Hacker News new | ask | show | jobs
by ev1 2083 days ago
FB app, and several merchants run .swf and java applets that request MAC locally and upload it. Also enumerate WebRTC for lan

FB used to also websocket portscan your localhost + LAN on login from a fbsbx.com domain that also attempted to load native code/windows media player playlists/SWF/Java/Shockwave

2 comments

> FB used to also websocket portscan your localhost + LAN on login from a fbsbx.com domain that also attempted to load native code/windows media player playlists/SWF/Java/Shockwave

That's straight up malware behavior.

Man that's shady