asteroza + covert   22

Oh god, smuggling C2 commands in TLS cert subject names. I suppose it should be possible to be bidirectional using both server and client selfsign certs....
covert  channel  TLS  SSL  certificate  subject  name  C2  command  security  hacking  pentesting 
february 2018 by asteroza
On Covert Acoustical Mesh Networks in Air
Oh hey, who has a computing device with both a mic and speaker? Everyone with a smartphone apparently. How useful this could be in say, a revolution/riot scenario. Interesting that the network protocols build on work for submarine communications...
ultrasonic  air  acoustic  covert  mesh  network  security  exfiltration  pentest  research  sound  modem  GUWMANET  adhoc  routing  networking  GUWAL  Fraunhofer  JANUS  ACS  Delicious 
june 2014 by asteroza
Sparrows is a leading manufacturer of lock picks for locksmiths, military and the sporting community.
Shirt cuff links, that contain a hidden handcuff key. Key not universal, but good enough to get you out of most handcuffs. Using this may be breaking the law however. But lets be honest, how often will a cop check your cuff links, since you are likely to be well dressed, and thus at first glance judged to be a low threat/flight risk?
picking  pick  lock  covert  accessories  fashion  hardware  gear  spy  escape  key  handcuff  link  cuff  cufflinks  Delicious 
november 2012 by asteroza

related tags

3G  AA  accessories  acoustic  ACS  adhoc  air  airgap  analysis  arduino  asset  attack  attacks  attribute  audio  battery  batteryless  bluetooth  book  bot  botnet  box  branch  broadcast  bug  C2  calculator  camera  card  CATSeye  certificate  channel  client  clothing  command  communication  communications  compact  covert  credit  creeper  cryptography  cuff  cufflinks  data  Delicious  devices  digital  distributed  DIY  DNS  DVR  ear  earpiece  EchoLink  electronics  embedded  encryption  escape  exfiltration  factor  fashion  flash  flexible  form  Fraunhofer  gear  glogging  GPS  GSM  guide  GUWAL  GUWMANET  hacking  handcuff  hardware  head  headphone  headset  hidden  howto  in-ear  induction  information  JANUS  key  LED  lifestreaming  link  linux  location  lock  magnetic  marvell  memory  mesh  messaging  michal  mobile  modem  monitor  monitoring  mono  mounted  name  network  networking  news  numbers  opensource  openSSL  OPSEC  optical  outdoor  packet  pentest  pentesting  pick  picking  PlugBot  portable  position  powered  prediction  proof-of-concept  protocol  PwnPlug  radio  recorder  recording  reference  remote  reporting  research  review  RF  RFID  rootkit  routing  RSA  safety  SBPA  security  sensor  server  service  SheevaPlug  side  simple  small  smuggling  software  solar  sound  sousveillance  spy  spygear  SSL  station  storage  subject  sunglasses  surveillance  sysadmin  systems  technology  timing  TLS  tools  trackable  tracking  transmission  tunnel  tunneling  ultrasonic  USB  utilities  video  vlogging  wallwart  wearable  wifi  windows  wireless  Zalewski 

Copy this bookmark: