Millie
@millie@infosec.exchange
vulnerability researcher
malware developer
high-effort shitposter
gay af 💅
0
Followers
0
Following
Joined July 24, 2023
pronouns:
she/her
Posts
Open post
In reply to
Millie
@millie@infosec.exchange
vulnerability researcher malware developer high-effort shitposter gay af 💅
infosec.exchange
@dragonfrog @badkeys No, the private key was never published by t-systems, but it's so weak that it's very easy to crack. OP cracked and published the private key.
30
1
3
0
Open post
In reply to
Millie
@millie@infosec.exchange
vulnerability researcher malware developer high-effort shitposter gay af 💅
infosec.exchange
@dragonfrog @badkeys Most people might not be fluent in base64-encoded ASN.1, but a trained eye can see that it's the same key.
Hint: A sufficiently strong RSA key cannot possibly be that short, and you know it's a DER-encoded pubkey because it starts with "ME" and ends with "AQAB" (0x10001, common RSA public exponent)
Hint: A sufficiently strong RSA key cannot possibly be that short, and you know it's a DER-encoded pubkey because it starts with "ME" and ends with "AQAB" (0x10001, common RSA public exponent)
46
1
8
0
Open post
Millie
@millie@infosec.exchange
vulnerability researcher malware developer high-effort shitposter gay af 💅
infosec.exchange
We need to normalize declaring software as finished. Not everything needs continuous updates to function. In fact, a minority of software needs this. Most software works as it is written. The code does not run out of date. I want more projects that are actually just finished, without the need to be continuously mutated and complexified ad infinitum.
793
0
434
0