WIFI Security Vulnerabilities? SKYJACK
12
6244 50 2018-2-9
Uploading and Loding Picture ...(0/1)
o(^-^)o
Aardvark
First Officer
Flight distance : 384432 ft
  • >>>
United Kingdom
Offline

fansb1fe1104 Posted at 2018-2-10 21:35
It seems that now that they have done away with the P3P and P3A, DJI has now upgraded the P3 Standard to Lightbridge. At least that what it seems, DJI store says "This Phantom’s newly enhanced Wi-Fi video transmission

system allows you to fly farther while maintaining a crystal

It looks like it is some sort of Hybrid system, page 26 of the 3SE manual refers to the video wifi link, which sends video directly back to your display device via wifi.
Page 28 however refers to linking the controller to aircraft, suggesting 'Lightbridge' is used for control. This seems like a cut down version of the lightbridge used on the P4 series, where I believe control and video signals are 'Time Division Multiplexed' together.
It seems almost irrelevant now as looks like both are being withdrawn, as both out of stock on DJI Store.
So in the context of the post, the hacker might be able to disrupt and/or view the video stream from a phantom 3SE, but I'll probably never know now :-)
2018-2-11
Use props
Laura McPherson
New

New Zealand
Offline

If you think your spouse may be cheating, you can contact PHONESPYAPPS1@GMAIL.COM
He’s a real hacker and was very reliable in helping me spy on my cheating husband’s cell phone remotely.
2018-5-9
Use props
Hugei Nutts
New

Offline

hazy .right u are about skyjack,flyoffs,spoofing, man,in,middle attacks etc .wake up people and stop being so ignorant and judgemental to victims of device attacks ,WTF Only police and military have the ability to hack a WiFi network on a phone,tablet,etc
RedHotPoker stop victimizing people asking for help ,you seem to pop up with your negative blind attitude to the WiFi hacking on a device controlling a drone, Go get some hacking knowledge before casting judgment on a person who is seeking help on this forum,A wise old owl sat in a oak the more he heard the less he spoke the less he spoke the more he heard,THATS THE STORY OF A WISE OLD BIRD.2.4GHZ/5GHZ WIFI PLATFORMS ARE NOT IN ANYWAY SAFE FROM DEVICE, APP HACKING.FORUMS ARE HERE TO HELP ,CONVOSATE,AND MEET PEOPLE WITH INTEREST IN COMMON. THERE NOT FOR ARM CHAIR EXPERTS WHO VICTIMIZE PEOPLE SEEKING HELP.IF YOUR BORED GO FLY A KITE OR TAKE ON KNOWLEDGE AND TRUE FACTS ABOUT ISSUES U COMMENT ON,THERES A WET BLANKET AT EVERY PARTY AND red-hot your that blanket.
2018-9-7
Use props
Labroides
Core User of DJI
Flight distance : 9991457 ft
  • >>>
Australia
Offline

Hugei Nutts Posted at 2018-9-7 03:01
hazy .right u are about skyjack,flyoffs,spoofing, man,in,middle attacks etc .wake up people and stop being so ignorant and judgemental to victims of device attacks ,WTF Only police and military have the ability to hack a WiFi network on a phone,tablet,etc
RedHotPoker stop victimizing people asking for help ,you seem to pop up with your negative blind attitude to the WiFi hacking on a device controlling a drone, Go get some hacking knowledge before casting judgment on a person who is seeking help on this forum,A wise old owl sat in a oak the more he heard the less he spoke the less he spoke the more he heard,THATS THE STORY OF A WISE OLD BIRD.2.4GHZ/5GHZ WIFI PLATFORMS ARE NOT IN ANYWAY SAFE FROM DEVICE, APP HACKING.FORUMS ARE HERE TO HELP ,CONVOSATE,AND MEET PEOPLE WITH INTEREST IN COMMON. THERE NOT FOR ARM CHAIR EXPERTS WHO VICTIMIZE PEOPLE SEEKING HELP.IF YOUR BORED GO FLY A KITE OR TAKE ON KNOWLEDGE AND TRUE FACTS ABOUT ISSUES U COMMENT ON,THERES A WET BLANKET AT EVERY PARTY AND red-hot your that blanket.

