Readit News logoReadit News
neilwillgettoit commented on All Trains in the USA are vulnerable to wireless RF command injection   cisa.gov/news-events/ics-... · Posted by u/neilwillgettoit
neilwillgettoit · 2 months ago
I originally reported this to ICS-CERT in 2012. The American Association of Railroads denied, deflected, and dismissed the claims for 13 years until CISA finally agreed with me that publication was the only option left to pressure the rail industry to fix this vulnerability. This vulnerability is still unfixed in the USA and all rail operations are vulnerable to it. This could lead to inducing brake failures that could cause a derailment and the ability for anyone to shutdown all rail operations across the USA.
neilwillgettoit · 2 months ago
https://github.com/ereuter/PyEOT - Eric did a great job breaking down the protocol that was impacted.
neilwillgettoit commented on All Trains in the USA are vulnerable to wireless RF command injection   cisa.gov/news-events/ics-... · Posted by u/neilwillgettoit
neilwillgettoit · 2 months ago
I originally reported this to ICS-CERT in 2012. The American Association of Railroads denied, deflected, and dismissed the claims for 13 years until CISA finally agreed with me that publication was the only option left to pressure the rail industry to fix this vulnerability. This vulnerability is still unfixed in the USA and all rail operations are vulnerable to it. This could lead to inducing brake failures that could cause a derailment and the ability for anyone to shutdown all rail operations across the USA.
neilwillgettoit commented on CloudFlare Watch   crimeflare.com/... · Posted by u/tard
Jordrok · 10 years ago
No, it really hasn't. In most cases the new reCAPTCHAs actually take longer to solve than the old ones.

The old variant which makes you read street numbers is pretty quick and painless - type in 3 or 4 digits and you're done. With the new one, first you have to figure out what it wants you to identify (street signs? storefronts? lakes? mountains? food?), and then scan through a bunch of small, poorly focused images. Even if you get it right, many times it asks you to complete two or three separate challenges before it lets you through.

The only time the new version is more usable is when you run into the one old variant which is virtually unsolvable.[1] I actually wonder if some of these even have solutions. There have been countless times where it's rejected an answer I was sure was correct.

[1]https://2.bp.blogspot.com/---dJJOn8n9c/U1rZNDiWG1I/AAAAAAAAO...

neilwillgettoit · 9 years ago
Before the switch, 80% of the time I would get the unsolvable ones.
neilwillgettoit commented on CloudFlare Watch   crimeflare.com/... · Posted by u/tard
jgrahamc · 10 years ago
We're making a lot of changes to how we handle Tor: https://support.cloudflare.com/hc/en-us/articles/203306930
neilwillgettoit · 10 years ago
The move to the new reCAPTHA alone has made it a lot more usable for tor users.
neilwillgettoit commented on Show HN: Ten minute secret – share encrypted messages easily   github.com/enricofoltran/... · Posted by u/enricofoltran
tckr · 10 years ago
neilwillgettoit · 10 years ago
That share via email in their demo is just ripe for abuse.
neilwillgettoit commented on Show HN: Refind – The home for the best links on the web    · Posted by u/dominikgro
neilwillgettoit · 10 years ago
I'd rather not be forced to sign up with twitter.

u/neilwillgettoit

KarmaCake day695February 3, 2012View Original