Posts by zerofool2005
302 posts • joined Wednesday 19th November 2008 07:23 GMT
Sky News Video
The video made me laugh, "guys were making a section about the sale of the source code for a virus, we need some code to slide across the screen to make it look 'cool'"
"okay boss"
So he just copies and paste's the HTML for sky news homepage....
Encryption, What encryption?
The data isnt encrypted inside the terminal (physically) and along the wire to the POS terminal.
There has been cases of PS2 keyloggers being installed and logging in cleartext.
Maurice Moss
Did anybody notice the message on the screen from "Maurice Moss" i.e Moss from IT Crowd.
It was a reference to the FIRE email.
That made my weekend :)
Demand
There is demand for break SKY smartcards, problem is NDS are too quick fixing the damn thing whenever it does get cracked. They have many versions of the encryption just waiting to be used...
Problems
You still have the same problem with if the software can be broken in the machine reading the cards it can just ignore the results and make its own votes.
Multiple Protection
The Android has multiple levels of protection to stop this from happening. You have to enable third party sources to allow this app to install and also the screen when installing shows what actions the app will do. Such as accessing the internet. So if a meadiaplayer shows as having the ability to send SMS, you would have to be stupid to allow it to install.
Naivety?
You naivety with that statement shocks me, if they have your login details they can sell them on. Just because they have 60 million to wade through doesn't mean they "wont" use yours. Then use automated scripts to check accounts too
Nothing new
This is nothing new free phasing pages on forums are always backdoored
3V Card
3V Card is good. You top it up at PayPoint locations such as the newsagents and the receipt they give you has a Visa number with CVV and expiry on it. You can top up £20 for free or pay I think £1.50 for topping up another amount.
There are quite a few pre-paid suppliers in the UK, but not as many as the US
Status'
She posts her FaceBook status in Russian too
Driving etc
Im preety sure (but dont quote me on this) that the engine cannot be started unless the card is put into the ticket machiene. Judging by that it was showing as being alive in the video it would seem the driver left it in. Hence hitting the big red "start" button and driving off was all that is required.
wtf? re:wtf?
Of course you are tranmitting. Hence "wireless"
And have you not heard of the reply feature that has graced our pages for many a month?
Own Code
I have to wonder why on earth FB decide that its a good idea to let people have their own code on these pages. Otherwise how do they load up the iframes?
Win 2K
You can make XP/Vista/7 have the old school explorer bars that 2K has.
brahh
You can legally "hack" a system if you have permission.
I don't really need Google to provide such a system most of the time. You find this type of thing. Even on BANK websites!
Backdoor
It's not a backdoor per say,
Its the default password for the Engineers Menu
Risk
Your ISP will still monitor who is using that IP at that time. When it gets a notice to release information from a court it will look up its DB and know who was assigned that IP at that time.
Good thing about this though. The stupidity of anti-piracy organisations is that they usually get times/dates wrong.
.....lolwhut
Ive read 4 pages (about half) of that PDF and come to a conclusion. Its nothing new. All they do is download all the new torrents from a public tracker. For which hopefully there will only be one seeder and no peers and scrape the server for the IP information of the seeder. They also go on a bit for confirming the IP is the uploader etc
They're language used in this PDF makes it confusing they use "Inject" and "Exploit" as terms that would not usually be associated at the same meaning.
SQL Injection
At the time release of this article. Their website was plagued by SQL injection exploits. This was the first time I had visited it and could count at least 5. It seems their "security" team had used a completely new test system as live. Damn idiots.
Oh dear
If your not going to protect your own content. Dont whinge about it
Google, Bing etc are nice. And follow robots.txt files. If you tell them not to index your news stories. Or you issue a shorter version to their useragents you wont have this problem.
So don't go "standing up" to them. it makes you look stupid.
Here we go again.....
What is the chance that you was doing something at that exact time that your boss just happened to see that he/she just happened to manage to recognise you?
Have you even seen pictures with just a black box over the eyes. it makes people very hard to recognise....
Booze
The time i see this. Is on the way to the pub.
Law
If you are stopped. You are well within your rights to just walk away. A copper stopping you in the street is just like a friend.
