Defcon 21 - The Secret Life of SIM Cards

  Переглядів 693,469

HackersOnBoard

HackersOnBoard

День тому

Karl Koscher & Eric Butler
August 1st--4th, 2013
Rio Hotel & Casino • Las Vegas, Nevada

КОМЕНТАРІ: 371
@zyldyks
@zyldyks 8 років тому
I think they really missed an opportunity to call their network "SimShady".
@counterculturecocks
@counterculturecocks 7 років тому
Touche'
@nixietubes
@nixietubes 7 років тому
at 31:56 it says "Shadysim" although i think it's a name of an app they made for it or part of a script
@AureliusR
@AureliusR 7 років тому
@Tntmod54321 you clearly, clearly didn't get the original comment. WAY over your head.
@paulgascoigne5343
@paulgascoigne5343 7 років тому
is it the real simshady?
@pahanaama
@pahanaama 7 років тому
What?
@killslay
@killslay 7 років тому
one of these defcon talks popped up in my suggested videos, hours later I'm deep down the UKposts rabbit hole.
@nixietubes
@nixietubes 7 років тому
yup what happened to me was i was learning about the art of hacking and programming, Then i saw that defcon had some ted talk type shit and was like, oh dis gonna be some good shit and you were hours down the hole, i am weeks down dis hole
@autofox1744
@autofox1744 7 років тому
Got here via Jason Scott talks... learning ALL the things now!
@danhorus
@danhorus 7 років тому
This is me right now. 4 to go on my Watch Later, haha
@dirkstamavs
@dirkstamavs 7 років тому
same here checks date 2013 the fuck I have been missing out
@ThisDJ808
@ThisDJ808 7 років тому
d1rksta same. Been watching these for 10 hours not got a clue what they're talking about tbh but it's clever as fuck.
@nogosnoqt
@nogosnoqt 4 роки тому
Gotta respect speaker 2. He was clearly uncomfortable with public speaking, but he dropped a huge load of interesting information.
@datasilouk1995
@datasilouk1995 8 років тому
Very complicated but interesting to watch. I never realised that the SIM card was a smart CPU based card. I thought it was just a EEPROM.
@chrissxMedia
@chrissxMedia 5 років тому
an* do you also think your HDD or SSD is just a spinning plate or flash cell? (not meant too offensive but this is obvious)
@tacticaltux4231
@tacticaltux4231 5 років тому
@@chrissxMedia Necroposting while being an asshole. Nice.
@statinskill
@statinskill 4 роки тому
Yes, it's likely an arm-m0 with 8-16K of ram with a serial interface and some non-volatile memory. Possibly the A3/A5 crypto and whatever crypto I'm potentially missing about UMTS and LTE might be in there in hardware as well. That's all it is. It has an ISO protocol for talking to it, bits send over a serial line and messages are along the lines of CLA INS LEN P1 P2. CLA and INS are class and instruction. Some instructions are even standardized like those to do with files, SELECT FILE, APPEND FILE etc. Files are not huge btw. There are a few bytes long maybe 512-1024 bytes max because the flash will be maybe anything from 8-32K. The smartcard OS firmware will usually observe wear levelling especially for files that get updated a lot. Without knowing too much I'll bet you have to access the GSM application by authenticating against a file using PIN1. Then you can use the instruction to calculate the reply to A3 crypto challenges. And then there are also ways to add your own SIM Toolkit applications. So you see, it's not at all just a piece of "dumb" flash memory. It definitely can do a hell of a lot more than your first home computer if you had one. Only the RAM is lots less, usually around 1-8K.
@Reth_Hard
@Reth_Hard 4 роки тому
I find it crazy to think that inside this tiny tiny chip there's a whole computer with better specs than a freaking NES (Nintendo). (Minus a few things like the GPU... I know...)
@alerighi
@alerighi 4 роки тому
If it was only a simple EEPROM it would be so easy to clone. The reason you need a CPU inside is because that way the private keys never leave the SIM, but the phone simply sends commands to the SIM that computes the required cryptographic functions giving back the result, without the phone knowing the secret keys. That is the principle of operation of all smart cards (a SIM is just one of them), like the one in your credit card or your pay TV card.
