HN user

marysol5

162 karma
Posts0
Comments341
View on HN
No posts found.

Had that in /old job/ years ago, every security report would list off a load of packages that needed updating. Problem was, not only were they not actual vulnerabilities but they were all for some legacy software that was in the process of being removed.

Was always fun to purge a load of systems from old shit, and watch the counter drop.

Alternatively, you might shrug and wait to see which of these will get a logo and catchy name in the next few weeks and then try to focus on those.

hehehe

Another approach might be to sit back, have a nice cup of zen, and just always pull all updates and then update your entire fleet of systems on a weekly basis, which, yes, I sure would like to be able to do, but reality keeps getting in my way.

Am I the only one that gets concerned about the laissez-faire approach to security that a LOT of people take. I get that some exploits are not like the others, but some of the shit I've seen in places....

Why do people just invent this absolute bullshit.

No there isn't. even people who have been prosecuted for refusing to decrypt data, it takes a lot of working by the prosecution to PROVE it's encrypted and not just "random data".

I'm from the UK and have been in court with encrypted data myself.....

It does, but it's extremely unusual for the feature to be in use on modern hardware.

FAT is a filesystem, it isn't hardware. They're talking about the table storing numbers of bad sectors/blocks.

The system you just described is exactly what TrueCrypt did, where if you overwrote the capacity and into the "hidden" data, you'd end up killing the hidden partition.

A cursory X-Ray would show the internal SD. This product needs a hardware re-design (which I've seen other projects do) to have onboard flash instead.

Saying that, any proper investigation would read the firmware from the flash and identify the decryption routing anyway

The military really doesn’t have "much smarter people", the intelligent people are all in private industry, then LEO, THEN the military.

The military is stuffed full of grunts who are just there for the pay, and in many cases, conscription.

You can throw all the money you want at something, it doesn't make it work, just look at the US military

Yeah the SD card is going to be glaring for anybody with actual investigation into this device.

But saying that, the sheer amount of fake flash storage out there now, that's just a glorified USB-SD reader in a box.

I'm confused here, what are you trying to detect?

You're not going to get the uA level of detection to be able to decipher between a R/W operation and some sort of crypto in the CPU with these cheap components.

Another day, another one of these projects.

With Phantomdrive, hopefully you’ll slip past authoritarian government representatives, corrupt police, and anyone else that doesn’t respect basic encryption rights.

Apart from the SD card on the board making it obvious something is going on, and the iron bar comes out

Very much so, nothing was done to even give them opportunities to get work anywhere else either. And then on top of that the Tories destroyed everything else.

The other side of that is where there was a factory for the villagers to work in, and everybody had a wage, and a community.

The factory is now all robots, and only 3 people have a job there.