DEF CON 32 - Autos, alcohol, blood, sweat, & creative reversing obfuscated Car Modding tool - Atlas

DEF CON 32 - Autos, alcohol, blood, sweat, & creative reversing obfuscated Car Modding tool - Atlas

Source: YouTube · DEFCONConference · published Oct 16, 2024 · 40:54

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

This DEFCON talk by Atlas demonstrates techniques for reverse engineering obfuscated automotive diagnostic tools to gain access to vehicle ECU authentication mechanisms 0:00.

Key Takeaways:
• The goal is remote code execution on vehicle ECUs through the update/diagnostics process, which requires bypassing authentication 2:23
• The "snatch and grab" technique involves running the obfuscated program, attaching a debugger, and taking memory snapshots when the program is functional 7:24
• Obfuscated programs typically use three methods: decrypting in place, creating new memory maps, or process hollowing variations 13:31
• The speaker explains how to identify valid code by analyzing stack return pointers and creating pointer arrays to find virtual function tables 19:01
• C++ destructor analysis is crucial for understanding object structures and how authentication mechanisms work 31:30

Atlas concludes by emphasizing the importance of understanding why tools work the way they do and creating new tools when necessary for effective reverse engineering 39:01.

Sources:

  • 0:00 Introduction to the talk on reverse engineering automotive diagnostic tools
  • 2:23 Goal of gaining remote code execution on vehicle ECUs
  • 7:24 Explaining the "snatch and grab" technique
  • 13:31 Common obfuscation methods in automotive tools
  • 19:01 Techniques for

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

good morning oh good afternoon Defcon uh today we have a talk on automobiles alcohol Blood Sweat and creative reverse reversing of officiated Car moding Tool and with our speaker Atlas thank you sir thank you false I'm sorry true hi everyone welcome how many of you came because it had the world Automotive in it all right good uh obfuscation who who came because of said confiscation excellent well thank you all I don't care why you came you're here I'm very grateful for you I hope that we have a lot of fun today uh as per usual if you've come to a talk of mine I've crammed in way too much stuff and we're going to see just how well and how much we can fit in and because of timing I'm going to probably just come out here and look at the slides that you're seeing CU I yeah whatever so who is t…