@reverseics@infosec.exchange
If hacktivism was like phishing we'd have:
os command injectionivism
directory traversalism
default credentialivism
brute forcetivism
vncivism
modbusivism
If hacktivism was like phishing we'd have:
os command injectionivism
directory traversalism
default credentialivism
brute forcetivism
vncivism
modbusivism
@reverseics@infosec.exchange @Viss@mastodon.social
Hacktivishing
@reverseics@infosec.exchange Is there a cure for a severe case of ../ism ?
@cR0w@infosec.exchange I read a peer-reviewed journal article that says installing antivirus is a cause of ../ism.
@cR0w@infosec.exchange I read a peer-reviewed journal article that says installing antivirus is a cause of ../ism.
@cR0w@infosec.exchange (while kind of sarcastic and tongue in cheek, this is actually true, which is kind of funny but in a weird and slightly uncomfortable way)
@cR0w@infosec.exchange (while kind of sarcastic and tongue in cheek, this is actually true, which is kind of funny but in a weird and slightly uncomfortable way)
@reverseics@infosec.exchange Which part is real? The declaration? That it's peer journaled? Both seem likely.
@reverseics@infosec.exchange Which part is real? The declaration? That it's peer journaled? Both seem likely.
@cR0w@infosec.exchange that directory traversal exists in some (old) AV.
@cR0w@infosec.exchange that directory traversal exists in some (old) AV.
@cR0w@infosec.exchange
(like here:
https://security.snyk.io/vuln/SNYK-UNMANAGED-CLAMAV-2381227
or here: https://www.clouddefense.ai/cve/2019/CVE-2019-1785
or here:
https://www.exploit-db.com/exploits/40741
)
a coworker of mine was once testing AV engines. this was a long while back. he named a piece of malware %s%s%s%s.exe and the av scanning engine crashed completely. it didn't check the file, and stopping all livescanning.
we are all going to die on this rock.
@cR0w@infosec.exchange
(like here:
https://security.snyk.io/vuln/SNYK-UNMANAGED-CLAMAV-2381227
or here: https://www.clouddefense.ai/cve/2019/CVE-2019-1785
or here:
https://www.exploit-db.com/exploits/40741
)
a coworker of mine was once testing AV engines. this was a long while back. he named a piece of malware %s%s%s%s.exe and the av scanning engine crashed completely. it didn't check the file, and stopping all livescanning.
we are all going to die on this rock.