I Hacked Into My Own Car

Sdílet
Vložit
  • čas přidán 2. 12. 2020
  • The first 100 people to go to blinkist.com/stevemould will get unlimited access for 1 week to try it out. You'll also get 25% off if you want full membership.
    Gaining unauthorised entry to someone else's car is illegal. Jamming is illegal in the UK. It might be illegal where you live too.
    Car key fobs transmit a binary code to the car over radio. If the car recognises the code it unlocks. There are various systems in place to make that process secure. This video is about the way vulnerabilities in those systems can be exploited. Including replay and rolljam attacks.
    "but most of all, Samy is my hero"
    You can buy my books here:
    stevemould.com/books
    You can support me on Patreon here:
    / stevemould
    just like these amazing people:
    Nathan Williams
    Matthew Cocke
    Glenn Watson
    Mark Brouwer
    Joseph Rocca
    Joël van der Loo
    Doug Peterson
    Yuh Saito
    Rashid Al M
    Paul Warelis
    Will Ackerly
    Marcel K
    Twitter: / moulds
    Instagram: / stevemouldscience
    Facebook: / stevemouldscience
    Buy nerdy maths things: mathsgear.co.uk
  • Věda a technologie

Komentáře • 3,3K

  • @SteveMould
    @SteveMould  Před 3 lety +820

    Let's just pretend this worked flawlessly the first time.
    The sponsor is Blinkist: The first 100 people to go to blinkist.com/stevemould will get unlimited access for 1 week to try it out. You'll also get 25% off if you want full membership.

    • @nicholas3435
      @nicholas3435 Před 3 lety +67

      What are you talking about of course it worked the first time :)

    • @legoman-we2zy
      @legoman-we2zy Před 3 lety +1

      Lmao

    • @RobertoMariani
      @RobertoMariani Před 3 lety +16

      Someone hacked your video, too

    • @eaglewolf404
      @eaglewolf404 Před 3 lety

      No worries.

    • @buttonsjr
      @buttonsjr Před 3 lety +7

      I got the notification the second time, so you got that going for you. I know sometimes CZcams punishes people for re-uploads to fix something. You got it re-uploaded pretty quick.

  • @AllDayBikes
    @AllDayBikes Před 3 lety +3536

    1:00 Nice detail on the Bmw parking hahah

  • @luk1505
    @luk1505 Před 3 lety +2353

    6:48
    "I tweaked some variables, I didn't have a clue what I was doing, but I noticed that it changed things"
    - said almost every engineer at some point. That's how you make discoveries! I love your videos, Steve :D

    • @minecrafter0505
      @minecrafter0505 Před 3 lety +73

      He pretty much summed up my job there... And according to my resume I know what I am doing :P

    • @YourMJK
      @YourMJK Před 3 lety +20

      That's just called debugging

    • @D33r_Hunt3r_
      @D33r_Hunt3r_ Před 3 lety +16

      It's like I'm back in my matlab class... **stares of into space due to painful memories**... good times lol

    • @StopChangingUsernamesYouTube
      @StopChangingUsernamesYouTube Před 3 lety +27

      Yep. The real work is going back and figuring out what part of the five different variables you tweaked in "throw everything at the wall until something sticks" mode that made the difference.

    • @Lesesmo
      @Lesesmo Před 3 lety +17

      "Huh, my code work, and I have no idea why." said the greatest engineer I know.

  • @jordanericbaird2724
    @jordanericbaird2724 Před 2 lety +232

    I love how you can tell he genuinely enjoys doing this. The smile, the laugh, the energy. Keep up the work!!

  • @connecticutaggie
    @connecticutaggie Před 2 lety +102

    A big advantage of Manchester encoding is that every bit guarantees a transition. This means that your signal contains the data and the data rate clock. As you mentioned that the fob can't maintain a consistent transmit frequency, the same is true for the data clock. Manchester allows the receiver to synchronize the data rate. Also, the transmit signal likely starts with the same start byte (most commonly AA or 55) to allow that receiver to lock onto the signal (timing wise) and also adjust its gain (AGC).

    • @theodoric4270
      @theodoric4270 Před 2 lety +13

      This is important for magnetic strip credit cards, as an example. The card reader needs to know how quickly you're swiping the card and it uses a standard starting sequence to synchronize. It doesn't matter how fast you swipe the card (within reason) as long as you don't vary the speed and the whole strip goes through the reader.

    • @donaldviszneki8251
      @donaldviszneki8251 Před rokem +3

      @@theodoric4270 i always thought this was dumb since maintaining a constant velocity is not always easy. I think a better system is either to use two tracks with a clock track or a second magnetic polarization axis. But magstripe is slowly dying anyway...

    • @charlesnathansmith
      @charlesnathansmith Před rokem +1

      @@donaldviszneki8251 it worked well enough, and that's always going to be the standard to hit. When magstripes fail it tends to be from demagnetization or it physically chipping off rather than a rate error
      From a security standpoint, a lot of the RFID upgrades for credit cards and badges just became "Spooky replay vulnerabilities at a distance" rather than proper challenge/response implementations

  • @samykamkar
    @samykamkar Před 3 lety +3245

    I also have no idea what I'm doing most of the time.

    • @mikecauser
      @mikecauser Před 3 lety +78

      With all your great research on the topic, how much time is spent coming up with the cool project names vs the actual coding? Rolljam, Magspoof, PoisonTap, Glitchsink...etc. 50/50, right?

    • @mibdev
      @mibdev Před 3 lety +42

      samy is my hero

    • @gonespral
      @gonespral Před 3 lety +30

      samy is my hero

    • @Abdega
      @Abdega Před 3 lety +6

      I’m now imagining a Mr Magoo like scenario where someone just stumbles upon vulnerabilities

    • @IceMetalPunk
      @IceMetalPunk Před 3 lety +15

      I'm not a fancy security expert like you, but I am a software developer working on a web-based fintech app, and... yes, can confirm, a large portion of any development/IT/tech is just trial and error. And lots of banging your head against a desk trying to figure out why the debug output doesn't match what you expect 😂

  • @ilikaplayhopscotch
    @ilikaplayhopscotch Před 3 lety +4066

    I like how the poorly parked car was a BMW, that made me laugh.

    • @Narsuaq
      @Narsuaq Před 3 lety +100

      It's funny cos it's true

    • @carni5064
      @carni5064 Před 3 lety +163

      Its ironic because Mini is BMW.

    • @culpritdesign
      @culpritdesign Před 3 lety +15

      Typical

    • @dyscea
      @dyscea Před 3 lety +32

      Seeing this comment first then finding the BMW made me laugh.

    • @SuperMincraftia
      @SuperMincraftia Před 3 lety +51

      I laughed as well then I remembered I drive a bmw and also can’t park.

  • @mr88cet
    @mr88cet Před 2 lety +143

    Great video! Thanks.
    It’s worth pointing out that looking at a chip under a microscope to reverse-engineer it is pretty challenging, although not technically impossible if you use mechanical-chemical polishing.
    Back in 1995 (or thereabouts) when my company at the time was working with something like 2-micron fabrication technology, I was able to diagnose a power-drain by eye-droppering a liquid-crystal solution onto a chip to find the hot spot on the chip. However, even at 2 microns, the image was pretty blurry. 2 microns is about 4 times the smallest wavelength for visible light, so it’s possible, but difficult, to image the chip.
    Nowadays though, when the features approaching 1/100 the shortest wavelength of visible light, you pretty much have to use electron microscopes, which only show you the surface. So, to see the internal structure, you have to extremely precisely polish off layer by layer, re-imaging each layer. That’s definitely possible, yes, but very difficult.

    • @PurpleCh4lk
      @PurpleCh4lk Před 2 lety +11

      I understand some of these words.

    • @dorjanhajdari2670
      @dorjanhajdari2670 Před 2 lety +4

      Your sir are a smart cookie. But I'm sure you know that. Thanks for the information. For reasons I do not have the ability to explain. The fact that wavelengths have lengths and how they react to specific objects at different sizes escaped my knowledge. I can confidently say it will not escape it again, at least for another 15 years. So thanks

    • @mr88cet
      @mr88cet Před 2 lety +3

      @@dorjanhajdari2670, thanks. Well, experienced anyway…
      I had a guitar teacher a few eons ago who said, “not sure I’m ‘experienced,’ but I have had a lot of experiences!”

