Final Unicourse'tan Çalış, Yüksek Notu Garantile!
Vizesine Unicourse'tan Çalış, Yüksek Notu Garantile!
TIL the DCIM directory stands for "Digital Camera Images"
-
This post did not contain any content.
-
This post did not contain any content.
neat
-
This post did not contain any content.
So simple, yet so far away.
-
This post did not contain any content.
Imagine if you were a malicious actor and you wanted a copy of all photos someone plugged into a computer that were not things like browser cache, just good honest to god OC.
All you have to do is listen on drive letters D, E, F, G and when one is plugged in with a DCIM directory... silently upload the data contents to a server over the internet when a drive is detected with that subdirectory.
Have you ever wondered why you couldn't eject a drive without rebooting? It's not like it's going to tell you what process is keeping it locked... Encryption wouldn't even matter, because you're gonna need to decrypt/unlock it to access it, and windows doesn't care what service or application is trying to access it, it is glad to allow any kind of file action without even admin rights.
Anywho, actor has your photo, AI trivially builds facial recognition models, pulls in timestamps, geolocation metadata, camera metadata... and now those photos you never intended to upload anywhere are in a database of PII that will be shared to god-knows-who.
-
Imagine if you were a malicious actor and you wanted a copy of all photos someone plugged into a computer that were not things like browser cache, just good honest to god OC.
All you have to do is listen on drive letters D, E, F, G and when one is plugged in with a DCIM directory... silently upload the data contents to a server over the internet when a drive is detected with that subdirectory.
Have you ever wondered why you couldn't eject a drive without rebooting? It's not like it's going to tell you what process is keeping it locked... Encryption wouldn't even matter, because you're gonna need to decrypt/unlock it to access it, and windows doesn't care what service or application is trying to access it, it is glad to allow any kind of file action without even admin rights.
Anywho, actor has your photo, AI trivially builds facial recognition models, pulls in timestamps, geolocation metadata, camera metadata... and now those photos you never intended to upload anywhere are in a database of PII that will be shared to god-knows-who.
I'm not sure how that's relevant? If the default folder was "Camera" or "Pictures" or whatever else your malware would just scan those directories and any real attack likely already does. You've only described how having malware on your machine compromises your machine, not exactly a groundbreaking revelation.
Windows hasn't been my main os for a while but I'm fairly certain you can mount/unmount drives without rebooting. That's certainly the case on Linux, and my distro definitely tells me what processes are locking drives when applicable.
-
Imagine if you were a malicious actor and you wanted a copy of all photos someone plugged into a computer that were not things like browser cache, just good honest to god OC.
All you have to do is listen on drive letters D, E, F, G and when one is plugged in with a DCIM directory... silently upload the data contents to a server over the internet when a drive is detected with that subdirectory.
Have you ever wondered why you couldn't eject a drive without rebooting? It's not like it's going to tell you what process is keeping it locked... Encryption wouldn't even matter, because you're gonna need to decrypt/unlock it to access it, and windows doesn't care what service or application is trying to access it, it is glad to allow any kind of file action without even admin rights.
Anywho, actor has your photo, AI trivially builds facial recognition models, pulls in timestamps, geolocation metadata, camera metadata... and now those photos you never intended to upload anywhere are in a database of PII that will be shared to god-knows-who.
The unmounting needing a reboot seems very much a you problem.
I have managed over 1000 systems since XP days and never came across it.
-
Yeah, File Locksmith from Power toys is great!
-
Imagine if you were a malicious actor and you wanted a copy of all photos someone plugged into a computer that were not things like browser cache, just good honest to god OC.
All you have to do is listen on drive letters D, E, F, G and when one is plugged in with a DCIM directory... silently upload the data contents to a server over the internet when a drive is detected with that subdirectory.
Have you ever wondered why you couldn't eject a drive without rebooting? It's not like it's going to tell you what process is keeping it locked... Encryption wouldn't even matter, because you're gonna need to decrypt/unlock it to access it, and windows doesn't care what service or application is trying to access it, it is glad to allow any kind of file action without even admin rights.
Anywho, actor has your photo, AI trivially builds facial recognition models, pulls in timestamps, geolocation metadata, camera metadata... and now those photos you never intended to upload anywhere are in a database of PII that will be shared to god-knows-who.
If someone else has the ability to upload any of your files then the name of your folders is completely unimportant.
-
On top of this, it’s usually because the local cache hasn’t actually written all the data to the drive and if you go yanking the drive in this state, your most recent chunk of data would be missing or corrupt. The eject button forces your OS to clear its write cache before unmounting the file system.
But that’s a lot less of an exciting answer.
-
Imagine if you were a malicious actor and you wanted a copy of all photos someone plugged into a computer that were not things like browser cache, just good honest to god OC.
All you have to do is listen on drive letters D, E, F, G and when one is plugged in with a DCIM directory... silently upload the data contents to a server over the internet when a drive is detected with that subdirectory.
Have you ever wondered why you couldn't eject a drive without rebooting? It's not like it's going to tell you what process is keeping it locked... Encryption wouldn't even matter, because you're gonna need to decrypt/unlock it to access it, and windows doesn't care what service or application is trying to access it, it is glad to allow any kind of file action without even admin rights.
Anywho, actor has your photo, AI trivially builds facial recognition models, pulls in timestamps, geolocation metadata, camera metadata... and now those photos you never intended to upload anywhere are in a database of PII that will be shared to god-knows-who.
You'd be surprised (or maybe not) at how many people name folders or files, "your eyes only"
-
This post did not contain any content.
It's pronounced "Jim".
-
This post did not contain any content.
I pronounce it as Daysim and you can't stop me
-
It's pronounced "Jim".
Its actually "dickim”
-
This post did not contain any content.
So it should have been DCI all this time. Or DICAIM.
-

-
If someone else has the ability to upload any of your files then the name of your folders is completely unimportant.
How do you know that the latest version of a piece of software that auto updated on your computer doesn't have anything snooping on your hard drive and uploading whatever it wants somewhere?
Think about it. How would you know? Let's assume it's not using a bug, exploit or vulnerability.
-
The unmounting needing a reboot seems very much a you problem.
I have managed over 1000 systems since XP days and never came across it.
You've never, ever plugged in a thumbdrive and then used the "safely remove hardware" tray to try and eject... only to receive an error that says "unable to remove, in use" or similar?
I guess i've never seen it happen when I was using a thumb drive to image a machine well over a decade ago.
There are a few people on the internet who seem to have reported this though:
https://www.reddit.com/r/WindowsHelp/comments/pnbfcf/this_device_is_currently_in_use_when_trying_to/
https://learn.microsoft.com/en-us/answers/questions/4212072/cant-eject-external-hard-drive
There are thousands of results of this. I have encountered this dozens of times personally across dozens of different systems.
-
Its actually "dickim”
Only if you get his permission.
-
On top of this, it’s usually because the local cache hasn’t actually written all the data to the drive and if you go yanking the drive in this state, your most recent chunk of data would be missing or corrupt. The eject button forces your OS to clear its write cache before unmounting the file system.
But that’s a lot less of an exciting answer.
Hm, the way I remember it is that the cache being flushed showed a spinner before ejecting the drive. GP is referring to an actual error being shown.
-
You've never, ever plugged in a thumbdrive and then used the "safely remove hardware" tray to try and eject... only to receive an error that says "unable to remove, in use" or similar?
I guess i've never seen it happen when I was using a thumb drive to image a machine well over a decade ago.
There are a few people on the internet who seem to have reported this though:
https://www.reddit.com/r/WindowsHelp/comments/pnbfcf/this_device_is_currently_in_use_when_trying_to/
https://learn.microsoft.com/en-us/answers/questions/4212072/cant-eject-external-hard-drive
There are thousands of results of this. I have encountered this dozens of times personally across dozens of different systems.
You’ve never, ever plugged in a thumbdrive and then used the “safely remove hardware” tray to try and eject… only to receive an error that says “unable to remove, in use” or similar?
no, not even with those fake size ones.
Hello! It looks like you're interested in this conversation, but you don't have an account yet.
Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.
With your input, this post could be even better 💗
Kayıt Ol GirişÖnerilen Başlıklar
-
-
-
TIL in 1896 a rubber tire company built an eleven-foot tall, 1,500 pound tricycle, powered by eight men to advertise its products.
Today I Learned
1
-
TIL that Ohio is a major importer of radioactive fracking wastewater. Contaminated water gets pumped underground but doesn’t always stay there. Local communities are not notified
Today I Learned
1
-
TIL that the term "Jaywalking" was invented in the 1920s by the auto industry to shift the blame for accidents from drivers to pedestrians
Today I Learned
1