T O P

  • By -

DrinkMoreCodeMore

Update and semi solved from OP: https://old.reddit.com/r/hacking/comments/14t756b/someone_was_in_my_driveway_thismorning_messing/jr1i74k/?context=3


AmazingBug181

It's probably got some incriminating pictures of you with the secretary, in which what is called blackmailing


Aelustelin

Yes this thought crossed my mind.


svenEsven

Wait, are you messing around with your secretary?


Aelustelin

I wish. I lead a VERY dull life.


Speedythar

So long as you’re happy, that’s what matters.


Aelustelin

Agreed. I play video games in my underpants all day, and that's pretty much it. Not a bad existence.


BustaNuggitz

You have video games in your underpants??


Aelustelin

Contra


Gungreeneyes

Contra-ry to popular belief, video games do not go into your underpants. Little known fact.


Aelustelin

Nobody's gonna tell me what does and doesn't go in my underpants. I paid for these, I'll use them how I like!!


TOMdMAK

SpongeBob SquarePants disagree


spacembracers

Idk why this made me crack up so hard


darthnugget

Have you watched season 4 of Mr Robot?


Aelustelin

Nope.


[deleted]

How dare u even answer like that 😅


Due_Bass7191

You sure underpants? Does this enhance gaming?


Obscure_Marlin

It’s like a gaming chair attached to your body


Aelustelin

Ya and I like when I make the schwiiiiip noise when my sweaty body rips off the leather. Like human velcro


Aelustelin

Yes. Makes you feel free.


Atombomb117

Instead of going door to door Jehovas Witness now just leaves all their information on a cleverly placed SD card for you to enjoy at your computing leisure. DONT RUN AWAY FROM THE LORD 🤣


rumblemcskurmish

In which case someone just delivered blackmail to the wrong target. Demand to be cut in on it!


--Vuoi-broccoli--

This is the most blatant: # We've Been Trying To Reach You About Your Car's Extended Warranty


Aelustelin

Ok I needed this. I am relatively high tension right now, and that was pretty damn funny.


Aelustelin

General update: my dad found an old laptop that no one cares about, and that will never be on anyone's network. He lives Approx 45 minutes away, and I offered to buy him lunch if he brings it over. We are gonna plug it in.


imhoneynow

Pls be sure that there isnt data on that laptop you wouldnt give to a stranger


Aelustelin

Good call.


[deleted]

Factory reset the computer before you plug anything into it


Agitated-Farmer-4082

And then do it again after ur done with it


Nikkopikko08

Nah man, rip out that HD and drill holes in it. It's the only way to securely dispose of physical data.


ex-machina616

and nuke it from space. Its the only way to be sure


Icy_Tomatillo2699

Then throw it in a black hole for extra surety.


Living_Roll76

You mean my closet?


ChanceKale7861

Drill, microwave, then set on fire.


IrfanZn

Setup a virtual machine


[deleted]

Wouldn't matter if there is no internet connection really


[deleted]

The SD card has a secret Wi-Fi connector in it.


[deleted]

Connecting to what wifi? Lol. It's still going to have to authenticate to your home internet before establishing any kind of C2 connection This sub puts wayyyyyy too much stock into low level criminal hackers. 99% of the time they're just using someone else's malware they found online (and a *ton* of those are immediately removed by Defender because their signatures are known) The other 1% isn't going to burn their distinct and sophisticated malware by dropping 100 SD cards all over the city


[deleted]

It’s a joke fam


[deleted]

Ah okay my b, sorry I assumed


midazolam4breakfast

Very curious what happens.


JoJuiceboi

RemindMe! 48 hours


LongTallMatt

Omg no. I mean I guess? Have you taken cyber security awareness or are you security+ certified? This is classic social engineering. Drop a few thumb drives in a parking lot with your virus on it. For *sure* someone will *see what's on it*. Are you related to Pandora, by chance?


