BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: Breaking the Beam: Exploiting VSAT Satellite Modems 
 from the\n   Earth's Surface\n   When: Saturday\, Aug 10\, 16:30 - 17:15 P
 DT\n   Where: LVCC West/Floor 1/Hall 1/Track 3 - [1]Map\n\n   Description:
 \n\n   VSAT satellite communication systems are widely used to provide\n  
  two-way data and voice communications to remote areas\, including\n   mar
 itime environments\, crisis regions\, and other locations where\n   terres
 trial communication infrastructure is limited or unavailable. In\n   this 
 presentation\, we report on our security findings from our\n   reverse-eng
 ineering efforts to exploit VSAT satellite modems from the\n   Earth. We w
 ill focus on the Newtec MDM2200 from iDirect as an example.\n   First\, we
  explain how we reverse-engineered the software stack running\n   on the m
 odem device to find 0-day vulnerabilities. Then\, we show how\n   we rever
 se-engineered the network stack to devise attacks that can be\n   launched
  by injecting wireless signals through the antenna dish of a\n   VSAT term
 inal. Finally\, we demonstrate our software-defined radio\n   end-to-end a
 ttacks to inject bogus firmware updates and to gain a\n   remote root shel
 l access on the modem. To the best of knowledge\, this\n   represents the 
 first successful demonstration of signal injection\n   attacks on VSAT mod
 ems using software-defined radios from the Earth\,\n   while previous atta
 cks on VSAT systems such as the ViaSat hack in 2022\n   were based on expl
 oiting the operator’s network through Internet VPN\n   connections. Our 
 work therefore enlarges significantly the attack\n   surface of VSAT syste
 ms.\n\n   Our presentation at DEF CON is part of a project that has three 
 parts.\n\n   In the first part\, we focus on the inherent security issues 
 in current\n   VSAT system practices. This work will be appear in May at A
 CM WiSec\n   2024.\n\n   VSAsTer: Uncovering Inherent Security Issues in C
 urrent VSAT System\n   Practices\, Johannes Willbold\, Moritz Schloegel\, 
 Robin Bisping\, Martin\n   Strohmeier\, Thorsten Holz\, Vincent Lenders\, 
 17th ACM Conference on\n   Security and Privacy in Wireless and Mobile Net
 works (WiSec)\, Seoul\,\n   Korea\, May 2024.\n\n   The second part deals 
 with the systematic evaluation of wireless\n   signal injection attacks us
 ing a software-defined radio. This work\n   will appear in August at Useni
 x Security 2024:\n\n   Wireless Signal Injection Attacks on VSAT Satellite
  Modems\, Robin\n   Bisping\, Johannes Willbold\, Martin Strohmeier\, and 
 Vincent Lenders\,\n   33rd USENIX Security Symposium (USENIX Security)\, P
 hiladelphia PA\,\n   USA\, August 2024.\n\n   The third part of the projec
 t deals with reverse-engineering of the\n   software and network stack of 
 satellite modems and the development of\n   exploits that can be injected 
 over the air through the antenna dish of\n   a VSAT terminal from the grou
 nd. This part shall be presented at DEF\n   CON this year.\n\n   Speakers:
 Vincent Lenders\,Johannes Willbold\,Robin Bisping\n\n   SpeakerBio:  Vince
 nt Lenders\, Cybersecurity Researcher and Head at\n   Cyber-Defence Campus
 \n\n   Vincent Lenders is a cybersecurity researcher from Switzerland wher
 e\n   he acts as the Head of the Cyber-Defence Campus. He has a Master and
 \n   PhD degree from ETH Zurich in electrical engineering. He has over 15\
 n   years of practical experience in cybersecurity with a strong focus on\
 n   the security of wireless networks. He is the co-founder of the OpenSky
 \n   Network and has published over 150 scientific papers and two books\,\
 n   and presents regularly at cybersecurity conferences including Usenix\n
    Secuirty\, DEFCON\, IEEE S&P\, NDSS\, ACM CCS.\n\n   SpeakerBio:  Johan
 nes Willbold\, PhD Student at Ruhr University Bochum\n\n   Johannes Willbo
 ld is a PhD student at the Ruhr University Bochum and\n   researches the s
 oftware security of space and satellite systems. In\n   2023\, he publishe
 d at the IEEE S&P\, and presented on venues\, including\n   Black Hat US\,
  REcon and TyphoonCon. He organizes the yearly SpaceSec\n   workshop (co-l
 ocated with NDSS) and participated in the Hack-a-Sat 2 &\n   4 finals.\n\n
    SpeakerBio:  Robin Bisping\, Security Engineer at Cyber-Defence Campus\
 n\n   Robin Bisping is a security engineer and former student of ETH Zuric
 h\n   and the Cyber-Defence Campus\, where his research focused on the\n  
  security of wireless networks and satellite communication systems.\n\n   
 '\n\n   1. #LVCCW_Level1_Hall1\n\n\n
DTEND:20240811T001500Z
DTSTART:20240810T233000Z
LOCATION:DC - LVCC West/Floor 1/Hall 1/Track 3
SUMMARY:Breaking the Beam: Exploiting VSAT Satellite Modems from the Earth'
 s Surface
END:VEVENT
END:VCALENDAR
