Busqueda de Fotografias

Video: 28c3: Print Me If You Dare

Descripción de 28c3: Print Me If You Dare:

Download high quality version: http://bit.ly/slWnU7 Description: http://events.ccc.de/congress/2011/Fahrplan/events/4780.en.html Ang Cui, Jonathan Voris: Print Me If You Dare Firmware Modification Attacks and the Rise of Printer Malware Network printers are ubiquitous fixtures within the modern IT infrastructure. Residing within sensitive networks and lacking in security, these devices represent high-value targets that can theoretically be used not only to manipulate and exfiltrate the sensitive information such as network credentials and sensitive documents, but also as fully functional general-purpose bot-nodes which give attackers a stealthy, persistent foothold inside the victim network for further recognizance, exploitation and exfiltration. We first present several generic firmware modification attacks against HP printers. Weaknesses within the firmware update process allows the attacker to make arbitrary modifications to the NVRAM contents of the device. The attacks we present exploit a functional vulnerability common to all HP printers, and do not depend on any specific code vulnerability. These attacks cannot be prevented by any authentication mechanism on the printer, and can be delivered over the network, either directly or through a print server (active attack) and as hidden payloads within documents (reflexive attack). In order to demonstrate these firmware modification attacks, we present a detailed description of several common HP firmware RFU (remote firmware update) formats, including the general file format, along with the compression and checksum algorithms used. Furthermore, we will release a tool (HPacker), which can unpack existing RFUs and create/pack arbitrary RFUs. This information was obtained by analysis of publicly available RFUs as well as reverse engineering the SPI BootRom contents of several printers. Next, we describe the design and operation a sophisticated piece of malware for HP (P2050) printers. Essentially a VxWorks rootkit, this malware is equipped with: port scanner, covert reverse-IP proxy, print-job snooper that can monitor, intercept, manipulate and exfiltrate incoming print-jobs, a live code update mechanism, and more (see presentation outline below). Lastly, we will demonstrate a self-propagation mechanism, turning this malware into a full-blown printer worm. Using HPacker, we demonstrate the injection of our malware into arbitrary P2050 RFUs, and show how similar malware can be created for other popular HP printer types. Next, we demonstrate the delivery of this modified firmware update over the network to a fully locked-down printer. Lastly, we present an accurate distribution of all HP printers vulnerable to our attack, as determined by our global embedded device vulnerability scanner (see [1]). Our scan is still incomplete, but extrapolating from available data, we estimate that there exist at least 100,000 HP printers that can be compromised through an active attack, and several million devices that can be compromised through reflexive attacks. We will present a detailed breakdown of the geographical and organizational distribution of observable vulnerable printers in the world. *We have also unpacked several engine-control processor firmwares (different from the main SoC) and are currently attempting to locate code related to tracking dots. Perhaps we will have some results by December. In any case, HPacker will help the community to do further research in this direction, possibly allowing us to spoof / disable these yellow dots of burden.

Videos Relacionados

Reverse-engineering a Qualcomm baseband [28C3]

Reverse-engineering a Qualcomm baseband [28C3]

62:55 Mins | Visto 767 veces
Agregado hace 2 meses
Apple vs. Google Client Platforms [28C3]

Apple vs. Google Client Platforms [28C3]

51:19 Mins | Visto 1093 veces
Agregado hace 618 horas
28c3 LT Day 4: Null Bytes Revived

28c3 LT Day 4: Null Bytes Revived

04:39 Mins | Visto 1900 veces
Agregado hace 2 meses
28c3: Antiforensik

28c3: Antiforensik

32:47 Mins | Visto 3389 veces
Agregado hace 326 horas
28c3 LT Day 4: Etherpad Lite

28c3 LT Day 4: Etherpad Lite

04:20 Mins | Visto 3962 veces
Agregado hace 555 horas

28c3: Time is on my Side

28c3: Time is on my Side

61:05 Mins | Visto 1175 veces
Agregado hace 94 horas
28c3: Security Log Visualization with a Correlation Engine

28c3: Security Log Visualization with a Correlation Engine

25:53 Mins | Visto 1483 veces
Agregado hace 4 meses
28c3 LT Day 4: Life Hacking: Personal Finance Logging for Fun and Profit

28c3 LT Day 4: Life Hacking: Personal Finance Logging for Fun and Profit

05:12 Mins | Visto 3658 veces
Agregado hace 2 meses
Electronic money: The road to Bitcoin and a glimpse forward [28C3]

Electronic money: The road to Bitcoin and a glimpse forward [28C3]

61:28 Mins | Visto 601 veces
Agregado hace 3 meses
28c3 LT Day 2: Hacking a Train's Intercom

28c3 LT Day 2: Hacking a Train's Intercom

03:29 Mins | Visto 2276 veces
Agregado hace 3 meses

28c3: Electronic money: The road to Bitcoin and a glimpse forward

28c3: Electronic money: The road to Bitcoin and a glimpse forward

61:28 Mins | Visto 1279 veces
Agregado hace 4 meses
Printer Ink Secret, Revealed!

Printer Ink Secret, Revealed!

00:58 Mins | Visto 1962456 veces
Agregado hace 2 horas
28c3: The coming war on general computation

28c3: The coming war on general computation

54:35 Mins | Visto 168419 veces
Agregado hace 3 horas
28c3: bup: Git for backups

28c3: bup: Git for backups

27:14 Mins | Visto 2935 veces
Agregado hace 2 meses
28c3: Bionic Ears

28c3: Bionic Ears

62:14 Mins | Visto 2040 veces
Agregado hace 17 horas

Quitar Cabezal epson para limpieza Parte 1/3

Quitar Cabezal epson para limpieza Parte 1/3

02:54 Mins | Visto 279241 veces
Agregado hace 27 horas
The Dirty Little Secret Of Inkjet Printers

The Dirty Little Secret Of Inkjet Printers

01:37 Mins | Visto 416885 veces
Agregado hace 10 horas
28c3: Keynote - Marriage from Hell

28c3: Keynote - Marriage from Hell

60:53 Mins | Visto 8410 veces
Agregado hace 564 horas
How to set up your Epson printer wirelessly

How to set up your Epson printer wirelessly

05:11 Mins | Visto 39939 veces
Agregado hace 6 horas
How to Install Epson Printer Ink Cartridges

How to Install Epson Printer Ink Cartridges

01:13 Mins | Visto 47198 veces
Agregado hace 13 horas

LIMPIEZA DE CABEZALES EPSON

LIMPIEZA DE CABEZALES EPSON

07:06 Mins | Visto 672753 veces
Agregado hace 12 horas
ALL IN ONE EPSON PRINTER PRINT HEAD CLEANING

ALL IN ONE EPSON PRINTER PRINT HEAD CLEANING

05:30 Mins | Visto 63946 veces
Agregado hace 2 meses
Limpieza de cabezal impresora epson T30 T31 T33 C110

Limpieza de cabezal impresora epson T30 T31 T33 C110

05:10 Mins | Visto 77881 veces
Agregado hace 74 horas
Unblock Printer Heads Clean - Remove Clogged Ink with ease

Unblock Printer Heads Clean - Remove Clogged Ink with ease

03:26 Mins | Visto 381576 veces
Agregado hace 26 horas
How to reset  Epson printers - FREE download Waste Ink Reset program

How to reset Epson printers - FREE download Waste Ink Reset program

01:11 Mins | Visto 189718 veces
Agregado hace 94 horas

1 2 3 4 Siguiente

Copyright 2010 PORTALDEWALLPAPERS.COM - Wallpapers