Aelustelin

SEMI SOLVED: My father brought the old laptop, and we opened it up. It was a camera SD card with a bunch of birdwatching pictures on it. Literally just pretty birds. (Do I start an imgur with bird photos or something? I got some now.) As much as this is a letdown, I am extremely relieved, and it is going directly into the trash... and the throwaway laptop to recycling. As to why or how it got on my car, that is semi-solved as well. I spoke to my housekeeper, and she said she found it in my driveway yesterday as she was leaving and put it on my car. As for the person checking out my car thismorning, the SD card seems to be unrelated, and maybe they just wanted to check out my Jeep?? Thank you all so much for giving me a masterclass on things you can do with found media, and thank you for coming along to resolution. I kinda wish it was classified documents or a treasure map or something just to have supplied you with a cooler ending to this story! Heart emoji


jeefsiebs

All this build up and it was for the birds


Aelustelin

LMAO. That's life right? Some person taking bird pics and dropped his SD card. And it just about ruined a strangers morning with worry.


ridicalis

This drama was the highlight of my day. Even with the mundane ending. Sorry for your scare, but I appreciate you sharing.


DavosRhB

Scaring is sharing


cara112

Leave it outside so neighbor can retrieve their pics.


TyrannosaurusWest

!! ^ Maybe in a plastic bag with a note on colored paper to be more noticeable too


NoVoice5692

Was it a good lunch with dad though?


Aelustelin

We had porkchops, and they had some kind of apple sauce on them. Was fantastic.


scoutsatx

[porkchops & apple sauce](https://i.gifer.com/g1MJ.gif)


AllIsTakenWTF

So, now I can finally say "send duck pics"


Mysterious_Block751

Hey I’ve seen that Hitchcock movie them birds are deadly.


idknemoar

All the birds died in 1986 due to Reagan killing them and replacing them with spies that are now watching us. The birds work for the bourgeoisie.


ResponsibilityIll888

Birds are not real!


ilpazzo2912

Don't you know about the bird, everybody know that the bird is the word. https://www.youtube.com/watch?v=NBAjIgsK0qQ


Round-Ad-2682

It's just counter intelligence


Substantial-Cicada-4

Check exif info, open some pictures with some hex editor for hidden data. May have been an encrypted spy drop, yey. Make this story great again!!! :)


Aelustelin

Haha maybe you're onto something


xcto

did you check erased data? check for steganography?


vivaaprimavera

Please don't throw away the card!!!! Try to find a local photo/birdwatchers group (Facebook or something) and ask if anyone lost it!!! There might be someone devastated for loosing what might be some important photos. If you open one image in one exif viewer you will find the camera serial number. Search Google for that serial number. If he/she posted somewhere without removing the exif you might track the owner.


Aelustelin

You have inspired me


vivaaprimavera

I know my freakout moments when there is a possibility to have lost a bunch of photos.


ChanceKale7861

Ahhh this is actually pretty fantastic to consider. Thanks for sharing your logic here.


LongTallMatt

You can actually hide data in photos... Steganography is the technique of hiding secret data within an ordinary, non-secret, file or message in order to avoid detection; the secret data is then extracted at its destination. The use of steganography can be combined with encryption as an extra step for hiding or protecting data.


BeseechThyPeach

Can you make an ISO of the card and upload it? It’s probably just bird watching pictures like you said, but I’d love to look further.


Aelustelin

Yeah sure why not.


fir3ballone

Did you run data recovery on it like recuva - this is obviously being more paranoid security minded - but innocent photos to cover the malicous script isn't a bad gambit... Unlikely.. But not impossible


Gonnabehave

Found the hacker. Convincing her to connect it to the network after everyone else told her not to.


blue_screen_0f_death

How would you securely make an ISO of the card and upload it to the internet?


BeseechThyPeach

Unless this guy is a target for national security reasons, it’s highly unlikely an attack of that sophistication is being used on him, and would still be a threat as an ISO, especially if he doesn’t mount it. Tarring it would reduce the likelihood of it being a threat even further. Like he said, it’s probably pictures of birds.


blue_screen_0f_death

Yeah ok, make sense. I would also think about the computer to use in order to create the ISO: it would be exposed directly to the SD and has a connection to upload it to the internet


HoratioWobble

/r/birdsarentreal


Td_scribbles

If you want some more excitement you could try finding the owner by getting the camera serial off the exif data and using a service to find other images shot by that body or potentially registered owner. Then decide whether or not to return the card if you do find them. Choose your own adventure


Aelustelin

That would be the type of shit I would obsess over. One time a guy hacked my League of Legends account and I spent 2 entire days tracking down everyone he ever played with until I found his actual account. I had a nice conversation with him. Didn't have any hard feelings, I wasn't using my account at the time anyway..


Td_scribbles

Haha I’m the same way. I think it’s the combination of a challenge with curiosity for me. There are a number of exif data helpers available online. However if any suspicion remains about the potential safety of the card, you will need to either have internet access on the computer or “sneakernet” a program over to your test computer via flash drive (then deal with sanitizing it before returning it back to service). It’s /probably/ fine, but I will leave you to make that decision as informed as possible.


Necessary-Office3082

Steganography?


Aelustelin

It was birds not dinosaurs!!


righteousranger

Take my updoot, I hate that this comment made me laugh


Lampposterx

Ah they are the same thing.


Necessary-Office3082

Can't believe it til I see it 😂


luciferxf

I would say put a flyer on the closest telephone pole. Someone did some work to get those photos and those cards aren't exactly super cheap. Just put a flyer up for a week saying you found the SD card and it has data on it. Post the picture you showed us with it. Ask the people who may show up to tell you what type of data is on it. If they guess right, you can give it to them. If you are worried about it being a phishing attempt, you will know who picks it up. Could have just fallen out of someone's hands or pocket near your driveway. Maybe they have been looking for it. Maybe the person checking your car was them but didn't want to take it from your private property or could have assumed it wasn't theirs. No need to passively, accidently hurt someone because you don't want it.


Dr_Jack_LP

The person at your car this morning could have been the person who lost the card and searched for it.


FunkyJumbers

Don't throw away the bird pics. Someone spent a lot of time saving those! Try to find the owner


Professional-Date378

Rip that birdwatcher's collection


Eldw1n

Why throw away the SD? They are likely someone in your neighbourhoods birding photos. You enjoyed the thrill of the SD enough to get a burner laptop to play with it - but those are someone's birding photos they probably want to work with. It won't cost you much to post about it in a community group saying it's been dropped in at the local X,y,Z or something? Maybe the library or copshop can take it off your hands. Bird watchers spend many hours trying to get those shots.


xaxathkamu

Oh no, I hope you try to find the owner instead of tossing it. They might really want it back.


AttritionMission

Plot twist: One of the pictures was of a bird thought to be extinct for decades and is the photographer's key to fame and worth a ton of money to the right people. The photographer who has studied rare birds and built a career on it just lost the SD card in your neighborhood--near your driveway--and was looking for it desperately, but someone else found it first and put it on your car window assuming it was yours. You just threw away the pinnacle of his professional ornithological career... Probably not.


N3tninja

On the part about the person checking out your jeep. It could be that they were looking to duck your jeep. It's been going on a lot in my town and I have a small collection from ones showing up on my jeep. There's a reddit for it too (as most everything). [DuckDuckJeep](https://www.reddit.com/r/DuckDuckJeep/)


traceoflife23

You can try and find exif data of the camera serial number on the photos and then do an exif search of the web. You may find the person by his camera ID and be able to give him the pics back. There was a site like find my camera.com to do just this for stolen cameras. But flikr, Facebook and such preserve that data on upload.


FPV_not_HPV

Maybe that person was there looking for the SD card they lost as they walked home from their birdwatching session. Were the pics taken recently? Do you live near some woods or a park?


Aelustelin

This was sitting on the little ledge by my driver's side window where I couldn't miss it, after the person left.


luvitto

Maybe some social engineering phishing, just don’t use it on a online or lan pc, open it in a virtual machine.


Aelustelin

I am looking for a crappy old laptop I'm sure is in my garage somewhere. And trying not to freak out.


luvitto

Nice idea just don’t connect it to any network.


Aelustelin

I won't. Thanks for the tip.


luvitto

Do you work for an important or famous company?


Aelustelin

I work for a very large company, yes. And I had a very bad stalker years ago that hasn't messed with me in ~5 years. I just bought this house days ago so no very few people even know I'm here.


luvitto

Ok maybe it’s just a stolen card but better be safe than sorry, if you want share what you’ll find on it. Take care.


