←back to thread

511 points moonsword | 1 comments | | HN request time: 0.212s | source
Show context
abhishekjha ◴[] No.42168505[source]
How do these things work with devices inside a NAT gateway? Most of our devices are inside a LAN. Even if a server gets started, it won't be visible to the outside world, unless we play with the modem settings.

Now, a hacker/state who has penetrated a device can do an upload of data from the local decice to a CNC server.

But that seems risky as you need to do it again and again. Or do they just get into your device once and upload everything to CNC?

replies(3): >>42168750 #>>42168797 #>>42169625 #
1. aspenmayer ◴[] No.42168750[source]
This particular feature doesn’t rely on network connectivity or lack thereof.

Here’s some info about how some spyware works:

https://www.kaspersky.com/blog/commercial-spyware/50813/