DoDIIS 2017- Teddy Bear Hacking with 11/ yo Cyber Prodigy Reuben Paul

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments

CHILDS PLAY.

👍︎︎ 3 👤︎︎ u/Panhumorous 📅︎︎ Apr 03 2019 🗫︎ replies

Where is the source code?

Should i really believe (upon a video that does not show me what the kid is doing on his computer) a 11-year old guy programmed an exploit for a teddy bear without any kind of evidence?

👍︎︎ 2 👤︎︎ u/[deleted] 📅︎︎ Apr 04 2019 🗫︎ replies
Captions
are you ready to weaponize a teddy bear secure ninja hi everyone I'm Alicia web secret ninja TV was recently in st. Louis for the Defense Intelligence Agency's dota s-- worldwide conference and not surprisingly the focus of this year's event was cybersecurity the conference was hosted by DI a's chief information officer janice Glover Jones in her opening remarks she brought on the stage eleven-year-old Reuben Paul who was able to hack a stuffed teddy bear to turn it into an eavesdropping device now let's take a look at the presentation and if you're anything like us you're really going to enjoy this it is imperative that we shed our preconceived notions of who poses a threat to our networks and our digital infrastructure today's sophisticated hackers use simple electronic devices like remote-control cars or other smart toys to gain access to our most sensitive data skilled cyber actors don't need to spend years or decades honing or refining their craft to inflict severe damage for example a five-year-old recently found a flaw in an Xbox video game system that allowed him to hack into his father's account in a ten-year-old discovered a new class of bugs in a mobile game allowing her to manipulate the results while these might not sound like dire threats to national security they should be instructive to the digital world we now inhabit malicious cyber actors can come in any shape and size and we must adapt to this new reality I would like to introduce to you someone who personifies this technological information and represents the sophistication of cyber actors he is the CEO of a cyber nonprofit as well as a cyber expert all at the age of 11 please welcome Ruben Paul good morning Reuben hey where's Bob why don't you go ahead and get started so Reuben will find Bob that's got lost 11 years old you're the CEO of a company you consider yourself a cyber expert and then you do gymnastics yes all at the age of 11 how did you get here well before I answer your question I just wanted to say a big thank you I want to thank my God Jesus Christ for the gifts he has given me and giving me this opportunity I want to thank you miss Glover Jones for letting me share the stage today and I want to thank all the people who are serving today and all the people who have served the veterans and all the attorneys here and I hope one day to serve our nation just like you on the cyber wall now back to your question it all began when I was about six years old and my dad used to train people on cybersecurity so I used to listen in and learn about basic security topics and one day when he goes on a business call he forgot the word firewall so I prompted him from the back and he realized I had a potential for learning cybersecurity so he started teaching me more advanced topics like hacking phones and windows and IOT devices so I started learning and I had to I was simplifying advanced topics down so that anyone could understand them and that's how I came up with cyber Shaolin my nonprofit organization a nonprofit organization so tell us about Bob who's Bob so this chair is Bob meet Bob so Bob is a pair of breeches a silver of breeches that's why I named him Bob he got something to say huh yeah he has a little message for us I just wanted to say hi how are you doing I'm really excited to be here today thanks for the opportunity so what do you use Bob for most people sleep with teddy bears well but I gathered that you're not most people well I'm going to hack into Bob you're gonna hack into Bob yes okay you're gonna show us what you got yes okay so I basically have a Raspberry Pi at any computer I'm connecting through it I'm connecting to it using terminal and just on my Mac and I'm gonna use and I'm just gonna scan for my dog so here you know Wow oh let me turn my phone off happy [Applause] that is a lot of things I see someone's Fitbit charge HR sex someone's device like an Apple watch oh there's Bob let's see him it's at cloud FETs now you make sure it's Bob yes and not general Stuart's phone okay okay I need my job so if you're trying to turn off your Bluetooth devices it's too late so I'm just going to connect to the ver interactively and once I do that I'm going to see these services so the first two are for our on Bluetooth specs and it's basically for interactive interactively connecting between the bear and the device the last one is for over-the-air updates and this one is specific to the manufacturer so what I'm going to do is I'm just going to in each of these services there is characteristics properties that you can use so I'm basically just going to describe the characteristics so once I get this characteristics I see that the I went through each one and there's a specific one handle 27 but I'm gonna actually read handle 28 because that's the description for the handle so when I do it I'm gonna do character - read handle 28 and we get these three or these these numbers that's a hex so I'm just gonna go into Python and put that in a nun exit how did you learn Python I've been taking I have a book at home Python for kids self-taught okay yeah so I have LED so handle 27 controls the LED so basically I'm just going to write to that handle and I'm gonna write handle to handle 2701 so as you see on Bob the LED little heart LED will flash Wow so I'm gonna turn that off and who just wants to see a light turn on I'm gonna make some audio play so I went through each one of these and I found that handle 12 is for commands sending commands to the bear and 0 8 is for audio and then 0 2 is for a record and it records to slot 1 automatically there are few different slots but it what's the saw one so when I enter this command Bob is gonna record everything I say and nobody's gonna know it so once I enter it miss clover Jones it's gonna ask me a question or ask Bob a question I'm gonna answer it for Bob and then you guys are gonna screen notice is awesome ok 3 2 1 hey Bob have you just been hacked yes I was so I just turned it off and to play it back I'm going to t zero eight zero one and I'm gonna play back on slot 1 [Applause] [Music] so if you were a nefarious cyber actor what could you do with Bob or any other smart tooth enabled device so I could act theoretically stand out any government Institute base and then connect to a Bluetooth low-energy device like a Fitbit or an Apple watch or something like that and then I could record secretive conversations or if I was or I could stand out a doctor outside a doctor's office and connect to a heart pacemaker and turned it off making some causing some serious damage so ladies and gentlemen what we just witnessed is in about five minutes Rubin here was able to hack into Bob and record our conversations this is the reality of what we live in and we want to say thank you Rubin for coming and sharing with us how easy this is Wow Reubens not just a talented hacker he's a true communicator we're pretty sure he's going to have a nice long career thanks for watching guys be sure to subscribe to the channel so you don't miss anything that we filmed at DotA's 2017 leave us a comment below and let us know if you have any toys or IOT devices yourself we'd love to hear about it I'm Alicia Webb and I'll see you next week bye
Info
Channel: SecureNinjaTV
Views: 722,064
Rating: 4.8048415 out of 5
Keywords: Dodiis, dodiis 2017, janice glover jones, cybersecurity, cyber prodigy, ruben paul, teddy bear hacking, eavesdropping hack, defense intelligence agency, cyber crime, cyber criminals, hackers, kid hackers
Id: 8z3XuRQ3-bI
Channel Id: undefined
Length: 9min 46sec (586 seconds)
Published: Thu Aug 31 2017
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.