Today’s Twitter Hack is New Take on “Nigerian Prince” Scam

Don’t send bitcoin to celebrities… or to random people for that matter. This afternoon a number of high profile Twitter accounts were taken over, including Joe Biden, Bill Gates, Elon Musk, Apple, Jeff Bezos, and Kanye West, and the event appears to be ongoing. Each displayed a message saying they wanted to “give back” by doubling the bitcoin that they are sent. The messages all appear to have the same bitcoin wallet address.

This is reminiscent of the “Nigerian prince” scams, a form of advance-fee scam where an email asks for help with a small sum of money in order to obtain a larger sum. Those usually come in as spam emails which most people are wise to at this point. However, blindly following celebrities on Twitter may still deliver a good dose of naïveté when those platforms are misused.

Bitcoin transactions can be viewed publicly and this wallet is showing 11.8 BTC in and 5.8 BTC out in a total of 288 transactions. The net is roughly 6 bitcoin or $55k USD at the time of writing. Twitter’s response appears to have locked down all verified accounts from publishing new tweets. They retain the ability to retweet and delete existing tweets.


Main image screenshot sources:

source https://hackaday.com/2020/07/15/todays-twitter-hack-is-new-take-on-nigerian-prince-scam/

Today’s Twitter Hack is New Take on “Nigerian Prince” Scam

Don’t send bitcoin to celebrities… or to random people for that matter. This afternoon a number of high profile Twitter accounts were taken over, including Joe Biden, Bill Gates, Elon Musk, Apple, Jeff Bezos, and Kanye West, and the event appears to be ongoing. Each displayed a message saying they wanted to “give back” by doubling the bitcoin that they are sent. The messages all appear to have the same bitcoin wallet address.

This is reminiscent of the “Nigerian prince” scams, a form of advance-fee scam where an email asks for help with a small sum of money in order to obtain a larger sum. Those usually come in as spam emails which most people are wise to at this point. However, blindly following celebrities on Twitter may still deliver a good dose of naïveté when those platforms are misused.

Bitcoin transactions can be viewed publicly and this wallet is showing 11.8 BTC in and 5.8 BTC out in a total of 288 transactions. The net is roughly 6 bitcoin or $55k USD at the time of writing. Twitter’s response appears to have locked down all verified accounts from publishing new tweets. They retain the ability to retweet and delete existing tweets.


Main image screenshot sources:

source https://hackaday.com/2020/07/15/todays-twitter-hack-is-new-take-on-nigerian-prince-scam/

Today’s Twitter Hack is New Take on “Nigerian Prince” Scam

Don’t send bitcoin to celebrities… or to random people for that matter. This afternoon a number of high profile Twitter accounts were taken over, including Joe Biden, Bill Gates, Elon Musk, Apple, Jeff Bezos, and Kanye West, and the event appears to be ongoing. Each displayed a message saying they wanted to “give back” by doubling the bitcoin that they are sent. The messages all appear to have the same bitcoin wallet address.

This is reminiscent of the “Nigerian prince” scams, a form of advance-fee scam where an email asks for help with a small sum of money in order to obtain a larger sum. Those usually come in as spam emails which most people are wise to at this point. However, blindly following celebrities on Twitter may still deliver a good dose of naïveté when those platforms are misused.

Bitcoin transactions can be viewed publicly and this wallet is showing 11.8 BTC in and 5.8 BTC out in a total of 288 transactions. The net is roughly 6 bitcoin or $55k USD at the time of writing.

source https://hackaday.com/2020/07/15/todays-twitter-hack-is-new-take-on-nigerian-prince-scam/

No Assembly Required for this Compliant Mechanism Dial Indicator

If you’ve ever had the good fortune — or, after a shop mishap, the misfortune — to see the insides of a dial indicator, you’ll know the workings of these shop essentials resemble nothing so much as those of a fine Swiss watch. The pinions, gears, and springs within transmit the slightest movement of the instrument’s plunger to a series of dials, making even the tiniest of differences easy to spot.

Not every useful dial indicator needs to have those mechanical guts, nor even a dial for that matter. This compliant mechanism 3D-printed dial-free indicator is perfect for a lot of simple tasks, including the bed leveling chores that [SunShine] designed it for. Rather than print a bunch of gears and assemble them, [SunShine] chose to print the plunger, a fine set of flexible linkage arms, and a long lever arm to act as a needle. The needle is attached to a flexible fulcrum, which is part of the barrel that houses the plunger. Slight movements of the plunger within the barrel push or pull on the needle, amplifying them into an easily read deflection. When attached to the head of a 3D-printer and scanned over the bed, it’s easy to see even the slightest variation in height and make the corresponding adjustments. Check it out in the video below.

We’re big fans of compliant mechanisms, seeing them in everything from robot arms and legs to thrust vectoring for an RC plane. This might look like something from a cereal box, and it certainly doesn’t have the lasting power of a Starrett or Mitutoyo, but then again it costs essentially nothing, and we like that too.

[via r/3Dprinting]

source https://hackaday.com/2020/07/15/no-assembly-required-for-this-compliant-mechanism-dial-indicator/

New Artist

Trade Mark Tattoo is proud to announce that Calvin Smorenburg (@calvinsteps) will be joining the team from 2 July 2019. For Bookings/Quotes/Consults, please email the shop on info@trademarktattoos.com

Exposing Computer Monitor Side-Channel Vulnerabilities with TempestSDR

Having been endlessly regaled with tales of side-channel attacks and remote exploits, most of us by now realize that almost every piece of gear leaks data like a sieve. Everything from routers to TVs to the power supplies and cooling fans of computers can be made to give up their secrets. It’s scary stuff, but it also sounds like a heck of a lot of fun, and with an SDR and a little software, you too can get in on the side-channel action.

Coming to us via software-defined radio buff [Tech Minds], the video below gives a quick tour of how to snoop in on what’s being displayed on a monitor for almost no effort or expense. The software that makes it possible is TempestSDR, which was designed specifically for the job. With nothing but an AirSpy Mini and a rubber duck antenna, [Tech Minds] was able to reconstruct a readable black and white image of his screen at a range of a few inches; a better antenna and some fiddling might improve that range to several meters. He also shares a trick for getting TempestSDR set up for all the popular SDRs, including SPRplay, HackRF, and RTL-SDR.

Learning what’s possible with side-channel attacks is the key to avoiding them, so hats off to [Tech Minds] for putting together this simple, easy-to-replicate demo. To learn even more, listen to what [Samy Kamkar] has to say about the subject, or check out where power supplies, cryptocurrency wallets, and mixed-signal microcontrollers are all vulnerable.

[via RTL-SDR.com]

source https://hackaday.com/2020/07/15/exposing-computer-monitor-side-channel-vulnerabilities-with-tempestsdr/

Arduino Plays NES Games

Watching the advancement of technology is interesting enough by looking at improved specifications for various components as the years go by. But clock speeds, memory size, and power consumption are all fairly intangible compared to actual implementation of modern technology when compared to days of yore. For example, this $40 microcontroller can do what a video game console was able to do in the 80s for a tenth of the (inflation adjusted) price.

The NESDUE is an emulator for NES games which runs completely on an Arduino Due. The Arduino does have some limitations that have to be worked around to get the Nintendo to work, though. For one, it needs to be overclocked to be playable and it also needs a workaround to get past the memory limit of 96 kB of RAM. From there, a small screen is wired up along with a controller (from a Super Nintendo) and the gaming can begin.

