Live data from Hacker News

Pwnd Blaster: Hacking your PC using your speaker without ever touching it

blog.nns.ee

81–90 of 133 posts

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#81
post #58

Earlier quoted context omitted.

As a lifelong script kiddie, the thing that made it all possible in my youth was simply time. The more time I had, the more hours I could spend figuring out that 0.01%.

That does not sound like script kiddie. More like hacker with its traditional meaning.

I've never written anything useful from scratch, outside of R or css & html.

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#82

If I were in charge of, say, the Mossad, I would have as a significant part of my budget purchasing every single bluetooth device on the market, and set a bunch of underemployed Israeli CS grads to work at finding these vulnerabilities, and then putting them into an easily deployed toolkit. You want an asset with access to, say, an Iranian government office, to be able to walk through the building with a phone and ta…

Just a thought, but: maybe it’s even easier to (as well as do what you suggest, which is a good idea) build and sell buggy (ie backdoored) devices.

What’s easier, marketing or finding bugs :-)

(Not a rhetorical question)

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#84

If I were in charge of, say, the Mossad, I would have as a significant part of my budget purchasing every single bluetooth device on the market, and set a bunch of underemployed Israeli CS grads to work at finding these vulnerabilities, and then putting them into an easily deployed toolkit. You want an asset with access to, say, an Iranian government office, to be able to walk through the building with a phone and ta…

This is kind of backwards. There aren't as many CS grads in Israel in the first place, because they already put their top talent through 8200. It's essentially a fully socialized Masters of computer engineering, and as a SIGINT shop they are learning this sort of thing. Once their 2-3 years of service is over (which doesn't result in student loans), the government makes a lot of seed funding available for startups and the TLV ecosystem is like a mini Bay Area.

Living with your parents is more socially acceptable, so they have a huge chunk of people in their 20s with no debt, low monthly expenses, strong technology expertise from their military service, in a founder hot spot, and access to capital. The result is a lot of unicorns, particular around cyber security (https://www.techaviv.com/unicorns).

Compare to the United States, where you have to dedicate 4 years to an undergrad program, go massively in debt, pay rent, and then struggle to find seed funding. The mental model of "oh, I guess we could apply some of the detritus of our failed system" misses the idea of having a successful system in the first place.

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#85
post #4

>Email from SingCERT stating vendor "do not consider this to be a vulnerability, as it does not present a cybersecurity risk." So wirelessly writing custom firmware to someone else's device that is connected via USB to their computer without even needing to pair is not a security vulnerability. Yea.

They must have outsourced their security to MSRC

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#86
People who love tech buy superdupersmart loudspeaker that will connect to every computer in their house; and also somehow control their superdupersmart coffee maker so they can have a fresh coffee brewed when some Miles Davis play.

People who understand tech keep an axe next to their toaster.

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#87
> in order to do anything with CTP over USB, you first have to do challenge-response authentication with the device. The key is static [... ]

Is this some legal thing so they can claim that a protection was circumvented? E.g. to void warranty or be able to sue?

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#88

Side-channel attacks are getting wild. Every time I think we've completely air-gapped a device, someone finds a way to use acoustic frequencies or hardware resonance to leak data.

Good job reading the actual article. It's not a audio or RF side chain attack where data is exfiltrated at a handful of bits per second, it's an attack on an unsecured BLE endpoint that can be converted into a rubber ducky.

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#89

what ways are there to protect from malicious HID device?

My computers ignore USB HIDs other than the ones that I have explicitly permitted. Unfortunately, this is a major architectural revamp for many operating systems. The idea that every HID is automatically added to a keyboard/mouse 'multiplexer', that provides a single combined input stream, is a pervasive one.

Re: Pwnd Blaster: Hacking your PC using your speaker without ever touching it

#90
Inexistent security, absent security contacts/hard to get in touch with, denial/delay/won’t patch, most functionality to deploy a backdoor is already present, to me equals bugdoor. This is wanted behavior, not an accident, and is a widespread pattern..
Post reply on HN