This Toy Can Open Any Garage

Tinfoilpain : Hacking is time consuming because programming is annoying... I'm a software engineer.

Lukas Zabrac : Did you just train a whole bunch of thieves to open my garage?

chargermopar : Good luck breaking in my garage. I have no lock on the door, no power opener and so much junk inside that no one can pass.

AuthenTech - Ben Schmanke : "Opens the door to other issues.." ;-) Nice. I see what you did there

Mound-Maker : Yes sure let me give a company all my passwords.

amazing_dude : Pro tip: get 256 garage keys, modify each one to every possible combination for 8 bit, use it on ur neighbors. Edit: nvm, you only need 1

Mark Warbington : My uncle drove a late 70's Datsun pickup truck with a really noisy ignition system. He managed a residential construction crew so he would drive through the same neighborhood every morning about the same time. Whenever he passed by a certain house, the garage door would open. Eventually the homeowner flagged him down and confronted him about it. Of course it wasn't malicious. The guy just had a really shitty garage door receiver. :)

Hacks and Security - NEW channel : Someone below is asking that the rolling code can't work the way its told here. As if the receiver accepts only the next code what will happen if the transmitter is out of range and someone presses the button of transmitter ? As now transmitter has moved ahead of receiver. Well the video lacks a few things here. Actually there is a synchronization counter C which gets increamented each time you press the key (of transmitter). Same way the receiver also stores the most recent validated synchronization counter it has received (N). Now when ever you press the key and send the pseudo-random number to the transmitter the transmitter also takes the synchronization counter C from transmitter (and to update itself will overwrite N with C). Now receiver will also produce the Cth code (corresponding to C i mean) and match with the code send by transmitter. There is also rolling window of acceptance for rolling codes say 100 or 1000 or whatever (depending upon which system you using for your garrage or car keys). Now also note that C-N <= window of acceptance. Hope you are getting my point here. Means if you window of acceptance is say 1000 and you press your key 1000 times when you were out of the range then the garrage (or your car or whatever) will ignore the key even if you come back to range. Also note that if press the key and hold it pressed it keeps emitting same bits, its only when you press it again (press, release the button and press again) that you are generating a new code. The attack works because the tranmitter checks if the next number is what falls in the sequence and there is no concept of expire due to time here (like we have in one time passwords sent to phone).

Earl Francart : you guys do realize that this has been shown to be an issue 20 years ago.. you could open garage doors with a speak n spell..

SmilingIpad : Are there any resources to learn more about how the chip inside the toy was reprogrammed? It seems interesting.

Zach : A video about hacking into stuff that begins with an advertisement for a product to keep all your passwords in one place. Hmm. Nothing suspicious about that at all.

Fake User : Isn’t Sammy the dude who deleted MySpace by making profiles say Sammy is my hero

Hayden Timmins : Why do you only have good security on ONE DOOR. Makes zero sense

RedKB : but most of all, Samy is my hero

GRBTutorials : Another possible attack is if they use weak PRNGs, which are not cryptographically secure. That means that anyone, knowing the algorithm (easy to brute force) and a few codes, can figure out the seed, and then the system is broken.

not amouse : AH, the old barbie pager trick. LOL. I am not going to say what else you can do with these, know only that it is very bad.

BreezyGamer92 : Once Lastpass gets hacks you have to change all your passwords. Genius! I write all mine in a notebook.

Vineet Mohan : Bruijn is a Dutch name and is pronounced close to 'brown' not 'ruin' with a 'b' in front of it

ROBERT ANDERSON : Consider doing a video about the 15 frequencies used in most Chip Keys in today's modern cars. If you build a Passive RF transponder that emits all 15 frequencies, all you need then is to pick the lick and the modified chip instructs the fuel rail to deliver fuel...

Frank Zelenka : This is VERY misleading you are testing ancient technology. You can’t do this with new garage door openers IT IS IMPOSSIBLE. I am in the industry and I challenge you to do this with a new LiftMaster.

whutman : Why would you use an im-me when you could use a hackRF or other SDR chip?

Adresse Poubelle : I think that any honest advisor would tell you that you need not a password manager but a personally made up algorithm to help you remember your passwords or generate new ones. It can (and should) even be complex, after all you only need to learn to master it once and for all. For a user, it is as easy and convenient as having a single password. For a hacker, it is even harder to hack than your password manager. If you use a password manager you might as well worry yourself sick about protecting your computer against malicious software because having it hacked would be seriously catastrophic. No need to mention the risk if synced across all your devices. All you need to do is lose one, or use it on an unencrypted network. If you have an algorithm in your head, with one single parameter (easliy remembered, unguessable, that you could even implicitly write down somewhere innocent-looking) for each of them, it is absolutely unbreakable unless intercepted when the password is entered (and that only risk is just as high with a password manager). On top of that, if you are burgled with a laptop containing 320 passwords you haven't a clue of, there it all goes. Even if the passwords aren't discovered, you can no longer use them yourself. So you need to know your passwords anyway, so password managers, regardless of how unsafe I claim them to be, are pointless. Don't be over-reliant, be smart and wary.

tripjet999 : A crescent-pass oscillator will solve that problem.

haxhxm : Samy the guy who broke down myspace

Don B : That’s Samy kamkar he was banned from using any computer with internet access in 3 years for hacking MySpace lol

