Pepsi Bottle Exploit!


Recommended Posts

Copied from Full Disclosure Mailing Group:

//edit: the title should read 'Pepsi' rather than coca cola, if a mod could change it for me that would be just fantastic...

again.jpg

================================================

Pepsi Bottlecap Liner Labeling Information Leak Vulnerability

Advisory Location:

http://dragos.com/pepsi.txt

Release date:

February 18, 2004

Severity:

Pink (Free Music Downloads)

Systems Affected:

Diet Pepsi - 20 FL OZ Bottle (with "1 in 3 Wins a FREE Song" label)

Pepsi - 20 FL OZ Bottle (with "1 in 3 Wins a FREE Song" label)

Sierra Mist - 20 FL OZ Bottle (with "1 in 3 Wins a FREE Song" label)

Description:

During the Super Bowl, Apple and Pepsi co-launched an Ad campain giving away

100 Million songs via Apple's iTunes Music Store. Because of a vulnerability

in the notification of the give-away, attackers can guarentee a free song in

any Pepsi purchase. Pepsi uses an industry standard known as "bottlecap liner

labeling", where the vendor includes notification of fun and prizes. This

method of notification is vulnerable to a pre-purchase notification weakness,

allowing attackers to limit their purchase to products that are known to be

"winners" in the give-away.

Technical Description:

An attacker capable of obtaining physical access to a bottle prior to purchase

may create a non-uniform probability distribution leading to predictable

outcome. By causing the bottle to be inclined at a specific declination, the

attacker may gain partial visibility into result variable thereby bypassing

the natural selection process.

This attack is not new. Prior soft drink distribution versions have been

vulnerable to this attack in the past. Known vulnerable versions have included

the Mountain Dew "Free Soda" give-aways.

Protection:

Vendors should put all Pepsi 20 OZ bottles in a vending machine, which should

mitigate this attack by not allowing physical access before the attacker

purchases the product.

ISS users can add the following TRONS rule to detect this attack:

alert bottle any any -> any any (msg:"pepsi attack"; tilt:>15;

classtype:information-leak; priority:pink;)

This rule may be used to identify downloads of known exploits:

alert tcp any 80 -> any any (msg:"Pepsi exploit download";

content:"pepsi"; nocase; content:"tilt"; nocase;

classification:exploit-download-attempt;)

Vendor Status:

The vendor has not been notified.

Exploit:

Exploits have been observed in the wild and are presumed to be in common use.

A proof-of-concept exploit is available at:

http://www.macmerc.com/news/archives/1270

Contributors:

Ereet Hagiwara

Brian Caswell

Dragos Ruiu

_______________________________________________

Full-Disclosure - We believe in it.

Charter: http://lists.netsys.com/full-disclosure-charter.html

Edited by idbuythatforadollar
Link to comment
https://www.neowin.net/forum/topic/142809-pepsi-bottle-exploit/
Share on other sites

Unless you are a Pepsi addict this is usless and personally pointless (I like Coca-Cola a lot more). If one wants to buy a Pepsi just to "win" a free song download why not just spend potentially, and most likely, less and just buy the song for $0.99 from iTunes?

The only way it's really worth buying a pepsi to win a song download from iTunes is if Pepsi offered the deal on 2 Liter bottles.

  Jstphish said:
Unless you are a Pepsi addict this is usless and personally pointless (I like Coca-Cola a lot more). If one wants to buy a Pepsi just to "win" a free song download why not just spend potentially, and most likely, less and just buy the song for $0.99 from iTunes?

The only way it's really worth buying a pepsi to win a song download from iTunes is if Pepsi offered the deal on 2 Liter bottles.

think about it this way...

it costs me $1 even to buy a pepsi. it costs $0.99 to buy a song. win or lose, i am still getting a soda. if i win, that's $0.99 i save. usually i would waste that $1 on mountain dew, sprite, or whatever looks appealing. so now i can buy a diet pepsi (the only ones around here with the game caps), which is healthier for me (no sugar), tastes the same as regular, and i have a chance to win a soda.

sounds like a good deal to me.

plus, buying a soda, you can use cash, so you don't have to use a credit card.

