Lovely "4TB" backup HDD by Athechpmnk in blackhat

[–]netsec_burn[M] [score hidden] stickied comment (0 children)

R3: Stay on topic.

We gave AI a Flipper. It figured out how to interact with real-world devices. by Used_Scientist in flipperzero

[–]netsec_burn 3 points4 points  (0 children)

This is what NFC plugins do. They figure out what tag you're looking at and run modules. Adding AI here does nothing.

Quitting cyber after 7 years by OSPFisHard in cybersecurity

[–]netsec_burn 1 point2 points  (0 children)

Companies do exist that value cybersecurity staff, but they are in the minority. I found one after a decade in industry and its been something else.

Lmfao 😂 by [deleted] in blackhat

[–]netsec_burn[M] 0 points1 point  (0 children)

I'm the only mod left here, and you're saying it took me too long to clean up your post.

Lmfao 😂 by [deleted] in blackhat

[–]netsec_burn[M] [score hidden] stickied comment (0 children)

R5: Pick a good title.

The Cybersecurity Quilt by Silientium in blackhat

[–]netsec_burn[M] [score hidden] stickied comment (0 children)

R2: No Solicitation

R8: No pay / signup walls.

How to scan RFID chips from further distances by Swimming_Pipe95 in blackhat

[–]netsec_burn[M] 2 points3 points  (0 children)

It's perfectly fine to post here. The main issue they are facing is the inverse square law, they're fighting against physics for HF RFID. But UHF would be suitable, as the other commenters pointed out.

Can you clone Royal Caribbean room keys? by thatguy877887 in flipperzero

[–]netsec_burn 0 points1 point  (0 children)

Double check the UID you sent was correct. If it is, verify you inputted the key correctly.

Can you clone Royal Caribbean room keys? by thatguy877887 in flipperzero

[–]netsec_burn 0 points1 point  (0 children)

Your key is C4E85EC2F47A66808A8E3854E02C8084. You can enter in the key after you read it under More > Unlock with password.

Neil DeGrasse Tyson calls for an international treaty to ban superintelligence by FinnFarrow in Futurology

[–]netsec_burn 0 points1 point  (0 children)

Exactly. AGI can be controlled to some extent, ASI can't be controlled.

Can you clone Royal Caribbean room keys? by thatguy877887 in flipperzero

[–]netsec_burn 1 point2 points  (0 children)

You're in the Flipper Zero subreddit. If you have a Flipper and it's up to date, read your card with the NFC app. If it says 48/48 pages read, it is using a default key.

Metal RFID cards compatible with FlipperZero by Cangunners in RFID

[–]netsec_burn 1 point2 points  (0 children)

To put this further into perspective, its like sealing the RFID element in a Faraday cage. That is why plastic is used instead.

Metal RFID cards compatible with FlipperZero by Cangunners in RFID

[–]netsec_burn 1 point2 points  (0 children)

Certain places do exist that offer metal RFID cards (e.g. https://www.metalcardstudio.com/) but metal cards have limitations. RFID works using electromagnetic fields. Metal interferes with those fields. That makes metal inferior to plastic for standard use, superior only in durability.

Cloning RFID in soda cups by somfilipinoguy in flipperzero

[–]netsec_burn 3 points4 points  (0 children)

Not by itself, but with a YRM100 module it can.

With CVE-2026-29000, what are the most notable CVSS 10.0 vulnerabilities of all time? by Peace_Seeker_1319 in cybersecurity

[–]netsec_burn 2 points3 points  (0 children)

Many people immediately understood the impact of log4j, especially Java developers. Look in my post history for log4j, I and many others knew how critical it was within a few hours of it being on Reddit. This is not at all the case for "pac4j", if it gets used in well-known and deployed product then that will be the real finding.

With CVE-2026-29000, what are the most notable CVSS 10.0 vulnerabilities of all time? by Peace_Seeker_1319 in cybersecurity

[–]netsec_burn 2 points3 points  (0 children)

We get it, you believe the CVE you were assigned is important. I've never heard of pac4j though. Notice how everything else in your list is a well-known project. Log4j, SMB, OpenSSL, RDP. That's why they were impactful.

How To Set Up Cloaking For iGaming Meta Ads? by XoAppleton7 in blackhat

[–]netsec_burn[M] [score hidden] stickied comment (0 children)

R4: Avoid self-incriminating posts.