DEF CON 32 - Hacking Millions of Modems and Investigating Who Hacked My Modem - Sam Curry

แชร์
ฝัง
  • เผยแพร่เมื่อ 20 ธ.ค. 2024

ความคิดเห็น • 143

  • @samcurry1228
    @samcurry1228 2 หลายเดือนก่อน +173

    Yeah, this was super rough. I regret giving this as a talk because there just wasn’t enough content. Read the blog post instead, save 30 minutes, and you won’t have to listen to me say “like” 5,000 times 😄

    • @Atrophes
      @Atrophes 2 หลายเดือนก่อน +80

      Hey man. You don't get better by not trying. We all see the shitty parts that no one else does. You're good, keep at it. You got to speak at fucking defcon. That's some good shit

    • @soundslike8454
      @soundslike8454 หลายเดือนก่อน +30

      I thought it was fine, it just sounded conversational so my mind hasn't really even noticed those conversational words sprinkled in. It's not jarring cause it just sounds natural. It would be a lot more weird if you were specifically avoiding saying "like" and as a result sounding unnatural. Your talk was funny and I felt like you were just chatting with us which made it so much easier to engage with. I remember when your write up on this first came out, this whole situation is wild af. Thank you for covering this

    • @Shocker99
      @Shocker99 หลายเดือนก่อน +16

      Respect for being in the comments of your own talk and not insulting everyone who criticised the talk.
      I can imagine it was rough giving the talk knowing you were lacking in content for a 20-45 minute talk.

    • @user-lg4le8xr4s
      @user-lg4le8xr4s หลายเดือนก่อน +6

      That's how you get better, don't regret it. If it wasn't good enough, then Defcon wouldn't have put you up there to begin with

    • @EarthWalkerOne
      @EarthWalkerOne หลายเดือนก่อน +10

      I enjoyed it. Didn't find it rough, and it's in at least the top 50% of defcon talks.

  • @NeverGiveUpYo
    @NeverGiveUpYo 2 หลายเดือนก่อน +25

    Gotta love this guy. Amazing talk.

  • @JamesBos
    @JamesBos 2 หลายเดือนก่อน +58

    Am I going crazy or was there a similar talk regarding the whole HTTP replaying in a local network thing?!

    • @Tumleren
      @Tumleren 2 หลายเดือนก่อน +13

      Yeah I'm sure I've heard that part before. Maybe he's done a talk earlier

    • @CJ1337HF
      @CJ1337HF 2 หลายเดือนก่อน +6

      Yes!!!! Same here! I can't figure out where but I KNOW I've seen this before 😂

    • @CJ1337HF
      @CJ1337HF 2 หลายเดือนก่อน +20

      Oh I found it, Low Level Learning did a video about it

    • @thewhitefalcon8539
      @thewhitefalcon8539 2 หลายเดือนก่อน +1

      Often these groups present at more than one conference

    • @Tumleren
      @Tumleren 2 หลายเดือนก่อน +1

      @@CJ1337HF ah yes, that's the one. Thanks for figuring that out

  • @lifelover69
    @lifelover69 2 หลายเดือนก่อน +21

    Interesting talk, shed some light on remote modem management. I didn't know about TR 069. Thanks!

    • @alfonzo7822
      @alfonzo7822 2 หลายเดือนก่อน +1

      I'd seen it before on some router logs but wasn't really sure of it's purpose

  • @A1.4graffix
    @A1.4graffix หลายเดือนก่อน +14

    This is a bigger problem than a lot of people even realize.....

    • @ped7g
      @ped7g 27 วันที่ผ่านมา

      Only as big as Internet and computer networks... you know... so some kids will be unable to play Fortnite or Quake, no big deal... right?
      I think I read/heard one philosopher and computer scientist pondering about our current civilization and past ones and he closed the topic with nice quote: Those who live by the digit should prepare to die by the digit.

    • @jpphoton
      @jpphoton 4 วันที่ผ่านมา

      in seconds
      u have BEEN pnwed
      as F if ned bee
      foryrs

  • @ZombieLurker
    @ZombieLurker 2 หลายเดือนก่อน +11

    That modem is the same exact modem Comcast used to use. I think Comcast is on to the XB3 now and that one was the XB2, or something like that.

  • @dustinmorrison6315
    @dustinmorrison6315 2 หลายเดือนก่อน +10

    3:44 when you're a good enough hacker to appreciate a run-of-the-mill botnet lol

  • @DankyDankerson69
    @DankyDankerson69 หลายเดือนก่อน +2

    So how would we protect against a modem attack

  • @pirrracy
    @pirrracy หลายเดือนก่อน +1

    Same thing back in the 80's a British Telecom auditor found that MI5 had their own backdoor into every exchange in the country. For some reason an exchange operator tipped him off about lots of calls to French Guiana... and when he found the breach the top-dog at B.T. got told by his boss to sweep it under the rug etc.

  • @acid_8
    @acid_8 2 หลายเดือนก่อน +8

    Bro out here lowkey warning us of remote managed modems/ioTs. Now, him not just taking the modem and telling the ISP he lost it is just low level social and the fact we have no physical device that is directly affected places into question whether there was ever a modem to begin.
    Used to spend time on DOCSIS modems, exploits for modems see to not have changed much. For DOCSIS 1, 2 and even 3, SNMP was the backdoor and now the same goes for TR-069. So remote management means exactly that, anyone remotely can and will manage the device, in this case, the actual pipeline to the cloud.

  • @Me-ik9pj
    @Me-ik9pj หลายเดือนก่อน +1

    what's the website showing ip history at 3:05?

  • @madmorze
    @madmorze 2 หลายเดือนก่อน +175

    Over this talk he said 4967 words, 413 of them were the word "like" which is 8.31% of his entire speech. It`s, like, crazy

    • @drqusk
      @drqusk 2 หลายเดือนก่อน +21

      Drove me nuts listening to it.

    • @jchastain789
      @jchastain789 2 หลายเดือนก่อน +13

      He's prolly from California lololol

    • @Mack_Dingo
      @Mack_Dingo 2 หลายเดือนก่อน

      well, you better tell him to go to "Toastmasters" training

    • @TomTom-gx1sm
      @TomTom-gx1sm 2 หลายเดือนก่อน +7

      "And it's like ok you know like" xD

    • @nemdub86
      @nemdub86 2 หลายเดือนก่อน +6

      like, right?

  •  หลายเดือนก่อน +1

    gr8 talk and research!

  • @TomTom-gx1sm
    @TomTom-gx1sm 2 หลายเดือนก่อน +6

    Wtf I did not recognize Sam Curry, he's now a grown up, haha.

  • @shaunwilliams-k7r
    @shaunwilliams-k7r 2 หลายเดือนก่อน +2

    Arcadyan routers infecting all devices via wifi ?

  • @QuadDerrick
    @QuadDerrick 2 หลายเดือนก่อน +3

    I live in Norway and rooted my isp's router, and see its sending all kind of encrypted data to some server in usa too . i am not a fan.. anyone knows what the name of the attack he used to mix the routers mac and different values to break into the isp's other customers routers was ?
    I imagine i can do the same up here in Norway if i have ,, a easy bash script generating the values, calculating the payload,, sending it off with some bash script even.
    There was some research done on this years ago regarding breaking the wifi password of peoples router if you had the mac address, this is another topic maybe but, still it might be exactly the same code that will calculate my encrypted string to send off with a bash script to enumerate my neighbors networks ?
    I got a old router that i tricked out of my isp , they'r new routers are much harder to root and control like the guy the video talks about when he gets questions from isp lady in end of video. I am hardly allowed to change wifi password without explicitly asking my isp to do so, and i can forget about custom firewall rules. I am "forced" to sit on my old vulnerable router from 1995 if i want to have my own firewall rules.
    All just so my dear isp's have a backdoor channel in for state authority's to snoop they'r data.

    • @TomTom-gx1sm
      @TomTom-gx1sm 2 หลายเดือนก่อน

      You're mixing up things.
      Wifi passwords were generated using the mac address, it isn't a password to remotely configure the router.

    • @QuadDerrick
      @QuadDerrick 2 หลายเดือนก่อน

      @@TomTom-gx1sm You'r mixing things up. i never claim or ask if is 'a password to remotely control the router' or any router. You might wanna put your glasses on if you wanna contribute. I will admit my comment was not very clear or complete looking in ending but,, i will edit it to make it more clear.

