<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>SDR on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/sdr/</link>
    <description>Recent content in SDR on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 20 Apr 2021 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/sdr/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Summary of &#39;Software-Defined Radio applied to security assessments&#39; at Troopers21</title>
      <link>https://insinuator.net/2021/04/summary-of-software-defined-radio-applied-to-security-assessments-at-troopers21/</link>
      <pubDate>Tue, 20 Apr 2021 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2021/04/summary-of-software-defined-radio-applied-to-security-assessments-at-troopers21/</guid>
      <description>&lt;p&gt;The training&#xA;&lt;a href=&#34;https://troopers.de/troopers21/trainings/cmxfqk/&#34;&gt;Software-Defined Radio applied to security assessments&lt;/a&gt;&#xA;was held by Sébastien Dudek at Troopers21 and was remotely organized – like most&#xA;other events – due to Covid-19. Once we were all caffeinated, we had an exciting&#xA;journey through basically all things radio.&lt;/p&gt;&#xA;&lt;p&gt;We started with the technical and physical basics in radio technology, such as&#xA;various sorts of antennas, analog to digital coding (and backward), encoding&#xA;schemes, and general risks and possible vulnerabilities of using radio devices.&#xA;Commonly found vulnerabilities include the following:&lt;/p&gt;</description>
    </item>
    <item>
      <title>ITSeCX 2016: Pulling an all-nighter in Austria</title>
      <link>https://insinuator.net/2016/11/itsecx-2016-pulling-an-all-nighter-in-austria/</link>
      <pubDate>Tue, 08 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/11/itsecx-2016-pulling-an-all-nighter-in-austria/</guid>
      <description>&lt;p&gt;Last Friday I gave a talk at the &lt;a href=&#34;https://itsecx.fhstp.ac.at/&#34;&gt;ITSeCX&lt;/a&gt; in St. Pölten, Austria. The conference, hosted by the local University of Applied Sciences, has already taken place ten times. I don’t know how many people attended this time, 2014 there were about 600; &lt;a href=&#34;http://www.computerwelt.at/news/technologie-strategie/security/detail/artikel/113099-it-secx-2015-eine-nacht-im-zeichen-der-it-security/&#34;&gt;I read somewhere on the net&lt;/a&gt;. There were four tracks and some workshops from 4pm to the conference’s end at midnight. I enjoyed the community-feeling there very much, even though I arrived late. The only talks I saw, were Adrian Dabrowski speaking about the DARPA Cyber Grand Challenge, the finals took part in Las Vegas this August, and the very entertaining end-of-year review from two UAS guys.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Gotta Catch ‘Em All! – WORLDWIDE! (or how to spoof GPS to cheat at Pokémon GO)</title>
      <link>https://insinuator.net/2016/07/gotta-catch-em-all-worldwide-or-how-to-spoof-gps-to-cheat-at-pok%C3%A9mon-go/</link>
      <pubDate>Fri, 15 Jul 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/07/gotta-catch-em-all-worldwide-or-how-to-spoof-gps-to-cheat-at-pok%C3%A9mon-go/</guid>
      <description>&lt;p&gt;The moment, when your team leader asks you to cheat at Pokémon GO…everyone knows it, right? No? Well, I do 😉&lt;/p&gt;&#xA;&lt;p&gt;&lt;img src=&#34;https://www.insinuator.net/wp-content/uploads/2016/07/setup_edit-300x169.jpg&#34; alt=&#34;GPS Spoofing Setup&#34;&gt;&lt;/p&gt;&#xA;&lt;p&gt;GPS Spoofing Setup&lt;/p&gt;&#xA;&lt;p&gt;As I’m not a gamer, the technical part was of much more interest – that’s the real gaming for me.&lt;br&gt;&#xA;So, challenge accepted!&lt;/p&gt;&#xA;&lt;p&gt;In the past I was often fiddling around with SDR (Software Defined Radio), started with DVB-T sticks some years ago. When I came to ERNW in 2014 I got in touch with &lt;a href=&#34;http://greatscottgadgets.com/hackrf/&#34;&gt;Michael Ossman’s great HackRF One&lt;/a&gt; for the first time, and subsequently my thesis was based on SDR.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SDR and non-SDR tools for reverse engineering wireless systems</title>
      <link>https://insinuator.net/2016/03/sdr-and-non-sdr-tools-for-reverse-engineering-wireless-systems/</link>
      <pubDate>Mon, 28 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/sdr-and-non-sdr-tools-for-reverse-engineering-wireless-systems/</guid>
      <description>&lt;p&gt;Hey there!&lt;br&gt;&#xA;The God of frequencies Michael Ossmann visited us again this year at the &lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;TROOPERS16&lt;/a&gt; and showed us how to break another device using a specific setup.&lt;/p&gt;&#xA;&lt;p&gt;Last time he introduced the HackRF One to us (Read here:&lt;a href=&#34;https://www.insinuator.net/2014/08/hackrf-one-the-story-continues/&#34;&gt;https://www.insinuator.net/2014/08/hackrf-one-the-story-continues/&lt;/a&gt;), but this post is a short summary of his talk about “Rapid Radio Reversing”, he is a wireless security researcher, who makes hardware for hackers. Best known for the HackRF, Ubertooth, and Daisho projects, he founded Great Scott Gadgets in an effort to put exciting, new tools into the hands of innovative people.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ERNW speaking @ hardwear.io</title>
      <link>https://insinuator.net/2015/10/ernw-speaking-@-hardwear.io/</link>
      <pubDate>Mon, 05 Oct 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/10/ernw-speaking-@-hardwear.io/</guid>
      <description>&lt;p&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/10/hardwarebug-266x300.png&#34; alt=&#34;Hardwarebug&#34;&gt;&lt;/p&gt;&#xA;&lt;p&gt;On October 1st and 2nd Flo and I were presenting at&lt;br&gt;&#xA;hardwear.io in The Hague, NL. My topic was “&lt;a href=&#34;https://www.ernw.de/download/ERNW_hardwear.io_2015_living_in_a_fools_wireless-secured_paradise_skiese.pdf&#34;&gt;Living in a fool’s&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://www.ernw.de/download/ERNW_hardwear.io_2015_living_in_a_fools_wireless-secured_paradise_skiese.pdf&#34;&gt;wireless-secured paradise&lt;/a&gt;” and Flo was presenting his current research&lt;br&gt;&#xA;on medical device security. It was the first talk at an international&lt;br&gt;&#xA;security conference for me and I am still quite excited!&lt;/p&gt;&#xA;&lt;p&gt;I was speaking about the (in)security of wireless consumer alarm&lt;br&gt;&#xA;systems, which you can buy just in every consumer electronics store&lt;br&gt;&#xA;around the corner for about $10 – $250. I analyzed the systems on&lt;br&gt;&#xA;different levels, e.g. looking at UART and JTAG and the wireless domain&lt;br&gt;&#xA;with Software Defined Radio (SDR). I gave an overview of my current&lt;br&gt;&#xA;research and the tools I usually use for hardware hacking, especially my&lt;br&gt;&#xA;favorite thing to play with: SDR.&lt;/p&gt;</description>
    </item>
    <item>
      <title>HackRF meets PortaPack H1</title>
      <link>https://insinuator.net/2015/08/hackrf-meets-portapack-h1/</link>
      <pubDate>Sat, 08 Aug 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/08/hackrf-meets-portapack-h1/</guid>
      <description>&lt;p&gt;Today we received a few &lt;a href=&#34;http://www.sharebrained.com/2014/05/28/portapack-h1-imminent/&#34;&gt;ShareBrained Technology – PortaPack H1&lt;/a&gt; to use with our HackRFs. Having done a first few minutes of scanning, I just wanted to give you a quick overview of its features and potential…&lt;/p&gt;&#xA;&lt;p&gt;After having had &lt;a href=&#34;https://www.troopers.de/events/speaker/31_michael_ossmann/&#34;&gt;Michael Ossmann&lt;/a&gt; in for a few workshops with his &lt;a href=&#34;https://www.insinuator.net/2013/08/hack-rf/&#34;&gt;Jawbreaker&lt;/a&gt; and &lt;a href=&#34;https://www.insinuator.net/2014/08/hackrf-one-the-story-continues/&#34;&gt;HackRF One&lt;/a&gt; we have used the HackRF on multiple occasions. No matter if &lt;a href=&#34;https://www.insinuator.net/2015/04/analysis-of-an-alarm-system/&#34;&gt;research projects&lt;/a&gt; or actual customer projects, the HackRF has always been of great help. As we mainly use it on laptops, we’ve got certain constraints concerning its portability when wanting to do some quick mobile scanning. Although there are a few solutions for tablets and smartphones, they haven’t been quite able to convince all of us. So a while back we decided to keep an eye on the &lt;a href=&#34;http://www.sharebrained.com/2014/05/28/portapack-h1-imminent/&#34;&gt;PortaPack&lt;/a&gt; and have been since been waiting for its release.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Analysis of an Alarm System – Part 2/3</title>
      <link>https://insinuator.net/2015/05/analysis-of-an-alarm-system-part-2/3/</link>
      <pubDate>Tue, 12 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/analysis-of-an-alarm-system-part-2/3/</guid>
