TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Cheap rj45 ethernet to USB adapter contains malware

32 点作者 rsecora4 个月前

8 条评论

elfchief4 个月前
It&#x27;s worth noting that there&#x27;s basically zero proper evidence that there is any malware included with this device -- it runs an exe when inserted, but that exe appears, at a glance, to be a driver installer. Definitely not the right way to do things, but there&#x27;s a difference between &quot;incompetent&quot; and &quot;malicious&quot;.<p>The only actual &quot;evidence&quot; that was provided was a link to a falcon sandbox run, something which actually requires human analysis to draw conclusions about -- and anyone who has ever used it <i>knows</i> how many false positives it finds.<p>A better proclamation might be &quot;cheap network adapter comes with an auto-running executable which needs further analysis&quot;.
评论 #42680428 未加载
gruez4 个月前
Seems light on details. How is it executing the payload? Is it doing something like badusb where it emulates a keyboard to run the payload? Wouldn&#x27;t that be super obvious? Or is it something as simple as telling the user to install a &quot;driver&quot;?
评论 #42680012 未加载
评论 #42687221 未加载
评论 #42679876 未加载
necovek4 个月前
I liked the graceful admission of error too: <a href="https:&#x2F;&#x2F;x.com&#x2F;evapro30&#x2F;status&#x2F;1880123024474796107" rel="nofollow">https:&#x2F;&#x2F;x.com&#x2F;evapro30&#x2F;status&#x2F;1880123024474796107</a>
评论 #42749187 未加载
BenjiWiebe4 个月前
Twitter is terrible and I can&#x27;t remember the nitter instance that still works.
评论 #42679837 未加载
IamLoading4 个月前
Reverse engineering by OALabs - <a href="https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=3IfJSGWIrCo" rel="nofollow">https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=3IfJSGWIrCo</a><p>Current verdict - not malware.
ChrisArchitect4 个月前
Related blog post: <a href="https:&#x2F;&#x2F;epcyber.com&#x2F;blog&#x2F;f&#x2F;chinese-rj45-usb-with-flash-memory-exe-recognized-as-malware" rel="nofollow">https:&#x2F;&#x2F;epcyber.com&#x2F;blog&#x2F;f&#x2F;chinese-rj45-usb-with-flash-memor...</a>
fishstock254 个月前
&quot;The chinese&quot; yeah sure. Lmao. Everybody panic, there are two chips inside!<p>Check out <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=42743033#42743428">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=42743033#42743428</a> for more lulz
IronWolve4 个月前
It ain&#x27;t just twitter that has armchair experts that are rude. Most social media sites allow this behavior. So many replies with horrible posts &quot;your doing it wrong&quot;, &quot;read the docs&quot;, etc.<p>I&#x27;ve seen so many correct responses downvoted and with horrible replies. Anyone who used old moderated email lists will see how culture changed and the decline of actual conversation. Even stack overflow has went downhill.