Borja Berástegui – Handware hacking – Si hay un ‘input’, hay peligro [Rooted CON 2014]

495 views
385 views

Published on

Published in: Technology, Business
0 Comments
0 Likes
Statistics
Notes
  • Be the first to comment

  • Be the first to like this

No Downloads
Views
Total views
495
On SlideShare
0
From Embeds
0
Number of Embeds
0
Actions
Shares
0
Downloads
12
Comments
0
Likes
0
Embeds 0
No embeds

No notes for slide

Borja Berástegui – Handware hacking – Si hay un ‘input’, hay peligro [Rooted CON 2014]

  1. 1. 1 Rooted CON 2014 6-7-8 Marzo // 6-7-8 March “Handware Hacking” If there is an input, there is danger @BBerastegui
  2. 2. 2 Rooted CON 2014 6-7-8 Marzo // 6-7-8 March What's this NOT about? ⬢ Extreme hacking ⬢ 0-days ⬢ Highly technical stuff ⬢ New exploitation techniques
  3. 3. 3 Rooted CON 2014 6-7-8 Marzo // 6-7-8 March What's this about? ⬢ Accesing to: ⬡ ATMs (a few) ⬢ Not “How” but “What it means” ⬡ Whatever-selling machines ⬢ Obtaining access to any computer (regardless the external case) ⬡ Kiosks
  4. 4. 4 Rooted CON 2014 6-7-8 Marzo // 6-7-8 March “Rules” ⬢ No tools (or less as possible) ⬢ Leave everything as found ⬢ Obtain cmd || “bypass” legitimate use restrictions
  5. 5. 5 Rooted CON 2014 6-7-8 Marzo // 6-7-8 March How-to ⬢ Inputs: ⬢ Techniques: ⬡ Keyboard ⬡ Touch screen ⬡ Race condition - Knock, knock. + Race condition. - Who's there? – A bad joke about “race condition” ⬡ Crash ⬡ “Touchy touchy” ⬡ URIs
  6. 6. 6 Rooted CON 2014 6-7-8 Marzo // 6-7-8 March Screens (1) ⬢ Location: ⬢ Type of device: ⬢ Technique:
  7. 7. 6 Rooted CON 2014 6-7-8 Marzo // 6-7-8 March Screens (1) ⬢ Location: ⬢ Type of device: ⬢ Technique:

×