{"id":147816,"date":"2019-12-27T13:09:46","date_gmt":"2019-12-27T12:09:46","guid":{"rendered":"https:\/\/www.ifun.de\/?p=147816"},"modified":"2019-12-27T13:10:18","modified_gmt":"2019-12-27T12:10:18","slug":"ring-anfaellig-deauth-angriff-zwingt-video-tuerklingel-in-die-knie","status":"publish","type":"post","link":"https:\/\/www.ifun.de\/ring-anfaellig-deauth-angriff-zwingt-video-tuerklingel-in-die-knie-147816\/","title":{"rendered":"Ring anf\u00e4llig: Deauth-Angriff zwingt Video-T\u00fcrklingel in die Knie"},"content":{"rendered":"<p>Sp\u00e4testens seit <a href=\"https:\/\/gizmodo.com\/ring-s-hidden-data-let-us-map-amazons-sprawling-home-su-1840312279\">dem Gizmodo-Bericht<\/a> Anfang Dezember hat sich das Image der RING-Sicherheitskameras deutlich gewandelt. Aus der smarten Klingel-Kamera des Online-H\u00e4ndlers Amazon ist, zumindest mittelbar, ein Instrument des \u00dcberwachungsstaates geworden. <\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Short video of a Ring sending a notification when pushed, followed by me launching a hacked copy of airodump-ng that sees the Ring appear immediately after its button is pushed and starts sending deauth packets, preventing the Ring from successfully sending a notification. <a href=\"https:\/\/t.co\/pMyvJJcFub\">pic.twitter.com\/pMyvJJcFub<\/a><\/p>\n<p>&mdash; Matthew Garrett (@mjg59) <a href=\"https:\/\/twitter.com\/mjg59\/status\/1210373924946472962?ref_src=twsrc%5Etfw\">December 27, 2019<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>Eines, das zudem auch noch Probleme mit sogenannten Wi-Fi <a href=\"https:\/\/en.wikipedia.org\/wiki\/Wi-Fi_deauthentication_attack\">Deauthentifizierungs-Angriffen<\/a> hat. Senden boshafte WLAN-Teilnehmer der Kamera entsprechend adressierte Deauth-Pakete (kleine Info-H\u00e4ppchen die Ger\u00e4te zu verstehen geben, dass diese im WLAN nicht mehr willkommen sind), stellt diese ihren Dienst ein. <\/p>\n<p>Dar\u00fcber berichtet der ehemalige Google Mitarbeiter Matthew Garrett <a href=\"https:\/\/mjg59.dreamwidth.org\/53968.html\">ausf\u00fchrlich in seinem Blog<\/a> und demonstriert den Angriff auf seinem Twitter-Kanal. Kurz: Senden fremde WLAN-Ger\u00e4te der RING-Kamera Deauth-Pakete zu, ist diese nicht mehr in der Lage mit dem Netzwerk zu kommunizieren und verliert ihre T\u00fcrklingelfunktion nahezu vollst\u00e4ndig. <\/p>\n<blockquote><p>So, the attack is to simply monitor the network for any devices that fall into the address range you want to target, and then immediately start shooting deauthentication frames at them once you see one. [&#8230;]  I can hit the button on my Ring, see it show up in my hacked up code and see my phone receive no push notification. Even if it does get a notification, the doorbell is no longer accessible by the time I respond.<\/p><\/blockquote>\n<p>L\u00e4uft der Angriff gegen die Klingel, kann diese nicht mal mehr die Mobilger\u00e4te seines Besitzers \u00fcber die Person vor der Haust\u00fcr informieren. <\/p>\n<p>Wie der Security-Spezialist anmerkt, ist das Wissen um den Angriff nicht neu (und war bereits Thema auf der <a href=\"https:\/\/www.youtube.com\/watch?v=XkJ2tH21Wf8\">Def Con-Konferenz 2016<\/a>), die Industrie h\u00e4tte seitdem jedoch nicht dazu gelernt und w\u00fcrde weiterhin anf\u00e4llige Ger\u00e4te verkaufen. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Sp\u00e4testens seit dem Gizmodo-Bericht Anfang Dezember hat sich das Image der RING-Sicherheitskameras deutlich gewandelt. Aus der smarten Klingel-Kamera des Online-H\u00e4ndlers Amazon ist, zumindest mittelbar, ein Instrument des \u00dcberwachungsstaates geworden. Short video of a Ring sending a notification when pushed, followed by me launching a hacked copy of airodump-ng that sees the Ring appear immediately after [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[22],"tags":[53,50,373,2604,88,92],"class_list":["post-147816","post","type-post","status-publish","format-standard","hentry","category-zubehor","tag-amazon","tag-kamera","tag-kritik","tag-ring","tag-security","tag-sicherheit"],"acf":[],"aioseo_notices":[],"subheadline":["Video-Demonstration"],"featured_image":["https:\/\/images.ifun.de\/wp-content\/uploads\/2018\/04\/ring-video-doorbell.jpg"],"rest_api_enabler":{"subheadline":"Video-Demonstration","featured_image":"https:\/\/images.ifun.de\/wp-content\/uploads\/2018\/04\/ring-video-doorbell.jpg"},"_links":{"self":[{"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/posts\/147816","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/comments?post=147816"}],"version-history":[{"count":2,"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/posts\/147816\/revisions"}],"predecessor-version":[{"id":147818,"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/posts\/147816\/revisions\/147818"}],"wp:attachment":[{"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/media?parent=147816"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/categories?post=147816"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ifun.de\/apiv2\/wp\/v2\/tags?post=147816"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}