Email or username:

Password:

Forgot your password?
Alasdair Allan

This is the most glorious thing I have seen in some time. WiFi at 35,000ft, tunnelled through the "first name" field of an air miles account. robertheaton.com/pyskywifi/

26 comments
Jess👾

@aallan
Brilliant and terrifying what some people come up with...

Of course this also brings to mind all the endless side channel attacks and exploits that people have developed over the years.

IEEE 1149.1

@JessTheUnstill @aallan Bytes per second of terror! BYTES I tell you!

Jess👾

I mean, in this case, yah it's a goofy and silly use case. But with other side channel attacks, all they have to do is extract sensitive data like password hashes or private keys, which even the really really big ones are still only a few kb
@Pibble
@aallan

IEEE 1149.1

@JessTheUnstill indeed, I entirely agree, its just basic human error in design and exploiting the cracks... so like, maybe DONT store your entire identity and worth on external servers... as a society we have failed :/

Mike Loukides

@aallan Reminds me of Dan Kaminsky tunneling video through DNS text fields at Foo Camp. Just amazing.

tautology

@aallan anything's a tunnel if you're bored!

K. N. Brindle (they/them)

@aallan @Binder

“””
I’d forgotten to charge my headphones so Limp Bizkit started playing out of my laptop speakers. Fortunately no one else on the plane seemed to mind so we all rocked out together.
“””

If I were on that plane, I’d be throwing things at them at this point.

C. Lambeth

@knbrindle @aallan @Binder back in the '90s I remember seeing a car with a sticker on it that read "Limp Bizkit is better than everyone." 😆

Even back then I was like, "Wut?"
Clearly the person had only and ever been exposed to *really* bad music. 😔

Mieszko Ślusarczyk

@corbin_lambeth @knbrindle @aallan @Binder Or maybe that was just supposed to provoke people/thoughts;)

C. Lambeth

@spitfire @knbrindle @aallan @Binder
You may be giving Limp Bizkit fans a little too much credit. 😆

Mieszko Ślusarczyk

@corbin_lambeth @knbrindle @aallan @Binder I like to listen to them every once in a while, are you implying I’m stupid? ;)

LangerJan

@aallan @drazraeltod my god. This could even be a layer 1/2/3 implementation.

PPP over Airmiles

IP over Airmiles

Imagine hitting „ip a“ on your shell and checking the virtual Airmiles network cards address

Alasdair Allan

@LangerJan @drazraeltod It's the new IP over Avian Carrier. It is just begging for an RFC.

gi124

@aallan fantastic. many hotspots that make u sign in and pay before using the internet leave dns lookups open. you can tunnel your web traffic through this

ioriver.io/terms/dns-tunneling

0xThylacine

@aallan Suddenly I don't feel so bad about duplicating a hard disk in an old unix system via dual serial ports via a script that did base64 encoding of each half of the hdd, reassembling each half on a bsd machine, via null modem cables.

To be fair, the hdd was an mfm or rll drive, unobtainable in the late 90's, no network interface at all. Floppy transfers would have worked, but taken forever; at least the serial ports worked overnight by themselves, for 6-7 days in a row...

remote procedure chris

@aallan lmaoooo. i wish this didn't have the ai thumbnail or i'd share it

ÐДѷє ۷ǿȵ ຣ

@aallan This is amazingly creative; I always love people setting up tunnels with the weirdest constructions

Ölbaum

@aallan I stopped at “I’d forgotten to charge my headphones so Limp Bizkit started playing out of my laptop speakers. Fortunately no one else on the plane seemed to mind so we all rocked out together,” because it means either it’s a lie, and so probably the rest of the post is too, or he’s a dickhead.

Go Up