Investigating USB-to-Ethernet Dongles With “Malware” Claims (hackaday.com)
from cm0002@lemmy.world to cybersecurity@infosec.pub on 18 Jan 21:35
https://lemmy.world/post/24436252

#cybersecurity

threaded - newest

slazer2au@lemmy.world on 18 Jan 22:03 next collapse

TL;DR

It’s not malware. The sandboxes flagging this as malware are doing it because the dongle is installing a driver. Like it should do.

Erik Parker did a video reverse engineering the installer and shows the driver doing what it should.
www.youtube.com/watch?v=GY87l_uSIuA

Steamymoomilk@sh.itjust.works on 19 Jan 05:12 collapse

Awwwwh no funny red head dancing man on my computer?? :(

catloaf@lemm.ee on 19 Jan 01:09 collapse

Both chips have an external SPI Flash option, which is used with the USB side to present a ‘virtual CD drive’ to the user when the dongle is plugged in.

Ah, the bad old days of device drivers. I don’t miss them at all.