    • @Entropy67
      @Entropy67 2 หลายเดือนก่อน

      There is no name for that attack, other then reverse engineering. Look through the actively running processes and try to analyze their launch binaries. He saw encrypted stuff, found encryption/decryption functions, and used those to encrypt his own data putting it in the format of a command for the ISP bot net. All just guesses and trying things.

  • @ronaldckrausejr7762
    @ronaldckrausejr7762 21 วันที่ผ่านมา

    Before watching video and trying to give (uneducated) answers. The hacker whose modem got hacked - who hacked their modem.
    The most likely culprits.
    1. Just a kid or person looking for free items, such as free internet or content.
    2. Someone looking further; for passwords, for limited financial data, or maybe the full financial data.
    3. A former relationship?
    4. Current or former employee/coworker?
    Let’s now watch it and see where it goes. What I may have seen in the past… This is why hard line hackers actually replace their hardware on a regular basis

  • @jpphoton
    @jpphoton หลายเดือนก่อน +2

    Excellent.

  • @seansingh4421
    @seansingh4421 2 หลายเดือนก่อน +3

    Is anyone out there who’s not making and shipping hilariously vulnerable critical devices or a playa now gotta run a syslog server and a SIEM for his crib ? 😂😂

  • @fawneight7108
    @fawneight7108 2 หลายเดือนก่อน +25

    People here complaining about his use of “like” but he is too busy talking at DEFCON and hacking things you don’t even comprehend. So STFU.

    • @David-gk2ml
      @David-gk2ml หลายเดือนก่อน +1

      I don't comprehend...

    • @Ryan-yh3wn
      @Ryan-yh3wn หลายเดือนก่อน

      Sam commented here HIMSELF saying he used it too much and let folks know his blog-post is much more concise. Obviously you don't have to be obnoxious about the criticism but who are you helping by not sharing a glaring issue with the talk? Why would you hide yourself away from criticism as a young hacker who wants to share their knowledge with others? If you want to be a PUBLIC communicator you have to be ready for PUBLIC criticism, which will always include a few jackass' who ironically are HORRIBLE communicators. Sam is a big boy I'm sure he can handle someone saying "you used like too much". If you can't handle some incredibly soft criticism you genuinely shouldn't public speak because it will destroy you as you are trusted with more serious topics and trusted as a teacher. But everyone figures out after a few talks or after a few public speaking engagements that you just look at the criticism and go "did I do that? should I not? oh that has people tune out? okay cool, don't want that." It is INFINITELY worse to feel like you're killing it because people are just showering you in praise and then you give a talk to a potential employer or give a talk representing a company and suddenly you're confused when they said you didn't sound confident or like you knew what you were talking about (fill in whatever example you want).

    • @chrisalister2297
      @chrisalister2297 8 วันที่ผ่านมา

      Actually, I do. Sit down.

    • @fawneight7108
      @fawneight7108 8 วันที่ผ่านมา

      @@chrisalister2297 you sit down old man

  • @waterandafter
    @waterandafter 12 วันที่ผ่านมา

    Maybe he found the gubment backdoor?

  • @IsThisHowUDoThat
    @IsThisHowUDoThat หลายเดือนก่อน

    this is like a joke right?
    I am just falling in this rabbit hole.
    but this exact story i heard yesterday but different.
    Is this like a weird cult coder copa pasta meme?
    How I accidently made a botnet..

  • @afryhover
    @afryhover หลายเดือนก่อน

    Every other word was “like”.

  • @7_of_9
    @7_of_9 หลายเดือนก่อน

    #1 rule - never ever use the ISP modem)router.

  • @Sunset4Semaphores
    @Sunset4Semaphores หลายเดือนก่อน +1

    Basebands suck!
    Get over it!!!

  • @jchastain789
    @jchastain789 2 หลายเดือนก่อน

    But modems have been vulnerable for years. It seems nobody also changes their default pw, which is also a problem.

  • @Mmouse_
    @Mmouse_ 2 หลายเดือนก่อน +5

    Like.