    • @SquirrelTheorist
      @SquirrelTheorist Před rokem +2

      @@mr88cet Clever teacher! I love how he defines what he seems to contradict only to prove it true through his definition.

    • @dawnfire82
      @dawnfire82 Před 4 měsíci +1

      X-ray it. Stitch the images. Make a circuit diagram and analyze. Voila. I did this as a project in an EE grad class.

  • @arslanahmedqureshi2964
    @arslanahmedqureshi2964 Před 2 lety +11

    I just discovered your channel today and already watched two hours of your videos I mean amount of the research and effort you put in each of your video is impressive... Really appreciate what you are doing..

  • @enethion
    @enethion Před 3 lety +1244

    How to recognize a passionate person? If you approach him with the smallest achievement in his field, he instantly goes "That's great! How does it feel?".

    • @suullus2668
      @suullus2668 Před 2 lety +41

      Samy is my hero.

    • @carchocolate93
      @carchocolate93 Před 2 lety +52

      Sounds like the whole Kerbal Space Program community

    • @canadianrocketman3475
      @canadianrocketman3475 Před 2 lety +6

      @@carchocolate93 ya

    • @JBBell
      @JBBell Před 2 lety +28

      Really ought to be a word for this wonderful opposite of gatekeeping.

    • @enethion
      @enethion Před 2 lety +6

      @@carchocolate93 yup

  • @atlas_19
    @atlas_19 Před 3 lety +1620

    "I'm in my car! Amazing."

  • @knuckle12356
    @knuckle12356 Před 2 lety +4

    I love that you blurred out your key bitting in the opening scene.

  • @AndyLevy1
    @AndyLevy1 Před 2 lety +46

    10:19 I think it would have been good to mention here how jamming works in this case. If you are sending out a jamming signal to the car on the broad spectrum, you are not jamming the airwaves so much as you are jamming the equipment. You are causing the car to process useless signals - meaning that the car has no processing power left at that time to process the real signal. You are essentially flooding the car with bad signals, keeping its computer occupied while you listen out for the good signal.

    • @putoutmyfirewithgasoline1877
      @putoutmyfirewithgasoline1877 Před 2 lety +7

      Sounds similar to a DDOS attack?

    • @fbevc
      @fbevc Před 2 lety +16

      Actually it has little to do with processing power. The signal you are jamming with is basically noise to the car, and if that noise is "louder" that the actual signal from the key, then all the car "hears" is that noise. It's like trying to have a conversation next to a jet taking off - your voice and the jet engine emit different frequencies, but since your ears listen to the whole frequency range, the jet completely overpowers, but a microphone with a frequency response tuned to the frequency of your voice could hear you.

  • @jonathanxdoe
    @jonathanxdoe Před 3 lety +458

    Remember: never park your car next to someone in a hoodie and with a laptop

    • @Alexander_l322
      @Alexander_l322 Před 3 lety +27

      Just run him over instead

    • @Dhruv1223
      @Dhruv1223 Před 3 lety +8

      Even if he reserves the spot for you on a busy day?

    • @cr10001
      @cr10001 Před 3 lety +14

      Specially not someone who looks like the villain in a horror movie like at 1:22 :)

    • @GrahamCantin
      @GrahamCantin Před 3 lety +7

      ... But the hacker with the hoodie and laptop is in the passenger seat, trying to gather WPA PMKIDs... Do I just not park?
      EDIT: Instructions unclear; vehicle is now in lake and hacker is very angry about his laptop getting soaked. Something about SSH keys being irreplaceable?

    • @A1rPun
      @A1rPun Před 3 lety +3

      Remember: don't judge a book by it's cover.

  • @caleblimb3275
    @caleblimb3275 Před 3 lety +614

    "What this demonstrates really well is that I have no idea what I'm doing." XD

  • @besiix
    @besiix Před 2 lety

    Your explanations are incredibly engaging and interesting! Thank you so much for inspiring my curiosity :)

  • @kylehughes1
    @kylehughes1 Před 6 měsíci +1

    Samy is the man. been following his work for years. related, LTC (timecode used to sync audio/video dual system or multiple cams in production) is essentially manchester encoded as well. i have had to actually manually decode it by looking at the bits before lol. silly thing to have to do but it works in a pinch. so if you are syncing your cam using timecode, you may have been using it all this time.

  • @MrJakson112
    @MrJakson112 Před 3 lety +1149

    that "hacker sitting in the dark in a hoodie" cliche was so well done. love it.

  • @bobafruti
    @bobafruti Před 3 lety +1411

    1:00 BMW is the Apple of cars,
    Their motto is “park different”

    • @joepbeusenberg
      @joepbeusenberg Před 3 lety +46

      You know Mini is actually a BMW automobile?

    • @moesiatestecles1975
      @moesiatestecles1975 Před 3 lety +28

      Ahh thanks. I thought he made a jab at BMW drivers for parking recklessly which doesn't ring completely untrue in my experience

    • @DirtyPoul
      @DirtyPoul Před 3 lety +25

      @@joepbeusenberg Well, yes and no. Yes, as in the company BMW, but no as in the BMW brand. Mini is not part of the BMW brand.

    • @stuartd9741
      @stuartd9741 Před 3 lety +6

      @@DirtyPoul but you will find many components of a mini have bmw on them? Infact the same parts that fit on some of the BMW range.

    • @DirtyPoul
      @DirtyPoul Před 3 lety +9

      @@stuartd9741 Yes, of course. Some of the cars share the same platform, so that's to be expected. But that doesn't mean that Mini is part of the BMW brand. It's a separate brand owned by the company BMW. That's what I meant.

  • @eekee6034
    @eekee6034 Před 2 lety +2

    Hehehe! I love the hacker face in the dark. :D The green lighting for the call was pretty cool too.
    Interesting how far back you have to go for all this. Keys were already code-hopping before the end of the 90s, I think, and your Mini had rolljam projection in 07. I put an aftermarket remote on my Peugot 309 around 03, but I didn't care if it was a good one because it was an 80s 5-door hatch & not even the latest model. Bit of a street sleeper, that one; remarkably fun to drive.

  • @claremckechnie5623
    @claremckechnie5623 Před rokem +1

    This video is as entertaining as it is informative! enjoyed watching and learnt some seriously interesting tech stuff, thankyou!

  • @kezzyhko
    @kezzyhko Před 3 lety +267

    To anyone wondering and for the sake of saving history,
    This video was reuploaded, because on the first upload it did not have sound in the moments of talking with Samy

  • @JonathanBates
    @JonathanBates Před 3 lety +346

    :D That double spot taking BMW made me laugh!

    • @SangheiliSpecOp
      @SangheiliSpecOp Před 3 lety +11

      I clearly saw that it was a bmw and parked like that, but the joke didn't register in my head for some reason lmao

    • @Leo-zt7fo
      @Leo-zt7fo Před 3 lety +4

      Ironically, Mini is owned by BMW and is usually driven by women.

    • @sambishara9300
      @sambishara9300 Před 3 lety +18

      @@SangheiliSpecOp it is like when you see something so many times your brain ignores it because it is the norm

    • @SentientTent
      @SentientTent Před 3 lety +5

      @@Leo-zt7fo do you have any sources on those car ownership demographics?

    • @anderpanders6210
      @anderpanders6210 Před 3 lety

      @@SentientTent the picture on 1:00 has a tiny BMW logo on the badly parked car.

  • @JSTheAnonymousOne
    @JSTheAnonymousOne Před rokem +5

    Something you need to be careful of: replay attacks on cars can cause at least one remote to go out of sync. You might be able to recover it by pressing a button on the second remote, but it'll require resynchronizing it yourself or taking it to someone who can if you're unable to

  • @prodbydramatic
    @prodbydramatic Před 2 lety

    Thanks for sharing and Samy is a legend no doubt.