He has to arrest you to make you do anything.
Caching
Streaming data is also cached. Its cached in memory to create a better viewing experience. How do the BEEB define this APP as caching being bad!
Cake
"but I've sometimes wondered what's to stop somebody from simply serving a different file when Google asks for it than what rest of us get."
This is done plenty of times. There is lots of content on news websites that is indexed by Google and requires you to "login" or "purchase" to view.
Change your user-agent to Googlebot and you see a different world.
Not Exactly
There is plenty of software on Linux that isnt included in the package manager. That you have to manually update. And be notified of updates for
Jesus Christ How old?
How old is this research. Ive seen bot sources as late back as 2006/07 that incorporated VM scanning functions and other sandbox software.
Old News...
Ive seen this been talked about before. These Cambridge researchers seem to always latch onto something that is like 6 months old.
Ive even disucssed with my business partner about the systems used "if pin.verified==TRUE { process.transaction }
Force pin.verified to be TRUE spoofing etc. process.transaction will occur.
True, But 9 Years?
Its took them 9 years to do said Audit. "No evidence of a breach"
They cleaned up after being there 2 years maybe?
abed_uk
http://www.xav.com/scripts/axs/whois.pl?a=lh.org
Listed as contact in that whois too...
WHUT!?!?!
Ex-Admin gets backup of DB
Sends to a newspaper.......
What does he expect to get? Its not like its Expenses records
Spotify
Spotify is doing this. Its doing it well. And its making a profit
@Anonymous 16
Theyre talking about Packet Injection phising.
Where fields are added to web forms
@David 45
Asda and what not usually have uni-sex changing rooms. Its only the proper clothes shops that split the sex's up
DRM on film?
I thought that even though this is shown in 3D. They still use film! Not digital disk or what not. The IMAX 3D still does. How can you get DRM on film?
WHY oh WHY
Why dont they keep logs of user activity. Such as who accesses the email from what IP etc and what emails they read?!
FBI Presentation about this
http://www.abovetopsecret.com/forum/thread350381/pg1
I like the slide that shows the US Navy bought some of these counterfeit ones.......
3D Glasses
Just to annoy us. They are doing 3D in Yellow/Red instead of Blue/Red
That means you can only use the "official" ones instead of any others you may have....
The polarizing lense ones work a lot better. but Im guessing the picture has to be in HD to work properly...
Broken
I saw this but I just thought it was my web browser on the tiff
Understanding
The way I understand this?
Google is going to be indexing spreadsheets uploaded to Google Docs on google?
So what happenes when a comapny account ends up on Google!?!?!
Proxy
Who bets that the information captured. Is just the information of a proxy they where using.
Thus some poor person in the UK will be raided and have no connection to it.
Helen
http://twitter.com/BouncyHelen
http://www.youtube.com/watch?v=HDPv7PshWqY&NR=1
http://www.youtube.com/watch?v=U1pz38mFTLw&feature=related
http://www.youtube.com/watch?v=v1sKn1Jm2jk&feature=related
Big Toilet?
Either she was really quite small. Or that was on big hole. But how did she get her shoulders in the damn thing!
Security Guard?
Why did the security guard arrive 1:30minutes after they had left. Added to the 31 seconds it took. It took him two minutes to even notice
WTF
I thought the polarising lenses3d that every disney film is in now qorked because they used two cameras one at an angle and showed both images together.
How can they turn the 2D to 3D
Share Alike
Ive read this book twice now. But isnt it that people want to share the book with others so they donate it to the charity shop. Not just they dont like the book
Auto-Update
GregC Pidgin when it loads checks for an update. And tells you to download t.
@carey pridgeon
carey pridgeon,
Spoofind will be easier than this. As apps just post the location data with the API. There will be no way for twitter to be able to verify this without being associated with the network provider.
Im just waiting for the tweets ("On the Toilet, GPS Corodinates:...etc")
American Cars
Wait, American cars are huge bulky things that eat petrol like i breath Air. Imagine an American F1 car. Its going to be like a hummer and into the pits every lap.
Opinion
David McLeman
Tim Worstall
Chris Mellor
Popular Stories
Features