←back to thread

320 points zdw | 1 comments | | HN request time: 0.212s | source
Show context
throeurir ◴[] No.42743355[source]
So many wtf here. If anything this proves it is backdoored network card

1) downloading Windows exe files from Chinese forums

2) the USB storage provided by network card can still contain malware,

3) or can be accidentally booted from

4) it has universal USB controller, so can become any HID device: keyboard, mouse...

replies(4): >>42743444 #>>42743593 #>>42745142 #>>42745328 #
1. nothacking_ ◴[] No.42745142[source]
> 1) downloading Windows exe files from Chinese forums

VMs exist. I highly doubt the author daily drives windows XP.

> 2) the USB storage provided by network card can still contain malware

Well yes, but so can any other drivers. Downloading from the manufactures website isn't any more secure. Even signed drivers have been caught doing nasty stuff.

> 3) or can be accidentally booted from

True, but again this is quite a convoluted, noticeable, and unreliable way to compromize a system. Just injecting a handful of keystrokes will do it, and once the dead is done, the device can hide all evidence of malicious intent.

> 4) it has universal USB controller, so can become any HID device: keyboard, mouse...

This isn't wtf: a lot of devices nowadays are just microcontrollers hooked up to a USB connector. Quite a few normal USB drives can be reprogrammed to act as keyboards, and be used to get up to all sorts of shenanigans, including ones made outside of China.