I’ve seen him do some pretty interesting hacks to boot his vintage devices without using the long-dead original battery. I’ve seen him use 2 different rechargeable battery
15.
▲
by
sloshnmosh
5y ago
As the recent NSO/Pegasus scandal has proved, there is no need to add backdoors into our cellphones. If someone is suspected of a crime a warrant can be issued by a judge and the suspects phone compromised under lawful control of law e
16.
▲
by
sloshnmosh
5y ago
Avast should be avoided completely. They have truly lost their way and have become more of a privacy/security risk than anything. Did you know that Avast has a “confidential collaborator” known as Psafe that has an antivirus/clea
17.
▲
by
sloshnmosh
5y ago
I’ve been tracking a massive mobile malvertising and drive-by malware download operatition for the last several months. The malvertising company is abusing a script found on GitHub called: “alerty” hXXps://github.com/undead2&
18.
▲
by
sloshnmosh
5y ago
Are you sure about that? Facebook has been caught several times doing shady surveillance type stuff on its users. The VPN app that is mentioned in the thread is one. There was another incident years ago when Facebook users were forced to
19.
▲
by
sloshnmosh
5y ago
We have a Crisis Response Team in my city and it has been blessing. I believe they are actually part of the fire department or under their leadership but I could be wrong. The most important thing about the crisis response team is time and
20.
▲
by
sloshnmosh
5y ago
I contacted Amazon to report an advertiser out of Tel Aviv that was using JavaScript hosted on CloudFront to fingerprint user's devices and if an Android device was detected a fake media player or fake CAPTCHA would trick user's i
21.
▲
by
sloshnmosh
5y ago
Hmmm, my pihole is blocking me from viewing the site. I’d check the logs but my cat is on my keyboard. I do have cloudfront blocked which breaks many things, not sure yet if it’s related.
22.
▲
by
sloshnmosh
5y ago
OMG! Yes!! I was a master at this back in the day, and even better at StarGate (Defender2) One of the things about StarGate was that you could write almost a whole sentence if you beat the high score instead of just your initials. I was in
23.
▲
by
sloshnmosh
5y ago
Another development board I’ve been looking at communicates with your old Android phone to use the phones built in sensors called SensoDuino. Has anyone on HN have experience with the SensoDuino? https://www.instructables.com
24.
▲
by
sloshnmosh
5y ago
Thanks @adbachman, I’ve been looking at similar items like this for a home automation project that doesn’t rely on Google or Amazin
25.
▲
by
sloshnmosh
5y ago
I’ve seen an Android app (DFNDR antivirus/cleaner) take over Androids package manager before the user has even opened the application or agreed to any terms of service. If you download the app from Google Play and try and clear the cac
26.
▲
by
sloshnmosh
5y ago
That is exactly how watering-hole websites work, they create a site critical of the attacker.
27.
▲
by
sloshnmosh
5y ago
I uploaded the url to “urlscan(.)io” and it STILL doesn’t load. I’m examining the scripts now. However, there is a blob of JavaScript that doesn’t load into urlscan. Highly suspect. Is this some watering hole?
28.
▲
by
sloshnmosh
5y ago
No kidding. I’m not enabling JavaScript to view some random website. Especially if it mentions NSO Grouo!
29.
▲
by
sloshnmosh
5y ago
Scraping for bikini pics? Reminds me of this lawsuit against Facebook: https://www.wired.com/story/facebook-six4three-bikini-app-la...
30.
▲
by
sloshnmosh
5y ago
I live near that area and had heard and seen a drone above my house in the very early morning before dawn a month ago. I first heard a sound like a swarm of bees overhead but looked up to see the drone. It took off southbound at a high rate
More ›