Re: [Full-disclosure] how i stopped worrying and loved the backdoor

2012-08-18 Thread Dan Kaminsky
Yeah, turns out RNG's *aren't* on most motherboards. Thus, DakaRand. The biggest surprise of this entire adventure is that DakaRand seems to work inside of VM's too. Didn't expect that at all. But then, I think it's going to take some time to analyze what's going on here. On Sat, Aug 18, 2012

Re: [Full-disclosure] debugfs exploit for a number of Android devices

2012-08-18 Thread coderman
On Wed, Aug 15, 2012 at 6:10 AM, Dan Rosenberg wrote: > ... > So many things wrong here. > > What's actually happening is these devices have a line in their /init.rc > scripts, which are run at boot as root by the init process,... some of my favorite stories start this way! ;P _

Re: [Full-disclosure] how i stopped worrying and loved the backdoor

2012-08-18 Thread coderman
Dan just released "DakaRand" http://dankaminsky.com/2012/08/15/dakarand/ src http://s3.amazonaws.com/dmk/dakarand-1.0.tgz while admitting that "Matt Blaze has essentially disowned this approach, and seems to be honestly horrified that I’m revisiting it" and "Let me be the first to say, I don’t