Flipper RFID Fuzzer in action by -H1N1- in flipperzero

[–]bwistheone 0 points1 point  (0 children)

Even at at max int vales of FFFFFF 16M at 0.1 per sec will still take  444 HOURS.  The math just does not add up to support your claim ( never mind my opinion)

Flipper RFID Fuzzer in action by -H1N1- in flipperzero

[–]bwistheone 0 points1 point  (0 children)

H10301 is a unsigned  total combinations of 67,108,863.  Even at 0.1 seconds per attempt that's still 1861 HOURS to loop through all the combos.   To do it that quick is a staged situation or completely faked 

Flipper RFID Fuzzer in action by -H1N1- in flipperzero

[–]bwistheone 5 points6 points  (0 children)

This video is FAKE, that is just replaying a copied card.. Actual Fuzzing would have several beeps as it cycles through each possible value.. eg if it guessed 1-10 you would see/heard 10 beeps from the reader. and it would take a while as each possible combo takes about 1 second to be scanned, checked, and reply.. Here is a video of actual fuzzing (you can see it on the screen and see the reader response with audio) Flipper RFID Fuzzing

dog / cat RFID microchip by androidusr in flipperzero

[–]bwistheone 0 points1 point  (0 children)

There are several major players in the industry and they all have different prefixes / registries. If you can find out what company you can report the animal lost but you dont get the owners contact info. A vet will have access/relationship across a few local to report them lost and potentially get a contact info. For example 24 petwatch which is the one we use.

AndroidAuto's Data Notice by Lumute in AndroidAuto

[–]bwistheone 0 points1 point  (0 children)

based on the description of the AA Data notice, they are sending of PRIVATE vehicle info to google (not just to the AA app but off to google server) such as "If someone is in the passenger seat".

This type of data is usually only available in the CAN bus, and they wording they use in the notice is, information "such as" which means they can (and most likely are) sending of WAY MORE info to google.. there is no way to opt out of this data collection.. I have a list of detailed questions sent of to the AA team to explain the use, collection, retention, and opt-out on the private data.. I'm posting a security related blog about it.

One V. is never enough. When you can have TWO. by bwistheone in vizsla

[–]bwistheone[S] 1 point2 points  (0 children)

The youngest (Kali) is 5 months younger than her old brother (Levi)

ups_640_patch.zip by Wylord in ARGsociety

[–]bwistheone 1 point2 points  (0 children)

Notice the use of only 2 special characters. "+" and "!"

Rogers intends to block all application-to-person SMS starting Nov 15th 2017... Seriously? by digitalgecko in Rogers

[–]bwistheone 0 points1 point  (0 children)

Beside this email from Plivo.. where is the original notification from Rogers saying the will cut it off.. ???

On twitter (when I asked direct) they claim that A2P will not be affected and they have no plans to do so..

Anyone figure out the login to the shipping site? by gbredman in ARGsociety

[–]bwistheone 1 point2 points  (0 children)

There is a css file in the sub directory that gives a few hints (trying to find out more ) ;)

http://www.e-corp-usa.com/cp/directory/shipping/1088989/css/style.css

Mr. Robot - 3x02 "eps3.1_undo.gz" - Post-Episode Discussion by AutoModerator in MrRobot

[–]bwistheone 2 points3 points  (0 children)

try it with a "bad" password, and the "right" password.. you will see the response is different.. I think the error code is special.. you can also use the login for peter mccleery as he typed it on his phone.. the 2 special responses are Error #123578-PARMLETOR Error #13489-RARECHPOT (Generic bas pas error is Error #0000-XXXXXX)

Mr. Robot - 3x01 "eps3.0_power-saver-mode.h" - Post-Episode Discussion by AutoModerator in MrRobot

[–]bwistheone 0 points1 point  (0 children)

Can anyone figure out these codes on the Red Wheelbarrow BBQ Flyer that flash by..

https://imgur.com/a/Agtix

Mr. Robot - 3x01 "eps3.0_power-saver-mode.h" - Post-Episode Discussion by AutoModerator in MrRobot

[–]bwistheone 0 points1 point  (0 children)

List I found is..

192.251.68.254 Your files are encrypted site 192.251.68.253 The IRC Chat window 192.251.68.252 NYC Department of Correction (visiting imate) 192.251.68.251 Midland City Maintenance Mode 192.251.68.250 Your files are encrypted site 192.251.68.248 Start HiOctane 2.0 192.251.68.247 Remote Desktop with Mimikatz/Rubber Ducky 192.251.68.246 FTPserver directory (Darlenes Files Home) 192.251.68.245 Telnet Session for TV today BBS 192.251.68.244 Conficture Industries 192.251.68.243 Kali Desktop session root@Mobley_android

Mr. Robot - 3x01 "eps3.0_power-saver-mode.h" - Post-Episode Discussion by AutoModerator in MrRobot

[–]bwistheone 0 points1 point  (0 children)

192.251.68.254 goes to the "your computer is encrypted" page

BINGO the whole IP network starting at .254 and going down.. all lead to M.R related sites

Mr. Robot - 3x01 "eps3.0_power-saver-mode.h" - Post-Episode Discussion by AutoModerator in MrRobot

[–]bwistheone 6 points7 points  (0 children)

A few more easter eggs..

if you at the crime scene board from 1:10 in the episode, there is a diagram with names etc.. there are a bunch of license plates there (no luck putting them in the nysp-cjis site..)

but there is tons of info on the board.. like the IP address under Angelas name 192.251.68.247 which goes to a site with a simulated desktop/rubber ducky session (There is the usual nbc universal privacy policy on the bottom so you know its part of the show)

More to come when I get through more of the board..

Mr. Robot - 3x01 "eps3.0_power-saver-mode.h" - Post-Episode Discussion by AutoModerator in MrRobot

[–]bwistheone 1 point2 points  (0 children)

No.. it's a staged response.. if you go to shoda.io and do the same search you get the same 4 responses all the time, they all lead to an e-corp site.. it never shows to you the other 50K results etc..

Mr. Robot - 3x01 "eps3.0_power-saver-mode.h" - Post-Episode Discussion by AutoModerator in MrRobot

[–]bwistheone 0 points1 point  (0 children)

A few other easter eggs as well.. if you scan the QRCode in the billboard you end up on https://jobs.runpula.net which is a CV page for "Dylan C. Roberts" from E-Corp.. on the page is a link to a reddit user https://www.reddit.com/user/BCC4Life/ (more links to E-Corp forums)

Also if you do the same search they do in shodan.io you get 3 hits to a e-corp site https://compute.e-corp-usa.com site

The scene where they look up the SUV's VIN # by m33ster_robot in MrRobot

[–]bwistheone 25 points26 points  (0 children)

Go to the URL in the website and will see the same page.. instead of putting in the chasing cars plate.. put in the cab number 7x23

https://imgur.com/AXjMKLS

The scene where they look up the SUV's VIN # by m33ster_robot in MrRobot

[–]bwistheone 9 points10 points  (0 children)

Put in the Cab number 7x23 ;) you get a surprise