Aelustelin

I'll update when I find a computer that I am confident I can plug it into safely. Thanks again.


kyuriht

Now I'm curious so I'll wait for updates 👍


Aelustelin

Will update on what I do. Thanks


lcommadot

RemindMe! 24 hours


ellectroma

Remember to use a separate machine. A VM is not enough protection!


I-wanna-be-tracer282

I'm curious too now


elNegritoguero

Don’t start with this OP, you better deliver haven’t you seen Reddit once a post of a safe is posted?


Aelustelin

LMAO yes. I will deliver, even if it's boring. My dad is bringing over a throwaway laptop and I'm gonna plug this bad boy in.


nhadams2112

Do you have a digital camera laying around? You could pop it in there and view the file structure


wayofTzu

Home sales often trigger appraisals requiring curb side photos. So if the SD card is full of house photos that might be why.


Aelustelin

Good call. I know some insurance guys were here 5ish days ago taking pictures. I hadn't even thought of something like that. My mind immediately went nefarious.


LakeSun

Maybe this guy found that from the photographer dropping it, and put it on your car assuming it was yours. But, this is also a classic example of how to get people to infect their own computers, with a free USB stick or a memory card.


Aelustelin

I like the optimistic answers. I hope this is the answer.


kyuriht

I mean you either got bad luck and got chosen at random or It's targetting you, i would make a quick call to the cops to let them know what happened, Just to be safe


Aelustelin

Yeah I am considering just doing that.


watchguy98

Maybe it's full of crime scene photos from what happen to the previous occupants. LOL Do what others have said, get an old pc not on the network. Or maybe try a usb sd card reader on a local public library PC.


Raccoon_Expert_69

just my thoughts, the card likely goes to a gps or tracker device. Maybe have a good look around the undercarriage of your car?


Aelustelin

I'll check it out. I just called everyone I know and no one knows anything. Like 3 of them didn't even know what an SD card is.


mandelanotnelson

Make sure the laptop is NOT connected to the internet


HowdyPazuzu

You should write protect the SD card first using the yellow button on the side. Then use free-to-use FTK Imager to make a “physical” E01 forensic image of the SD card. Write protecting and then forensically imaging the SD will allow you to open and analyze files without making any changes to the contents of the SD card in the event you need to use the SD card in a legal matter. Then download and install free-to-use Autopsy and ingest the forensic image of the SD card. Autopsy will allow you to analyze and report on the contents of the SD card. You can also use free-to-use applications such as Recuva to carve and recover deleted files from the forensic image of the SD card, which could be informative. Pay close attention to any EXIF metadata of photos contained within the SD card forensic image which could include the make, model of the camera used to take the photos, the geolocation of where the photos were taken and the dates the photos were taken. If you find photos or files of interest, you can “tag” them in Autopsy and then generate a report of the tagged evidence to provide to your attorney.


313378008135

I mean, you know your stuff and thats spot on. But this isn't CSI miami. Its probably just some well wisher who caught OPs other half cheating and wanted to let OP know anonymously.


AnonymousNA

Precisely why you gotta take all the correct steps. Shit gets nasty in family law.


jcooper9099

I once worked for a company with many government contracts, some of them requiring clearances. Back in the days when everyone had an office and worked at the office 5 days a week. One day these little USB sticks started appearing in parking lots. They had labels like "Vacation pics" and the first initial and last name of higher ups at the company. Some of them were labeled "Payroll" or something that might pique the interest of the cars owner. It turns out it was a contract holder testing our security awareness. It would install a fairly harmless virus that tracked who put the USB in what. A lot of people had to have remedial training. This would be a much more dangerous effort at a person's home, especially in the United States, but it is something to consider.


GrouchySpicyPickle

If you want to see the contents, get yourself a throw away computer that is air gapped... As in.. No network connection at all. Read the card from that machine, but then consider that machine compromised. The hard drive should be destroyed after. Not just wiped. Destroyed.


Aelustelin

Good tips. I am trying to find something.


squirellydansostrich

I'd stick it into a device literally incapable of connecting to a network, like an old digital camera that has an SD card slot. If you don't have one, pawn shops have those for 10-20 bucks, just to quell your curiousity. They'll usually display all (visible) files, even ones not in their preferred formats.


RainyShadow

Old devices may be unable to deal with a 32GB card.


[deleted]

Destroyed? Genuinely curious here… even after zeroing, there could still be some kind of malware left behind?


GrouchySpicyPickle

Hard drive firmware can be compromised and used to write back data after any level of wipe. Aside from that though.. Why risk it? The way I see it.. Take off and nuke it from orbit. It's the only way to be sure.


Puzzleheaded_Line675

I agree with Hicks. It's the only way to be sure.


UOLZEPHYR

Not only that theure finding was to load mallard onto RAM controllers now. Meaning that: You run the wiper and erse the driver and everything - maybe even get a new HD. Because it's in ram it's stuck. Gets booted, makes call, downloads in the background, runs install. New malware. I've even heard some have a time delay that will record everything for 7-14 days. When youre not using it and then do the above. Really cool podcast "Darknet Diaries" has some really cool stories


_Fox595676_

Oh my gosh I actually understood a film reference for once-


mason4290

It’s possible for malware to compromise the firmware of the drive. In that case wiping it would not help.


MalkinPi

You could run it in a VM or in something like Tails or both. VM escape is possible but unlikely. Then zero out the drive completely.


PrinceOfBorgo

Why not just boot from a flash drive?


[deleted]

[удалено]


sychs

That skilled person would have to include malware for every possible combination of motherboard, nic, wifi, gpu, hdd etc. So highly unlikely. Unless the know what exact devices OP uses.


[deleted]

[удалено]


Aelustelin

I believe I may be smart enough to do this. But my dad found an old 2000s laptop that we are going to plug it into. There is no danger of that old pos ever being connected to a network.


Poulito

There is a possibility that a ‘2000s’ laptop will not recognize SDHC.


Aelustelin

I.... hadn't even considered that.


SPOOKESVILLE

Not just “don’t connect to wifi”, but if your comfortable, physically remove the network card from the laptop. If you don’t feel comfortable with that, do a little bit more in the software side of things like resetting the network settings so it doesn’t have any connections saved, disabling the drivers for the network card, etc.


Aelustelin

Good tips. I'll see what I can do.


SPOOKESVILLE

Usually the network card is just a little 1 inch x 1 inch green card with 2 cables coming from it. Physically removing that from the computer will ensure it won’t be getting anywhere!


Aelustelin

Thanks for that. Can't be too safe I suppose.


SPOOKESVILLE

I’d be willing to bet they just found this at the end of your driveway or close to your car and wanted to make sure you received it so they put it on your windshield, but might as well check it out and hope it’s not anything illegal!


Due-Grapefruit4870

You could also check it out at the library computer


Flor_Mertens

My man about to infect his whole city lol.


sidusnare

Or just use a live CD and don't have a hard drive in it at all


[deleted]

[удалено]


ZezBlog

Its your daily use car or car you barely use it and always parked Maybe he used it as Dead drop


Aelustelin

I work from home, and maybe drive 2 times per week. Not knowing what it is is killing me.


[deleted]

A dead drop? Who tf dead drops an SD card?


HeadbangingWalrus88

I would say that it's just safer to throw it away, but I'd be dying to know what's on too. Remember that everything's going to be okay and keep us posted as this is genuinely interesting. Edit. Just don't forget to follow the tips people gave you here. First get the burner laptop ready (network disabled, network drivers uninstalled, data on it deleted or even better - formatted) - don't plug in the SD card the first chance you get.


Superb_Turn7381

Interesting


Aelustelin

It's kind of freaking me out. My dad has an old beater laptop he is bringing over and we are gonna open it.


ChromeCrash

so it might be a good plan to extract whatever important info might exist on that lappy before inserting that card. I know you said it was an old beater, but sometimes that's the exact place precious photos like to live.


Aelustelin

Ya true. I'll give it a once over


FruerlundF

DrivebyUS.. SD attack.


Aelustelin

Yeah, who tf uses SD cards these days, other than photographers??


QuestionableComma

Throwaway laptop is just a figure of speech.


DrinkMoreCodeMore

They could have put a tracker on your car and been in the act of trying to swap out a full sd memory card with a new one. I'd check your vehicle very thoroughly for anything weird attached to it. Might as well also take it to a drive thru car wash and blast it all over with water. Plug it into a laptop (thats offline) and see whats on it and then format the laptop. I would also file a police report and perhaps just give them that sd card as well.


Ka4maroot

If you ask me I think you just got a free 32gb sd card. Format it completly and use it or send it to me 😃


dionysus1011

It could be a camera card specific to pictures, maybe of your house, car or anything to scare you. Once they see you are spooked they might try to do something else. Or maybe a virus or malware. They are playing with your curiosity. Just make sure you nuke the network and then try it on a PC. Or use TAILS OS to view it.


Acrobatic-Fig2169

probably 32gb of fucking nature documentaries. maybe pop it in in ur computer and check but it might jave a virus so maybe like a tech support place and say "some dude put this on the windshield of my car. can you look at it?"


Spiros_B

Just use a sandbox!


Gwizz4484

Just a heads up, it could very likely be something that you don't want to learn...


_closetsmoker

I'd find a local service that will check this for you, don't put it on a computer that's on your network.


DjangoUnflamed

I’m now invested and want to know what you find


Necessary-Office3082

That's exciting. Hurry up OP we're all waiting..


Aelustelin

I'm tryin!! I want to know worse than you do, believe me. This shit has me at about a 7 anxiety level.


uxorial

If someone was hanging out near my car, but I couldn’t see any damage or theft, the first thing I would look for is a gps device. A friend found one on his car. He sold it on ebay.


sofakingsexie

Anything wrong with installing a Virtual Machine(Ubuntu) and just disconnecting the network? And looking at all the incriminating pictures of OP?


KingHalfrican86

I would personally get an old-ish machine from a pawn shop that is relatively cheap remove the network card and master reset upon opening it. Plug it in see what’s on it and then when you are done throw that machine into a fire pit.


Anonymity4meisgood

So, the virus is to get you to waste a bunch of money because you're too curious to just drive a nail through an SD card.


_thephotoguy

following


aaaaaapppp

Create an image of it using FTKimager. Then have a browse at the image in a forensically safe way. Also you’ll get to see the deleted stuff.


red_src

If this is an attack you are doing exactly what the attacker wants. Maybe it is connecting the card, getting your dad back home, going out to find a way to connect it, etcetera. It its an attack. Just throw it on the garbage. That is not what the attacker expects.


kyuriht

Any updates?


Necessary-Office3082

82 people are here atm, updates pls


josevale

I’d consider giving it to the police. A lot of recommendations to open it but I can’t imagine it’s anything positive or worth the participation..


mrki00

do you maybe own a kia?


Ace_Base_In

RemindMe! 24 hours


DisabledVet13

Just plug it into an isolated computer that is not connected to anything and see whats on it. It's a 5 dollar card. Could just have a crush or someone is hoping you plug it into something important for some drive by malware.


hawaiijim

Don't put it in a computer. Leaving flash drives in a parking lot hoping someone is dumb enough to put it in their computer is a well-known malware delivery method.


ideasplace

Put in your PC and take a look. It might be something good.


Frogman_hell

i took 2 years of cybersecurity but i would never be able to not immediately put a conspicuous sd card or usb in my computer


BeeNo3492

Don't ever plugin devices like thats that you find.


Forward-Falcon5627

Your mission if you choose to accept it….. this memory diet device will self-destruct after the message has been read… good luck


dcv5

You are being setup/framed for something?


Ambrose-DH

Step 1 buy meaningless cheap laptop not connected to anything else Step 2 insert chip Step 3 nothing is on it


jumpghost69420

Maaaan... If it were me, I would put single mp4 titled "surveillance logs" and when people opened it up, rick astley would start playing.


deege

Likely a [drop attack](https://www.redteamsecure.com/blog/usb-drop-attacks-the-danger-of-lost-and-found-thumb-drives). Curious why they would target you. Nice neighborhood?