This is an impressive feat for an Arduino platform to accomplish, especially with the amount of memory tweaking that has to happen. This might be the most advanced gaming system available that runs everything on an Arduino, right up there with the Arduinocade which can provide an arcade-like experience straight from the Arduino as well.

source https://hackaday.com/2020/07/15/arduino-plays-nes-games/

X-Ray Sleuthing Unveils The Fake In Your Adaptors

Lets face it, the knock-off variety of our favourite adaptors, cables and accessories are becoming increasingly challenging to spot. We would be the first to admit, to have at some point, been stooped by a carefully crafted counterfeit by failing to spot the tell-tale yet elusive indicators such as the misplaced font face, the strategically misspelled logo or perhaps the less polished than expected plastic moulding and packaging. When you finally come around to using it, if you are lucky the item is still more or less functionally adequate, otherwise by now the inferior performance (if not the initial cost!) would have made it pretty obvious that what you have is infact a counterfeit.

[Oliver] recently found himself in a similar situation, after acquiring a seemingly original Lightning to Headphone Adaptor. Rather than dismay, [Oliver] decided to channel this energy into an excellent forensic investigation to uncover just what exactly made this imitation so deceptive. He began by comparing the packaging, printed typeface and the plastic moulding, all of which gave very little away. [Oliver] concluded that atleast superficially, the clone was rather good and the only way to settle this was to bring out the X-ray, of course!  

The resulting images of the innards make it blatantly obvious as to why the adaptor is indeed very fake. For a start, compared to the original adaptor, the clone hosts a far more thin BOM count! If you are really serious in getting some training to better spot counterfeits, check out a post we featured earlier on the subject!

source https://hackaday.com/2020/07/15/x-ray-sleuthing-unveils-the-fake-in-your-adaptors/

DIY Dongle Breathes Life Into Broken Ventilators

We have a new hero in the COVID-19 saga, and it’s some hacker in Poland. Whoever this person is, they are making bootleg dongles that let ventilator refurbishers circumvent lockdown software so they can repair broken ventilators bought from the secondhand market.

The dongle is a DIY copy of one that Medtronic makes, which of course they don’t sell to anyone. It makes a three-way connection between the patient’s monitor, a breath delivery system, and a computer, and lets technicians sync software between two broken machines so they can be Frankensteined into a single working ventilator. The company open-sourced an older model at the end of March, but this was widely viewed as a PR stunt.

This is not just the latest chapter in the right-to-repair saga. What began with locked-down tractors and phones has taken a serious turn as hospitals are filled to capacity with COVID-19 patients, many of whom will die without access to a ventilator. Not only is there a shortage of ventilators, but many of the companies that make them are refusing outside repair techs’ access to manuals and parts.

These companies insist that their own in-house technicians be the only ones who touch the machines, and many are not afraid to admit that they consider the ventilators to be their property long after the sale has been made. The ridiculousness of that aside, they don’t have the manpower to fix all the broken ventilators, and the people don’t have the time to wait on them.

We wish we could share the dongle schematic with our readers, but alas we do not have it. Hopefully it will show up on iFixit soon alongside all the ventilator manuals and schematics that have been compiled and centralized since the pandemic took off. In the meantime, you can take Ventilators 101 from our own [Bob Baddeley], and then find out what kind of engineering goes into them.

source https://hackaday.com/2020/07/15/diy-dongle-breathes-life-into-broken-ventilators/

Soviet Core Memory Experiments

What do you do when you’ve bought some old Soviet core memory modules on eBay? If you are [CuriousMarc], you wire it up to some test connectors and use your test bench to see if the core memory still works. Spoiler alert: it does.

While it seems crude by today’s standard, there was a time when these memory modules would have been the amazing miniature tech of their day. Each little magnetic torus represents a bit and the modules have 1,024 and 4,096 tiny little donuts strung together in a grid.

Core memory did have several interesting benefits. First, it was non-volatile. The state of the bits did not depend on active power to the array. Second, core memory was notably radiation-resistant. That was a big reason the original Space Shuttles used core memory until tests indicated an upgrade to solid-state memory would be workable.

There were downsides, too, of course. The manual fabrication was costly, and reading a bit is destructive and requires rewriting. While the bit density seemed impressive at the time, we now look at these 1K bit and 4K bit devices then look at even the smallest SD card and you realize how times have changed.

Why do something like this? Why not? We liked the casings made for the modules which are both attractive and would protect against students or visitors poking the delicate little ferrite rings.

