Sweet Tools O' Mine - because you don't hunt lions with blanks

No ratings

Presented at t2 2016 by

This is not another talk about how to hack [TARGET HERE]. By now we all know that, given enough time, almost everything is "pwnable" and that every day more and more weird stuff is hackable. Lately, in every conference there are a bunch of talks about "How to hack [TARGET HERE]" that add nothing new as it's the same techniques and tools against the same software but running on a different platform. An SQL injection in a web interface is still an SQL injection... and it's still boring. If there's one thing I love about security, that is tools; I enjoy creating them and I rarely use a tool created by others. And if there is another thing I also love is offensive security. So this talk is about some offensive security tools, devices and methodologies I have developed over time. I will present offensive tools such as rootkits and payloads, fuzzers and disassemblers, and the methodology I usually follow to use them. Nothing brand new here although the tools presented are quite nice and attendees will learn few tricks here and there and understand the motivations and benefits of writing your own tools. After that, the talk will move from Software to Hardware. I will show how I have "weaponized" some hardware devices in order to target specific environments where the use of a laptop may not be stealth enough. And no, by devices I don't mean just another Raspberry PI ;-) Finally I will explain the process I followed to prototype some hardware devices made specifically for offensive security and how I ended trying to design and create my own Hardware from the ground up. The scenarios and targets for this devices are different than the normal computer networks: uncommon RF networks, buildings, drones, etc. This was a new journey for me and that means that no previous knowledge of Hardware design is expected; I will share my experience and, hopefully, help and encourage the attendees to try by themselves. Hugo Teso works as Head of Aviation Cyber Security Services at F-Secure, he hates talking about himself in 3rd person, and he has been working on IT security for the last 16 years. Also being a commercial pilot, he soon focused his attention on aviation security. Together with the development of some open source projects, like Inguma and Bokken, he has spent a lot of time on aviation security research and has presented some of the results in conferences like RootedCon, HITB, T2, SEC-T and CyCon. No, neither Blackhat nor Defcon... and happy with it :-)