• Wifi capable drones being used to crack into company networks

    From Big Bad Bombastic Bob@21:1/5 to All on Wed Oct 12 09:58:54 2022
    https://www.theregister.com/2022/10/12/drone-roof-attack/?td=rt-3a

    "the hacking incident was discovered when the financial firm spotted
    unusual activity on its internal Atlassian Confluence page that
    originated from within the company's network."

    "The company's security team responded and found that the user whose MAC address was used to gain partial access to the company Wi-Fi network was
    also logged in at home several miles away."

    "The team then took steps to trace the Wi-Fi signal and used a Fluke
    system to identify the Wi-Fi device."

    "This led the team to the roof, where a 'modified DJI Matrice 600' and a 'modified DJI Phantom' series were discovered,"

    "The Phantom drone was in fine condition and had a modified Wi-Fi
    Pineapple device, used for network penetration testing"

    "The Matrice drone was carrying a case that contained a Raspberry Pi,
    several batteries, a GPD mini laptop, a 4G modem, and another Wi-Fi
    device. It had landed near the building's heating and ventilation system
    and appeared to be damaged but still operable."

    "the tools on the drones were used to target the company's internal
    Confluence page in order to reach other internal devices using the
    credentials stored there"

    ""The attackers specifically targeted a limited access network, used by
    both a third-party and internally, that was not secure due to recent
    changes at the company"

    (more in the article)


    --
    (aka 'Bombastic Bob' in case you wondered)

    'Feeling with my fingers, and thinking with my brain' - me

    'your story is so touching, but it sounds just like a lie'
    "Straighten up and fly right"

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)