Welcome to Incremental Social! Learn more about this project here!
Check out lemmyverse to find more communities to join from here!

obinice ,
@obinice@lemmy.world avatar

The device only gives easy access to already extremely weak/non existent security systems. That's literally it.

It's just something that's existed forever, but put into a convenient package and marketed well enough that suddenly normal people are realising how insecure their electronic systems actually are.

Kinda like how they used to make pacemakers hackable because they never thought to add any security at all. I bet many of them still don't.

Anyway, the issue lies not with this device, which can't "hack" anything with any actual security, the issue is with manufacturers making devices that literally leave the door wide open to anybody with an extremely basic electronic sniffer/cloner device.

mesamunefire ,

Yep you can do the same operations with a RTLSDR (20-40$) and a signal repeater (20ish) and raspberry pi/netbook. It's somewhat harder to do if you don't know the software but it really just exposes very insecure hardware. Companies should put a semblance of security and it would take care of things. These kind of devices are everywhere not just the flipper. Flipper just made it a tiny bit more friendly.

crazyminner ,

I wanted to get one one day. This sucks. Now I'm gunna have to import it from some rando in Brazil like I did for my switch mods.

originalucifer ,
@originalucifer@moist.catsweat.com avatar

canada just streisanded me into obtaining one of these. i cant wait to play with it

even in its anger, canada helps. thanks!

pezhore ,
@pezhore@lemmy.ml avatar

I have one and I highly recommend the wifi card. I also have a slightly working Carbon Dioxide sensor - I say slightly because it's readings are consistently off when compared to my Aranet. Supposedly there's a way to calibrate, but I haven't had time to dig into it further.

My only issue with the device is that I wish there were more tamagochi elements to the dolphin buddy.

originalucifer ,
@originalucifer@moist.catsweat.com avatar

tamagochi elements to the dolphin buddy.

hahaha thanks! i love the idea of the co2 sensor

Speculater ,
@Speculater@lemmy.world avatar

The Wi-Fi card is a must in my opinion. Learning about EAPOL handshakes, hashing, cracking and list vs masks was an awesome use of some 200 hours. Obviously I only used hardware I own and configured, but boy do I feel like Mr. Robot lol.

dangblingus ,

The truth of the matter is, Canadian laws are intentionally non-sensical and intentionally don't address the root cause of crime. Our country's leaders are openly engaging in numerous large scale scams not the least of which is the stolen car market. How do you think alllllll of these stolen cars wind up in Africa and SE Asia? Shipping manifests, inspections, public awareness of the string of thefts. How does the government manage to always miss these blind spots do you think?

bassomitron ,

I'm no expert, but wouldn't it be very expensive to ship a bunch of cars to a different continent? Particularly stolen ones?

JASN_DE ,

Not really. Those don't go on specialized car freighters, they're just packed into a shipping container.

Mycatiskai ,

There is a good CBC Marketplace video where they went to Africa somewhere and found all these cars for sale, checked the gloveboxes and found the insurance papers, then called the people who's cars were stolen.

Here it is: https://youtu.be/gshyozP-GY8?si=oSVlA9MqVq8NVlo-

Grimy ,

Yea but not as expensive as shipping a bunch of cars and also paying full price.

A quick google tells me 90% of the legal trade is shipped by boat, so you are paying for the boat regardless.

grue ,

How do you ban a device built with open source hardware and software anyway?

Tyrannically.

dangblingus ,

It's hardly tyrannical. It's a device meant to be used to steal cars. Not banning it would be seen as willfully ignoring part of the problem. They're still ignoring the root cause of the problem, but they have to be seen attempting to govern. If they're not banning the open source hardware, then we're not living under the thumb of a tyrant.

grue ,

It’s a device meant to be used to steal cars.

No, that's a lie. It's no different than saying that a VCR is "a device meant to steal movies."

Barky ,

Bro what are you talking about

ObviouslyNotBanana ,
@ObviouslyNotBanana@lemmy.world avatar

I see how that might make sense to lawmakers. It does present itself as a problem. But the fact that it is a symptom of a security issue is the reason it shouldn't be outright banned. I haven't used the thing, but it has looked to me like a pretty snazzy multitool.

It's like banning swiss army knives. I can see why it looks like it makes sense, but it really doesn't.

sukhmel ,

It's like banning swiss army knives

That's why we went forth and banned everything swiss, army, or knive, altogether

SplashJackson ,

Now I have to put holes in my own cheese using my own secret, illegal methods

agent_flounder ,
@agent_flounder@lemmy.world avatar

Yes, this one right here, Mounties.

rdyoung ,

I've been watching flipper since it was announced. I should probably buy one and play with it.

All this is going to do is increase sales of the thing and probably increase the number of "kids" trying to break into cars. Streisand effect ftw.

Case ,

I have one.

Its fun.

But on the subject of rolling codes, I was able to get through a security gate that relies on, essentially, a garage door opener.

The exploit relied on the ridiculously low amount of rolling codes it cycled through.

Capture one, and try it a few times to get through.

Cars are more robust. Despite tinkering with it for about 8 hours, I wasn't successful with defeating it. That being said, I picked up the device, in part, to start messing around with various signals as an educational tool.

rdyoung ,

I really should get one. I should also grab the latest version of kali (if that's still around), I haven't played with that in a long time.

agent_flounder ,
@agent_flounder@lemmy.world avatar

It is: https://www.kali.org/get-kali/

I should add this and flipper to the list of things to play with at some point soon.

