Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. trying a new thing, have 3D printed a QR code and put it on the front porch

trying a new thing, have 3D printed a QR code and put it on the front porch

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
infosec
41 Indlæg 31 Posters 0 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • secureowl@infosec.exchangeS secureowl@infosec.exchange

    trying a new thing, have 3D printed a QR code and put it on the front porch

    QR code triggers a canary token

    want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

    #infosec

    aburka@hachyderm.ioA This user is from outside of this forum
    aburka@hachyderm.ioA This user is from outside of this forum
    aburka@hachyderm.io
    wrote sidst redigeret af
    #11

    @SecureOwl my neighbor's whole doormat is a qr code

    yes it's a rickroll obviously

    drwho@masto.hackers.townD 1 Reply Last reply
    0
    • secureowl@infosec.exchangeS secureowl@infosec.exchange

      trying a new thing, have 3D printed a QR code and put it on the front porch

      QR code triggers a canary token

      want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

      #infosec

      drwho@masto.hackers.townD This user is from outside of this forum
      drwho@masto.hackers.townD This user is from outside of this forum
      drwho@masto.hackers.town
      wrote sidst redigeret af
      #12

      @SecureOwl I need to try that.

      1 Reply Last reply
      0
      • aburka@hachyderm.ioA aburka@hachyderm.io

        @SecureOwl my neighbor's whole doormat is a qr code

        yes it's a rickroll obviously

        drwho@masto.hackers.townD This user is from outside of this forum
        drwho@masto.hackers.townD This user is from outside of this forum
        drwho@masto.hackers.town
        wrote sidst redigeret af
        #13

        @aburka @SecureOwl

        1 Reply Last reply
        0
        • cr0w@infosec.exchangeC cr0w@infosec.exchange

          @iagox86 @SecureOwl How do QR canaries work? Is it based on the DNS query? The GET when they click the link? Or do the QR scanners try and retrieve something like a preview even without clicking the link?

          secureowl@infosec.exchangeS This user is from outside of this forum
          secureowl@infosec.exchangeS This user is from outside of this forum
          secureowl@infosec.exchange
          wrote sidst redigeret af
          #14

          @cR0w @iagox86 get request i believe

          1 Reply Last reply
          0
          • secureowl@infosec.exchangeS secureowl@infosec.exchange

            trying a new thing, have 3D printed a QR code and put it on the front porch

            QR code triggers a canary token

            want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

            #infosec

            amd@gts.amd.imA This user is from outside of this forum
            amd@gts.amd.imA This user is from outside of this forum
            amd@gts.amd.im
            wrote sidst redigeret af
            #15

            @SecureOwl I love the question that you’re asking but I really don’t know how this would prove it…

            Are AI image scanners known to parse out QR codes?

            secureowl@infosec.exchangeS 1 Reply Last reply
            0
            • secureowl@infosec.exchangeS secureowl@infosec.exchange

              trying a new thing, have 3D printed a QR code and put it on the front porch

              QR code triggers a canary token

              want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

              #infosec

              secureowl@infosec.exchangeS This user is from outside of this forum
              secureowl@infosec.exchangeS This user is from outside of this forum
              secureowl@infosec.exchange
              wrote sidst redigeret af
              #16

              Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

              i just checked the delivery photo and the QR code was visible in it

              User agent was not a phone and clearly some sort of crawler

              IP address was a CDN

              but we are 1/1, lets see how it goes with a few more

              (i get a lot of random work deliveries)

              douglasvb@m.ai6yr.orgD alesandroortiz@infosec.exchangeA seismoallegra@mastodon.socialS axolotl1@gaygeek.socialA cmdrmoto@hachyderm.ioC 5 Replies Last reply
              0
              • amd@gts.amd.imA amd@gts.amd.im

                @SecureOwl I love the question that you’re asking but I really don’t know how this would prove it…

                Are AI image scanners known to parse out QR codes?

                secureowl@infosec.exchangeS This user is from outside of this forum
                secureowl@infosec.exchangeS This user is from outside of this forum
                secureowl@infosec.exchange
                wrote sidst redigeret af
                #17

