DEFCON and BlackHat 2009. Hacker K. Chen showed off his latest hack where he was able to replace the firmware on an Apple keyboard. This firmware can sniff keystrokes to obtain your password and ...
DEFCON and BlackHat 2009. Hacker K. Chen showed off his latest hack where he was able to replace the firmware on an Apple keyboard. This firmware can sniff keystrokes to obtain your password and it can launch a bash shell connected to any remote IP address on any port.
Like to rate videos and let people know what you think?
Automatically share your ratings, favorites, and more on Facebook, Twitter, and Google Reader with YouTube Autoshare.
Autoshare makes certain YouTube activities public on the services you choose. Select only the services you are comfortable with - like Facebook, Twitter, or Google Reader - to let your friends know what you like on YouTube. You can turn Autoshare off at any time.
Like to share videos with friends?
Automatically share your ratings, favorites, and more on Facebook, Twitter, and Google Reader with YouTube Autoshare.
Autoshare makes certain YouTube activities public on the services you choose. Select only the services you are comfortable with - like Facebook, Twitter, or Google Reader - to let your friends know what you like on YouTube. You can turn Autoshare off at any time.
This video has been removed from your Favorites. (Undo)
Like to Favorite videos and let people know what you think?
Automatically share your ratings, favorites, and more on Facebook, Twitter, and Google Reader with YouTube Autoshare.
Autoshare makes certain YouTube activities public on the services you choose. Select only the services you are comfortable with - like Facebook, Twitter, or Google Reader - to let your friends know what you like on YouTube. You can turn Autoshare off at any time.
Or, you can look at the link I provide in the description which details the exploit and links to the 900 page presentation released by K. Chen that details how to replicate this exploit.
1. it doesn't really explain well enough to the everyday person what is going on. I'm a power user of computers (not a hacker) and I barely understand what's going on
2. you need to increase the font size to say at least 36 points so that we can actually see both screen and keyboard at the same time. The video shots of the screen is blurry and often illegible.
If you follow the link in the description, it puts everything in proper context. The video was never meant to stand on its own, but about 50K more people saw the video without reading the article.
As for the quality of the video, it was an improvised setting lacking tripod and dedicated microphone. Font size could have been much bigger, but hind sight is 20/20. These problems will be fixed for future videos.
it doesnt matter, its legit. He proves that the apple-keyboard is hackable. He can store a keylogger and stuff that infects your harddrive even after you make a complete restore of your computer. And since the keyboard is always seen as safe by all Virus scanners and such, it cant be found or deleted.
If the keyboard can log your typing, it can capture your password. If the keyboard can insert commands into the host computer, it can tell the computer to open a connect back bash shell or it can get rootkit via command line.
If you don't know what this means, it basically means you've been owned remotely by someone anywhere on the Internet.
holly crap!!! wait, how did he change fw in keyboard aniway. did you need to be on computer where keyboard is connected or over internet/local network. how many comman lines can "record".
Autoshare makes certain YouTube activities public on the services you choose. Select only the services you are comfortable with - like Facebook, Twitter, or Google Reader - to let your friends know what you like on YouTube. You can turn Autoshare off at any time.
But improve the footage quality so that we can figure out better whats happening !!!
1. it doesn't really explain well enough to the everyday person what is going on. I'm a power user of computers (not a hacker) and I barely understand what's going on
2. you need to increase the font size to say at least 36 points so that we can actually see both screen and keyboard at the same time. The video shots of the screen is blurry and often illegible.
As for the quality of the video, it was an improvised setting lacking tripod and dedicated microphone. Font size could have been much bigger, but hind sight is 20/20. These problems will be fixed for future videos.
If the keyboard can log your typing, it can capture your password. If the keyboard can insert commands into the host computer, it can tell the computer to open a connect back bash shell or it can get rootkit via command line.
If you don't know what this means, it basically means you've been owned remotely by someone anywhere on the Internet.