<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: thursley</title><link>https://news.ycombinator.com/user?id=thursley</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Thu, 30 Apr 2026 20:36:03 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=thursley" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by thursley in "Hacking millions of modems and investigating who hacked my modem"]]></title><description><![CDATA[
<p>In my experience this can be caused by a loadbalancer, for example not being able to route (properly) to servers in the pool or a difference in configuration/patch-level between them.</p>
]]></description><pubDate>Tue, 04 Jun 2024 12:30:50 +0000</pubDate><link>https://news.ycombinator.com/item?id=40573806</link><dc:creator>thursley</dc:creator><comments>https://news.ycombinator.com/item?id=40573806</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=40573806</guid></item><item><title><![CDATA[New comment by thursley in "The Heartbleed Bug"]]></title><description><![CDATA[
<p>Snort IDS rules to detect abuse can be found here:
<a href="http://blog.fox-it.com/2014/04/08/openssl-heartbleed-bug-live-blog/" rel="nofollow">http://blog.fox-it.com/2014/04/08/openssl-heartbleed-bug-liv...</a></p>
]]></description><pubDate>Tue, 08 Apr 2014 11:41:31 +0000</pubDate><link>https://news.ycombinator.com/item?id=7552741</link><dc:creator>thursley</dc:creator><comments>https://news.ycombinator.com/item?id=7552741</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=7552741</guid></item><item><title><![CDATA[Large botnet cause of recent Tor network overload]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.fox-it.com/2013/09/05/large-botnet-cause-of-recent-tor-network-overload/">http://blog.fox-it.com/2013/09/05/large-botnet-cause-of-recent-tor-network-overload/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=6333499">https://news.ycombinator.com/item?id=6333499</a></p>
<p>Points: 79</p>
<p># Comments: 16</p>
]]></description><pubDate>Thu, 05 Sep 2013 11:44:12 +0000</pubDate><link>http://blog.fox-it.com/2013/09/05/large-botnet-cause-of-recent-tor-network-overload/</link><dc:creator>thursley</dc:creator><comments>https://news.ycombinator.com/item?id=6333499</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=6333499</guid></item><item><title><![CDATA[New comment by thursley in "NBC.com hacked, serving up Citadel malware"]]></title><description><![CDATA[
<p>Writeup of the network monitoring service that discovered the infection: <a href="http://blog.fox-it.com/2013/02/21/writeup-on-nbc-com-distributing-citadel-malware/" rel="nofollow">http://blog.fox-it.com/2013/02/21/writeup-on-nbc-com-distrib...</a></p>
]]></description><pubDate>Fri, 22 Feb 2013 08:34:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=5263329</link><dc:creator>thursley</dc:creator><comments>https://news.ycombinator.com/item?id=5263329</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=5263329</guid></item><item><title><![CDATA[New comment by thursley in "USSD code to factory data reset a Galaxy S3 can be trigged from a HTML page"]]></title><description><![CDATA[
<p>This was/is an infamous modem vulnerability:
<a href="http://www.securityspace.com/smysecure/catid.html?id=10020" rel="nofollow">http://www.securityspace.com/smysecure/catid.html?id=10020</a><p>It could force a modem to hangup and redial a number.</p>
]]></description><pubDate>Tue, 25 Sep 2012 12:26:07 +0000</pubDate><link>https://news.ycombinator.com/item?id=4569944</link><dc:creator>thursley</dc:creator><comments>https://news.ycombinator.com/item?id=4569944</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=4569944</guid></item><item><title><![CDATA[New comment by thursley in "Flame: Massive cyber-attack discovered, researchers say"]]></title><description><![CDATA[
<p>More technical details (pdf) on:
<a href="http://www.crysys.hu/skywiper/skywiper.pdf" rel="nofollow">http://www.crysys.hu/skywiper/skywiper.pdf</a><p>Although the naming differs it has been noted on several blogs that it is the same malware.</p>
]]></description><pubDate>Mon, 28 May 2012 15:19:16 +0000</pubDate><link>https://news.ycombinator.com/item?id=4033719</link><dc:creator>thursley</dc:creator><comments>https://news.ycombinator.com/item?id=4033719</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=4033719</guid></item><item><title><![CDATA[Critical analysis of Microsoft Operation B71 (Zeus Botnet disruption)]]></title><description><![CDATA[
<p>Article URL: <a href="http://blog.fox-it.com/2012/04/12/critical-analysis-of-microsoft-operation-b71/">http://blog.fox-it.com/2012/04/12/critical-analysis-of-microsoft-operation-b71/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=3832094">https://news.ycombinator.com/item?id=3832094</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Thu, 12 Apr 2012 12:51:35 +0000</pubDate><link>http://blog.fox-it.com/2012/04/12/critical-analysis-of-microsoft-operation-b71/</link><dc:creator>thursley</dc:creator><comments>https://news.ycombinator.com/item?id=3832094</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=3832094</guid></item></channel></rss>