XuckFitter

9 posts

XuckFitter

XuckFitter

@XuckFitter

Katılım Şubat 2024
3 Takip Edilen8 Takipçiler
XuckFitter
XuckFitter@XuckFitter·
@preppycx @fs0c131y APTs could have RCE on the device. Not necessarily an attacker that has physical access to the device.
English
1
0
0
29
Rich
Rich@preppycx·
@fs0c131y This absolutely doesn’t matter. To perform this kind of action an attacker need access to your phone. And if he got his hands on the device, he need to know the code and even if he knows the code - the least thing you need to worry about is this app
English
2
0
3
384
Baptiste Robert
Baptiste Robert@fs0c131y·
Je confirme, Paul is right
Paul Moore - Security Consultant @Paul_Reviews

Hacking the #EU #AgeVerification app in under 2 minutes. During setup, the app asks you to create a PIN. After entry, the app *encrypts* it and saves it in the shared_prefs directory. 1. It shouldn't be encrypted at all - that's a really poor design. 2. It's not cryptographically tied to the vault which contains the identity data. So, an attacker can simply remove the PinEnc/PinIV values from the shared_prefs file and restart the app. After choosing a different PIN, the app presents credentials created under the old profile and let's the attacker present them as valid. Other issues: 1. Rate limiting is an incrementing number in the same config file. Just reset it to 0 and keep trying. 2. "UseBiometricAuth" is a boolean, also in the same file. Set it to false and it just skips that step. Seriously @vonderleyen - this product will be the catalyst for an enormous breach at some point. It's just a matter of time.

Português
13
67
470
90.8K
DAKKADAKKA
DAKKADAKKA@DAKKADAKKA1·
Man. She really is literally a midget. lol
English
8
6
385
5.5K
Cartoon Base
Cartoon Base@TheCartoonBase·
Welcome cuter baby animals.
Cartoon Base tweet media
English
262
4.4K
64.3K
2M
Sen. Elissa Slotkin
Sen. Elissa Slotkin@SenatorSlotkin·
We want to speak directly to members of the Military and the Intelligence Community. The American people need you to stand up for our laws and our Constitution. Don’t give up the ship.
English
26.4K
11.7K
33.4K
18.6M
HUNTER AVALLONE
HUNTER AVALLONE@HunterAA6·
The right is so violent and bloodthirsty, even their Halloween celebrations include assaulting people they don’t like
English
1K
2.1K
35.5K
2.1M
XuckFitter
XuckFitter@XuckFitter·
@AaronBastani Posting AI because otherwise the leftist lies are indefensible 🤡🤡 This is why you lose, you have nothing but lies. Your entire worldview is a delusion. WAGTFKY
English
0
0
1
23
Aaron Bastani
Aaron Bastani@AaronBastani·
Even the Millwall bushwhackers in the early 90s looked like the United Nations 🤣 Presumably this would be ‘yookay’ now? Back then we thought it was normal.
Aaron Bastani tweet media
English
359
42
1.5K
13.9M
Immor Tanzit (She/Her/Yeye)
Immor Tanzit (She/Her/Yeye)@ImmortanZit·
@TheBritLad I'm guessing those two white men dressed up as trans in order to mock the trans community, and trans allies in the Muslim community were having none of that! ☪️⚧️
English
76
1
52
13K
The British Patriot
The British Patriot@TheBritLad·
Last night in Manchester's Piccadilly Gardens: illegal migrants viciously beat "trans" people for dressing like women. Just a week after Muslims told the far-left they're NOT on the same side in tower hamlets. Have the deluded left received the message yet?
English
5.6K
10.6K
55K
5.8M
XuckFitter
XuckFitter@XuckFitter·
@br0ketr4der @Steve_Laws_ They'll keep supporting them even after that. Leftists are 100% brainwashed; demoralized as Yuri Bezmenov put it. There are records of communists in the USSR during Stalin's purges, shouting "Long Live Stalin!" as they are getting executed by the NKVD, on Stalin's orders.
English
0
0
2
44
Nightwatch
Nightwatch@br0ketr4der·
@Steve_Laws_ They'll just lie to themselves and say "it was just one guy". They'll support them until the day the boot of their "allies" is in their neck.
English
1
0
160
3.2K
❥ hazel ︻デ═一
❥ hazel ︻デ═一@BluebriarArts·
Yet another example of the “everything I don’t like is botted” effect
GIF
English
2
5
230
3.6K