@SyphistPrime
@SyphistPrime 6 років тому
I would love to see a talk about actually running the GSM network. That would be interesting.
@TheRileyg98
@TheRileyg98 2 роки тому
This put me on the road to becoming one of the few open-source JavaCard developers. What a talk. They reside in smartcards now, including implants, which I help build.
@bigboypal
@bigboypal 2 роки тому
That's so cool! Do you have any golden tips to further any skills? I hope someday I can produce something as cool as what you're doing.
@calholli
@calholli Рік тому
You're a GOD
@grilla6874
@grilla6874 9 років тому
the shot gave big man confidence
@SeverityOne
@SeverityOne 6 років тому
I used to work at a mobile service provider, where we had these little card reader/writers with which you could program these. From what I remember, we wrote our own little apps.
@will16320
@will16320 7 років тому
I was thinking this talk was out of date, then I saw it was from three years ago and realised these guys were the ones who pioneered sim apt
@busteraycan
@busteraycan 4 роки тому
what is sim apt?
@ClonesDream
@ClonesDream 4 роки тому
@@busteraycan I second this
@TheOnlySolipsist
@TheOnlySolipsist 4 роки тому
Lol I was thinking this comment was out of date then I realized it was from 3 years ago and realized the video was way out of date.
@CrazyMineCuber
@CrazyMineCuber 10 місяців тому
@@TheOnlySolipsist I was thinking this comment to a comment was out of date. Any of you guys still alive?
@assmonkey9202
@assmonkey9202 7 місяців тому
@@CrazyMineCuberthey are all in jail. Glowies got them
@HappyBeezerStudios
@HappyBeezerStudios 4 роки тому
And here am I, 6 years later with my dual SIM phone...
@cballe2288
@cballe2288 9 років тому
Absolutely fantastic work guys. You're an inspiration to us all.
@PatRiot-
@PatRiot- 6 років тому
How quickly my inner nerd has come out after finding defcon!
@absinthdelmar
@absinthdelmar 6 років тому
Very helpful video. Well done!
@peevi
@peevi 3 роки тому
"This is used by the ISIS competitor, Google Wallet" LOL
@myboint
@myboint 9 років тому
Good stuff. Thanks for upload.
@meowdacat
@meowdacat 7 років тому
In the 2000s in Australia Vodafone sim cards could be used for gprs data (dial up speed pre 3g) without any activation of the card just chuck it in and set the connection to Vodafone and off you go. just used to get $2 sims from the piles in shops. You would get about a week to 2 weeks before the card stopped working then you would use another $2 card. you always got your free calls from a payphone and a straw. useless info now :(
@asmolbean9300
@asmolbean9300 3 роки тому
TIL that SIM cards have much more computational power than the Apollo 11 computer. Most people know that the Apollo 11 computer was primitive in contrast to today's technology, that even a £1 calculator has more power than it did, but it's amazing that SIM cards have up to 250kb of storage, 64kb ram and run at 30mhz while the Apollo 11 computer ran at 0.043mhz and had 4kb ram and a 32kb hard disk.
@bravefastrabbit770
@bravefastrabbit770 Рік тому
and fools actually believe such technology managed communications between the earth and the moon....
@nicolali4792
@nicolali4792 3 роки тому
I'm so glad to see this talk back. Ugh censorship.
@johnycannuk
@johnycannuk 10 років тому
Memories...I used to do this back in the early 2000...I still have java cards and the card readers laying around.
@gregory-thecomputermidwife9856
@gregory-thecomputermidwife9856 10 років тому
Fug guys that's a lot of work and we'll prepped
@mikesmith-kt9wj
@mikesmith-kt9wj 5 років тому
Big dude with the glasses might seem soft spoken but he's a technological beast
@stan464
@stan464 5 років тому
Total catcher, and i agree!
@theverdantwolf5402
@theverdantwolf5402 4 роки тому
Not to disrespect the presenter or op, presenter did a great job and I've heard comments like ops a lot, but seriously....what are people learning now? Back in the 90s this was two, maybe three steps above script kiddie depending on which language you learned first after binary. The first time I flashed a chip, it was a Sim card. If this is mind blowing, check out totse.com on the way back machine...the bbs boards combined with phrack mag, 2600, and the Linux journal would have been hacker U in the 80s/90s and it produced higher quality intellects than the academic white/black hat BS today. The average hacker has gotten stupid....or there are more normies than usual trying, either way, bad times.
@shd2937
@shd2937 4 роки тому
what do u mean? you cant be hacker if your normie? normie is stupid? from what i understand is that you're saying that whole talk was nothing and holds no value comprared to hacking that was happening in 90s? Is that pointless to learn this stuff?
@theverdantwolf5402
@theverdantwolf5402 4 роки тому
@@shd2937 - no, you cannot be a truly effective hacker if you cannot think outside the status quo. There are good guys around, null byte and hack5 being some of the better ones, but the community on average has lost its ability to freely and critically think. I definitely think people should learn this stuff, that's the problem, the basics are now seen as advanced or specialty outside of pen-testing. This stuff should be common knowledge by now, not a presentation.
@shd2937
@shd2937 4 роки тому
i get your point, i think its an issue honestly, im cysec student myself and i feel like its harder to focus nowadays, i dont want to blame it at social media or phones but i bet that in the old days that you're mentioning, you didnt had so much distractions around, notifications and unecessary bullshit. Im starting my journey with cysec and im obsessed with gaining more skills and knowledge, and in other hand paralysed by amount of information that is avaliable, kinda stuck... Any tips from yours ?
@srvfan42
@srvfan42 4 роки тому
I want to know more about how they set up their own mobile network out in the middle of nowhere!
@barryhernandez6428
@barryhernandez6428 2 роки тому
Great vid As always 👍🤜🤛💪
@tzisorey
@tzisorey 7 років тому
Interesting that the provider can load new applets through the air. I wonder what sort of auth is involved... Considering it's possible to set up a fake GSM base with SDR. Scary stuff.
@shockingguy
@shockingguy 5 років тому
Tzisorey Tigerwuf Yeah I barely understand this stuff but I get it somebody could sneak something in that could be really powerful for them and damaging to you, stingray baby you’ve beenyou been Zucked!
@eulemitbeule5426
@eulemitbeule5426 5 років тому
Yeah, probably a really good way for intelligence service to set up a wiretap... Just run a AT command to dial a number, turn the volume and responses on the display off and you just got yourself a nice mic in the room. Or send a sms to get your cell, etc. The possibilities are probably endless and it will run on every f*cking phone with no way to notice or delete it (srsly, who would check their SIM card for bugs?)
@sharpfang
@sharpfang 5 років тому
*hackable*. They covered that. You send any junk to the card, it replies with a signed error message, you recover the key from the signature (weak hash) and sign your payload with that key.
@dreadlock17
@dreadlock17 4 роки тому
Wow. And now "simjacker" is just made public
@dreadlock17
@dreadlock17 4 роки тому
@@eulemitbeule5426 dude exactly what "simjacker" could do
@FurryWrecker911
@FurryWrecker911 Рік тому
It's amazing how a lot of the stuff they're talking about back then that was experimental and new became standard practice years later.
@tracezachdaniels4264
@tracezachdaniels4264 5 років тому
SO SHWEEEETTT...much love Tee with LIONS NAMED LEO.[the music worldwide} so fun..
@RichardFRicardo
@RichardFRicardo 6 років тому
Good Job! Dealing with SIM-SWAPPING problem in Africa. Any ideas?
@saultube44
@saultube44 6 років тому
I see that these programming tools need another abstraction layer through better or improved software tools, or improving an IDE to make programming easy and handle themselves like a current high level programming language, but it could be done, just more work and you'll have an easy way to program these cards. The thing is, if they can act on independently on parallel toe the Smartphone CPU, how do you control it and check what security measures it's using and how it's using them, might be secured being independent, but how do you interface with it, if it can't use the SP screen and other functions
@Saturnringer
@Saturnringer 9 років тому
Didn't know this I've had a Sim card even before a phone . interesting how a piece of smart card can be programmed in different ways.
@inzig0752
@inzig0752 Рік тому
I'd love to see a talk about other aspects of the network, like implementing the gsm protocol, but I'm also about 10 years late so I guess there isnt much use in asking now
@JanicekTrnecka
@JanicekTrnecka 7 років тому
I fiddled with sim cards in the past, when it was quite easy to clone them (getting the secret keys by statistics and guessing run on the replies from the sim) But some time after , the sim card operations limit decreased so this method became unusable...
@edgarmartinez7099
@edgarmartinez7099 9 років тому
I can't find the programmable smartcards on ebay. Can anyone help with this? i want to purchase them but first I need to find them.
@RealTheCrasher8
@RealTheCrasher8 4 роки тому
I once tried to install an app from the internet onto a windows phone (back when they still were a thing) and not onto the SIM card. I wondered why it had this stange STK name. Now i know why i never got it to work.
@LordmonkeyTRM
@LordmonkeyTRM 6 років тому
Sim Card is a computer...?! Mindblown.
@ivragi
@ivragi 4 роки тому
But can you run Doom on those?
@DangerousPictures
@DangerousPictures 7 років тому
39:11 back when isis was a payment...
@stevebez2767
@stevebez2767 6 років тому
Day mean when space station enc decode over smart net,pays?
@JM-pq1hy
@JM-pq1hy 6 років тому
Have you considered that maybe that's exactly what it still is? Terrorist payment method..... After all, ISIL is the group, so why the change? Those in charge like to name two or more things the same that seem not to be related, but actually are.
@MyDadIsBillGates
@MyDadIsBillGates 5 років тому
isis was also an egyptian goddess, are they also related? did she invent the payment method and birth the terrorist organization too?
@yellowcrash10
@yellowcrash10 5 років тому
And their enemy was Google.
@grilla6874
@grilla6874 9 років тому
great talk
@RannoRannikmaa
@RannoRannikmaa 5 років тому
in Estonia, Sim app function is used for mobile ID as digital signing and identification service.
@jacobdavidcunningham1440
@jacobdavidcunningham1440 2 роки тому
8:10 lol just jumps in this is a neat talk, I did not realize a SIM was a computer, thought it just held some memory or something
@kaioker
@kaioker 7 років тому
watching in 2017, boy how names change meaning...
@barryhernandez6428
@barryhernandez6428 2 роки тому
Gotta love these fools 👍
@BryanChance
@BryanChance Рік тому
Genius!!
@Anfros.
@Anfros. 10 років тому
So you if you could change the number dialed you could redirect the call to switch with a recording device/tap and then redirect to the original number dialed? Sounds like a good way to tap phone. But I have no experience with this tech so I really don't know if that would be possible.
@MrDeadcows
@MrDeadcows 10 років тому
Something like that just happened to Estonian foreign minister. Check it out.
@xAxMxWx
@xAxMxWx 9 років тому
Anders Fredriksson ever hear that wierd noise right before the ring when you call your drug dealer?
@landlockedviking
@landlockedviking 7 років тому
Imagine taking that back to commodore 64 time...
@johnsausage
@johnsausage 7 місяців тому
7:32 If the SIM applet can run arbitrary commands on the phone, doesn't this basically mean that this is some way to "listen" to a phone? I mean arbitrary commands could also mean it can run commands in the background probably without showing anything to the user and therefor activate the microphone and transmit the data to the carrier (or to whomever).. right?
@RolandKontson
@RolandKontson 5 років тому
Mobile-ID, Estonia. Use it all the time. App comes with the SIM
@salbahis82
@salbahis82 9 років тому
in my country running application in simcard is still a common...
@fuuzegfx
@fuuzegfx 9 років тому
Where are you from?
@iant419
@iant419 9 років тому
justFuuZe Prolly south asia.
@benjabean1
@benjabean1 9 років тому
justFuuZe Going with Filipino. They're subscribed to a few Phillippines-based TV series channels. The Phillippines would make sense, too, given the nation's rather poor telco situation.
@adrianalaniz6057
@adrianalaniz6057 Рік тому
Is there a way to know if this has been done to me? Very confident it is happening by the misleading information I get while on my phone. I get phone calls from different numbers with people who have the same voice claiming they’re from different companies, plus I haven’t had an amber alert the past year or two.I also seen a comment where they worked at a service provider where they had SIM card readers/writers, & my provider had me switch my sims card about 2 times back to back when I’d go to pay my phone bill. Seemed odd to me
@Garbaz
@Garbaz 7 років тому
Why in the work would you run Java on such a limited system, that's crazy. But looking at 27:42 , craziness seems to be the norm.
@Garbaz
@Garbaz 7 років тому
Rex2k10 That's disturbing. Why the hell would one put a Java VM on a µController? I even feel like I'm wasting efficiency when using C instead of Assembly.
@ninjawarthog8580
@ninjawarthog8580 7 років тому
I believe the main reason was standardization to make it easier for third parties to write apps; reduce complaints from angry users that can't get their game/app to work on their new hand set, and probably a failed attempt at predicting the ways in which mobiles would develop.
@Fennecbutt
@Fennecbutt 7 років тому
"Failed attempt". Lol you do realise Android, the most popular mobile phone operating system in the world supports the Java apis.
@agvulpine
@agvulpine 6 років тому
Surely the reason JAVA was used instead of Python or some derivative of C is the total limited scope of people who program these things, ever. It's a tiny circle jerk of a few industry leaders, their circle of developers, and managers who have never written a line of code themselves but heard of JAVA on Linkedin.
@peregrinusoblivione4967
@peregrinusoblivione4967 5 років тому
It is because it is a much safer language to develop with, and if you are going to have any idiot able to develop an app that can be accessed by something that is in every other person in the worlds pocket. You are going to want to avoid that shit storm. There are also Java elitists. The best thing Java did was lend its name to JavaScript.
@Catcrumbs
@Catcrumbs 3 роки тому
That's interesting. I never knew there were mobiles without SIMs. How do you bring your number from one phone to another that way?
@Ewr42
@Ewr42 Рік тому
I think the phone is network bound, so you get a compulsory subscription for the network companies which collaborate with phone companies. I think If you lose a phone you buy another one of the same network version and calls their customer service to cancel the old number or the new one and choose which will be used I'm really not sure tho
@colinbyerly5212
@colinbyerly5212 5 місяців тому
Thanks for the idea , as new products that are now very interchangeable and allow switching and reading and writing and copy and inter device direct wire connections . As well as transfer of complete Lynix portable device add ons with diverse cell phone multiple adapters at high speed and so much more ability’s . That it’s like a explosion of device uses that never before was so affordable and micro processed and diverse that only ones creative excitement will limit one especially with satellite and ham station and frequency scanners to really make AI a co pilot with a crew working to develop what you simply question if it’s only possible then it’s done before you finish talking with predictive technology .
@FFVison
@FFVison 5 років тому
The name, ShadyTel describes pretty much any telecom nowadays
@goqsane
@goqsane 6 років тому
Am I the only person who has no audio on this video? WTF, it just stopped. I tried so many things. I've been trying to watch it for weeks now. HELP.
@PhilXavierSierraJones
@PhilXavierSierraJones 5 років тому
I have a SIM card that, upon first boot, forces the phone into programming mode, connects to a cell tower, registers the phone, writes it to EEPROM then never calls the function ever again, effectively turning it into an one-time card.
@starwatching5216
@starwatching5216 5 років тому
That's pretty interesting, care to share more about that? Do you have any documentation/videos talking about this?
@SisyphusianSaturnite
@SisyphusianSaturnite 11 місяців тому
I have a feeling they are indirectly responsible for the large volume of "scam calling" over the past couple years
@DragoNate
@DragoNate Місяць тому
actually, the concept of things being stored on your SIM card that you can easily pop out and move to another device isn't awful in itself. i see the issue of where that _would_ have led things, but if we could just use it to simply move important data around, it would be nice.
@BrainSeepsOut
@BrainSeepsOut 9 років тому
Before I got a Windows Phone smartphone I would always move my contacts to my SIM card to move between phones but no modern phone OS allows that anymore! Unless there's an app for that?
@AnLaggy
@AnLaggy 9 років тому
android does allow it, at least on samsung devices
@0x7fffeeee83
@0x7fffeeee83 9 років тому
Anlaggy Laggy Samsung FTW
@0x7fffeeee83
@0x7fffeeee83 9 років тому
***** What?
@xxTehCodxx
@xxTehCodxx 9 років тому
***** Its android, android is the operating system. Samsung is the phone maker.
@xxTehCodxx
@xxTehCodxx 9 років тому
>mfw put down by totally not op *:(*
@seanrobinson6035
@seanrobinson6035 6 років тому
Where do you buy a blank SIM Card
@neoqueto
@neoqueto 4 роки тому
I wonder if one can write apps in assembly for it and somehow make it interface with the hardware. A SIM card is literally more powerful than a C64.
@statinskill
@statinskill 4 роки тому
neoqueto -- Maybe there is but that might be a feature on specific SIM cards. What I have found is just by going to Wikipedia's sim toolkit page and then clicking on the ETSI standards document in the references. That's an eye opener just by itself, because it describes the command the phone accepts from the SIM and how the SIM can f with your phone in many ways. But the Standard you want is ETSI TS 131.113 which talks about the USAT interpreter and it's programming environment. It seems to be just a byte code interpreter with specific data types for text messages etc. And skimming through the manual I find in section 8.8 "Execute Native Command". The instruction code is 47H/C7H followed by length in bytes, then some stuff and finally a 16 bit NCI. You don't get to just jump anywhere you want, you have to give it a native call identifier. And that's where I'll bet it gets card specific. You're going to have to tell the card os to create a new application for you with a certain AID. In that command you're going to have to tell it how many bytes long. Then you would create the application files including writing your binary to a file and setting a special execute bit on it. The AID is probably the NCI. But for that you are going to have to have a USIM that supports this business, has space available and had its access rules/protections set so you can do it, or you have the crypto keys to unlock these features. And then I wondered if you can buy fresh un programmed USIM cards online and it turns out you easily can for a very reasonable price. I have no idea what they are the ones I looked at and I would only buy if they can supply the keys and the technical manual. You will likely deal with Chinese who don't speak much English. Now that's what's possible on the interface between the SIM and the phone and you have been educated on it for free. As a bonus I am just going to throw in I bet you didn't know your sdcards contained a arm core you can run code on using vendor specific sdcard commands.
@AlexCheerNZ
@AlexCheerNZ 8 років тому
in NZ we have Semble which requires you to upgrade your sim to a more secure sim. would it use SWP?
@leighabrown2992
@leighabrown2992 8 років тому
Nice.
@icemine2418
@icemine2418 3 роки тому
why did yt recommed me this
@IamTristanC
@IamTristanC 4 роки тому
39:49 boy did that name not age well since 2013
@MStrickkk
@MStrickkk 5 років тому
The Other Onion Router?
@LaskyLabs
@LaskyLabs 4 роки тому
I really hope SIM cards have gotten less complicated...
@SuperAWaC
@SuperAWaC 5 років тому
so sms applet programmers are like modern day PLC programmers lol
@rentacowisgoogle
@rentacowisgoogle 8 років тому
I hope ISIS Co. changed up its branding...
@rentacowisgoogle
@rentacowisgoogle 8 років тому
Only need to read the url haha
@Axodus
@Axodus 8 років тому
+rentacow fuckin isis ruined them ):
@stevebez2767
@stevebez2767 6 років тому
Trashed the shuttle like some UKposts commenter asked,challenger next,planes?
@davee1233
@davee1233 4 роки тому
Softcard now
@billdavis9286
@billdavis9286 3 роки тому
So you could inessants, send someone a message or "task" through their phone and leave no trace. Like maybe a location or a time someone will be somewhere......... . . . ?
@Some_Beach
@Some_Beach 4 роки тому
That NFC card company's name probably didn't age well
@frillneckedlizard8529
@frillneckedlizard8529 7 років тому
Could you erase the card and use it as a microcontroller that you program using machine language and just use it as a tiny arduino
@viv_2489
@viv_2489 3 роки тому
Oh this is your slide, probably the shots are going to head 😂
@chadjackson1455
@chadjackson1455 2 роки тому
How do I recover my pin? I locked myself out and I don't know my pin
@emeliedenmodige2470
@emeliedenmodige2470 Рік тому
development in this area?
@ricardoruiz3542
@ricardoruiz3542 8 років тому
could you use this to execute arbitrary code? In the right environment?
@RobertBreckenridge13
@RobertBreckenridge13 4 роки тому
Wow, whoever recorded the sound or set the mic gain needs to listen to this at full volume with headphones on. My PC volume was at 75% and my UKposts volume was at 50%, and "welcome, everyone" almost blew my speakers out.
@FindecanorNotGmail
@FindecanorNotGmail 9 років тому
This is very interesting, but the speakers tend to smack all the time, which drives me crazy and I can't continue listening. I stopped a third in.
@TheMasturCheef
@TheMasturCheef 9 років тому
*smack smack smack* Thanks for *smack* telling -_-
@menkio
@menkio 9 років тому
you passed up some great knowledge for something pretty stupid. welcome to being passed. darwin style dumbass
@nikhilrd7686
@nikhilrd7686 6 років тому
hey guys I am graduated in Computer science engineering.I am interested to pursue Master's.Please help me in choosing the domain in master's...
@DavidDavida
@DavidDavida 5 років тому
whats with allaAds again??
@nsaccente
@nsaccente 5 років тому
39:49 Did anyone else shit themselves when they heard this?
@herauthon
@herauthon 8 років тому
What about Android and Security ? Is Rooting and moving to some other OS a good security thing - i wonder Because what are the next security steps and how mature is security on 'smart'-Phones ?
@peyton_uwu
@peyton_uwu 3 роки тому
wheres the doom port for sim cards cmon people we're waiting
@tr233
@tr233 6 років тому
being java developer myself, i pretty amazed where java can run, well it would be coll if the showed actualy spy app which can record audio on the sim card!
@FXP1688
@FXP1688 4 роки тому
I'm pretty amazed what Java shouldn't have run. That's just painful to watch.
@nnslife
@nnslife 4 роки тому
Nice talk, interesting to hear about what happens in SIM-cards. He said "ISIS" at 39:51. I am reporting this video for terrorism.
@mikesmith-kt9wj
@mikesmith-kt9wj 5 років тому
So where are these bytes being sent? From the simcard to the phone?? What if I want these bytes sent to my lab top???
@imsamurai3000
@imsamurai3000 6 років тому
Do you have permission to monetize these defcon conferences? This is not really your content.
@ZarkowsWorld
@ZarkowsWorld 6 років тому
Darren >> There is no fair use in copying someones work and re-posting it in verbatim. And absolutely not to monetize it.
@uzaircassim4373
@uzaircassim4373 6 років тому
Ads Darren... Ads
@shockingguy
@shockingguy 5 років тому
Just watched it, no ads here
@mathewmccloskey8242
@mathewmccloskey8242 5 років тому
@D C That's not how fair use works...
@issacnewton9443
@issacnewton9443 5 років тому
@@shockingguy I got 10 ads, maybe you have an ad blocker because it's definitely monetized.
@LaLaLand.Germany
@LaLaLand.Germany 3 роки тому
I torched my SIM after this... Bad SIM, bad, bad... If these nerds figured this out, what could "security" agencies do? What is happening? Did i fall down the rabbit hole by watching this?
@annax5212
@annax5212 8 років тому
Card for gsm are so cheap ....using PIC 16F84 and 24LC16 that what i used many years ago to clone two numbers on 1 card .....still working in 2015 :)
@dierks67
@dierks67 6 років тому
Anna X Could you please explain what and how you've done (that)?
@annacichocka7734
@annacichocka7734 Рік тому
No body is safe from shadism aka sadism LMAOOOO
@Seth9809
@Seth9809 6 років тому
Why is their ads on this? Did you present this?
@StrangeQuark
@StrangeQuark 5 років тому
the appendix of telcos
@EthanSeville
@EthanSeville 7 років тому
I have SIM toolkit on my OnePlus 2 but when I open it just closes 32:56
@movingelectrons
@movingelectrons 4 роки тому
how did they start their own telco network though??? thats what i wanted to know...
@shawnireland1197
@shawnireland1197 4 роки тому
Probably a fem-to-cell or reverse engineered one and setting Sim card to connect to it..
@movingelectrons
@movingelectrons 4 роки тому
@@shawnireland1197 thank you! still would be nice to have some concrete data on what was used and how
@grog8164
@grog8164 6 років тому
What do you mean by secure bitcoin transaction 37:37 ?
@HackersOnBoard
@HackersOnBoard 4 роки тому
Hello dear friends The 2nd December 2019 we get notified of the censorship of our channel by the new UKposts Guidelines (who change every 6 months) because of "Content reusing without including substantial original commentary or educational value" so in consequence the Monetization of our channel was disabled. This is a little bit tricky because these Guidelines wasn't there in 2013, 2014, 2015 and so on... It is abnormal to change the rules during a game ...even more before Christmas! Since 2013 we are trying to share the best Security Conference on our channel and we need your help to keep it up. As you already know I was fighting the disease since the last 2 years and it's difficult and without resource and support I wouldn't be able to keep up on this way. You can support us on Patreon if you find our work valuable. You can also express your dissatisfaction regarding our situation to UKposts on Twitter, Facebook, Instagram and wherever you can. to help us regain our rights. Your support in anyway will be truly appreciated Thanks guys for taking time reading me and stay tuned! Merry Christmas to you all and God bless you all! www.patreon.com/HackersOnBoard Bitcoin Wallet: 1NWM4upgKj8iF7zknzmnHG8Mm2pvAyTHqc
@brickwilbur9805
@brickwilbur9805 2 роки тому
HELP ANYONE WITH SOME ANDROID SKILLS! I HAVE BEEN ATTACKED. A few days ago, while watching a UKposts video(via the App) on my Samsung Galaxy S20 FE 5G, the left half of the video portion was covered with a pinkish/orangish screen with the words "MICROWAVE SPY CAMERA 1.XXXX" (where xxxx was 4 digits that I don't remember). After about 20 seconds, I clicked the next video and the exact same thing occurred. I then clicked back to the previous video and the video didn't have this "notice". Then I returned to the new video and it was no longer there either! I played one more completely different video and it wasn't on it either. I tried to look in the developer options for how to see active programs running and it listed about 20, but nothing that stood out as suspicious. I just now put the phone in airplane mode. How can I inspect my phone for evidence of this "screen notice"? Maybe some kind of cache files containing the "screen notice" or whatever? Is there a way to get a dump of ALL processes running before it's too late and it terminates, or the cache gets deleted? I would like to get proof this exists on my phone. Need evidence. Please help ASAP!!
@bryceop
@bryceop 9 років тому
I feel sorry for that company called isis
@Sperminski
@Sperminski 8 років тому
+Insufferable Picks Why? It's a beautiful name.
@philipphoehn3883
@philipphoehn3883 7 років тому
Sperminski ha, ha Google it
@KtBkkr
@KtBkkr 6 років тому
alahu abakahar
@Div1ne_1
@Div1ne_1 5 років тому
But can it run crysis?
@BOMBOVA
@BOMBOVA 9 років тому
quite cool,
@Shrek_Has_Covid19
@Shrek_Has_Covid19 Рік тому
lmao my sim card has AIDS
@daveb5041
@daveb5041 4 роки тому
*Now you can buy sim cards of Alibaba no questions asked*
@genericdeveloper3966
@genericdeveloper3966 3 роки тому
I don't get it
Defcon 21 - Forensic Fails - Shift + Delete Won't Help You Here
47:10
HackersOnBoard
Переглядів 635 тис.
Simmerstats: The genius old tech that controls your stovetop
36:31
Technology Connections
Переглядів 658 тис.
DEFCON 17: That Awesome Time I Was Sued For Two Billion Dollars
31:28
Christiaan008
Переглядів 1,6 млн
Defcon 21 - Stalking a City for Fun and Frivolity
45:20
HackersOnBoard
Переглядів 246 тис.
DEFCON is an oddly terrifying game
7:41
Pineoster
Переглядів 14 тис.
Defcon 21 - Social Engineering: The Gentleman Thief
41:55
HackersOnBoard
Переглядів 370 тис.
If you do wire soldering with paste, soldering can be done very easily
0:26
Tech Electronics BD
Переглядів 2,3 млн
Что если бы Apple делала зубные щётки?
0:59