Surveillance Drones Easily Hacked

Surveillance Drones Easily Hacked

A security researcher from IBM has said that a $20,000 to $35,000 police drone used for surveillance can be hacked with a $40 kit.

Vulnerabilities of the flying machine allow it to be controlled or knocked out of the sky within a mile range. Findings were presented at the RSA security conference in San Francisco on March 2.

Security researcher Nils Rodday showed how flaws in the security of the drone’s radio connection allowed him to take full control over the unmanned machine with just a laptop and a cheap radio chip connected via USB. By exploiting a lack of encryption between the drone and its controller module, any hacker who’s able to reverse engineer the drone’s flight software can impersonate that controller to send navigation commands while blocking commands from the drone’s original controller.

Rodday, who works with IBM but conducted the drone research while working as a graduate researcher at the University of Twente in the Netherlands, won’t reveal the specific drone he tested or who sells it. He hinted, however, that the drone did have a flying time of about 40 minutes and that it was deployed by many police and fire departments.

Rodday has alerted the drone’s manufacturer to the security flaw s he’s found, and the company plans to fix the issue in the next version of the quadcopter that sells. Since the drones don’t connect to the internet, there isn’t an easy fix for those that have already been manufactured. They can’t just download the new upgrade like we do with our iPhones.

About the Author

Sydny Shepard is the Executive Editor of Campus Security & Life Safety.

Featured

  • Why Communication is Key in an Emergency

    During an emergency, communication with the outside world can be a critical component when it comes to response time and saving lives. Emergency communications typically consist of alerts and warnings; directives about evacuating the premises; information about response status, and other matters that can impact response and recovery. Read Now

  • Trust But Verify

    Today’s world is built on software—whether it is third-party applications, open-source libraries, in-house developed tools, operating systems, containers or firmware. Organizations worldwide depend on these diverse software components to power their operations, connect with customers, and drive innovation. However, this reliance on software comes with hidden dangers: the blind trust placed in these software products. Many companies assume that the software they purchase, and use is secure and free from vulnerabilities, but recent high-profile software supply chain breaches have proven otherwise. The reality is that every piece of software, no matter how reputable the source, increases the organization’s attack surface and poses new risks. Read Now

  • Impact on Digital Transformation

    A 2023 Statista report projects that by 2030 there will be 30 billion Internet of Things (IoT) devices in use. That is three times as many as there were in 2020. The numbers continue to grow because connecting sensors and systems, especially across a business, promises big efficiency gains and new insights. As such, the IoT and IIoT (Industrial Internet of Things) have become a launching pad for digital transformation -- not only for individual organizations but for entire industries. Read Now

  • Optimizing Security and Business Performance with Clarity and Control

    In recent years, the security sector has experienced a significant influx of innovative technologies that have fundamentally transformed how organizations design, implement, and oversee their security programs. The widespread adoption of cloud-based infrastructure, edge processing, and AI or machine learning (ML) driven analytics has brought about revolutionary changes in applications such as access control, video surveillance and emerging areas like threat detection and drone identification. Read Now

Featured Cybersecurity

Webinars

New Products

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions. 3

  • 4K Video Decoder

    3xLOGIC’s VH-DECODER-4K is perfect for use in organizations of all sizes in diverse vertical sectors such as retail, leisure and hospitality, education and commercial premises. 3

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file. 3