|
|
|
Hacking Embedded Devices UART Consoles |
Si vous voulez bloquer ce service sur vos fils RSS
Si vous voulez nous contacter ou nous proposer un fil RSS
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Hacking Embedded Devices UART Consoles Par var log messagesLe [2012-08-03] à 14:53:44
Présentation : The Hardware Hacking scene has exploded recently, thanks largely to the widespread adoption of devices such as the Arduino and Raspberry PI by the hacking community. Applying hardware hacking techniques during product assessments can often give unrivaled levels of access to hidden or undocumented functionality particularly when reviewing embedded devices such as routers, switches and access points. Hacker Fantastic, an MWR Senior Consultant, prior to his employment with MWR reviewed the SAGEM F ST2504 Sky Broadband router , at the time a popular consumer broadband device, and documented his findings in a blog post and presentation titled Hacking Embedded Devices For Fun and Profit. Matthew has since followed up on his prior work by reviewing the Virgin Media SuperHub a Cable Modem Router used by Virgin Media Cable in the UK and re-visited his assessment of the SAGEM F ST2504 Sky Broadband router . Using physical assessment techniques Matthew has been able to obtain full privileged â rootâ shell capabilities on both the Virgin Media SuperHub and again on the previously assessed SAGEM F ST2504 Sky Broadband router . Both the â Virginâ and â Skyâ devices were found to have many more in-built capabilities available, or intended, by the ISP s who issued them. Both were found to have advanced networking capabilities such as allowing for the manipulation of Media Access Control MAC addresses, packet analyzers, the ability to change or review configuration data not available within the embedded web services and review any credentials configured on the device. It was possible to recover the devices firmware and to begin installing custom Operating Systems onto the devices enabling users to take full advantage of the hardware provided. This blog post aims to show that the methodologies, tools and concepts demonstrated can, and have, worked across multiple devices not just those provided by Sky Broadband and Virgin Media.
Les derniers articles du site " var log messages" :
- Introducing drozer - BSides Challenge Walkthrough - Mercury v2.2.1 - MWR HackLab - MWRcade - HackFu Venue - Clue 7 - MWR HackLab - Getting Frequency with SDR - HackFu Venue - Clue 6 - HackFu Venue - Clue 5 - MWR Challenge 2013 - MWR HackLab - Chubby Data
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Si vous voulez bloquer ce service sur vos fils RSS :
- avec iptables "iptables -A INPUT -s 88.190.17.190 --dport 80 -j DROP"
- avec ipfw et wipfw "ipfw add deny from 88.190.17.190 to any 80"
- Nous contacter par mail
| Mini-Tagwall des articles publiés sur SecuObs : | | | | sécurité, exploit, windows, attaque, outil, microsoft, réseau, audit, metasploit, vulnérabilité, système, virus, internet, usbsploit, données, source, linux, protocol, présentation, scanne, réseaux, scanner, bluetooth, conférence, reverse, shell, meterpreter, vista, rootkit, détection, mobile, security, malicieux, engineering, téléphone, paquet, trames, https, noyau, utilisant, intel, wishmaster, google, sysun, libre |
| Mini-Tagwall de l'annuaire video : | | | | curit, security, biomet, metasploit, biometric, cking, password, windows, botnet, defcon, tutorial, crypt, xploit, exploit, lockpicking, linux, attack, wireshark, vmware, rootkit, conference, network, shmoocon, backtrack, virus, conficker, elcom, etter, elcomsoft, server, meterpreter, openvpn, ettercap, openbs, iphone, shell, openbsd, iptables, securitytube, deepsec, source, office, systm, openssh, radio |
| Mini-Tagwall des articles de la revue de presse : | | | | security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone, server, inject, patch, apple, twitter, mobile, virus, ebook, facebook, vulnérabilité, crypt, source, linux, password, intel, research, virtual, phish, access, tutorial, trojan, social, privacy, firefox, adobe, overflow, office, cisco, conficker, botnet, pirate, sécurité |
| Mini-Tagwall des Tweets de la revue Twitter : | | | | security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall, network, twitter, vmware, windows, microsoft, compliance, vulnerability, python, engineering, source, kernel, crypt, social, overflow, nessus, crack, hacker, virus, iphone, patch, virtual, javascript, malware, conficker, pentest, research, email, password, adobe, apache, proxy, backtrack |
|
|
|
|
|