DEF CON 23 - Balmas and Oppenheim - How To Turn Your KVM Into a Raging Key Logging Monster
3,500 views · Published 25 December 2015 · 43:15 · Indexed 20 September 2026
Channel: DEFCONConference · 2015 · Science & Technology
Key-Loggers are cool, really cool. It seems, however, that every conceivable aspect of key-logging has already been covered: from physical devices to hooking techniques. What possible innovation could be left in this field? Well, that's what we used to think too. That is until we noticed that little grey box sitting there underneath a monitor, next to yesterday's dirty coffee cup. The little grey box that is most commonly known as 'KVM'. The talk will tell the tale of our long journey to transform an innocent KVM into a raging key-logging monster. We will safely guide you through the embedded wastelands, past unknown IC's, to explore uncharted serial protocols and unravel monstrous obfuscation techniques. Walking along the misty firmware woods of 8051 assembly we will challenge ambiguous functions and confront undebuggable environments. Finally, we will present a live demo of our POC code and show you that air-gapped networks might not be as segregated as you imagined. You will witness that malware code could actually reside outside your computer, persisting through reboots, wipes, formats, and even hardware replacements. You might laugh, you might cry, but one thing is certain - you will never look at your KVM the same as before. Speaker Bios: Yaniv is a software engineer and a seasoned professional in the security field. He wrote his very first piece of code in BASIC on the new Commodore-64 he got for his 8th birthday. As a teenager, he spent his time looking for ways to hack computer games and break BBS software. This soon led to diving into more serious programming, and ultimately, the security field where he has been ever since. Yaniv is currently working as a security researcher and deals mainly with analyzing malware and vulnerability research Twitter: @ynvb Lior Oppenheim is a vulnerability researcher in the Malware and Vulnerability Research group at Check Point Software Technologies. Oppenheim was trained and served in an elite technological unit performing security research in the IDF. In his spare time, he loves tap dancing, reversing, playing his guitar and pwning embedded devices. Twitter: @oppenheim1
More from this channel
-
48:14
DEF CON 20 - Xeno Kovah and Corey Kallenberg - No More Hooks
-
43:53
DEF CON 19 - Greg Conti - The Art and Science of Security Research
-
52:08
DEF CON 18 - Panel - Meet the Feds - CSI:TCP/IP
-
42:29
DEF CON 21 - Ang Cui and Michael Costello - Stepping P3wns
-
42:10
DEF CON 14 - Lukas Grunwald: First We Break Your Tag, Then We Break Your Systems
-
57:24
DEF CON 14 - Jay Beale: Discovering Mac OS X Weaknesses
-
52:36
DEF CON 14 - Kenneth Geers: Ipv6 World Update: High Diplomacy & Monster Trucks
-
48:38
DEF CON 13 - Robert "hack ajar" Imhoff-Dousharm,Credit Cards