Think core memory was the strangest old memory around? Not by a long shot. Want core on your Arduino? No problem.

source https://hackaday.com/2020/07/14/soviet-core-memory-experiments/

High-End Ham Radio Gives Up Its Firmware Secrets

Amateur radio operators have always been at the top of their game when they’ve been hacking radios. A ham license gives you permission to open up a radio and modify it, or even to build a radio from scratch. True, as technology has advanced the opportunities for old school radio hacking have diminished, but that doesn’t mean that the new computerized radios aren’t vulnerable to the diligent ham’s tender ministrations.

A case in point: the Kenwood TH-D74A’s firmware has been dumped and partially decoded. A somewhat informal collaboration between [Hash (AG5OW)] and [Travis Goodspeed (KK4VCZ)], the process that started with [Hash]’s teardown of his radio, seen in the video below. The radio, a tri-band handy talkie with capabilities miles beyond even the most complex of the cheap imports and with a price tag to match, had a serial port and JTAG connector. A JTAGulator allowed him to probe some of the secrets, but a full exploration required spending $140 on a spare PCB for the radio and some deft work removing the BGA-packaged Flash ROM and dumping its image to disk.

[Travis] picked up the analysis from there. He found three programs within the image, including the radio’s firmware and a bunch of strings used in the radio’s UI, in both English and Japanese. The work is far from complete, but the foundation is there for further exploration and potential future firmware patches to give the radio a different feature set.

This is a great case study in reverse engineering, and it’s really worth a trip down the rabbit hole to learn more. If you’re looking for a more formal exploration of reverse engineering, you could do a lot worse than HackadayU’s “Reverse Engineering with Ghidra” course, which just wrapping up. Watch for the class videos soon.

source https://hackaday.com/2020/07/14/high-end-ham-radio-gives-up-its-firmware-secrets/

Don’t Wait, You Need to See Comet NEOWISE Right Now

By now you’ve heard of NEOWISE, the most spectacular comet to visit our little corner of the galaxy since Hale-Bopp passed through over 20 years ago. But we’re willing to bet you haven’t actually seen it with your own eyes. That’s because up until now, the only way to view this interstellar traveler was to wake up in the pre-dawn hours; an especially difficult requirement considering a large chunk of the population has gotten used to sleeping-in over the last few months.

But things are about to change as NEOWISE begins a new phase of its trip through our celestial neck of the woods. Having come to within 44.5 million km (27.7 million miles) of the sun on July 3rd, the comet is now making its way back out of our solar system. Thanks to the complex dance of the heavens, that means that as of tonight, observers in the Northern Hemisphere will be able to see NEOWISE in the evening sky just above the horizon.

NEOWISE is on a kind of “up and over” trajectory compared to the orbital paths of the planets. Get a better feel for it with JPL’s interactive solar dynamics tool.

While NEOWISE might be beating a hasty retreat from Sol right now, the comet it actually getting closer to us in the process. On July 22nd it will reach perigee, that is, the point in its orbit closest to Earth. On that evening the comet will be approximately 103 million km (64 million miles) away. Not exactly a stone’s throw, but pretty close in astronomical terms. The apparent brightness of NEOWISE will naturally peak at perigee, but even during the lead up to the big show, the comet should be visible with the naked eye between 10 and 20 degrees above the northern horizon.

Most estimates say that NEOWISE should remain visible until at least the middle of August, though it will be dimming rapidly. After that, you’re going to have to wait awhile for a repeat showing. Given the orbit of this particular comet, it won’t come around our way again for approximately 6,800 years, give or take a few lifetimes.

NASA will be hosting a NEOWISE live stream tomorrow afternoon where researchers will answer questions about this once in a lifetime celestial event, though we think you’ll get a lot more out of it if you just go outside and look up.

source https://hackaday.com/2020/07/14/dont-wait-you-need-to-see-comet-neowise-right-now/

Don’t Wait, You Need to See Comet NEOWISE Right Now

By now you’ve heard of NEOWISE, the most spectacular comet to visit our little corner of the galaxy since Hale-Bopp passed through over 20 years ago. But we’re willing to bet you haven’t actually seen it with your own eyes. That’s because up until now, the only way to view this interstellar traveler was to wake up in the pre-dawn hours; an especially difficult requirement considering a large chunk of the population has gotten used to sleeping-in over the last few months.