      <description>&lt;p&gt;A few days later than planned (sorry about that), but here we go with part 2 (&lt;a href=&#34;http://www.insinuator.net/2015/04/analysis-of-an-alarm-system/&#34;&gt;Part1&lt;/a&gt;) and the demodulation/analysis part.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Initial Analysis&lt;/strong&gt;&lt;br&gt;&#xA;To analyse a captured signal, the tool baudline seems to be the best way at the moment. So we open it with the following options and have a closer look (ContextMenu-&amp;gt;Input-&amp;gt;Open file):&lt;/p&gt;&#xA;&lt;p&gt;&lt;img src=&#34;https://www.ernw.de/download/alarm_system/step3_baudlineOpenOptions.png&#34; alt=&#34;&#34;&gt;&lt;/p&gt;&#xA;&lt;p&gt;After using the open button, you should be able to see something similar to this:&lt;/p&gt;</description>
    </item>
    <item>
      <title>Analysis of an Alarm System – Part 1/3</title>
      <link>https://insinuator.net/2015/04/analysis-of-an-alarm-system-part-1/3/</link>
      <pubDate>Mon, 20 Apr 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/04/analysis-of-an-alarm-system-part-1/3/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Introduction&lt;/strong&gt;&lt;br&gt;&#xA;This and the following two posts should serve as a step-by-step guide through the whole process of analyzing a radio frequency black box, demodulate and understand the data transfered and finally modulate our own data in order to e.g. perform a brute force attacks.&lt;/p&gt;&#xA;&lt;p&gt;The information provided and the results are immensely inspired by Michael Ossmann and the workshops he has given at our location. Visit him and his great tool HackRF at &lt;a href=&#34;https://greatscottgadgets.com/hackrf/&#34;&gt;https://greatscottgadgets.com/hackrf/&lt;/a&gt; !&lt;/p&gt;</description>
    </item>
    <item>
      <title>HackRF One the story continues…</title>
      <link>https://insinuator.net/2014/08/hackrf-one-the-story-continues/</link>
      <pubDate>Wed, 20 Aug 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/08/hackrf-one-the-story-continues/</guid>
      <description>&lt;p&gt;Hello fellow frequency hoppers,&lt;/p&gt;&#xA;&lt;p&gt;once again, we welcomed Michael Ossmann at the ERNW headquarters for fun with SDR. This time with Mike´s advanced SDR workshop. And to be up front about it…it was plain awesome. For everybody who is not familiar with Software Defined Radio (SDR): Let’s regard it as the ultimate tool when working with radio signals. Take a look a &lt;a href=&#34;http://www.insinuator.net/2013/08/hack-rf/#more-2539&#34; title=&#34;HackRF&#34;&gt;this&lt;/a&gt; to learn more.&lt;/p&gt;&#xA;&lt;p&gt;Mike showed us the new revision of his HackRF One and explained us some more advanced techniques when it comes to Radio Frequnecies hacking. Compared to last time, the workshop focused on reversing signals and how to synthesize them. So this time we were crafting RF packets ourselves instead of just replaying a capture. This introduces different attack types which can be carried out over the air for  example bruteforcing or fuzzing of radio devices.&lt;/p&gt;</description>
    </item>
    <item>
      <title>HackRF – A Must-Have Gadget</title>
      <link>https://insinuator.net/2013/08/hackrf-a-must-have-gadget/</link>
      <pubDate>Mon, 26 Aug 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/08/hackrf-a-must-have-gadget/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Dear readers,&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;today we welcomed &lt;a href=&#34;http://www.ossmann.com/mike/&#34;&gt;Michael Ossmann&lt;/a&gt; at the &lt;a href=&#34;https://www.ernw.de/&#34;&gt;ERNW&lt;/a&gt; headquarter for an exclusive workshop on his &lt;a href=&#34;http://www.kickstarter.com/projects/mossmann/hackrf-an-open-source-sdr-platform&#34;&gt;HackRF&lt;/a&gt; gadget. Everybody was quite excited to get hands-on with this shiny piece of hardware, which is currently &lt;a href=&#34;http://www.kickstarter.com/projects/mossmann/hackrf-an-open-source-sdr-platform&#34;&gt;crowd-funded on Kickstarter&lt;/a&gt;. For everybody who’s not familiar with &lt;a href=&#34;http://en.wikipedia.org/wiki/Software-defined_radio&#34;&gt;Software Defined Radio&lt;/a&gt; (SDR): Let’s regard it as the ultimate tool when working with radio signals.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2013/08/mike.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2013/08/mike-218x300.jpg&#34; alt=&#34;Michael Ossmann&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Michael Ossmann in the house.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Let’s quote Michael’s campaign website:&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;&lt;em&gt;Transmit or receive any radio signal from 30 MHz to 6000 MHz on USB power with HackRF. HackRF is an open source hardware project to build a Software Defined Radio (SDR) peripheral.&lt;/em&gt;&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
