Author Topic: BurnTOR downloads: The Case of the Modified Binaries.  (Read 435 times)

0 Members and 1 Guest are viewing this topic.

Offline kenjoe41

  • Symphorophiliac Programmer
  • Administrator
  • Baron
  • *
  • Posts: 990
  • Cookies: 224
    • View Profile
BurnTOR downloads: The Case of the Modified Binaries.
« on: October 30, 2014, 07:00:05 pm »
Quote
Summary

After creating and using a new exitmap module, I found downloaded binaries being patched through a Tor exit node in Russia.  Tor is a wonderful tool for protecting the identity of journalists, their sources, and even regular users around the world; however, anonymity does not guarantee security. 
http://www.leviathansecurity.com/blog/the-case-of-the-modified-binaries/
If you can't explain it to a 6 year old, you don't understand it yourself.
http://upload.alpha.evilzone.org/index.php?page=img&img=GwkGGneGR7Pl222zVGmNTjerkhkYNGtBuiYXkpyNv4ScOAWQu0-Y8[<NgGw/hsq]>EvbQrOrousk[/img]

Offline proxx

  • Avatarception
  • Global Moderator
  • Titan
  • *
  • Posts: 2803
  • Cookies: 256
  • ФФФ
    • View Profile
Re: BurnTOR downloads: The Case of the Modified Binaries.
« Reply #1 on: October 30, 2014, 07:02:55 pm »
They have checksums for that, pretty much default on package managers etc.
« Last Edit: October 30, 2014, 07:03:03 pm by proxx »
Wtf where you thinking with that signature? - Phage.
This was another little experiment *evillaughter - Proxx.
Evilception... - Phage

Offline kenjoe41

  • Symphorophiliac Programmer
  • Administrator
  • Baron
  • *
  • Posts: 990
  • Cookies: 224
    • View Profile
Re: BurnTOR downloads: The Case of the Modified Binaries.
« Reply #2 on: October 30, 2014, 07:45:29 pm »
Most morons don't remember to verify what they have downloaded most of the time. Your download through the package manager is safe but what about you .exe download from that trusted site softpedia?
If you can't explain it to a 6 year old, you don't understand it yourself.
http://upload.alpha.evilzone.org/index.php?page=img&img=GwkGGneGR7Pl222zVGmNTjerkhkYNGtBuiYXkpyNv4ScOAWQu0-Y8[<NgGw/hsq]>EvbQrOrousk[/img]

Offline proxx

  • Avatarception
  • Global Moderator
  • Titan
  • *
  • Posts: 2803
  • Cookies: 256
  • ФФФ
    • View Profile
Re: BurnTOR downloads: The Case of the Modified Binaries.
« Reply #3 on: October 30, 2014, 08:20:05 pm »
Most morons don't remember to verify what they have downloaded most of the time. Your download through the package manager is safe but what about you .exe download from that trusted site softpedia?
I don't trust softpedia.
SSL is effective enough against this.
Don't really see the point here.

Wtf where you thinking with that signature? - Phage.
This was another little experiment *evillaughter - Proxx.
Evilception... - Phage

Offline Nortcele

  • Knight
  • **
  • Posts: 211
  • Cookies: -42
  • █+█=██
    • View Profile
Re: BurnTOR downloads: The Case of the Modified Binaries.
« Reply #4 on: October 31, 2014, 10:29:21 am »
I don't trust softpedia.
SSL is effective enough against this.
Don't really see the point here.

Softpedia scares me
~JaySec
~LulzBlog

TAKE A COOKIE!




0100000101010011010000110100100101001001