All cops are broadcasting: Obtaining the secret TETRA primitives after decades in the shadows

  Рет қаралды 121,325

media.ccc.de

media.ccc.de

Күн бұрын

media.ccc.de/v/camp2023-57100...
In this talk we will discuss the radio jailbreaking journey that enabled us to perform the first public disclosure and security analysis of the proprietary cryptography used in TETRA (Terrestrial Trunked Radio): a European standard for trunked radio globally used by government agencies, police, prisons, emergency services and military operators. Besides governemental applications, TETRA is also widely deployed in industrial environments such as factory campuses, harbor container terminals and airports, as well as critical infrastructure such as SCADA telecontrol of oil rigs, pipelines, transportation and electric and water utilities.
For over two decades, the underlying algorithms have remained secret and bound with restrictive NDAs prohibiting public scrutiny of this highly critical technology. As such, TETRA was one of the last bastions of widely deployed secret proprietary cryptography. We will discuss in detail how we managed to obtain the primitives and remain legally at liberty to publish our findings.
This journey has involved reverse-engineering and exploiting multiple zero-day vulnerabilities in the highly popular Motorola MTM5x00 TETRA radio and its TI OMAP-L138 trusted execution environment (TEE) and covers everything from side-channel attacks on DSPs, through writing decompilers headache-inducing DSP architectures, all the way to exploiting ROM vulnerabilities in the Texas Instruments TEE.
Jos Wetzels
Carlo Meijer
Wouter Bokslag
pretalx.c3voc.de/camp2023/tal...
#camp2023 #Milliways

Пікірлер
Breaking Bitlocker - Bypassing the Windows Disk Encryption
9:11
stacksmashing
Рет қаралды 862 М.
Kerberos - authentication protocol
6:08
Sunny Classroom
Рет қаралды 485 М.
Pray For Palestine 😢🇵🇸|
00:23
Ak Ultra
Рет қаралды 35 МЛН
Final increíble 😱
00:39
Juan De Dios Pantoja 2
Рет қаралды 23 МЛН
ПООСТЕРЕГИСЬ🙊🙊🙊
00:39
Chapitosiki
Рет қаралды 20 МЛН
Rutgers University Confirmed: Meshtastic and LoRa are dangerous
13:27
Andreas Spiess
Рет қаралды 753 М.
37C3 -  All cops are broadcasting
1:03:55
media.ccc.de
Рет қаралды 152 М.
Testing My Speech Jammer In Public
11:26
Benn Jordan
Рет қаралды 2,7 МЛН
DRAGON OS FOCAL - The Software Defined Radio Toolbox
11:09
Tech Minds
Рет қаралды 142 М.
Tails Linux USB with Persistence (Be invisible online in 7 minutes)
10:47
Is it time to switch from Docker to Podman?
16:05
Christian Lempa
Рет қаралды 216 М.
The Coolest Radio You've Probably Never Heard Of
11:54
Tom the Dilettante
Рет қаралды 3,6 МЛН