37C3 - Finding Vulnerabilities in Internet-Connected Devices

  Рет қаралды 25,281

media.ccc.de

media.ccc.de

4 ай бұрын

media.ccc.de/v/37c3-11919-fin...
A Beginner’s Guide
This introductory session will outline the process of hacking internet-connected devices, with the help of a real world example: Poly telephones and conference speaker systems. We will explain vulnerabilities we identified in them and how they can be leveraged to transform the devices into wiretaps.
In this introductory session we will journey into the field of internet-connected device security. Our talk aims to empower beginners by simplifying the process of hacking such devices.
We'll discuss vulnerabilities we uncovered in Poly telephones and conference speaker systems and describe how we effectively transformed a seemingly innocuous conference speaker into a fully functional wiretap. We'll begin with straightforward findings accessible to beginners and progress to more technical discoveries, so that people with no experience in the field can follow along, too.
By the end of the talk, the attendees will have a foundational understanding of how they can approach hacking such a device and will have learned how the impact of vulnerabilities can be shown and increased by chaining them.
All the vulnerabilities we discovered during our research have been responsibly disclosed to the vendor and will be published in December 2023.
Pascal Zenker
Christoph Wolff
events.ccc.de/congress/2023/h...
#37c3 #Security

Пікірлер: 16
@minleyfox5231
@minleyfox5231 4 ай бұрын
Top Vortrag! Sehr informativ, vielen Dank 👍
@astarothgr
@astarothgr 4 ай бұрын
Yep, that's the stuff! Good talk!
@DaGhost141
@DaGhost141 3 ай бұрын
good talk to get into the whole subject!
@tuskiie
@tuskiie 4 ай бұрын
fire talk!
@nonesuchtofu
@nonesuchtofu 4 ай бұрын
super spannend - vielen dank!!! :)
@kl1617
@kl1617 4 ай бұрын
Of course you ran Doom on it! Love it.
@niklas2810
@niklas2810 4 ай бұрын
Very interesting talk, thanks a lot!
@AlgoNudger
@AlgoNudger 4 ай бұрын
So fun.
@vk3fbab
@vk3fbab 4 ай бұрын
Nice work guys. Imagine what phun you could have if you could get your own custom firmware running on it.
@jaypee112233
@jaypee112233 3 ай бұрын
Bbbf fschrieb. Die ebeee eeee😅😅b😅
@OliverTacke
@OliverTacke 4 ай бұрын
Nice!
@MrMBSonic
@MrMBSonic 4 ай бұрын
21:53 😂 Made my day 😂
@LamLe-fx7lm
@LamLe-fx7lm 4 ай бұрын
Sir!
@cancername
@cancername 4 ай бұрын
22:18 "... they check for any unwanted characters..." No! Bad Polycom! This is exactly the wrong way to "fix" this, quote the arguments instead.
@timkoehler3669
@timkoehler3669 4 ай бұрын
Ohh man, immer noch das alte Standard Admin Passwort (das war es schon beim ersten Polycom Telefon). Ich war früher bei snom Produktmanager (viele viele Jahre ist es her), ich habe gegen das Murren einiger Kollegen durchgesetzt, dass das Telefon im Webinterface UND im Display vom Telefon anzeigt wenn das Admin Passwort NICHT gesetzt ist. Es gab zwar die Option die Warnung zu unterdrücken aber wer das macht ist halt selber schuld . . .
Does Hacking Require Programming Skills?
7:50
LiveOverflow
Рет қаралды 175 М.
Planck Stars: Alive Inside a Black Hole
17:17
Astrographics
Рет қаралды 90 М.
Cute Barbie gadgets 🩷💛
01:00
TheSoul Music Family
Рет қаралды 73 МЛН
格斗裁判暴力执法!#fighting #shorts
00:15
武林之巅
Рет қаралды 85 МЛН
[柴犬ASMR]曼玉Manyu&小白Bai 毛发护理Spa asmr
01:00
是曼玉不是鳗鱼
Рет қаралды 46 МЛН
Get Wifi Passwords by python program
3:06
Learning2Infinity
Рет қаралды 1
36C3 -  Hirne Hacken
43:48
media.ccc.de
Рет қаралды 580 М.
Transport Layer Security (TLS) - Computerphile
15:33
Computerphile
Рет қаралды 467 М.
37C3 -  Nintendo hacking 2023: 2008
42:27
media.ccc.de
Рет қаралды 22 М.
Jens Spahns credit score is "very good"
46:31
media.ccc.de
Рет қаралды 61 М.
Joscha at Microsoft
48:46
Simuli
Рет қаралды 1,4 М.
The Only Unbreakable Law
53:25
Molly Rocket
Рет қаралды 313 М.
Real-world exploits and mitigations in LLM applications (37c3)
42:35
Embrace The Red
Рет қаралды 20 М.
How Hackers Move Through Networks (with Ligolo)
20:01
John Hammond
Рет қаралды 251 М.
So You Think You Know Git - FOSDEM 2024
47:00
GitButler
Рет қаралды 954 М.
Cute Barbie gadgets 🩷💛
01:00
TheSoul Music Family
Рет қаралды 73 МЛН