A while a go Dominik and I gave an introductory presentation about SSL at the
BASTA.NET conference, a developer-oriented event held in Darmstadt twice a year.
At that time there were quite some enthusiastic participants but recently we’ve
also gotten some inquiries asking for the relevant materials. Although there’s
no recording of the session, we’ve decided to put the slides here for those
interested who didn’t make it to the talk.
This year’s PacketWars contest at Troopers was a
blast! Under the topic of “Connected Car” the teams faced several different
challenges, which we will describe (as a debriefing) here.
You and your krew are “freelancers” hired to identify and neutralize an unknown
threat agent who has created weaponized software and delivered it to civilian
Connected Cars via compromised EV (Electrical Vehicle) charing stations. To make
matters worse there are indications that new strains of the malware are
appearing as the “worm” spreads from car to car. The mobile mesh network created
by the Connect Car is highly resilient, allowing the malware to spread
exponentially. Time is of the essence.
Malware analysis suggests that besides a botnet module, there is an active
CANBus injection capability. There appears to be other modules but they haven’t
been properly reversed and analyzed yet.
Introduction
This and the following two posts should serve as a step-by-step guide through
the whole process of analyzing a radio frequency black box, demodulate and
understand the data transfered and finally modulate our own data in order to
e.g. perform a brute force attacks.
The information provided and the results are immensely inspired by Michael
Ossmann and the workshops he has given at our location. Visit him and his great
tool HackRF at https://greatscottgadgets.com/hackrf/ !
This post is a short wrap-up of our Troopers talk about the research we did on
IBM’s General Parallel File System. If you are interested in all the technical
details take a look at our
slides
or the video recording. We will
also give an updated version of this talk at the
PHDays conference in Moscow next month.
The IBM General Parallel File System is a distributed file system used in large
scale enterprise environments, high performance clusters as well as some of the
worlds largest super computers. It is considered by many in the industry to be
the most feature rich and production hardened distributed file system currently
available. GPFS has a long and really interesting history, going back to the
Tiger Shark file system created by IBM 1993.
Over the past few weeks, multiple news sites have covered some mystical approach
to bruteforce PINs on Apple iOS devices. All articles cover a black box called
IP Box, the fact that PINs can be broken and that sometimes the automatic wipe
after 10 failed tries can be circumvented. Sadly, as often, the what is
described but not the how……
This blog post will give you a simple overview of both the practical attacks and
the vulnerabilities behind them. Although the Headings don’t quite give away the
content, the post starts with a simple PIN bruteforce against iOS 7.x and then
goes over to a more advanced attack on iOS 8.x and a few technical details on
the “black box”.
On March 16^(th), 2015, at the Troopers
IPv6 Security Summit,
we finally released the SI6 Networks’ IPv6 Toolkit v2.0 (Guille). The
aforementioned release is now available at the
SI6 IPv6 Toolkit homepage. It is
the result of over a year of work, and includes improvements in the following
areas:
Increased portability
Bug fixes
Additional features in existing tools
Brand-new tools
Increased Portability
One of the goals that the SI6 Toolkit had since its inception is that of
portability. The SI6 Toolkit has supported all major BSD-derived OSes, Linux,
and Mac OS for a number of years now. And this new release supports yet another
new platform: OpenSolaris. We believe that besides supporting a greater user
base, increased portability ultimately results in improved code quality.
The purpose of this blog post is to elucidate how and why MLD, an IPv6 protocol
we’ve been lately talking quite a bit about, is an unnecessarily complex beast
. This article should also serve to summarize a couple of points we’ve mentioned
during our talks about MLD but which because of time constraints never make it
into the main discussion. We’ve talked about
other aspects of MLD in previous posts.
So, have a look at those if this is a topic which you find interesting. Without
further ado, let’s start for today.
Last week Matthias and I went to Singapore to teach our workshop on
Hypervisor Exploitation at
SyScan. After a very unpleasant Lufthansa strike (which
made us arrive late in Singapore) and two intense workshop days, we were free to
attend the “last” SyScan. There are few IT security conferences that have such a
great reputation in the community and so we had high expectations, which were
definitely not disappointed. This year had a lot of really interesting talks so
I will just summarize some of the ones I liked the most.