Checkmarx Security Research Team latest work

In these last couple of weeks Checkmarx Security Research Team disclosed some of our research: Your Lenovo Watch X Is Watching You & Sharing What It Learns Your Smart Scale is Leaking More than Your Weight: Privacy Issues in IoT Android WebView: Are Secure Coding Practices Being Followed? NFCdrip: Data Exfiltration Research in Near Field… Continue reading Checkmarx Security Research Team latest work

Exfiltrate all the things at BSidesLisbon18

Last week BSidesLisbon was legendary. More than 400 attendees, beer, “pastel de nata” and of course – amazing talks. This was my third participation as a speaker and first time co-presenting a talk with my friend and colleague Pedro Umbelino. We worked very hard on this topic during the last year and we wanted to… Continue reading Exfiltrate all the things at BSidesLisbon18

Semana Informática and BSides Lisbon

So I scheduled my last talks for this year. At 31 October, I’ll be at FEUP in Semana Informática to present – Breaking IoT! And for the third time, I’ll have the honor to be at BSides Lisbon on 29th and 30th November giving a talk with my friend and collegue Pedro Umbelino – Exfiltrate… Continue reading Semana Informática and BSides Lisbon

Using UART to connect to a chinese IP cam

This blog post has been created for completing the requirements of the SecurityTube Offensive Internet of Things course. http://www.securitytube-training.com/online-courses/offensive-internet-of-things-exploitation/index.html Student ID: IoTE- 766 Following my interest in going deeper on IoT – specially on hardware hacking, I grabbed a chinese IP cam – Loftek and started checking its internals. I already had researched the web… Continue reading Using UART to connect to a chinese IP cam

My notes on Hacking BLE – list of resources

In the last few weeks I went for a drive into the Bluetooth Low Energy (aka BLE) topic. There are many articles on the web on “how to hack BLE” and stuff like that, so this is just a compilation of the things I wrote on my notepad and my decision of sharing it with… Continue reading My notes on Hacking BLE – list of resources