Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
j027
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
3 ms
·
1.
▲
by
j027
13d ago
Another major issue is google safe browsing whitelists many of these subdomains that the attackers like to host their scam pages on. As a result, even though "Enhanced" safe browsing can use Gemini Nano to do client side detection
2.
▲
by
j027
13d ago
Wow I am surprised to see this. I created a tool that automatically follows ads to try to find scams. But that was usually reserved to typosquat domain ads or ads on porn websites. I didn't know scammers used normal page ads too. I kno
3.
▲
Unauthenticated Root Access to the Enphase IQ Gateway
(j027.net)
2 points
by
j027
2mo ago
|
0 comments
4.
▲
by
j027
2mo ago
I don’t understand this being a “national security” threat. Besides, mobile proxies exist which work differently. All you need is a mobile data plan that you run a proxy server on. It allows for easy IP rotation and since it’s a pool shared
5.
▲
by
j027
3mo ago
Depending on the IP reputation as well as the kind of IP address you have, this can happen. Google also prefers if you have a Google account logged in.
6.
▲
by
j027
3mo ago
Phone verification services exist to give you a real number for the purpose of passing this kind of verification. They even have APIs for these services. They make money since they can use the same number to verify different things.
7.
▲
by
j027
4mo ago
This sounds like some LLM to me
8.
▲
by
j027
5mo ago
To add onto this, cloudflare switched away from recaptcha a while ago. https://blog.cloudflare.com/moving-from-recaptcha-to-hcaptch... I think they now use their own Cloudflare turnstile if I remember correctly, but back th
9.
▲
by
j027
5mo ago
You can still use the audio captcha, but I’m not sure how long that’ll be around.
10.
▲
by
j027
5mo ago
Canvas seems like it’s not that great. But if you then use Blackboard Ultra it makes canvas look amazing.
11.
▲
by
j027
8mo ago
OP here. My university was targeted by a recent phishing attack, and these are my findings. I hope this helps others, but this was my first experience with an Adversary in the Middle (AitM) attack.
12.
▲
Hunting AitM Phishing Infrastructure Using Certificate Transparency
(j027.net)
1 points
by
j027
8mo ago
|
1 comments