Settings

Theme

A Theoretically Devastating Cyber Attack on America’s Gas Stations

medium.com

20 points by maerek 3 years ago · 2 comments

Reader

jesvschrist 3 years ago

Most of the ATG services exposed to the internet seem to be honeypots. GasPot[1] is easy to set up. Looking at ATG services on Censys[2] while filtering out hosts with hundreds of open services (likely honeypots) shows 132 services (as of writing). This is pretty far off from the 11,000 claimed by the article. Including those assumed honeypots still yields less than 700 results[3]. If you poke into some of these you can see that they aren't actually gas stations, but some other tank in the middle of a farm field that is running the protocol.

[1] https://github.com/sjhilt/GasPot

[2] https://search.censys.io/search?resource=hosts&q=services.na...

[3] https://search.censys.io/search?resource=hosts&q=services.na...

refulgentis 3 years ago

This is extremely irresponsible and there's no excuse for the article as written. You don't provide an instruction manual on on how to mess with 11,000 gas stations without at least documenting some ways you tried to deal with this another way before just publishing it on Medium.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection