Fwd: Security Theater seminar on 7/4/13 at 14:00

2 views
Skip to first unread message

Yossi Oren

unread,
Apr 4, 2013, 2:01:46 AM4/4/13
to security-theater-announcements
Super fresh and super interesting talk this Sunday - see you!

---------- Forwarded message ----------
From: Irit Neulander <ir...@eng.tau.ac.il>
Date: Thu, Apr 4, 2013 at 8:57 AM
Subject: Security Theater seminar on 7/4/13 at 14:00
To: Irit Neulander <ir...@eng.tau.ac.il>


Sunday, 7 April 2013, at 14:00

                    Room 146, Labs Build.

 

 

 

Title: Paparazzi Over IP

 

Abstract: Almost every recent higher class DSLR camera features multiple and complex access technologies. For example, CANON's new flagship features IP connectivity both wired via 802.3 and wireless via 802.11. All big vendors are pushing these features to the market and advertise them as realtime image transfer to the cloud. We have taken a look at the layer 2 and 3 implementations in the CamOS and the services running upon those. Not only did we discover weak plaintext protocols used in the communication, we've also been able to gain complete control of the camera, including modification of camera settings, file transfer and image live stream. So in the end the "upload to the clouds" feature resulted in an image stealing Man-in-the-Imageflow. We will present the results of our research on cutting edge cameras, exploit the weaknesses in a live demo and release a tool after the presentation.

 

Speaker Bios:

Daniel Mende is a German security researcher specialized on network protocols and technologies. He's well known for his Layer2 extensions of the SPIKE and Sulley fuzzing frameworks and has presented on protocol security at many occasions including Troopers, Blackhat, CCC, IT Underground and ShmooCon. Usually he releases a new tool when giving a talk.

 

Pascal Turbing is a network geek, auditor and penetration tester who loves to explore network devices, protocols, applications and to break flawed ones.

 

Recorded at Shmoocon IX, Washington DC, USA, February 16, 2013 (tari tari!)

 

 


Reply all
Reply to author
Forward
0 new messages