linuxct (inactive)

6.3K posts

linuxct (inactive)

linuxct (inactive)

@linuxct

Not active on Twitter anymore. Find me elsewhere!

Joined Ağustos 2015
175 Following7.3K Followers
Pinned Tweet
linuxct (inactive)
linuxct (inactive)@linuxct·
Hey, I am also on that Mastodon thing where all the cool peeps are moving! Mutuals already there, feel free to follow and I will follow you back :) For some toots: @linuxct@androiddev.social @linuxct" target="_blank" rel="nofollow noopener">androiddev.social/@linuxct
English
7
1
33
0
linuxct (inactive)
linuxct (inactive)@linuxct·
hey, I have decided I will be perma-deactivating my account in the next 24hrs. this is unrelated to the stuff happening on twitter itself, but more of a personal choice/mental health related. if you want to reach out, you probably know how. so long, and thanks for all the fish ☺️
English
7
1
99
33.8K
f4mi ‼️
f4mi ‼️@f4micom·
Like I can even easily turn this into a Mac shortcut since it’s just an POST request to your website, I just wanted to made sure you know this since idk if you want this to be this exploitable or not, it you need details you can DM me here lol
English
4
1
45
5.3K
f4mi ‼️
f4mi ‼️@f4micom·
hey @Ableton there are a few music apps on the App Store which include a free license to Live Lite 11 but all they do is open an internal browser page to a sniffable https clear web link where you can potentially generate infinite licenses without any checks, is this intentional?
f4mi ‼️ tweet media
English
24
6
172
20.2K
linuxct (inactive)
linuxct (inactive)@linuxct·
@PablockMS Que prompt xD Also curiosidad del software de la pantalla, qué se habrá inventao?
Español
0
0
0
131
f4mi ‼️
f4mi ‼️@f4micom·
Showcase of My New Product Designed For This Third Web Iteration
English
17
25
344
26.9K
odbol
odbol@odbol·
@linuxct @f4micom Even easier if you use the accelerometer since that doesn't need special permission like the microphone
English
1
0
3
455
f4mi ‼️
f4mi ‼️@f4micom·
github.com/ggerganov/kbd-… this tool lets you extract text from an audio recording of keyboard strokes, right now, for free i am not making this shit up, you can potentially steal a password from an audio recording in an office
f4mi ‼️ tweet media
English
112
710
4.7K
1.1M
Pickle Me
Pickle Me@PickledeBarbens·
Lo important és tenir salut
linuxct (inactive)@linuxct

@f4micom I work in the mobile payments security industry, and one interesting attack is abusing the microphone of a smartphone that's being used as a PoS to detect where the user placed their finger on a PIN pad shown on the screen.. That's just one more example of side-channel attacks :)

Català
1
1
2
490
linuxct (inactive)
linuxct (inactive)@linuxct·
@NoTubeZone @f4micom Hmm those in particular use the lockscreen itself, we are talking about apps the merchants would run on their phone to collect money from a purchaser, like in a store. When a transaction is above the card limit, it needs to request a CVM such as PIN through a custom keyboard…
English
0
0
0
204
Redka
Redka@NoTubeZone·
@linuxct @f4micom You talking about sum Pax and ingenico devices ain't ya ?
English
1
0
0
563
linuxct (inactive)
linuxct (inactive)@linuxct·
@_xs @f4micom Yes, this is very true. I have seen implementations that use external seeding on mobile devices as well, given that the comms channel is considered secure enough to transfer seeds. It's a nice technique indeed :)
English
0
0
2
141
Orange
Orange@_xs·
@linuxct @f4micom Random digits that the user puts in prior to the real input. I can imagine some of those methods becoming more common place if we keep using pin codes for things
English
1
0
2
177
linuxct (inactive)
linuxct (inactive)@linuxct·
@f4micom The same goes for the camera (image tilt and angle of inclination), the gyroscope and accelerometer, as these (isolated or combined) can bring representative data as to how a screen is being pressed
English
1
1
17
879
linuxct (inactive)
linuxct (inactive)@linuxct·
@f4micom I work in the mobile payments security industry, and one interesting attack is abusing the microphone of a smartphone that's being used as a PoS to detect where the user placed their finger on a PIN pad shown on the screen.. That's just one more example of side-channel attacks :)
English
8
10
386
47.6K
† lucia scarlet 🩸
† lucia scarlet 🩸@luciascarlet·
why does Pantheon "just work" in fucking NixOS of all things
English
7
0
24
2.3K
linuxct (inactive) retweeted
faulty *ptrrr
faulty *ptrrr@0x_shaq·
nobody: iOS hackers:
English
12
224
1.1K
0
stacksmashing
stacksmashing@ghidraninja·
I just want a paid version of ChatGPT that makes it stop saying "As an AI language model..."
English
7
3
56
8.9K
linuxct (inactive)
linuxct (inactive)@linuxct·
Good moment to remind that the 🐘 social network still exists, link in my pinned tweet
English
0
0
4
12.5K