Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

That’s absurd, no it doesn’t. It refers to a combination of the 2011 defcon demo of eliciting a device to sync data by default and a fever-dream of getting code execution by abusing the USB stack.

You’re thinking of BadUSB or OMGCable.

1) which is a totally different attack 2) not especially applicable to smartphones 3) very much a thing that happens in real life (I have responded to incidents where one was used)

Lastly, there are plenty of CVEs issued for “feature abuse”, that’s a meaningless distinction.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: