Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. trying a new thing, have 3D printed a QR code and put it on the front porch

trying a new thing, have 3D printed a QR code and put it on the front porch

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
infosec
41 Indlæg 31 Posters 0 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • secureowl@infosec.exchangeS secureowl@infosec.exchange

    trying a new thing, have 3D printed a QR code and put it on the front porch

    QR code triggers a canary token

    want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

    #infosec

    trashpanda@m.alittlenook.netT This user is from outside of this forum
    trashpanda@m.alittlenook.netT This user is from outside of this forum
    trashpanda@m.alittlenook.net
    wrote sidst redigeret af
    #4

    @SecureOwl Definitely interested to hear if (and which)!

    1 Reply Last reply
    0
    • secureowl@infosec.exchangeS secureowl@infosec.exchange

      trying a new thing, have 3D printed a QR code and put it on the front porch

      QR code triggers a canary token

      want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

      #infosec

      threatresearch@infosec.exchangeT This user is from outside of this forum
      threatresearch@infosec.exchangeT This user is from outside of this forum
      threatresearch@infosec.exchange
      wrote sidst redigeret af
      #5

      @SecureOwl Would like to know how to replicate this at my own home

      1 Reply Last reply
      0
      • secureowl@infosec.exchangeS secureowl@infosec.exchange

        trying a new thing, have 3D printed a QR code and put it on the front porch

        QR code triggers a canary token

        want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

        #infosec

        iagox86@infosec.exchangeI This user is from outside of this forum
        iagox86@infosec.exchangeI This user is from outside of this forum
        iagox86@infosec.exchange
        wrote sidst redigeret af
        #6

        @SecureOwl neat idea! Although if I was visiting I might scan it out of curiosity

        cr0w@infosec.exchangeC 1 Reply Last reply
        0
        • iagox86@infosec.exchangeI iagox86@infosec.exchange

          @SecureOwl neat idea! Although if I was visiting I might scan it out of curiosity

          cr0w@infosec.exchangeC This user is from outside of this forum
          cr0w@infosec.exchangeC This user is from outside of this forum
          cr0w@infosec.exchange
          wrote sidst redigeret af
          #7

          @iagox86 @SecureOwl How do QR canaries work? Is it based on the DNS query? The GET when they click the link? Or do the QR scanners try and retrieve something like a preview even without clicking the link?

          darfplatypus@infosec.exchangeD secureowl@infosec.exchangeS 2 Replies Last reply
          0
          • cr0w@infosec.exchangeC cr0w@infosec.exchange

            @iagox86 @SecureOwl How do QR canaries work? Is it based on the DNS query? The GET when they click the link? Or do the QR scanners try and retrieve something like a preview even without clicking the link?

            darfplatypus@infosec.exchangeD This user is from outside of this forum
            darfplatypus@infosec.exchangeD This user is from outside of this forum
            darfplatypus@infosec.exchange
            wrote sidst redigeret af
            #8

            @cR0w @iagox86 @SecureOwl the birds in the phone are just snitches

            cr0w@infosec.exchangeC 1 Reply Last reply
            0
            • darfplatypus@infosec.exchangeD darfplatypus@infosec.exchange

              @cR0w @iagox86 @SecureOwl the birds in the phone are just snitches

              cr0w@infosec.exchangeC This user is from outside of this forum
              cr0w@infosec.exchangeC This user is from outside of this forum
              cr0w@infosec.exchange
              wrote sidst redigeret af
              #9

              @darfplatypus @iagox86 @SecureOwl I fukkin knew it.

              1 Reply Last reply
              0
              • secureowl@infosec.exchangeS secureowl@infosec.exchange

                trying a new thing, have 3D printed a QR code and put it on the front porch

                QR code triggers a canary token

                want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                #infosec

                yazad3@techhub.socialY This user is from outside of this forum
                yazad3@techhub.socialY This user is from outside of this forum
                yazad3@techhub.social
                wrote sidst redigeret af
                #10

                @SecureOwl interesting idea! If I were to guess they probably are using the drop of pics to train AI. Question: how would the QR code canary get triggered during image training? Are you expecting the link in the WR code to be invoked during the training process? Would
                Love to learn more. Cheers!

                1 Reply Last reply
                0
                • secureowl@infosec.exchangeS secureowl@infosec.exchange

                  trying a new thing, have 3D printed a QR code and put it on the front porch

                  QR code triggers a canary token

                  want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                  #infosec

                  aburka@hachyderm.ioA This user is from outside of this forum
                  aburka@hachyderm.ioA This user is from outside of this forum
                  aburka@hachyderm.io
                  wrote sidst redigeret af
                  #11

                  @SecureOwl my neighbor's whole doormat is a qr code

                  yes it's a rickroll obviously

                  drwho@masto.hackers.townD 1 Reply Last reply
                  0
                  • secureowl@infosec.exchangeS secureowl@infosec.exchange

                    trying a new thing, have 3D printed a QR code and put it on the front porch

                    QR code triggers a canary token

                    want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                    #infosec

                    drwho@masto.hackers.townD This user is from outside of this forum
                    drwho@masto.hackers.townD This user is from outside of this forum
                    drwho@masto.hackers.town
                    wrote sidst redigeret af
                    #12

                    @SecureOwl I need to try that.

                    1 Reply Last reply
                    0
                    • aburka@hachyderm.ioA aburka@hachyderm.io

                      @SecureOwl my neighbor's whole doormat is a qr code

                      yes it's a rickroll obviously

                      drwho@masto.hackers.townD This user is from outside of this forum
                      drwho@masto.hackers.townD This user is from outside of this forum
                      drwho@masto.hackers.town
                      wrote sidst redigeret af
                      #13

                      @aburka @SecureOwl

                      1 Reply Last reply
                      0
                      • cr0w@infosec.exchangeC cr0w@infosec.exchange

                        @iagox86 @SecureOwl How do QR canaries work? Is it based on the DNS query? The GET when they click the link? Or do the QR scanners try and retrieve something like a preview even without clicking the link?

                        secureowl@infosec.exchangeS This user is from outside of this forum
                        secureowl@infosec.exchangeS This user is from outside of this forum
                        secureowl@infosec.exchange
                        wrote sidst redigeret af
                        #14

                        @cR0w @iagox86 get request i believe

                        1 Reply Last reply
                        0
                        • secureowl@infosec.exchangeS secureowl@infosec.exchange

                          trying a new thing, have 3D printed a QR code and put it on the front porch

                          QR code triggers a canary token

                          want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                          #infosec

                          amd@gts.amd.imA This user is from outside of this forum
                          amd@gts.amd.imA This user is from outside of this forum
                          amd@gts.amd.im
                          wrote sidst redigeret af
                          #15

                          @SecureOwl I love the question that you’re asking but I really don’t know how this would prove it…

                          Are AI image scanners known to parse out QR codes?

                          secureowl@infosec.exchangeS 1 Reply Last reply
                          0
                          • secureowl@infosec.exchangeS secureowl@infosec.exchange

                            trying a new thing, have 3D printed a QR code and put it on the front porch

                            QR code triggers a canary token

                            want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                            #infosec

                            secureowl@infosec.exchangeS This user is from outside of this forum
                            secureowl@infosec.exchangeS This user is from outside of this forum
                            secureowl@infosec.exchange
                            wrote sidst redigeret af
                            #16

                            Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

                            i just checked the delivery photo and the QR code was visible in it

                            User agent was not a phone and clearly some sort of crawler

                            IP address was a CDN

                            but we are 1/1, lets see how it goes with a few more

                            (i get a lot of random work deliveries)

                            douglasvb@m.ai6yr.orgD alesandroortiz@infosec.exchangeA seismoallegra@mastodon.socialS axolotl1@gaygeek.socialA cmdrmoto@hachyderm.ioC 5 Replies Last reply
                            0
                            • amd@gts.amd.imA amd@gts.amd.im

                              @SecureOwl I love the question that you’re asking but I really don’t know how this would prove it…

                              Are AI image scanners known to parse out QR codes?

                              secureowl@infosec.exchangeS This user is from outside of this forum
                              secureowl@infosec.exchangeS This user is from outside of this forum
                              secureowl@infosec.exchange
                              wrote sidst redigeret af
                              #17

                              @amd thats what i want to find out

                              i found out that ai text summarizers happily summarize base64, so wanted to try to see if this is similar: https://mike-sheward.medium.com/recruiting-google-geminis-email-summarizer-as-a-phishing-aid-417055295ba7

                              1 Reply Last reply
                              0
                              • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

                                i just checked the delivery photo and the QR code was visible in it

                                User agent was not a phone and clearly some sort of crawler

                                IP address was a CDN

                                but we are 1/1, lets see how it goes with a few more

                                (i get a lot of random work deliveries)

                                douglasvb@m.ai6yr.orgD This user is from outside of this forum
                                douglasvb@m.ai6yr.orgD This user is from outside of this forum
                                douglasvb@m.ai6yr.org
                                wrote sidst redigeret af
                                #18

                                @SecureOwl you could have a lot of fun with this 🤣

                                sarae@ecoevo.socialS 1 Reply Last reply
                                0
                                • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                  trying a new thing, have 3D printed a QR code and put it on the front porch

                                  QR code triggers a canary token

                                  want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                                  #infosec

                                  ai6yr@m.ai6yr.orgA This user is from outside of this forum
                                  ai6yr@m.ai6yr.orgA This user is from outside of this forum
                                  ai6yr@m.ai6yr.org
                                  wrote sidst redigeret af
                                  #19

                                  @SecureOwl Ha! I have a great idea, make a front mat which is all QR code tricks!

                                  secureowl@infosec.exchangeS 1 Reply Last reply
                                  0
                                  • ai6yr@m.ai6yr.orgA ai6yr@m.ai6yr.org

                                    @SecureOwl Ha! I have a great idea, make a front mat which is all QR code tricks!

                                    secureowl@infosec.exchangeS This user is from outside of this forum
                                    secureowl@infosec.exchangeS This user is from outside of this forum
                                    secureowl@infosec.exchange
                                    wrote sidst redigeret af
                                    #20

                                    @ai6yr do it do it

                                    1 Reply Last reply
                                    0
                                    • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                      trying a new thing, have 3D printed a QR code and put it on the front porch

                                      QR code triggers a canary token

                                      want to see if any of the delivery companies are using the drop off proof of delivery pics to train AI

                                      #infosec

                                      nitinkhanna@mastodon.socialN This user is from outside of this forum
                                      nitinkhanna@mastodon.socialN This user is from outside of this forum
                                      nitinkhanna@mastodon.social
                                      wrote sidst redigeret af
                                      #21

                                      @SecureOwl thanks for introducing the concept of Canary tokens to me!

                                      Just saw their website and there doesn't seem to be a Canary Token for SSH. Would love to receive a push update if any of my VPS servers are logged into!

                                      1 Reply Last reply
                                      0
                                      • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                        Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

                                        i just checked the delivery photo and the QR code was visible in it

                                        User agent was not a phone and clearly some sort of crawler

                                        IP address was a CDN

                                        but we are 1/1, lets see how it goes with a few more

                                        (i get a lot of random work deliveries)

                                        alesandroortiz@infosec.exchangeA This user is from outside of this forum
                                        alesandroortiz@infosec.exchangeA This user is from outside of this forum
                                        alesandroortiz@infosec.exchange
                                        wrote sidst redigeret af
                                        #22

                                        @SecureOwl Now try some blind XSS payloads...

                                        catsalad@infosec.exchangeC 1 Reply Last reply
                                        0
                                        • secureowl@infosec.exchangeS secureowl@infosec.exchange

                                          Whelp, sample size of 1 so far, but about 50 minutes after an amazon delivery - where a picture was taken - got a hit on the canary

                                          i just checked the delivery photo and the QR code was visible in it

                                          User agent was not a phone and clearly some sort of crawler

                                          IP address was a CDN

                                          but we are 1/1, lets see how it goes with a few more

                                          (i get a lot of random work deliveries)

                                          seismoallegra@mastodon.socialS This user is from outside of this forum
                                          seismoallegra@mastodon.socialS This user is from outside of this forum
                                          seismoallegra@mastodon.social
                                          wrote sidst redigeret af
                                          #23

                                          @SecureOwl brilliant test. Can't wait to see more results.

                                          1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper