Gyroscope-based smartphone keylogging attack - General Topics

{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
A pair of security researchers have recently unveiled an interesting new keylogging method (PDF Research Paper) that makes use of a very unlikely smartphone component, your gyroscope.
Most smart phones now come equipped with gyroscopes, which can be accessed by any application at any time. [Hao Chen and Lian Cai] were able to use an Android phone’s orientation data to pin down what buttons were being pressed by the user. The attack is not perfect, as the researchers were only able to discern the correct keypress about 72% of the time, but it certainly is a good start.
This side channel attack works because it turns out that each button on a smart phone has a unique “signature”, in that the phone will consistently be tilted in a certain way with each keypress. The pair does admit that the software becomes far less accurate when working with a full qwerty keyboard due to button proximity, but a 10 digit pad and keypads found on tablets can be sniffed with relatively good results.
We don’t think this is anything you should really be worried about, but it’s an interesting attack nonetheless.
Click to expand...
Click to collapse
Source: Hackaday

Related

[Q] Smart Phones 10 or 20 years from now

this day i have a question to my self how is really smartphones 10-20 years from now??
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
here is my toughts i know its not have the details but some points its pretty reasonable
how about your idea?
but i want to be scientific and reasonable
Some things:
I personally feel holding the phone and talking to be quite inconvenient and old-fashioned, so I would predict 10 years from now, the speaker & microphone would/should be replaced by something (maybe directional speakers / microphones / something more hi-fi) so that we can just talk handsfree always without worrying about interference / privacy / all the problems we currently have.
I'm not quite for predicting that touch-screen would be the dominant interface, but couldn't really think of other advanced UI methods that might crop up in the near future. I would more like moving away from the passive device with a display & touchscreen that you've to go to for accessing information towards something like google glass - something that's always there unobtrusively but provides you stuff you want always without all the lookup cycle.
Also, removing the display for something wearable and still not inconvenient (goggle/glass are not liked by everyone) would be a very good technological advance.

MediaTek Bug Checker - SMS Bug

Security breaches crop up every now and again, they happen to both the biggest and smallest companies, but this latest exploit is a particularly odd one. It turns out that certain MediaTek based smartphones can be remotely rebooted from a simple text message.
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
French blogger Korben discovered the vulnerability, which you can see an example of in the video at the bottom. The exploit involves simply texting the seemingly harmless “=” symbol (without quotes) to a handset, which then causes the smartphone to turn off and reboot.
One supposed solution to this problem is to just install an alternative message app and stop using the one that comes preinstalled with the smartphone. However, Korben has found that the problem can still persist even when switching over to another ROM. This suggests that the bug is actually coming about from a combination of software and hardware issues, or something inbetween, that is only affecting a small selection of MediaTek based manufacturers.
This application allow to check & test MediaTek Bug on your device (FREE): https://play.google.com/store/apps/details?id=vn.androidblog.mediatekbugchecker

Embed an NFC tag in Android Wear

Google didn't support NFC in the first round of Android Wear devices? No problem!
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
lol nice work. So this adds nfc features to your phone??
Depending on the chip, you can simply stick it on back of the watch and it will work. I did that with my pebble. However, some don't work. I received some nfc stickers and they weren't strong enough.
I read on Google Plus post that someone was able to add NFC on Android Wear, the problem is that there are some interference...
Well, it makes it quick to unlock. (see https://www.youtube.com/watch?v=Zx5v63D-X80 for a video)
The way it is now, it's probably not that secure, other phone unlocking methods (e.g. pattern, pin) are worse when people around you can see what you're typing so easily. In any case I think this type of unlocking method can be made more secure if we really want to.
Ideally, future watches should support NFC communication so we can do a proper cryptographically secure handshake.
duckslivelong said:
lol nice work. So this adds nfc features to your phone??
Click to expand...
Click to collapse
It's just a nfc tag he put inside the watch. Nothing else.

[APP][4.0.3+] MOTOdetektor - detect motorcyclists, bicyclists and pedestrians!

Hello everyone!
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
I am the author of a completely new application created to increase road safety. Using the application motorcyclist, cyclist or pedestrians can impart their position, and the driver can these road users detect in real time - then a message is displayed on the widget on the type of the detected object with the specified interval estimate of the distance to the nearest object detected. It is based on WiFi, WiFi analyzes name, not connects to any network and does not mention any data between users. As far as the range is in a straight line is up to 140 meters, it is known that all turns and terrain affect the range, however, it is enough that the dispute about detecting the driver can be valuable. The application is available for free on Google Play. Could you please test the application and write me what do you think about it?
I just try to change something for the better
lots of greetings!
~~~UPDATE 1.1 AVAILABLE~~~
https://play.google.com/store/apps/details?id=kacper.motodetektor
Kacper
MOTOdetektor
up
please, leave your feedback
Quite new interface, enjoy and leave your feedback!
Hm, I don´t understand the sense of the app.
What can i do with it????

Program android device to display car information?

Hi all,
I'm considering / planning an android project to upgrade my car stereo system/screen, and I need your opinion regarding an aspect.
So as for today, my car has an old school stereo and an old school screen that displays basic information, and I'm wondering if I can remove these two modules, and replace them with a single android device that will provide same functionality.
The following picture shows the desired transformation:
{
"lightbox_close": "Close",
"lightbox_next": "Next",
"lightbox_previous": "Previous",
"lightbox_error": "The requested content cannot be loaded. Please try again later.",
"lightbox_start_slideshow": "Start slideshow",
"lightbox_stop_slideshow": "Stop slideshow",
"lightbox_full_screen": "Full screen",
"lightbox_thumbnails": "Thumbnails",
"lightbox_download": "Download",
"lightbox_share": "Share",
"lightbox_zoom": "Zoom",
"lightbox_new_window": "New window",
"lightbox_toggle_sidebar": "Toggle sidebar"
}
as you see in the upper picture, lower part of the dash has the stereo, and above it is the screen,
I'm sure that an android device can fully replace the original stereo and provide same functionality.
As for the car's original screen, this is the tricky part for me. This screen shows information such as the configured AC temperature, AC fan speed, fuel consumption etc. and I'm wondering if there is anyway to develop some android application to read all of this data and display them on the new android device?
anybody done something similar?
Thanks.
Post moved questions should be placed in q/a

Categories

Resources