Jump to content

Nescire

Active Members
  • Posts

    10
  • Joined

  • Last visited

Posts posted by Nescire

  1. Don't know if it was because of his medication but he really often said "not for evil purpose" in ep.0809. And I don't think that he know starts to give legal advice. maybe someone can get some sense out of it, maybe it's like "don't WASTE your time".

    Edit:

    Also noticed in 0810 at 25:50 when Rob asks for a Port to use, Darren says "1337 ... it's not that we're using it for anything else" so i think the port for the darknet is definitly 1337

  2. Need the admin pass? Plug this in. It'd be easy to figure out what the pass was, but it may help cut down on the number of people who know it.

    Yeah sure so you give the usb key which is just performing the admin login via keystrokes to everybody and why would that cut down the number of people knowing the password?

    ...So Maybe i just open a texteditor and look what this nice admin usb key is typing, oh great that the login...

    Not the best idea to use the rubber ducky

  3. Just some ideas to identify if the new USB could be a rubber ducky attacker:

    - First verify if there are already HUID devices aktiv.

    - You can set a limit to a number of allowed HUIDs, if the number is exceeded, new interfaces will be blocked.

    Combined with your recognition method, it would be a good defense, when the system is already running.

    Also you could watch a the input speed and set a limit to allowed keystrokes per second, not that you should watch every keystroke, only a adjustable number in a random time interval, like every x min watch the input speed for 100 strokes. If it is above a human level, disconnect the HUID.

    Just some thoughts that quickly rushed through my mind. Sorry for my bad english, i hope you could guess what i mean ;-)

  4. I just found that very cool tool called UCSniff.

    You can capture complete voip calls with video :D

    And I think it would be really cool to run this on the interceptor. I don't have one myself, but maybe someone else is interested in trying it and share his results :)

  5. what if someone made an always on system... rainbows@home anyone?! (like folding@home)

    I have no clue what you mean, sorry :(

    There was once an interesting IRC Bot where you could lookup hashes from RB-Tables. That is pretty cool if you got inet access but not the space or the bandwith to download a complete table.

    I'm not at home at the moment so could somepne else from the team? Or you have to wait till thursday ;-)

×
×
  • Create New...