  • @ngDetecter
    @ngDetecter 16 วันที่ผ่านมา

    everyone complaining about the "like"'s rather than the "right?"'s. IDK if that's misinformation or disinformation.

  • @BrianAngel-u4u
    @BrianAngel-u4u 29 วันที่ผ่านมา

    "Not enought content"......nonsense, I thought it was a great talk !!

  • @Sunset4Semaphores
    @Sunset4Semaphores หลายเดือนก่อน

    Southwest boo!

  • @ZambeziSentinel
    @ZambeziSentinel หลายเดือนก่อน +1

    Hard to listen for long when it's "like" all the time 😂😂

  • @gottspeed
    @gottspeed 2 หลายเดือนก่อน +3

    How do you like working with cox... lmao

  • @cellc6191
    @cellc6191 หลายเดือนก่อน

    can someone eli5. thank you

    • @derrikarenal3308
      @derrikarenal3308 หลายเดือนก่อน

      ELI5: Ma (your commercial ISP) adheres to a commercial standard protocol (it's legal and the default, and the only available version). Ma is obligated to tell Pa (or Uncle Sam, or other) everything or modify what you can receive or send. Oh, and one more thing: Ma, Pa, or any ol anybody, can help themselves to accomplish any and all fuckery with most every consumer product connected to the internet.

  • @randomviewer3494
    @randomviewer3494 2 หลายเดือนก่อน +4

    Right?

  • @deathofasellout
    @deathofasellout 9 วันที่ผ่านมา

    Not a great speaker. Super knowledgeable, but doesn’t know how to deliver information in a succinct manner.

  • @EvilMmM
    @EvilMmM หลายเดือนก่อน

    recorded whole talk using Samsung s24u and summarized, there is 3451 times LIKE said...

    • @kensaiix
      @kensaiix หลายเดือนก่อน +1

      like... you could have looked at the transcript from... like... YT, you know? like... it's a lot easier.

  • @kensaiix
    @kensaiix หลายเดือนก่อน

    half the runtime is "like"
    please work on removing filler words, for the sake of the sanity of your surrounding

  • @jordantheman25
    @jordantheman25 2 หลายเดือนก่อน +1

    people are complaining about his use of "like", but, like, he needed some way to stretch this out to 25 minutes.

  • @camello52
    @camello52 หลายเดือนก่อน

    This topic woukd be more interesting if the speaker could "like" actually deliver a presentation and be cool...right. just like it could be better. Things like that would improve audience engagement.

  • @mo938
    @mo938 2 หลายเดือนก่อน +12

    Like
    Like
    Like
    So like
    Like
    Like
    Like

    • @BroImVlogging
      @BroImVlogging 2 หลายเดือนก่อน +2

      Exactly, shit threw me off. I want to know what happens but I do not want to hear "like" every 5 words for the remainder of the video and I got fed up with the "like"s 7 minutes in.

    • @shellcode4892
      @shellcode4892 2 หลายเดือนก่อน +23

      Well, he's talking at DEFCON and you're not, so.......

    • @mo938
      @mo938 2 หลายเดือนก่อน

      @@shellcode4892 like, what does that, like, have to, like, do with, like, anything?

    • @realdavidpain
      @realdavidpain 2 หลายเดือนก่อน +21

      Keyboard heros that never had a talk in front of hundreds or even thousands of people...

    • @mo938
      @mo938 2 หลายเดือนก่อน

      @@shellcode4892 like what’s that like got to like do with like anything

  • @censoredeveryday3320
    @censoredeveryday3320 หลายเดือนก่อน +1

    It hasn't been DefCon for 20 years. Call it USGovCon because that's who attends it.

  • @HostileGingerATL
    @HostileGingerATL หลายเดือนก่อน

    Damn, like, that’s pretty cool & I’ve liked always wanted to know how to do something like this cause like all my emails are full of spam & like all my social medias send me like attempt to login texts/emails. It’s super like fucking annoying. And if I could like just learn how to like figure out like who/how they’re doing it so I could like return the favor, I’d like make this my full time focus and then like create a business out of it to like hack & spam for everyone else who like deals with the same like problem, right. So, right like if anyone like knows how to do this right & could teach me, right, like I’d be willing to like pay, right. So, like, feel free to reach out like right. Right?