What is Hackers' Pub?

Hackers' Pub is a place for software engineers to share their knowledge and experience with each other. It's also an ActivityPub-enabled social network, so you can follow your favorite hackers in the fediverse and get their latest posts in your feed.

0
0
0
0

유행어, 밈을 쓰지 않는다고 해서 뒤쳐진 사람도, 깨어있는 박식한 지식인도 아니라고 생각함. 반대로 유행어, 밈을 사용한다고 해서 휩쓸리는 멍청한 사람도, 사회 변화를 앞서서 읽는 트렌디한 사람도 아님. 어쩔 수 없는 사회 현상이 발생했고 거기에 제각각 다르게 반응하는 게 당연하다고 봄. 그러니 누가 밈을 안쓴다고 해서 내가 포기할 필요도, 반대로 누군가 자주 쓴다고 해서 내가 억지로 따라갈 필요도 없는 거 같습니다. 당연히 서로에게 쉽게 붐따날릴 이유도 없음...

0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
1

ホントあちこちでモバイルバッテリーに関する注意喚起が聞かれる時代だからね。安全側に倒すのは不可避だと感じる

中国テック動向:史上最も厳格なモバイルバッテリー新基準が施行へ-日本も対岸の火事ではない、7割の生産能力淘汰が示す「安全+透明化」の新時代|吉川真人@中国テックトレンドニュース note.com/zhenren63/n/nd0532f91

0
0
0
0
0
0
0
0
1
0

About 1.5 years ago my friend was (wrongly) accused of terrorism.

All of their electronic devices were seized, plus my stash of hard drives (stored at their place for reasons).

Of course police didn’t find any evidence. Culprit that framed my friend (and many others) got arrested recently (article in Polish).

Police returned the hardware few months ago and I found that all of my drives are now e-waste thanks to their carelessness, which made me (understandably) furious. I even considered suing them.

Said very good friend of mine entrusted me with their personal phone and pattern to unlock it. I charged and booted it for the first time since February 2024 and were curious how it was pwned. I knew police used cellebrite on it.

My crime is that of curiosity

As it turns out, police forgot to clean after themselves (there was an attempt) and left payloads, logs, and backdoor intact.

Took a peek at the first-stage payload but it’s too complex for me to reverse-engineer on my own. It’s relatively well obfuscated, but I can tell it’s using RNDIS (likely spawning a server?) and TLS-encrypted connection to talk to Cellebrite box.

If you’re a security researcher (or just curious nerd with more spoons than me) and you would like to take a look - here you go.

Payload was uploaded onto the device on 2024-02-21. If you want to re-create the environment it was executed on, you will need a:

  • Samsung Z Flip3 5G (SM-F711B)
  • Android build SP2A_220305.013.F711BXXS2CVHF

Rough execution flow:

1. USB device plugged in (Cellebrite Cheetah)
2. USB controller switches to host mode
3. Gadget switching USB VID/PID to load kernel modules
4. Module 'hid_akeys' leaks memory
5. Screen unlocked
6. ADB key '82:E5:EA:F3:DC:D1:7D:CA:65:3C:D4:58:65:CD:81:8E' added to trusted keys on the device
7. First-stage payload '/data/local/tmp/falcon' copied onto the device.
8. Second-stage payload (seemingly) executed as root:
	- /data/local/tmp/chrome-command-line
	- /data/local/tmp/android-webview-command-line
	- /data/local/tmp/webview-command-line
	- /data/local/tmp/content-shell-command-line
	- /data/local/tmp/frida-server-16.1.4-android-arm64
	- /data/local/tmp/init
9. Data extraction (photos, telegram, firefox, downloads)

# Unanswered question: What the hell is "jtcb.sdylj.axpa" running as root? Seems to have been dropped around the same time...

Have fun!

0
4
0
0

:misskey:​で​:soundcloud:​風に音楽再生できるプレイヤー​:chrome:​拡張機能、お好みにあわせて色々表示いじれるようにしました

1
0
2
0
1
0
0
0

그러니까 대충 ~슨 표현은 어쩌다보니 옛날 남초표현이랑 조금 겹쳤다정도지 딱히 연관성이 뚜렷한 유행어가 아니다 라는게 결론인듯 사실 옛 남초의 슨생님인가 그거는 이제 누굴 지칭할때 쓰는 말이고 여초의 뭐뭐햇슨은 음슴체의 변형인거라

0

이게 일베 발이라는 말이 돌게 된게 '여초에서 유행하는게 꼴보기 싫으니까. 이거 남초발이라고 하자.'는 남초 작당모의가 있었던걸 실시간으로 봤었던 기억이 납니다.

RE: https://bsky.app/profile/did:plc:etrkq5dvaznn75gpawq2bpcq/post/3m6lg2qcxo22m

0
0
0
0
1
0
0
0
0