Case ,

Kali is still around, I last did an install ~6 months ago, I think?

That got put on the back burner though, not because of the flipper, just life.

CosmicTurtle ,

It reminds me of a lawmaker in one of the flyover states that wanted to make it illegal to look at the source code of a website.

Think about this for a second.

And realize that this twat is writing laws.

rdyoung ,

I had not heard of that one. Was it the "internet is full of tubes" guy?

CosmicTurtle ,

No, it was a few years back when a researcher found that there was a plain text file of county employee social security numbers just sitting inside the JavaScript of a government website.

There are too many Google results from the upcoming election for me to sort through but suffice it to say, the guy was a class A idiot.

Aatube , (edited )
@Aatube@kbin.social avatar

What's wrong with that "a series of tubes" speech? It seems pretty accurate to bandwidth

Edit: Searched it up. The part that was wrong was him blaming email delays on bandwidth.

sukhmel ,

Happened around 2021-10-15:

Missouri Gov. Mike Parson said that his administration is pursuing the prosecution of a local newspaper reporter who alerted the government to website security flaws.

It's in the following sources, at least: TechCrunch, NPR, NY Times

LazaroFilm ,
@LazaroFilm@lemmy.world avatar

The real problem is Flipper Zero is just a nicely packaged tool that can also br easily assembled with other off the shelf parts. And those parts alone can do many other things that should not be made illegal.
The real solution should be from car manufacturers and ensuring that they don’t use tech that can be so easily hacked.

z3rOR0ne ,
@z3rOR0ne@lemmy.ml avatar

At least the article did a good job of calling this ban the bullshit it is.

InfiniWheel ,

Can you even buy these without ending up on a list somewhere? Since its only sold online this feels like the kind of thing that gets you on a list

Kolanaki ,
@Kolanaki@yiffit.net avatar

I know of a mattress company that you can only purchase from online.

The only list it gets you on is a mailing list about their mattresses.

dangblingus ,

Mattresses vs Contraband. I wonder if the government monitors web traffic to the contraband website.

Mango ,

Ok I see why you guys might think this guy is being dumb, but having spent some time on Agora with all the honey pots, it's not too crazy.

That said, it's probably much less likely here my dude.

dangblingus ,

Only because Canada doesn't actually give a shit about car theft. If they did, this would be a very obvious honey pot.

uhmbah ,

Ya but, you can't steal cars with this unit.

If our politicians are not the laughing stock, they should be.

dangblingus ,

They're too busy profiting from all of the illegal activity in this country. Organized crime is absolutely thriving in Canada because the people in charge are allowing it to occur.

OsrsNeedsF2P ,

Sounds like buying a bunch of Flipper Zero devices and selling them on the street corner is a great investment opportunity

Mango ,

WTB.

I'm in the US. PM me with your scalper prices.

bjorney ,

There is nothing this thing can do that a dedicated hobbyist couldn't replicate with parts bought off the shelf at a RadioShack, so where does the line get drawn

jkibble ,

We don't have any Radio Shacks anymore 😞

LinkOpensChest_wav ,
@LinkOpensChest_wav@lemmy.dbzer0.com avatar

I miss Radio Shack, but also I feel like toward the end there the workers wouldn't even let me breathe.

chiliedogg ,

Because they were desperate to cell cellular plans a d credit cards because nothing else in the store made money.

Xamith ,

If you have one in your area, check out Sayal Electronics

WordBox ,

Clearly they should ban RadioShack... Wait..

Vertelleus ,
@Vertelleus@sh.itjust.works avatar

"It's really easy to duplicate keys for this car, let's ban key makers."

BruceTwarzen ,

While we're at it, let's make theft illegal

autotldr Bot ,

This is the best summary I could come up with:


Presumably, such tools subject to the ban would include HackRF One and LimeSDR, which have become crucial for analyzing and testing the security of all kinds of electronic devices to find vulnerabilities before they’re exploited.

This slim, lightweight device bearing the logo of an adorable dolphin acts as a Swiss Army knife for sending, receiving, and analyzing all kinds of wireless communications.

People can use them to change the channels of a TV at a bar covertly, clone simple hotel key cards, read the RFID chip implanted in pets, open and close some garage doors, and, until Apple issued a patch, send iPhones into a never-ending DoS loop.

The price and ease of use make Flipper Zero ideal for beginners and hobbyists who want to understand how increasingly ubiquitous communications protocols such as NFC and Wi-Fi work.

Lost on the Canadian government, the device isn’t especially useful in stealing cars because it lacks the more advanced capabilities required to bypass anti-theft protections introduced in more than two decades.

The most prevalent form of electronics-assisted car theft these days, for instance, uses what are known as signal amplification relay devices against keyless ignition and entry systems.


The original article contains 617 words, the summary contains 195 words. Saved 68%. I'm a bot and I'm open source!

vithigar ,

I can't be the only person who reads "I'm open source" with the same cadence as "I'm on a horse" then hears the Old Spice jingle in my head, can I?

Evkob ,
@Evkob@lemmy.ca avatar

Well in any case, if you were the only one, you aren't anymore.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • technology@lemmy.world
  • incremental_games
  • random
  • meta
  • All magazines