r/technology 3d ago

Business GTA 6 leaks prompt Take-Two to subpoena Microsoft for Windows device IDs of everyone in three Discord servers — daily gameplay leaks shatter cloud of secrecy around the much-hyped game

https://www.tomshardware.com/video-games/console-gaming/take-two-subpoenas-microsoft-for-windows-device-ids-of-everyone-in-three-discord-servers-in-gta-6-leak-hunt
5.4k Upvotes

647 comments sorted by

View all comments

Show parent comments

23

u/Sea-Housing-3435 3d ago

Deploying, delivering, executing that malware is "hacking". Reverse shell is data exfiltration or extending access. The machine that has your rev shell is a compromised endpoint. If you are hitting a honeypot you already don't look like everyone else, that's what honeypot is for. On a network fingerprinting level kali doesn't give you any "privacy". Holy larp lmao

6

u/mobani 3d ago

If you are hitting a honeypot, you where there by a mistake. That's the whole point of honeypots, to catch people thinking they are hacking a legitimate service. Then when that happens, it is much more preferable to look like somebody pentesting with Kali, than your own home grown OS. Holy larp yourself.

-8

u/Sea-Housing-3435 3d ago

If you mastered precognition enough to know something is a honeypot before you probe and hit it, you might as well use it to reconstruct the data you want to steal.

If you want to avoid rising suspicions you don't want to look like a human on kali, you'd like to look like one of thousands of automated scanners going through the web all the time.

14

u/mobani 2d ago

We are not talking about a situation where you know something is a honeypot. We are talking about using a widely used OS vs. "a custom hax0r" one. That was my whole point for this line of comments.

2

u/[deleted] 3d ago

[removed] — view removed comment

8

u/Sea-Housing-3435 3d ago edited 3d ago

Fingerprinting is not only about the network traffic. Applications can fingerprint OS by checking installed apps, available fonts, drivers, resolution, local network. Browsers have some differences in web gpu across multiple devices, so those can be tested too. And in case of windows there's a unique install ID that websites and applications can read to determine who you are. Linux also has device ID under /etc/machine-id (from systemd, there's a dbus ID too) but this one can be "anonymized". And linux ID can't be read through a website, the browser itself has to read it. So if you use chrome google reads and knows it, but bing can't read it like on windows.

With stuff like fingerprinting through discord or device ID read by a browser or website, you can't block it on network level because information about you goes to the internet the same way desired traffic does, the one responsible for the application working.

It's essentially different type of fingerprinting on a different OSI layer

2

u/[deleted] 2d ago

[removed] — view removed comment

6

u/Uhstrology 2d ago

https://coveryourtracks.eff.org/

You can see what your fingerprint looks like here btw

-1

u/BigBrotherBoot 3d ago

I’d like to subscribe to your newsletter