Replies

  • Interesting discussion! Makes me wonder 4 years post the last comment, what has been the conclusion in terms of encryption on low-cost radios? Do we already have it, or yet pondering on a genius idea to make it happen, coz even Google is unable to answer this query to me.

  • how to hijack a drone over telemetry , and prevent it;

    http://madhacker.org/?p=13

    • Good read. Personally I will be moving to cellular based radios as soon as I have enough experience and time. When the first documented easy to use device to do exactly what's described in the article comes up, I hope that will highlight this issue enough so that encryption can be developed. Also I realise that many might not see this as an issue at all, since there are no known incidents yet (AFAIK - and I sort of agree), but it just doesn't feel right to be this vulnerable with multi thousand dollar equipment.

  • Hi,

    I am  working on new communication module (telemetry + RC control) compatible to 3DRadio dedicated to APM.

     More info here

    CPU is STM32F103 with enough computing power and memory to implement encryption.

    If anyone is interesting in cooperate - please PM or e-mail me: marekm(at)hot(dot)pl

    Marek

  • Why is the post by Michael Zietlow deleated ?

    And does anyone take the huge security flaw/lack seriously ?

  • Developer

    There seems to be some confusion here.

    Encryption, correctly implemented, prevents someone from comprehending the contents of the messages being sent.

    Authentication, correctly implemented, allows the recipient to trust that the sender actually sent the message that was received.

    It is common to mix the two; after an initial exchange that establishes authenticity, knowledge of the encryption key by the sender is treated as authentication by the recipient. However, this glosses over the initial exchange, and it also omits any protection against replay of a previously-authentic message (or suppression of authentic messages) by an attacker.

    The 3DR radios don't have the computational resources to implement a sufficiently secure link; they are basically tapped out with their current functionality. Building a secure link is going to require a new (and more expensive) hardware platform.

  • Kind of surprised the radios are still unencrypted?!?

    The AES-256 code and examples are available for the chip, it would be trivial to implement it.

    Even without rfcat or some fancy spectrum analyzer someone can still simply scan through the 256 ID codes and gain control of your plane?  There's probably an even easier method if you want to poke around in the code a bit.

    With the HopeRF RFM22BP module available it won't cost someone more than $20-30 to spam out 1W from a high gain antenna and snatch up people's planes.

    Where are you guys located at BTW?  I offer free security checks in exchange for a plane or quad,  LOL!

  • Can we please use a separate topic for encryption of video links? This is about the 3DR-radios. Thanks!

  • there is no denying, we need encryption.

    It would take a lot to prove that a bad situation was *not* caused by the pilot, who, after all - is responsible.

This reply was deleted.

Activity

DIY Robocars via Twitter
Sunday
DIY Robocars via Twitter
May 14
DIY Robocars via Twitter
May 13
DIY Robocars via Twitter
RT @f1tenth: Say hi to our newest #F1TENTH creation for @ieee_ras_icra next week in Philly. It’s going to be huge! 😎 🔥 @AutowareFdn @PennEn…
May 13
DIY Robocars via Twitter
May 11
DIY Robocars via Twitter
May 8
DIY Robocars via Twitter
RT @SmallpixelCar: Noticed my car zigzagged in last run. It turned out to be the grass stuck in the wheel and made the odometry less accura…
May 8
DIY Robocars via Twitter
RT @SmallpixelCar: Test my car. RTK GPS worked great. Thanks @emlid for their support. https://t.co/EkQ6qmjmWR
May 8
DIY Drones via Twitter
RT @chr1sa: @kane That's @diydrones circa 2009. Still have a box of those Canon cameras that we used to strap into planes, just like this.…
May 3
DIY Robocars via Twitter
RT @chr1sa: Our next @diyrobocars race is going to be outside at a real RC racetrack in Fremont on May 28. Fully autonomous racing, head-to…
Apr 30
DIY Robocars via Twitter
RT @f1tenth: Our Spring 2022 F1TENTH course @PennEngineers is coming to an end with a head-to-head race as a big finale. So proud of our st…
Apr 26
DIY Robocars via Twitter
RT @DanielChiaJH: I wrote a thing! Throughout the development of my @diyrobocars car I've been using @foxglovedev Studio to visualize and d…
Apr 23
DIY Robocars via Twitter
RT @SmallpixelCar: My new car for high speed. Low body, everything ( @NVIDIAEmbedded Jetson Xavier NX, @emlid RTK GPS, IMC) under the deck…
Apr 23
DIY Robocars via Twitter
Apr 21
DIY Robocars via Twitter
RT @f1tenth: F1TENTH Race training setup @PennEngineers for our upcoming ICRA2022 @ieee_ras_icra competition. @OpenRoboticsOrg @IndyAChalle…
Apr 21
DIY Robocars via Twitter
RT @fatcatFABLAB: Proud to be hosting a restarted DIY Robocars NYC Meetup April 26. Come by if you want to talk about and race self-driving…
Apr 17
More…