Hostile Buttplugs - Defcon 27

Discussion in 'Off topic discussions' started by Sam89, Sep 5, 2019.

  1. Sam89
    Offline

    Sam89 New member

    Joined:
    Mar 10, 2017
    Messages:
    5
    Likes Received:
    5
    Trophy Points:
    3
    Gender:
    Male
    Local Time:
    6:54 AM
    Hi, Came across this video whilst researching vulnerabilitys among embedded devices for work. Its a technical talk but interesting none the less.

     
    DarkKnight and Dannysub like this.
  2. Sam89
    Offline

    Sam89 New member

    Joined:
    Mar 10, 2017
    Messages:
    5
    Likes Received:
    5
    Trophy Points:
    3
    Gender:
    Male
    Local Time:
    6:54 AM
    To give you an idea of the security on some of these embedded devices, My CCTV Security Camera system has a HARDCODED default username of root and password of 123456.
    This isn't the username and password to view the footage, This is the username and password to connect directly to the device via telnet. (Think MS-DOS prompt)

    The only thing stopping the $300 recorder becoming an expensive brick? Nobody has typed:.

    telnet <my-IP-Address>:23 -l root
    password:123456
    rm -rf /

    I'd love to say this device is one of a kind, sadly its not. showdan.io is literally the security professionals version of google. Its specifically designed for sniffing out these kinds of devices.

    ** Device is no longer networked :p - Don't bother trying.**
     
    Charles3451 likes this.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice