Earlier quoted context omitted.
Even Sony doesn't considers its terminals trustworthy. They really don't want you to root your PlayStation, but that's mostly because it allows you to hack offline games. Hacked consoles are usually banned pretty quickly from online services. It doesn't mean Sony has the best track record when it comes to security just that they are not completely clueless.
OP may indicates PS3's poor security drama.
The hacking of Starlink terminals has begun
241–250 of 267 posts
Re: The hacking of Starlink terminals has begun
#242Earlier quoted context omitted.
> If the remote machines have the assumption of trustworthy terminals baked in, Given the general competence level of the engineering at SpaceX, I would not put any money on this being true. Maybe if the system were designed by Sony...
When I worked at SpaceX, lots of software folk used an internal IRC server. One time I created a chatbot that would execute arbitrary python commands on my workstation. Knowing that coworkers would maliciously try to pwn my computer, I ran it in a chroot with very restricted permissions. It took about 20 minutes for someone to figure out how to fork bomb it hard enough to lock up my system. Another time as a team bui…
Re: The hacking of Starlink terminals has begun
#243Earlier quoted context omitted.
How accurate does the location have to be in terms of radius? A few centimeters? A few meters?
If you trick it into thinking you're a few metres away from your true location then you're not evading any geofence that you couldn't trivially evade simply by moving a few metres.
Re: The hacking of Starlink terminals has begun
#244Is there any mitigation against these kinds of power/timing attacks? I think the Switch was originally hacked this way.
The problem with mitigations is that they are just speed bumps.
Re: The hacking of Starlink terminals has begun
#245Eh low threat hack. Requires physical access to dish and installs piece of easily identifiable hardware. Tbh give unfettered access to most hardware and you can hack it.
The value of this attack isn't breaking into the terminal itself, but that it allows the end user to modify the control channel to the satellite. It allows internal inspection of the protocols, authentication, data formats, etc between the terminal and the satellite itself. I assume that the actual received and transmitted packets from the terminal are encrypted so "outside in" inspection is very very difficult.
This hack just gives the user access to what they should always have had access to.
Re: The hacking of Starlink terminals has begun
#246Is there any mitigation against these kinds of power/timing attacks? I think the Switch was originally hacked this way.
Re: The hacking of Starlink terminals has begun
#247The article compares the Russian jamming of Viasat with the compromise of a Starlink UT. No, no, no... This is really wrong! > As is typically the case with any technology, the increase in use and deployment of Starlink and other satellite constellations also means that threat actors have a greater interest in finding their security holes to attack them. > Indeed, Russia saw an advantage in taking out a satellite pro…
Starlink by its nature of using phased array antennas are inherently pretty hard to jam through traditional means. Not impossible but more difficult than older systems with simpler antennas.
For example you could modify the terminal to transmit at the exact time another user is supposed to be transmitting, therefore clobbering their data and DoS-ing them.
The transmission schedule of exactly which user should be transmitting in which slots is probably transmitted with a single encryption key the terminal has access to.
Re: The hacking of Starlink terminals has begun
#248Earlier quoted context omitted.
The value of this attack isn't breaking into the terminal itself, but that it allows the end user to modify the control channel to the satellite. It allows internal inspection of the protocols, authentication, data formats, etc between the terminal and the satellite itself. I assume that the actual received and transmitted packets from the terminal are encrypted so "outside in" inspection is very very difficult.
These are all things I would expect to have access to if I had purchased the dish. This hack just gives the user access to what they should always have had access to.
Re: The hacking of Starlink terminals has begun
#249Earlier quoted context omitted.
These are all things I would expect to have access to if I had purchased the dish. This hack just gives the user access to what they should always have had access to.
If you expect all commercial hardware you buy to be open hardware, you're in for a frustrating ride.
Re: The hacking of Starlink terminals has begun
#250Earlier quoted context omitted.
The terminal is used to contact the constellation as well as Starlink's backend servers. If the remote machines have the assumption of trustworthy terminals baked in, then this isn't a low threat hack.
> If the remote machines have the assumption of trustworthy terminals baked in, Given the general competence level of the engineering at SpaceX, I would not put any money on this being true. Maybe if the system were designed by Sony...
They fixed that with the newer batteries as I recall but was a pretty big hole at release