{"id":400,"date":"2009-10-25T13:00:34","date_gmt":"2009-10-25T17:00:34","guid":{"rendered":"http:\/\/www.willhackforsushi.com\/?p=400"},"modified":"2009-10-26T10:49:58","modified_gmt":"2009-10-26T14:49:58","slug":"exploiting-zigbee-at-toorcon-11-slides","status":"publish","type":"post","link":"https:\/\/www.willhackforsushi.com\/?p=400","title":{"rendered":"Exploiting ZigBee at ToorCon 11 Slides"},"content":{"rendered":"<p>Yesterday I presented my findings on the security implications of the ZigBee protocol at ToorCon 11.  I had a great audience and the presentation went smoothly where we looked at the basis of ZigBee technology and why ZigBee is important for embedded developers and interesting to attackers.<\/p>\n<p>I also introduced a new project I&#8217;ve been working on dubbed KillerBee.  KillerBee is a Python-based framework with several tools designed to exploit deficiencies in the design and implementation of ZigBee and IEEE 802.15.4 networks.  The hardware I&#8217;m using with KillerBee is the AVR RZUSB stick, available from electronics resellers such as <a href=\"http:\/\/search.digikey.com\/scripts\/DkSearch\/dksus.dll?WT.z_header=search_go&#038;lang=en&#038;site=us&#038;keywords=rzusb&#038;x=0&#038;y=0\" target=\"_blank\">DigiKey<\/a> and <a href=\"http:\/\/www.mouser.com\/ProductDetail\/Atmel\/ATAVRRZUSBSTICK\/?qs=txwRF2uft8wSedIxfUdhAA%3d%3d\" target=\"_blank\">Mouser<\/a> for $40\/USD.<\/p>\n<p>I&#8217;m still working on KillerBee, and it&#8217;s not quite ready for prime time yet.  I&#8217;m planning on doing a full release at ShmooCon, so if you are interested in doing some hands-on ZigBee hacking at Shmoo, pick up a few RZUSB sticks and come find me at the <a href=\"http:\/\/www.inguardians.com\" target=\"_blank\">InGuardians<\/a> booth.  I had a bunch of CD&#8217;s printed up and distributed at ToorCon for an early preview of KillerBee, sample packet captures, specification documentation and more.  If you want to get a copy of that, please <a href=\"http:\/\/www.willhackforsushi.com\/?page_id=87\">drop me a note<\/a>.<\/p>\n<p>In the meantime, you can grab <a href=\"http:\/\/www.willhackforsushi.com\/?page_id=137\">my slides from the presentation<\/a>.  I&#8217;d love to hear feedback on ZigBee and what people are doing with this technology, so <a href=\"http:\/\/www.willhackforsushi.com\/?page_id=87\">drop me a note<\/a> and let&#8217;s chat.<\/p>\n<p>-Josh<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Yesterday I presented my findings on the security implications of the ZigBee protocol at ToorCon 11. I had a great audience and the presentation went smoothly where we looked at the basis of ZigBee technology and why ZigBee is important &hellip; <a href=\"https:\/\/www.willhackforsushi.com\/?p=400\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[],"class_list":["post-400","post","type-post","status-publish","format-standard","hentry","category-zigbee"],"_links":{"self":[{"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=\/wp\/v2\/posts\/400","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=400"}],"version-history":[{"count":3,"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=\/wp\/v2\/posts\/400\/revisions"}],"predecessor-version":[{"id":404,"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=\/wp\/v2\/posts\/400\/revisions\/404"}],"wp:attachment":[{"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=400"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=400"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.willhackforsushi.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=400"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}