Get the latest tech news

Investigating an “evil” RJ45 dongle


Reverse-engineering hardware can be difficult -- but sometimes, all you need is a comfy armchair and some Google Translate.

Earlier this week, a young entrepreneur caused stir on social media by suggesting that an Ethernet-to-USB they purchased from China was preloaded with malware that “evaded virtual machines”, “captured keystrokes”, and “used Russian-language elements”. The poster shared an ambiguous antivirus scan report from Crowdstrike Falcon, but that seemed to be a red herring: the binary was a self-extracting EXE created using 7-Zip, a well-known open-source archiver authored by Ivan Pavlov. But then, with the item in my cart, I had an epiphany: I went to the website of CoreChips and used Google Translate to pinpoint the original Chinese text for the “ SR9900 series chip Windows system mass production tool ”.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of dongle

dongle

Photo of RJ45 Dongle

RJ45 Dongle

Related news:

News photo

Razer’s Viper V3 Pro mouse puts its dongle where it belongs

News photo

Forget buying an expensive TV for Black Friday — this dongle gave my 'old' TV new life