Welcome Guest ( Log In | Register )

Outline · [ Standard ] · Linear+

 -OUTDATED-

views
     
TSXaphier
post Feb 27 2011, 08:33 PM, updated 7y ago

Casual
***
Junior Member
495 posts

Joined: Sep 2007


-OUTDATED-

This post has been edited by Xaphier: Jul 5 2019, 03:22 PM
trifecta
post Mar 1 2011, 07:43 AM

Casual
***
Junior Member
495 posts

Joined: Nov 2008
From: Sri Petaling



This is an old exploit, famously deployed by CDC boys (Cult of the Dead Cow)back in mid-90's, remote control.

With advancement of anti-malware etc firewall, the threat of such attack has been reduced.

However, the attack has re-surfaced with the emergence of social network with it complex programming tool etc, like FB. i.e. Firesheep, not only allow the attacker to have a remote view of what you do on your FB but also other stuff and your AV regardless of what brand cant detect it at all.


TSXaphier
post Mar 1 2011, 08:22 AM

Casual
***
Junior Member
495 posts

Joined: Sep 2007


Yea, I heard of Firesheep, but all it does is get get access in your cookie sent/received on the WIFI network and eventually take control on the web account. They doesn't control your PC entirely, so I'm wondering it's still possible to take control a PC nowadays? Say the victim is equipped with the latest AV and OS.
VinluV
post Mar 1 2011, 08:26 AM

Regular
******
Senior Member
1,947 posts

Joined: Nov 2005
latest av and os will still have flaws, there is no 100% secure system.
only ones that can frustrate the hell outta hackers, script kiddies, and delay the inevitable.

your os av will still miss some things from stupid users, like clickjacked pdf files, download of ahem ahem material which has embedded code in the files. etc etc
imin
post Mar 1 2011, 08:28 AM

Enthusiast
*****
Senior Member
818 posts

Joined: Jan 2003
with just IP, no
TSXaphier
post Mar 1 2011, 08:37 AM

Casual
***
Junior Member
495 posts

Joined: Sep 2007


QUOTE(VinluV @ Mar 1 2011, 08:26 AM)
latest av and os will still have flaws, there is no 100% secure system.
only ones that can frustrate the hell outta hackers, script kiddies, and delay the inevitable.

your os av will still miss some things from stupid users, like clickjacked pdf files, download of ahem ahem material which has embedded code in the files. etc etc
*
Assume the user does not download those malicious executable and the attacker only have the victim's IP.
trifecta
post Mar 2 2011, 09:43 PM

Casual
***
Junior Member
495 posts

Joined: Nov 2008
From: Sri Petaling


QUOTE(Xaphier @ Mar 1 2011, 08:37 AM)
Assume the user does not download those malicious executable and the attacker only have the victim's IP.
*
No.
With IPv6, soon even my toaster or fridge will have an IP.
ericongq
post Mar 8 2011, 04:30 PM

Getting Started
**
Junior Member
202 posts

Joined: Apr 2010
From: Butterworth/Teluk Intan/



laptop le?
means all laptop must cover screen ka?
o.O
eXPeri3nc3
post Mar 8 2011, 09:38 PM

It's coming! 3ɔu3ıɹǝdxǝ ♥
*******
Senior Member
9,257 posts

Joined: Aug 2005
From: Not so sure myself Status: 1+3+3=7



QUOTE(trifecta @ Mar 2 2011, 09:43 PM)
No.
With IPv6, soon even my toaster or fridge will have an IP.
*
Lolol XD

--

With that aside if things were that easy we're all screwed. It's doable though, but not easy.
trifecta
post Mar 13 2011, 08:16 AM

Casual
***
Junior Member
495 posts

Joined: Nov 2008
From: Sri Petaling



The idea of interconnected home devices have came along way, as early as the 90's, big home product like Hoover already displaying concept product of internet connected washing machine, refrigerator even home cabinet. I saw the actual conceptual home of interconnected home appliance at Apcort Center in 1999. But back then, there was no such use or apps to make the concept into full fledged product.

So, if you're washing machine is online, has an IP, can be found on the net, chances are, it's open for attack. But of course, some security controls will be in place to reduce the threat surface.

Let's just retrospect the idea remotely hacking someone's handphone back in the 90's or early 2000, nearly impossible. But now, most smartphones are connected to the internet, has an IP...also other unsecured radio communication like Bluetooth, attacking one's mobile phone is no longer just a demo at security conference like Defcons or RSA, but something even a 12 yo can do.
eXPeri3nc3
post Mar 14 2011, 01:05 PM

It's coming! 3ɔu3ıɹǝdxǝ ♥
*******
Senior Member
9,257 posts

Joined: Aug 2005
From: Not so sure myself Status: 1+3+3=7



QUOTE(trifecta @ Mar 13 2011, 08:16 AM)
The idea of interconnected home devices have came along way, as early as the 90's, big home product like Hoover already displaying concept product of internet connected washing machine, refrigerator  even home cabinet. I saw the actual conceptual home of interconnected home appliance at Apcort Center in 1999. But back then, there was no such use or apps to make the concept into full fledged product.

So, if you're washing machine is online, has an IP, can be found on the net, chances are, it's open for attack. But of course, some security controls will be in place to reduce the threat surface.

Let's just retrospect the idea remotely hacking someone's handphone back in the 90's or early 2000, nearly impossible. But now, most smartphones are connected to the internet, has an IP...also other unsecured radio communication like Bluetooth, attacking one's mobile phone is no longer just a demo at security conference like Defcons or RSA, but something even a 12 yo can do.
*
Oh really? I thought your initial post on fridges having IP is just a witty joke. Awesome. Well anything that is 'seen' on the internet will be exposed to attacks.

I guess it's the exposure over there. I don't think you'll see that much of a 12 yo here that is that adventurous.
wanfaris
post Mar 14 2011, 01:20 PM

O_o
******
Senior Member
1,439 posts

Joined: Aug 2010


with IP sp***ing, it possible...... laugh.gif

But, really, FB are not secure anymore...many pages already been hacked....

its not complex as you think actually... sweat.gif
faizfluff
post Mar 14 2011, 01:24 PM

New Member
*
Junior Member
10 posts

Joined: Aug 2009
From: ~~Land of the lost~~


the weakest link is human mind. period.
trifecta
post Mar 14 2011, 06:51 PM

Casual
***
Junior Member
495 posts

Joined: Nov 2008
From: Sri Petaling


QUOTE(eXPeri3nc3 @ Mar 14 2011, 01:05 PM)
Oh really? I thought your initial post on fridges having IP is just a witty joke. Awesome. Well anything that is 'seen' on the internet will be exposed to attacks.

I guess it's the exposure over there. I don't think you'll see that much of a 12 yo here that is that adventurous.
*
only because PC peneration in Malaysia is quite low and programming isn't tought seriously in school until college level.
miss_siti
post Mar 18 2011, 12:51 PM

New Member
*
Junior Member
6 posts

Joined: Mar 2011


Dear All,


We Asia Talk Sdn Bhd now having GREAT PROMOTION for all

these Training Classes.


CCNA = for ONLY RM1599

CCNP = for ONLY RM2800

LINUX = for ONLY RM3500

SECURITY+HACKING = RM1599

GRAB THIS OPPORTUNITY!!



If you are interested, please feel free to contact me Ms. Siti for further details


Ms. Siti

(Information System Consultant)

Asiatalk Sdn. Bhd.

No 1-2, Jln Rampai Niaga 2,

Rampai Business Park, Wangsa Maju,

53300 Kuala Lumpur)

013-2222578

eXPeri3nc3
post Mar 18 2011, 03:46 PM

It's coming! 3ɔu3ıɹǝdxǝ ♥
*******
Senior Member
9,257 posts

Joined: Aug 2005
From: Not so sure myself Status: 1+3+3=7



QUOTE(wanfaris @ Mar 14 2011, 01:20 PM)
with IP sp***ing, it possible...... laugh.gif

But, really, FB are not secure anymore...many pages already been hacked....

its not complex as you think actually... sweat.gif
*
The ideology is simple I guess, like clickjacking, local hosted page but POST to attacker's php script, etc but coding it yourself isn't that really easy. sweat.gif

QUOTE(faizfluff @ Mar 14 2011, 01:24 PM)
the weakest link is human mind. period.
*
Layer 7 FTL

QUOTE(trifecta @ Mar 14 2011, 06:51 PM)
only because PC peneration in Malaysia is quite low and programming isn't tought seriously in school until college level.
*
Hmm. Quite true. By PC penetration you meant the selling of PC in the market, or intrusion?

QUOTE(miss_siti @ Mar 18 2011, 12:51 PM)
» Click to show Spoiler - click again to hide... «

*
Lol Wangsa Maju
et87
post Mar 29 2011, 08:51 AM

New Member
*
Junior Member
38 posts

Joined: Apr 2005


QUOTE(miss_siti @ Mar 18 2011, 12:51 PM)
Dear All,
We Asia Talk Sdn Bhd now having GREAT PROMOTION for all

these Training Classes.
CCNA = for ONLY RM1599

CCNP = for ONLY RM2800

LINUX = for ONLY RM3500

SECURITY+HACKING = RM1599

GRAB THIS OPPORTUNITY!!
If you are interested, please feel free to contact me Ms. Siti for further details 
Ms. Siti

(Information System Consultant)

Asiatalk Sdn. Bhd.

No 1-2, Jln Rampai Niaga 2,

Rampai Business Park, Wangsa Maju,

53300 Kuala Lumpur)

013-2222578
*
I was enjoying reading this interesting post but this sudden reply LoLed me. biggrin.gif
Irbean
post Apr 9 2011, 07:15 PM

Getting Started
**
Junior Member
141 posts

Joined: Feb 2011


erm..kinda interesting..

 

Change to:
| Lo-Fi Version
0.0240sec    0.34    5 queries    GZIP Disabled
Time is now: 22nd December 2025 - 06:43 AM