                @amd thats what i want to find out

                i found out that ai text summarizers happily summarize base64, so wanted to try to see if this is similar: https://mike-sheward.medium.com/recruiting-google-geminis-email-summarizer-as-a-phishing-aid-417055295ba7

                1 Reply Last reply
                0
                • secureowl@infosec.exchangeS secureowl@infosec.exchange

                  Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

                  i just checked the delivery photo and the QR code was visible in it

                  User agent was not a phone and clearly some sort of crawler

                  IP address was a CDN

                  but we are 1/1, lets see how it goes with a few more

                  (i get a lot of random work deliveries)

                  douglasvb@m.ai6yr.orgD This user is from outside of this forum
                  douglasvb@m.ai6yr.orgD This user is from outside of this forum
                  douglasvb@m.ai6yr.org
                  wrote sidst redigeret af
                  #18

                  @SecureOwl you could have a lot of fun with this 🤣

                  sarae@ecoevo.socialS 1 Reply Last reply
                  0
                  • secureowl@infosec.exchangeS secureowl@infosec.exchange

                    trying a new thing, have 3D printed a QR code and put it on the front porch

                    QR code triggers a canary token

                    want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                    #infosec

                    ai6yr@m.ai6yr.orgA This user is from outside of this forum
                    ai6yr@m.ai6yr.orgA This user is from outside of this forum
                    ai6yr@m.ai6yr.org
                    wrote sidst redigeret af
                    #19

                    @SecureOwl Ha! I have a great idea, make a front mat which is all QR code tricks!

                    secureowl@infosec.exchangeS 1 Reply Last reply
                    0
                    • ai6yr@m.ai6yr.orgA ai6yr@m.ai6yr.org

                      @SecureOwl Ha! I have a great idea, make a front mat which is all QR code tricks!

                      secureowl@infosec.exchangeS This user is from outside of this forum
                      secureowl@infosec.exchangeS This user is from outside of this forum
                      secureowl@infosec.exchange
                      wrote sidst redigeret af
                      #20

                      @ai6yr do it do it

                      1 Reply Last reply
                      0
                      • secureowl@infosec.exchangeS secureowl@infosec.exchange

                        trying a new thing, have 3D printed a QR code and put it on the front porch

                        QR code triggers a canary token

                        want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                        #infosec

                        nitinkhanna@mastodon.socialN This user is from outside of this forum
                        nitinkhanna@mastodon.socialN This user is from outside of this forum
                        nitinkhanna@mastodon.social
                        wrote sidst redigeret af
                        #21

                        @SecureOwl thanks for introducing the concept of Canary tokens to me!

                        Just saw their website and there doesn't seem to be a Canary Token for SSH. Would love to receive a push update if any of my VPS servers are logged into!

                        1 Reply Last reply
                        0
                        • secureowl@infosec.exchangeS secureowl@infosec.exchange

                          Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

                          i just checked the delivery photo and the QR code was visible in it

                          User agent was not a phone and clearly some sort of crawler

                          IP address was a CDN

                          but we are 1/1, lets see how it goes with a few more

                          (i get a lot of random work deliveries)

                          alesandroortiz@infosec.exchangeA This user is from outside of this forum
                          alesandroortiz@infosec.exchangeA This user is from outside of this forum
                          alesandroortiz@infosec.exchange
                          wrote sidst redigeret af
                          #22

                          @SecureOwl Now try some blind XSS payloads...

                          catsalad@infosec.exchangeC 1 Reply Last reply
                          0
                          • secureowl@infosec.exchangeS secureowl@infosec.exchange

                            Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

                            i just checked the delivery photo and the QR code was visible in it

                            User agent was not a phone and clearly some sort of crawler

                            IP address was a CDN

                            but we are 1/1, lets see how it goes with a few more

                            (i get a lot of random work deliveries)

                            seismoallegra@mastodon.socialS This user is from outside of this forum
                            seismoallegra@mastodon.socialS This user is from outside of this forum
                            seismoallegra@mastodon.social
                            wrote sidst redigeret af
                            #23

                            @SecureOwl brilliant test. Can't wait to see more results.

