This is very cool. Definitely seems like either an early or one-time, targeted attack by someone with good know-how and significant resources, even if it itself is not top-tier. Pretty cool find!
in my script kid days, ( 30 years ago ) I did something similar for linux , using raw sockets and I think with ETH_P_ALL. embedding into a an already existing regular linux process ( recompiling the source code ) the problem was high cpu usage of the process when network usage was intensive. of course it did't survive when the OS updated the program.
Nothing, because blackhat activity disqualifies itself from such a label. Recognition is actively withheld since it'd encourage some bad actors. Same reason malicious software is always given a different name even if one can be found in it.
Depends on the target, id consider something like Stuxnet to be top-notch given:
- Delivery
- Target resources (another state)
- Target defenses (I like to think that the iranians had good security)
- Stealthiness
- Target architecture. Its easier to write something for Android (for which we have the OS open sourced) than for siemens PLC
But as others say, you wouldn't want to advertise your exploit as top-notch, as it will bring unwanted attention
> It is a short sequence of raw bytes that only makes sense when read in a specific order.
This kind of useless sentence is what makes reading AI text so miserable
I have to nope out of half the articles I read here lol
I would be much more surprised by a system of commands which could be read in any order.
This is very cool. Definitely seems like either an early or one-time, targeted attack by someone with good know-how and significant resources, even if it itself is not top-tier. Pretty cool find!
in my script kid days, ( 30 years ago ) I did something similar for linux , using raw sockets and I think with ETH_P_ALL. embedding into a an already existing regular linux process ( recompiling the source code ) the problem was high cpu usage of the process when network usage was intensive. of course it did't survive when the OS updated the program.
What would be considered “top-notch” or “top-tier”? Something never found?
Nothing, because blackhat activity disqualifies itself from such a label. Recognition is actively withheld since it'd encourage some bad actors. Same reason malicious software is always given a different name even if one can be found in it.
Depends on the target, id consider something like Stuxnet to be top-notch given: - Delivery - Target resources (another state) - Target defenses (I like to think that the iranians had good security) - Stealthiness - Target architecture. Its easier to write something for Android (for which we have the OS open sourced) than for siemens PLC
But as others say, you wouldn't want to advertise your exploit as top-notch, as it will bring unwanted attention
"Well, you'll never get through the frontline security but you might look for a backdoor."