But things are about to change as NEOWISE begins a new phase of its trip through our celestial neck of the woods. Having come to within 44.5 million km (27.7 million miles) of the sun on July 3rd, the comet is now making its way back out of our solar system. Thanks to the complex dance of the heavens, that means that as of tonight, observers in the Northern Hemisphere will be able to see NEOWISE in the evening sky just above the horizon.

NEOWISE is on a kind of “up and over” trajectory compared to the orbital paths of the planets. Get a better feel for it with JPL’s interactive solar dynamics tool.

While NEOWISE might be beating a hasty retreat from Sol right now, the comet it actually getting closer to us in the process. On July 22nd it will reach perigee, that is, the point in its orbit closest to Earth. On that evening the comet will be approximately 103 million km (64 million miles) away. Not exactly a stone’s throw, but pretty close in astronomical terms. The apparent brightness of NEOWISE will naturally peak at perigee, but even during the lead up to the big show, the comet should be visible with the naked eye between 10 and 20 degrees above the northern horizon.

Most estimates say that NEOWISE should remain visible until at least the middle of August, though it will be dimming rapidly. After that, you’re going to have to wait awhile for a repeat showing. Given the orbit of this particular comet, it won’t come around our way again for approximately 6,800 years, give or take a few lifetimes.

NASA will be hosting a NEOWISE live stream tomorrow afternoon where researchers will answer questions about this once in a lifetime celestial event, though we think you’ll get a lot more out of it if you just go outside and look up.

source https://hackaday.com/2020/07/14/dont-wait-you-need-to-see-comet-neowise-right-now/

Don’t Wait, You Need to See Comet NEOWISE Right Now

By now you’ve heard of NEOWISE, the most spectacular comet to visit our little corner of the galaxy since Hale-Bopp passed through over 20 years ago. But we’re willing to bet you haven’t actually seen it with your own eyes. That’s because up until now, the only way to view this interstellar traveler was to wake up in the pre-dawn hours; an especially difficult requirement considering a large chunk of the population has gotten used to sleeping-in over the last few months.

But things are about to change as NEOWISE begins a new phase of its trip through our celestial neck of the woods. Having come to within 44.5 million km (27.7 million miles) of the sun on July 3rd, the comet is now making its way back out of our solar system. Thanks to the complex dance of the heavens, that means that as of tonight, observers in the Northern Hemisphere will be able to see NEOWISE in the evening sky just above the horizon.

NEOWISE is on a kind of “up and over” trajectory compared to the orbital paths of the planets. Get a better feel for it with JPL’s interactive solar dynamics tool.

While NEOWISE might be beating a hasty retreat from Sol right now, the comet it actually getting closer to us in the process. On July 22nd it will reach perigee, that is, the point in its orbit closest to Earth. On that evening the comet will be approximately 103 million km (64 million miles) away. Not exactly a stone’s throw, but pretty close in astronomical terms. The apparent brightness of NEOWISE will naturally peak at perigee, but even during the lead up to the big show, the comet should be visible with the naked eye between 10 and 20 degrees above the northern horizon.

Most estimates say that NEOWISE should remain visible until at least the middle of August, though it will be dimming rapidly. After that, you’re going to have to wait awhile for a repeat showing. Given the orbit of this particular comet, it won’t come around our way again for approximately 6,800 years, give or take a few lifetimes.

NASA will be hosting a NEOWISE live stream tomorrow afternoon where researchers will answer questions about this once in a lifetime celestial event, though we think you’ll get a lot more out of it if you just go outside and look up.

source https://hackaday.com/2020/07/14/dont-wait-you-need-to-see-comet-neowise-right-now/