| KillerBee: Practical ZigBee Exploitation Framework |
|
ZigBee is a vital component of several emerging technologies including smart grid systems, bridging the devices in your home with the electric utility. With the rush to deploy this technology, few organizations have examined the security threats in this suddenly "critical infrastructure" wireless protocol. Over the past 9 months, the speaker has been assessing various implementations of ZigBee technology while building a tool suite designed to exploit these networks. In this talk, the author will present several findings regarding the vulnerabilities in ZigBee networks, releasing the KillerBee attack framework designed to exploit ZigBee networks. Joshua WrightJosh is a senior security analyst with InGuardians, specializing in wireless security analysis, a senior instructor for the SANS Institute and the author of the SANS Ethical Hacking Wireless course. He conducts penetration tests against a variety of wireless technologies on a regular basis, targeting WiFi, Bluetooth, ZigBee and proprietary systems. The author of several tools and papers highlighting vulnerabilities in wireless networks at www.willhackforsushi.com, Josh is the co-author of Ethical Hacking Wireless 2nd Edition, to be published in early 2010. When not breaking wireless networks, Josh works on his house, where he breaks things of another sort. |