TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

A Theoretically Devastating Cyber Attack on America’s Gas Stations

20 点作者 maerek超过 2 年前

2 条评论

jesvschrist超过 2 年前
Most of the ATG services exposed to the internet seem to be honeypots. GasPot[1] is easy to set up. Looking at ATG services on Censys[2] while filtering out hosts with hundreds of open services (likely honeypots) shows 132 services (as of writing). This is pretty far off from the 11,000 claimed by the article. Including those assumed honeypots still yields less than 700 results[3]. If you poke into some of these you can see that they aren&#x27;t actually gas stations, but some other tank in the middle of a farm field that is running the protocol.<p>[1] <a href="https:&#x2F;&#x2F;github.com&#x2F;sjhilt&#x2F;GasPot" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;sjhilt&#x2F;GasPot</a><p>[2] <a href="https:&#x2F;&#x2F;search.censys.io&#x2F;search?resource=hosts&amp;q=services.name%3A+atg+and+not+services.truncated%3A+true" rel="nofollow">https:&#x2F;&#x2F;search.censys.io&#x2F;search?resource=hosts&amp;q=services.na...</a><p>[3] <a href="https:&#x2F;&#x2F;search.censys.io&#x2F;search?resource=hosts&amp;q=services.name%3A+atg+" rel="nofollow">https:&#x2F;&#x2F;search.censys.io&#x2F;search?resource=hosts&amp;q=services.na...</a>
refulgentis超过 2 年前
This is extremely irresponsible and there&#x27;s no excuse for the article as written. You don&#x27;t provide an instruction manual on on how to mess with 11,000 gas stations without at least documenting some ways you tried to deal with this another way before just publishing it on Medium.