A master digital key can unlock millions of hotel rooms, Amazon Echos could spy on users… again, and a genealogy websites DNA database was used to capture a killer. All that coming up now on ThreatWire.
—–☆—–☆—–☆—–☆—–☆—–☆—–☆—–☆—–☆—–☆
Shop → http://www.hakshop.com
Subscribe → http://www.youtube.com/hak5
RSS Feeds → https://www.hak5.org/subscribe
Support → http://www.patreon.com/threatwire
Amazon Associates → https://amzn.to/2pHgf8T
Our Site → http://www.hak5.org
Contact Us → http://www.twitter.com/hak5
Threat Wire RSS → https://shannonmorse.podbean.com/feed/
Threat Wire iTunes → https://itunes.apple.com/us/podcast/threat-wire/id1197048999
Help us with Translations! → http://www.youtube.com/timedtext_cs_panel?tab=2&c=UC3s0BtrBJpwNDaflRSoiieQ
For Business Inquiries, please use our contact forms → https://www.hak5.org/contact
Producer: Shannon Morse → https://www.youtube.com/shannonmorse
Editor: Colleen Cavolo
Host: Shannon Morse → https://www.twitter.com/snubs
Host: Darren Kitchen → https://www.twitter.com/hak5darren
Host: Mubix → http://www.twitter.com/mubix
—–☆—–☆—–☆—–☆—–☆—–☆—–☆—–☆—–☆—–☆
https://safeandsavvy.f-secure.com/2018/04/25/researchers-find-way-to-generate-master-keys-to-hotels/
https://www.hs.fi/teknologia/art-2000005655923.html
https://motherboard.vice.com/en_us/article/mbxyey/master-hotel-key-unlocked-millions-of-doors
https://www.zdnet.com/article/millions-of-hotel-door-locks-bypass-with-master-key/
https://www.zdnet.com/article/amazons-alexa-could-be-tricked-into-snooping-on-users-say-security-researchers/
https://thehackernews.com/2018/04/amazon-alexa-hacking-skill.html
https://threatpost.com/researchers-hacked-amazons-alexa-to-spy-on-users-again/131401/
http://www.sacbee.com/news/article209779364.html
https://www.nytimes.com/2018/04/26/us/golden-state-killer.html
http://www.sacbee.com/latest-news/article209913514.html
https://arstechnica.com/tech-policy/2018/04/gedmatch-a-tiny-dna-analysis-firm-was-key-for-golden-state-killer-case/
http://www.sacbee.com/news/local/crime/article209987599.html
https://www.gedmatch.com/login1.php
source
Is this supposed to be surprising?
Little pause between sentences would be good, atleast for non native English viewers.
It will be interesting to see if the genealogy site evidence will be admissible in a court of law if this happens again in the future
You forgot to say "Please".
Waaaaatttttt? A giant microphone is spying on me.
Our phones already do it and no it’s not even the NSA you have to worry about it’s the capitalists.
Theft mitigation while staying in a hotel: Don't rely on the safes in the rooms. Those have been found many many times to be even more vulnerable and weak than the key cards.
regurgitating already known threats is so weak, can't u guys go back to the good ol days when daryn at least tried to make cool stuff, cuz that was funny stuff, the super long-range antenna at 62watts is on of the funniest.
RFID has been bust for years, the Proxmark has been out for over a decade. I don't see how this is anything new or groundbreaking.
So amazon can push a skill to your Alexa to listen to you constantly any time they want or are forced to?
Wow, so just because a cousin of mine wants to find out if they're part neanderthal, the police could find out about all the murders I've done?
Of which there are none, because I haven't murdered anyone. It wasn't me, I wasn't there, and even if I was, you can't prove a thing!
What is the wake word?
I think you meant to say "you share some DNA with your family" rather than "you share some chromosomes with your family" – unless, of course, you have an identical twin. If I wanted to be really pedantic I would say "you share some bits of your chromosomes with your family".
Anyway thanks for the show – keep it coming.
Are there any privacy-oriented personal assistant alternatives to Alexa or Google Assistant?
Wow, didn't know that those companies make your DNA available… damn, not gonna do it now…
Errrr DUH, been saying this since the start , but the dumb sheep just buy the crap and leave it in there home.
It sound like the time when Sisko used an optolythic data rod to manufacture evidence against the Dominion to bring the Romulans into the war..
Make the mute button a hardware block to the mics. I.E. push the button, no angry pixies got to the mics, now power, no recording.
mono audio, please
so basicly its an rfid brute force attack? just require a time delay between tries
Anyone going to DefCon Vegas?
General public
"The NSA is spying on us with our computers? D:
Meh, I'm sure it's fine
Hey Amazon cameout with a giant microphone
The giant microphone can spy on us? D: "
Seems pretty shady that they didn't need a warrant to access that DNA database. I suppose that company just cooperated with them and didn't ask for one. I don't know that I'll use one of those services with that in mind, because I'd have to trust that company in perpetuity to never share my data or sell it etc.
So what you are saying about Deangelo is that a sadistic police officer was able to rape and occasionally murder females, possibly others, and that encomponent law enforcement, possibly also corrupt, was unable, or unwilling to do proper investigations to the extent that these crimes are now past statute and that it took the' absolute most invasive tactics, that of unwarranted and systematic Dna sampling, of untold of numbers of people for them to "link" this elderly individual to these crimes? Hmm, not sure this one was a win for humanity as a whole. But I guess it does take lazy, inept, detective skills to catch a possibly croocked, and predatorial, ex-cop now senior citizen.
If you're smart enough to program a master hotel key card, I seriously doubt an in-room hotel safe is going to present much of a challenge 😀
If you think that Alexa and by proxy Amazon are not spying on you, I have breaking news for you. Water is wet, grass is green & the sky is blue!
Ok…? Now how are you going to hack the deadbolt?
1611 KJV Bible has warned of this since 1611.
These data collection companies are really preying for the innocent goofs, circumventing the security and jeopardizing the privacy of everyone around them.
Oof I'm here too early
Sixth
3rd
Just got on to check for threat wire and was sad when I didn’t see one, then Bam! Thanks HAK5
Second
First one