                            1 Reply Last reply
                            0
                            • alesandroortiz@infosec.exchangeA alesandroortiz@infosec.exchange

                              @SecureOwl Now try some blind XSS payloads...

                              catsalad@infosec.exchangeC This user is from outside of this forum
                              catsalad@infosec.exchangeC This user is from outside of this forum
                              catsalad@infosec.exchange
                              wrote sidst redigeret af
                              #24

                              @AlesandroOrtiz @SecureOwl

                              malwareminigun@infosec.exchangeM 1 Reply Last reply
                              0
                              • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                trying a new thing, have 3D printed a QR code and put it on the front porch

                                QR code triggers a canary token

                                want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                                #infosec

                                ddr@pony.socialD This user is from outside of this forum
                                ddr@pony.socialD This user is from outside of this forum
                                ddr@pony.social
                                wrote sidst redigeret af
                                #25

                                I am so curious to know the results of this, @SecureOwl. What a great injection vector!

                                1 Reply Last reply
                                0
                                • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                  trying a new thing, have 3D printed a QR code and put it on the front porch

                                  QR code triggers a canary token

                                  want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                                  #infosec

                                  itgrrl@infosec.exchangeI This user is from outside of this forum
                                  itgrrl@infosec.exchangeI This user is from outside of this forum
                                  itgrrl@infosec.exchange
                                  wrote sidst redigeret af
                                  #26

                                  @SecureOwl genius! replicating this ASAP… 🍿 👀

                                  1 Reply Last reply
                                  0
                                  • catsalad@infosec.exchangeC catsalad@infosec.exchange

                                    @AlesandroOrtiz @SecureOwl

                                    malwareminigun@infosec.exchangeM This user is from outside of this forum
                                    malwareminigun@infosec.exchangeM This user is from outside of this forum
                                    malwareminigun@infosec.exchange
                                    wrote sidst redigeret af
                                    #27

                                    @catsalad @AlesandroOrtiz @SecureOwl This is giving very "Cracking the Lens" vibes https://www.youtube.com/watch?v=zP4b3pw94s0

                                    1 Reply Last reply
                                    0
                                    • douglasvb@m.ai6yr.orgD douglasvb@m.ai6yr.org

                                      @SecureOwl you could have a lot of fun with this 🤣

                                      sarae@ecoevo.socialS This user is from outside of this forum
                                      sarae@ecoevo.socialS This user is from outside of this forum
                                      sarae@ecoevo.social
                                      wrote sidst redigeret af
                                      #28

                                      @douglasvb @SecureOwl yeah now I kind of want to figure out a way to put prompt injection on my roof

                                      I've got dark shingles so anything I do in white paint should show up real well

                                      what would really mess with aerial imaging software?

                                      douglasvb@m.ai6yr.orgD srlevine@neuromatch.socialS jeffc@mastodon.onlineJ 3 Replies Last reply
                                      0
                                      • sarae@ecoevo.socialS sarae@ecoevo.social

                                        @douglasvb @SecureOwl yeah now I kind of want to figure out a way to put prompt injection on my roof

                                        I've got dark shingles so anything I do in white paint should show up real well

                                        what would really mess with aerial imaging software?

                                        douglasvb@m.ai6yr.orgD This user is from outside of this forum
                                        douglasvb@m.ai6yr.orgD This user is from outside of this forum
                                        douglasvb@m.ai6yr.org
                                        wrote sidst redigeret af
                                        #29

                                        @sarae @SecureOwl a YouTube link to a rickroll?

                                        sarae@ecoevo.socialS 1 Reply Last reply
                                        0
                                        • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                          trying a new thing, have 3D printed a QR code and put it on the front porch

                                          QR code triggers a canary token

                                          want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                                          #infosec

                                          com@mastodon.socialC This user is from outside of this forum
                                          com@mastodon.socialC This user is from outside of this forum
                                          com@mastodon.social
                                          wrote sidst redigeret af
                                          #30

                                          @SecureOwl Excellent. 😈

                                          The blood-stained door mat is also a nice touch. 😚🤌

                                          1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper