PDA

View Full Version : todays funny (or) how Geek are you?



Byte Stryke
08-12-2012, 18:14
http://www.f-secure.com/weblog/archives/00002406.html?tw_p=twt


http://www.f-secure.com/weblog/archives/GaussTrafficEncryption_ACDC.png

[ROFL1]

Sharpienads
08-12-2012, 18:18
Yeah, I don't understand any of that.

cstone
08-12-2012, 18:21
Children of stuxnet. A little metal for the mullahs [Beer]

Byte Stryke
08-12-2012, 18:21
Sorry Sharpie... sometimes I forget.

Background
http://www.f-secure.com/weblog/archives/00002403.html

so with Gauss, they Xored the shell with the Hex 0xACDC

Aloha_Shooter
08-12-2012, 18:35
To break it down even more simply ... XOR is a computer operation that stands for Exclusive OR. When you XOR two numbers or signatures, each bit (0=FALSE, 1=TRUE) is the product of the relative bits of the two inputs.

For example:

0 XOR 0 = 0 but 1 XOR 0 = 1
00 XOR 01 = 01

Now, to make things shorter, we like to compress binary stuff like 0101101011110111 into hexadecimal which is 0-9 plus A=10, B=11, C=12, D=13, E=14, F=15 so now we have a numeric system based on the number 16. In hex (traditional denoted 0x), each decimal place represents 16 (versus 10 in traditional decimal).
0101 = 5, 1010 = 10 decimal = A in hex, 1111 = 15 decimal = F in hex, 0111 = 7
so the number above is now 0x5AF7.

Byte Stryke is saying they encrypted the shell with the hex signature 0xACDC so every 64 bits of the shell program is XORed with 1010110011011100.

alxone
08-12-2012, 18:52
NERDS!

dorsum
08-12-2012, 18:53
Definitly over my head.

Byte Stryke
08-12-2012, 18:58
Definitly over my head.


they hid the virus behind a "math problem" and they "key" was ACDC
the virus would play AC/DCs "thunderstruck" on some computers at a predetermined time...

among other things

reno316
08-12-2012, 19:06
To break it down even more simply ... XOR is a computer operation that stands for Exclusive OR. When you XOR two numbers or signatures, each bit (0=FALSE, 1=TRUE) is the product of the relative bits of the two inputs.

For example:

0 XOR 0 = 0 but 1 XOR 0 = 1
00 XOR 01 = 01

Now, to make things shorter, we like to compress binary stuff like 0101101011110111 into hexadecimal which is 0-9 plus A=10, B=11, C=12, D=13, E=14, F=15 so now we have a numeric system based on the number 16. In hex (traditional denoted 0x), each decimal place represents 16 (versus 10 in traditional decimal).
0101 = 5, 1010 = 10 decimal = A in hex, 1111 = 15 decimal = F in hex, 0111 = 7
so the number above is now 0x5AF7.

Byte Stryke is saying they encrypted the shell with the hex signature 0xACDC so every 64 bits of the shell program is XORed with 1010110011011100.

Oh. Well, that's MUCH more clear. Thanks.

[Bang]

Ridge
08-12-2012, 19:08
This all sounds like the gibberish I'm listening to the villains spew in Live Free or Die Hard right now...

Bailey Guns
08-12-2012, 19:09
To break it down even more simply ... XOR is a computer operation that stands for Exclusive OR. When you XOR two numbers or signatures, each bit (0=FALSE, 1=TRUE) is the product of the relative bits of the two inputs.

For example:

0 XOR 0 = 0 but 1 XOR 0 = 1
00 XOR 01 = 01

Now, to make things shorter, we like to compress binary stuff like 0101101011110111 into hexadecimal which is 0-9 plus A=10, B=11, C=12, D=13, E=14, F=15 so now we have a numeric system based on the number 16. In hex (traditional denoted 0x), each decimal place represents 16 (versus 10 in traditional decimal).
0101 = 5, 1010 = 10 decimal = A in hex, 1111 = 15 decimal = F in hex, 0111 = 7
so the number above is now 0x5AF7.

Byte Stryke is saying they encrypted the shell with the hex signature 0xACDC so every 64 bits of the shell program is XORed with 1010110011011100.

Now that you broke it down into simple terms it's freakin' hilarious! Seriously...I can't stop laughing.

:confused:

DFBrews
08-12-2012, 19:11
I get it the band... right?

i can barely program in visual basic

Ridge
08-12-2012, 19:25
If this was in HTML I'd probably get it...

Not_A_Llama
08-12-2012, 19:40
I used to use 0xDEADBEEF as a condition flag. Nerd enough to join the club?

Byte Stryke
08-12-2012, 20:43
I used to use 0xDEADBEEF as a condition flag. Nerd enough to join the club?


Yes.


Im not sharing jokes from now on...

45XD
08-12-2012, 21:14
I feel like I'm in a conversation with my brother and I'm definitely going to need a drink to carry on...

Bailey Guns
08-12-2012, 21:42
Yes.


Im not sharing jokes from now on...

Oh. So there's a positive outcome to this?

[Coffee]

Aloha_Shooter
08-12-2012, 22:25
:P Okay, they hit them with a program that randomly played songs by AC/DC then they encrypted the next version with a code based on ACDC. Is that plain enough to still be funny? :p

Bailey Guns
08-13-2012, 05:31
If it has to be explained 4 or 5 times...it really isn't that funny. Unless you're "in the know", I guess.