ironsoap

joined 1 year ago
[–] [email protected] 2 points 2 months ago

Alternative link non paywalled

https://archive.ph/vY4le

[–] [email protected] 8 points 2 months ago (1 children)

Favorite quote:

But the left's determination has already reassured many politicians. "They can't back out of this, because the first person to do so will end up with their head on a spike," said Sandrine Rousseau, a prominent Green MP.

[–] [email protected] 4 points 2 months ago

Lines Boeing does not want on it's investor reports, especially after the FAA has been hounding them.

** June 6, 1:27 p.m. ET: ** Starliner’s docking has not gone smoothly, the spacecraft developed trouble with its reaction control system thrusters.

[–] [email protected] 23 points 2 months ago (1 children)
[–] [email protected] 25 points 2 months ago (3 children)

If this request worked, it meant that I could use an “encryptedValue” parameter in the API that didn’t have to have a matching account ID.

I sent the request and saw the exact same HTTP response as above! This confirmed that we didn’t need any extra parameters, we could just query any hardware device arbitrarily by just knowing the MAC address (something that we could retrieve by querying a customer by name, fetching their account UUID, then fetching all of their connected devices via their UUID). We now had essentially a full kill chain.

I formed the following HTTP request to update my own device MAC addresses SSID as a proof of concept to update my own hardware:

...

Did it work? It had only given me a blank 200 OK response. I tried re-sending the HTTP request, but the request timed out. My network was offline. The update request must've reset my device.

About 5 minutes later, my network rebooted. The SSID name had been updated to “Curry”. I could write and read from anyone's device using this exploit.

This demonstrated that the API calls to update the device configuration worked. This meant that an attacker could've accessed this API to overwrite configuration settings, access the router, and execute commands on the device. At this point, we had a similar set of permissions as the ISP tech support and could've used this access to exploit any of the millions of Cox devices that were accessible through these APIs.

Blows me a away that an unauthenticated API with sensitive controls and data was publicly facing. Corporations these days want all your data but wonder why some customers are worry about how it is protected, it let alone if it's being sold. Why should I allow you to control my hardware when you can't protect yourself.

[–] [email protected] 7 points 2 months ago

That's 1 of 12 they are requesting. 5 others coming from the US by the end of the year.

Ukraine needs 12 Patriot systems to protect all territory – Zelenskyy staffer

At somewhere around $400 million per system plus another $600 million in interceptors, 12 seems like a tall ask given the limited billions EU countries and others have committed to. But Ukraine has been getting hammered these last several months, so I get the ask.

[–] [email protected] 1 points 2 months ago

Trying to find independent analysis that I read, but can't find it. This will likely have the most impact on swing voters in the 7 states, which are the most important voters in the US. Everyone else is much more likely to have already made their mind up. And remember about 50-66% of the registered voters in the US actually vote even in a presidential year, although the electoral college complicates the proportional representation of those voters.

From Washington post article

With 158 days until Election Day, he is fighting for a plurality of 30 million voters in seven battleground states — a far cry from the tens of thousands of Iowa party activists he courted a year ago. His advisers have long feared that a felony conviction could hurt Trump with independent voters, particularly skeptical suburban women. In places such as the Atlanta suburbs, those voters cost him the 2020 election.

[–] [email protected] 16 points 2 months ago (4 children)

For Lemmy.world a donation would help keep it alive without all the crap. Servers are cheaper then they were, but still not cheap.

Ko-Fi (Donate)

Bunq (Donate)

Open Collective backers and sponsors

Patreon

Liberapay patrons

[–] [email protected] 3 points 3 months ago

Kagi.com

Paid, but less crap.

[–] [email protected] 2 points 3 months ago

Is there any Lemmy bots for admiralcloudberg? Miss his stuff!

view more: ‹ prev next ›