Been doing this trick for years...

But buying a $1 drink (or even considerably more at a sporting or entertainment event!) to hopefully get a 99c iTunes download music which I can only either burn onto CD or put into an iPod, nah, think i'll keep my money...

  Quote
The only way it's really worth buying a pepsi to win a song download from iTunes is if Pepsi offered the deal on 2 Liter bottles.

This would be the best, considering that I can usually buy a 2L bottle of Pepsi for like 79c, once bought a slew of 2L Pepsi for 49c... now that would have been a good deal!

If you want to put any iTunes code that you may find under a Pepsi bottle cap, why not visit Tune Recycler...

  me101 said:
But buying a $1 drink (or even considerably more at a sporting or entertainment event!) to hopefully get a 99c iTunes download music which I can only either burn onto CD or put into an iPod, nah, think i'll keep my money...

Burn to CD

Rip to MP3

lather

rinse

repeat

or just go line out to line in and record away

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Garmin Dash Cam X310: 4K dash cam on sale at lowest price for $334.99 by Paul Hill Dash cam footage can be vital for drivers who get into accidents as it can be used to help with insurance claims if you’re involved in an accident, outside of that, it can be used for filming your trips or recording freak events such as asteroids burning up in the atmosphere. If you’re still without one, or looking to upgrade, take a moment to read about the Garmin Dash Cam X310 which has been reduced by 16% from $399.99 to $334.99. To briefly touch on the features before we get started, the X310 is a compact 4K Ultra HD touchscreen dash cam with a 140-degree field of view, ensuring it captures everything. There’s also a built-in Clarity Polarizer to reduce glare from the windshield and it features automatic recording. The main attraction of the Garmin Dash Cam X310 is undoubtedly the 4K Ultra HD video which will capture fine details, and the 140-degree field of view that ensures it doesn’t miss anything important. Coupled with this, the Clarity Polarizer helps to reduce glare from the windshield so that your video footage is better. It also includes HDR which improves the night vision. Aside from having a touchscreen, the X310 comes with voice control allowing you to save video and audio hands-free, meaning you can focus on driving. It supports multiple languages - English, German, French, Spanish, Italian, and Swedish. Other features include built-in GPS for recording the location, date, and time of incidents; parking guard and live view for security while parked (required a paid Vault subscription); and its compact design which allows it to sit “virtually unnoticed” on the windshield. Please note that the product description says some jurisdictions may restrict the use of dashcams, so check your local laws before buying. If you are looking for a high-resolution dash cam with voice control and advanced parking surveillance (paid subscription), the X310 could be for you. The main downside of this product is that it’s still at a premium price point, despite it being at its lowest price on Amazon. If you don’t mind this, it could definitely be a great choice for you. Garmin Dash Cam X310: $334.99 (Amazon US) / MSRP $399.99 This Amazon deal is US-specific and not available in other regions unless specified. If you don't like it or want to look at more options, check out the Amazon US deals page here. Get Prime (SNAP), Prime Video, Audible Plus or Kindle / Music Unlimited. Free for 30 days. As an Amazon Associate, we earn from qualifying purchases.
    • I have a Motorola B12, and it's been working pretty solidly for a year now. 
    • yes, which is especially funny considering you no longer have an option to turn them off, so how could this matter to anyone? It would be pretty evil if they waited until after Windows 10 EOL to renew the certs, but based on these dates, it looks like that wouldn't be possible, so no worries that I can see.
  • Recent Achievements

    • Week One Done
      Marites earned a badge
      Week One Done
    • One Year In
      runge100 earned a badge
      One Year In
    • One Month Later
      runge100 earned a badge
      One Month Later
    • One Month Later
      jfam earned a badge
      One Month Later
    • First Post
      TheRingmaster earned a badge
      First Post
  • Popular Contributors

    1. 1
      +primortal
      581
    2. 2
      ATLien_0
      181
    3. 3
      +FloatingFatMan
      180
    4. 4
      Michael Scrip
      133
    5. 5
      Xenon
      122
  • Tell a friend

    Love Neowin? Tell a friend!