Remix.run Logo
9x39 3 days ago

I had a report from a business of possible unauthorized remote access in a point of sale. A touchscreen system was found logged in by an unknown admin overnight. There had been weird reports of the mouse cursor moving on its own.

After a lengthy quarantine and investigation that turned up nothing, I decided to go see this machine myself for context. While I was standing there taking everything in, a fly landed on the dirty touchscreen on a smear and tripped an on-screen button as it rubbed its legs together.

Everything clicked - it was just a fly and eventually some digging revealed someone had carelessly left an admin user available: ID 2, no password, which the fly inadvertently tapped into the touchscreen login UI with two lucky clicks.

FireSquid2006 3 days ago | parent | next [-]

To think that previously upon hearing "system so insecure it could be penetrated by a fly" I would have thought it a ridiculous hyperbole

porridgeraisin 3 days ago | parent | prev [-]

Hilarious