DEF CON 25 Wifi Village - Balint Seeber - Hacking Some More of the Wireless World

Published 2017-10-19
The hacking continues on from last year! Three interesting applications will be demonstrated, and their underlying theory and design explained. The audience will be exposed to some novel GNU Radio tips and DSP tricks. INMARSAT Aero will be revisited to show (in Google Earth) spatial information, such as waypoints and flight plans, that are transmitted from airline ground operations to airborne flights. A good chunk of the VHF band is used for airline communications; plane spotters enjoy listening to tower and cockpit communications. Modern SDRs can now sample the entire band, and as AM modulation is used, it's possible to use a counterintuitive, but simple, demodulator chain (first shown by Kevin Reid's wideband 'un-selective AM' receiver) to listen to the most powerful transmission. This will be demonstrated with a GNU Radio-based implementation. It is also possible to 'spatialise' the audio for the listener using stereo separation, which can convey a transmission's relative position on the spectrum. FMCW RADAR experiments are enhanced to include Doppler processing. Plotting this new velocity information, due to the Doppler effect, shows whether a target is heading toward or away from you, and often reveals targets not normally seen in range-only information - this demonstrates the true power of full RADAR signal processing. This technique will be applied to the live audio demo, a new live SDR demo, CODAR ocean current tracking, and passive RADAR exploiting powerful ATSC digital television signals (this was used to track aircraft on approach across the Bay Area).

All Comments (9)
  • @23RaySan
    ballint, i don't know if you read that....but if you are, are your GRC files somewhere available?
  • @ArclampSDR
    is there some appliction for the aonar thing on windows?
  • Finding flight plans in advance can be done already on flightaware and similar sites... granted you won't get such a visual as that, though. But trans-atlantic tracks are published daily so they're really no secret.. not sure about Trans-Pacific but probably not much different.
  • this is first 'hack' as it should be explained NOT the tools but the basics off all 4 reactions, means or all is capable to understand or it's not so fun like running some code capping frames, an superior level off intell, this is a real 'hacker' , remember all that in begin '80s 'hackers' were not seeking to higher level attacks, but verry good still people there having same basics as research , 'respect from level zero'
  • Lol even the fanboy nerds are bored with this subject. To be fair this is way high level stuff like I don't understand any of this or why you would want to tap aircraft comms. Maybe that is just the presentation but I don't know enough to even understand the concepts he's explaining. But that was kinda rude to be loud like that. That's the first thing I noticed.