Hacker News new | ask | show | jobs
by spydum 3358 days ago
Why is everybody posting/curious about the language of the blog post and not the contents of the file?

I've looked through some of the contents.. Some look incredibly old, but others target odd things.. lots of cPanel. My only guess is take the low hanging fruit to build "jump box" type systems?

Some odd examples: ElegantEagle/toffeehammer.. focuses on cgiecho for RCE. The thing is, a CVE was just released for this case maybe a month ago?: http://www.cvedetails.com/cve/CVE-2017-5613/

So if this dump was from 2013, why did the CVE recently pop up? Or is that coincidence?

1 comments

Many people may not be technically savvy enough to understand the contents of the file, but everyone is interested in who the author is. In fact, these exploits are rather old, but the identity of ShadowBrokers is fresh.

And the idea that you can figure out where someone is from by analyzing their written text is as fascinating as doing the same to their code.

> the idea that you can figure out where someone is from by analyzing their written text

That idea is quite well known, so it's likely that the post was written like that deliberately. I was just wondering if you could create a similar sounding post with a chain of people rewriting the original in their own words.