funsec mailing list archives

Botmaster: 0x80 outed by Washington Post photo Metadata


From: Gary Warner <gar () askgar com>
Date: Sun, 26 Feb 2006 13:26:18 -0600

Have you seen this already?

This is a really funny leak, that reads more like a complicated GeoCaching clue . . .

There was a great article where Brian Krebs interviewed the hacker 0x80, who claims to be quite a bot-herder. ( http://www.washingtonpost.com/wp-dyn/content/article/2006/02/14/AR2006021401342.html )

The photo that ran with the article (since removed), and some bright Slash-Dotters listed the metadata for the photo that says it was taken in Roland Oklahoma . . . a town of less than 3,000 people.

Another slash-dotter takes the data from the article that there was a gas station, a strip club, and a used car lot near the kid's home, and uses Google Maps to identify the likely places of business in Roland Oklahoma.

http://it.slashdot.org/comments.pl?sid=177830&cid=14751042

The photo is shown here:

http://fishbowl.pastiche.org/2006/02/19/the_perils_of_metadata

So, we need a 21 year old Marlboro smoker in a town of 3,000 that claims to drop $800 a night in the VIP room of the strip club. I'm thinking there are cops at the Cheyenne Gentlemen's Club interviewing strippers there as we speak.

_-_
gar




_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.

Current thread: