Register FAQ / Rules Forum Spy Search Today's Posts Mark Forums Read
Go Back   MacRumors Forums > Mac Community > Community Discussion > Current Events

Reply
 
Thread Tools Search this Thread Display Modes
Old Oct 27, 2002, 07:32 PM   #1
madamimadam
macrumors 65816
 
madamimadam's Avatar
 
Join Date: Jan 2002
When DreamCasts Attack

White hat hackers use game consoles, handheld PCs to crack networks from the inside out.

Cyberpunks will be toting cheap game consoles on their utility belts this fall if they follow the lead of a pair of white hat hackers who demonstrated Wednesday how to turn the defunct Sega Dreamcast into a disposable attack box designed to be dropped like a bug on corporate networks during covert black bag jobs.

The "phone home" technique presented by Aaron Higbee of Foundstone and Chris Davis from RedSiren Technologies at the Black Hat Briefings here takes advantage of the fact that firewalls effective in blocking entry into a private network, are generally permissive in allowing connections the other way around.

Higbee and Davis perform penetration tests, and developed their game box cum attack tool after finding themselves more than once with physical access to a client's facilities -- posing as an employee in once case, crawling through a drop ceiling in another -- but without a way to leverage that access into remote control of the company's network.

"It's not that hard to get into an organization for one or two minutes," said Higbee.

They chose the Dreamcast for its small size, availability of an Ethernet adapter, and affordability -- the console was discontinued last year, and now sells used for under $100 on eBay. Loaded with custom Linux-based software and covertly plugged into a spare network port under a desk or above a ceiling, the harmless-looking toy becomes the enemy within, probing the company firewall for a way out to Internet.

The box cycles through the ports used for common services like SSH, Web surfing, and e-mail, which tend to be permitted by firewall configurations. Failing that, it tries getting "ping" packets out to the Internet, and finally looks for proxy servers bridging the network to the outside world.

Whatever it finds, it uses to establish a tunnel through the firewall to the intruder's home machine. "Most organizations focus on the perimeter," said Davis. "Once you get through the outside, there's a soft chewy center."

The pair suggested some techniques for mitigating the risk of dropped-in hardware -- restricting the LAN to pre-assigned MAC addresses, for one -- but said that ultimately, there may be little an organization can do to prevent an attacker with physical access from setting up a covert channel home.

The pair plan to release their Dreamcast software on their website next month, along with similar code they developed for the handheld Compaq iPAQ, and a bootable CD ROM designed to be slipped into print servers and other kiosk PCs.

While useful, they note that the other platforms lack at least one of the Dreamcast's virtues. "It's innocuous. It looks like a toy," said Davis. "If you bring it into a company, they're going to go, 'Wow, look at the toy!'"
__________________
"Type edit a:\"
"Edit a colon?????"
"No, edit a : ...... A :"
"A colon????"
"The letter a"
madamimadam is offline   0 Reply With Quote
Old Oct 27, 2002, 08:52 PM   #2
LethalWolfe
macrumors Demi-God
 
LethalWolfe's Avatar
 
Join Date: Jan 2002
Location: Los Angeles
Ha, and people say the Dreamcast is dead.


Lethal
LethalWolfe is online now   0 Reply With Quote
Old Oct 27, 2002, 10:28 PM   #3
rainman::|:|
macrumors 603
 
Join Date: Feb 2002
Location: iowa
Send a message via Yahoo to rainman::|:|
*looks over at partner's virtually unused dreamcast*

*thinks about his job at [blank] financial group*

*smiles*

*pauses wondering what the hell personal benefit could possibly come of this*

dammit. so close, too.

pnw
rainman::|:| is offline   0 Reply With Quote
Old Oct 28, 2002, 05:26 AM   #4
MrMacMan
macrumors 601
 
MrMacMan's Avatar
 
Join Date: Jul 2001
Location: 1 Block away from NYC.
Send a message via AIM to MrMacMan
Cool, I'm gonna do that at some company if it works...
__________________
There is a little Steve in all of us!
-->Folding is Fighting Against Disease and help MacRumors. Join Today!<--
Props to --> Shadowfax For Making My Avatar!
IM Me On AIM Already!
MrMacMan is offline   0 Reply With Quote

Reply
MacRumors Forums > Mac Community > Community Discussion > Current Events

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
thread Thread Starter Forum Replies Last Post
When do springboard icons overlay dock icons ? Alfroggy Jailbreaks and iOS Hacks 0 Nov 18, 2011 11:44 AM
When Iceland Attacks! miles01110 Current Events 78 Apr 19, 2010 01:25 PM
(HOT HOT HOT) When thermal paste attacks byke MacBook Air 48 Jun 28, 2009 05:52 PM
kernel attack when I use blue tooth keyboard with macbook. Normal? WillMak MacBook Pro 3 Dec 10, 2007 12:14 AM
When MRI machines attack! vniow Community Discussion 12 Jan 17, 2006 02:45 PM


All times are GMT -5. The time now is 06:26 PM.

Mac Rumors | Mac | iPhone | iPhone Game Reviews | iPhone Apps

Mobile Version | Fixed | Fluid | Fluid HD
Copyright 2002-2013, MacRumors.com, LLC