Yes .. drone hijacking, the 18307th most common cause of lost drones.
Lets all get excited and worry about something hypothetical that no-one here will ever encounter.
Particularly when it's brought up by someone who uses upper case to re-activate a post more than 6 months old.

2018-9-7
Use props
RedHotPoker
Captain
Flight distance : 165105 ft
Canada
Offline

5EB4F504-D382-42B9-AD31-AB374378D896.jpeg

One way to drop a drone...


RedHotPoker
2018-9-7
Use props
Aardvark
First Officer
Flight distance : 384432 ft
  • >>>
Offline


Looks like that won't be 651 ......
2018-9-7
Use props
RedHotPoker
Captain
Flight distance : 165105 ft
Canada
Offline

Aardvark Posted at 2018-9-7 08:20
Looks like that won't be 651 ......

What do you refer to?

After 661 you mean., haha
For Heavens Sake. Chuckles

RedHotPoker
2018-9-7
Use props
ATJ
Second Officer
Flight distance : 17736 ft
Offline


What the hell does Red Hot Poker stand for?
2018-9-7
Use props
RedHotPoker
Captain
Flight distance : 165105 ft
Canada
Offline

ATJ Posted at 2018-9-7 10:48
What the hell does Red Hot Poker stand for?

I can give it to you two ways.

The gentle version.
8B18D78D-C732-46C0-9EEE-86441E46B456.jpeg
Or the painfully direct one. EF250933-4AF4-43DA-B0C7-8401D9CFF180.jpeg
I’ll let you choose. Ok?



RedHotPoker

2018-9-7
Use props
solentlife
First Officer
Flight distance : 1087530 ft
Latvia
Offline

CraigR Posted at 2018-2-9 21:21
The P3 remote is a WIFI hotspot... that's your WIFI

Only the P3S or P3SE controller uses WiFi ….

All others use Lightbridge or Occusync ….

The equipment used to down drones such as the system developed in UK - used in some US airfields and around the world is a serious bit of kit that blasts a blanket RF signal and disrupts - but its directional and results in total loss of any control. It is also well outside the bank balance of most people !!


The idea as presented in this thread is hogwash to be honest.


Nigel
2018-9-7
Use props
Alvaro L
lvl.3
Flight distance : 8832 ft
Spain
Offline

If DJI is using industry standards in recent models, which I assume is doing because it is number 1, then:

  • Video downlink and "payload" controls (camera) are using a completely different communication layer from the drone control & telemetry link.
  • Control & telemetry also called C2 link is fully encrypted, and keeps jumping all the time within an signal spectrum to avoid interferences.
  • A C2 link signal is very discernible to screeners and can be jammed with enough noise but it is very unlikely that somebody can take full control of the drone. RTH is the likely outcome.
  • The weakest link here is the user. By means of social engineering techniques, he or she could install third party app which could take full control of the RC, although I would expect some kinf of firewall between the C2 link and the RC operating system or any app. FAA/EASA will never accept that in a certified system the same way the don't allow it in aircrafts: a camera or auto flight app giving full control of the C2 link to a third party would be like someone taking control of an aircraft through the in-flight entertainment system.
  • A malicious RC/AC firmware is a plausible thread, but you would need a powerful adversary for that to happen. I am pretty sure DJI have the firmware channels and update workflows fully secured and encrypted.
  • GPS spoofing = you can always use ATTI mode.
  • GPS spoofing + C2 signal jamming is a plausible external threat but only expensive equipment can do that, at least at the moment.
  • For economic reasons, powerful adversaries only happen with powerful threats. For liability reasons, it is likely that DJI has got it systems designed against these kind of known threats.
  • Assume nothing !
2018-9-9
Use props
12
Advanced
You need to log in before you can reply Login | Register now

Credit Rules