Wednesday, October 8, 2014

In the case of the test grid intersections, lights were based on an IP network and receive commands

Hacking intersections, or taking control of traffic lights - Niebezpiecznik.pl -
We have seen this many times in the movies. Chase scene or two in the car pryszczersów parents. Pilot (less laptop) directed towards the red light on the siren. Ding, bzzzyk, table and already the light is green. It turns out that reality has caught up with movies and computer games type Watch Dogs ... Informatization intersections
In metropolitan areas are increasingly installed so. "Smart" traffic management vehicles. I think everyone of us have heard about the project "Green Wave" (unfortunately much less of us have experienced it firsthand). At intersections, in addition to the remotely controlled and interconnected traffic lights vehicle registration wa installed as cameras, sensors and sensing systems for vehicle license plate (so the police can trace the route of a stolen car - interesting how the retention of such data?).
Reading car registration you can always translate "traffic study" that is, estimating the travel time on a given stretch of time measurement vehicle registration wa based on the entrance and exit of a section of a particular vehicle.
Work on taking control of traffic lights published by researchers from the University of Michigan. It is true that not every control system lights is the same as in the USA (in Poland vehicle registration wa it seems dominated solutions from Siemens), but research is worth to look at. Diagrams and working methods of this type of equipment in different countries are similar.
In the case of the test grid intersections, lights were based on an IP network and receive commands from a central point. Communication followed by Wi-Fi (mainly for reasons of economy vehicle registration wa compared to the position of the cables). Wi-Fi used the frequency of 5.8GHz and 900MHz depending on the distance between intersections. Protocols were, respectively, similar to the 5.8GHz 802.11n and "author of FHSS" for 900MHz.
Researchers, using ordinary laptops and smartphones were able to discover the SSID broadcast by the intersection of the network - but because vehicle registration wa of the differences in the protocols, they were unable to connect to them. So they had 2 outputs - perform reverse engineering of protocols, or take advantage of the power cables in the standard manufacturer's sirens. They went to the "easy way out" and took advantage of chain stores, assuming that as long as they are not widely available for purchase, vehicle registration wa you can get them via social engineering.
It turned out that the network 5.8GHz did not have a password, or did not use encryption - to connect to it, having working in a local network standard was trivial. The attack on the controller lights
Being skrzyżowaniowej connecting to the network, researchers began to "snoop" in search vehicle registration wa of attack vectors management system vehicle registration wa lights. It turned out that the server manager is running VxWorks version 5.5, which provides a standard debug port. When connecting to it, the researchers gained access vehicle registration wa to read and write memory areas and can kill processes and even restart the server.
Sniffing the server management also allowed vehicle registration wa the researchers to find out how the server communicates with the individual beacons. This communication was also not encrypted and does not require authentication (she was so vulnerable to attacks "replay"). At this stage, the researchers had complete control over the traffic lights at intersections covered by the system under test. They could freely change the lights and control cameras. While the introduction of the collision was not possible (light green in two perpendicular directions), then with the help of a Denial of Service can be switched signaling in Safe Mode (its inclusion on large intersections often causes traffic jams and increases the risk).
The manufacturer of the test solution in a rather interesting way he addressed the problems discovered by the researchers. He wrote that "meets the industry standards that do not require encryption". vehicle registration wa And what it looks like in Poland?
We do not know whether the lights can be controlled "Internet". Can any of the readers have more knowledge in this area and would like to share it in August? However, in order not to leave you mourn that "Poland can not be" present vehicle registration wa a photo on another element appearing at the Polish junctions, which reportedly can be controlled from the Internet:
Also mention the story on the radio stopping trains and trams distorting, as well as witty experiment, which we wrote about a few years ago in the text Fri "Attack on speed camera" in Wroclaw, where there is a camera vehicle registration wa that senses vehicle registration and measuring its speed, and a few hundred meters further on the road hanged array which "warns" of drivers exceeding the speed. One of the drivers came up with the idea &

No comments:

Post a Comment