Nullcon Berlin 2024 | Hi, My Name Is Keyboard By Marc Newlin
About this talk
This talk delves into the security vulnerabilities found in popular peripherals, specifically focusing on Apple's Magic Keyboard and gaming keyboards. The speaker discusses the discovery of unauthenticated Bluetooth keystroke-injection vulnerabilities across multiple operating systems, including macOS, iOS, Android, Linux, and Windows, as well as link-key-extraction vulnerabilities. The session covers the research journey, the vulnerabilities identified, and the complexities involved in multi-vendor disclosure. It concludes with demonstrations and reflections on the implications for cybersecurity practices.
More from this event
See all 15 talks →
Nullcon Berlin 2024 | Breaking RSA Authentication & Bitstream Recovery From Zynq-7000 SoC-Arpan Jati
42:15
Nullcon Berlin 2024 | How Things Are Going For APT41 In 2024 - Georgy Kucherin
32:28
Nullcon Berlin 2024 | Revela: Unlock The Secrets Of Move Smart Contracts- Nguyen Anh Quynh & Van Hoa
43:31
Nullcon Berlin 2024 | Fault Injection And The Supply Chain - Nolen Johnson and Jan Altensen
37:18