Surveillance Drones Easily Hacked

Surveillance Drones Easily Hacked

A security researcher from IBM has said that a $20,000 to $35,000 police drone used for surveillance can be hacked with a $40 kit.

Vulnerabilities of the flying machine allow it to be controlled or knocked out of the sky within a mile range. Findings were presented at the RSA security conference in San Francisco on March 2.

Security researcher Nils Rodday showed how flaws in the security of the drone’s radio connection allowed him to take full control over the unmanned machine with just a laptop and a cheap radio chip connected via USB. By exploiting a lack of encryption between the drone and its controller module, any hacker who’s able to reverse engineer the drone’s flight software can impersonate that controller to send navigation commands while blocking commands from the drone’s original controller.

Rodday, who works with IBM but conducted the drone research while working as a graduate researcher at the University of Twente in the Netherlands, won’t reveal the specific drone he tested or who sells it. He hinted, however, that the drone did have a flying time of about 40 minutes and that it was deployed by many police and fire departments.

Rodday has alerted the drone’s manufacturer to the security flaw s he’s found, and the company plans to fix the issue in the next version of the quadcopter that sells. Since the drones don’t connect to the internet, there isn’t an easy fix for those that have already been manufactured. They can’t just download the new upgrade like we do with our iPhones.

About the Author

Sydny Shepard is the Executive Editor of Campus Security & Life Safety.

Featured

  • Securing the Future

    Two security experts sit down with Security Today’s editor in chief Ralph C. Jensen to discuss what they see emerging and changing over the next several years along with how security stakeholders can harness these innovations into opportunities. Read Now

  • Collaboration Made Easy Using a Work Management Platform

    Effective collaboration between security operators, teams and other departments is critical to the smooth functioning of organizations. Yet, as organizations grow in complexity, it becomes more difficult for teams to coordinate with each other. This is compounded by staffing shortages, turnover and ineffective collaboration tools. Read Now

  • Creating a Safer World

    Managing and supporting locks and door hardware within a facility is a big responsibility. A building’s security needs to change over time as occupancy and use demands evolve, which can make it even more challenging. Read Now

  • Report: 78 Percent of CISOs Seeing Significant Impact from AI-Powered Cyber Threats

    Darktrace recently unveiled its 2025 State of AI Cybersecurity report. The findings reveal that 78% of Chief Information Security Officers (CISOs) surveyed say that AI-powered threats are having a significant impact on their organizations, a 5% increase1 from 2024. While an increasing number of CISOs report feeling a significant impact from AI threats, more than 60% now say that they are adequately prepared to defend against these threats, an increase of nearly 15% year-over-year. However, insufficient AI knowledge and skills and a shortage of personnel and talent continue to be listed as the two top inhibitors to a successful defense. Read Now

New Products

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • FEP GameChanger

    FEP GameChanger

    Paige Datacom Solutions Introduces Important and Innovative Cabling Products GameChanger Cable, a proven and patented solution that significantly exceeds the reach of traditional category cable will now have a FEP/FEP construction.