  • @johnelwer3633
    @johnelwer3633 Před 3 lety +554

    "Authorities report nationwide wave of smashed car windows. Suspects say 'Steve told me it was easier'".

    • @eliotmansfield
      @eliotmansfield Před 3 lety +11

      Or just collect the keys from the fishbowl party

  • @DigitalicaEG
    @DigitalicaEG Před 3 lety +1247

    Thank you, stole my first car today :)

  • @waktokong9288
    @waktokong9288 Před 2 lety +1

    Thankyou. This is good stuff.. covered many things in just 20min.

  • @homomorphic
    @homomorphic Před rokem +1

    Didn't mention a relay attack which works with modern fobs with passive unlock (where you can walk to the car and just open the door so long as you have the fob).
    Two thieves park near a restaurant and observes patrons entering. When they observe a car they want one of them follows the target into the restaurant and walks near them with a transceiver. His partner walks to the car (from which they observed the targets exit from) with the paired transceiver which then relays the passive code from the fob via his partners relay transceiver and the perp opens the door and drives off.

  • @kubik7203
    @kubik7203 Před 3 lety +527

    Steve Mould : i hacked into my own car
    Robber : i hacked into Steve Moulds car

    • @FredNagel
      @FredNagel Před 3 lety +44

      Mark Rober: I hacked into Elon Musk's car (to save the world)

    • @matthewkambic4939
      @matthewkambic4939 Před 3 lety +7

      It would be a burglar as a robbery would only take place if you were in the car 😁

    • @dawsoncannon4958
      @dawsoncannon4958 Před 3 lety +5

      @@matthewkambic4939 Burglary is specific to thievery in buildings. And either the way, the comment states nothing concerning thievery. So it would only be a hacker. But if the hacker stole the car, he'd be a car thief and he'd be commiting grand theft auto

    • @marksworkshop8724
      @marksworkshop8724 Před 3 lety +1

      Dude, way to be a prick.

    • @dawsoncannon4958
      @dawsoncannon4958 Před 3 lety +3

      @@marksworkshop8724No one's being a prick😂 I swg, people wanna make drama out of anything and everything. @Matthew Kambic, did you feel like I was tryna be a prick towards you?

  • @kahazaba
    @kahazaba Před 3 lety +333

    Instructions unclear: I have opened my microwave with a skoda car key.

    • @htcmlcrip
      @htcmlcrip Před 3 lety +5

      I managed to open my microwave e by downloading app to unlock microwaves.
      Just run the app and boom! Now you can open microwave doors without any key :) bluetooth may be needed tho

    • @N.I.R.A.T.I.A.S.
      @N.I.R.A.T.I.A.S. Před 3 lety +12

      I'd rather drive a microwave than a Skoda.

    • @gameit9970
      @gameit9970 Před 3 lety +6

      @@N.I.R.A.T.I.A.S. i will microwave a drive than a skoda

    • @MubinIcyer
      @MubinIcyer Před 3 lety +9

      I unlocked my car with microwave. No need to use keys!

    • @pratikvyas9626
      @pratikvyas9626 Před 3 lety +1

      😂 happy frozen fooding!!
      OMFG THS IS AN EPIC COMMENT THREAD!!

  • @InimicalDivinity
    @InimicalDivinity Před rokem +2

    1:18 I liked for this scene alone. YOU LOOK SO SINISTER. That's textbook villain material right there.

  • @pieterpauwels548
    @pieterpauwels548 Před 2 lety

    a syncronised clock was actually one of the first solitions I thought of! was very satisfying when it was also presented in the video.

  • @andrewholaway4113
    @andrewholaway4113 Před 3 lety +101

    I have worked for two different US companies that develop software-defined radios for commercial and government customers. Your opening explanation of rolling codes was fantastic (far outstripping the initial explanation I received when working on our rolling codes project, despite being like 2 minutes long compared to an hour-long briefing at work). Thank you for your dedication to science communication and bringing these awesome aspects of science to the fore!

    • @htcmlcrip
      @htcmlcrip Před 3 lety

      Therea missed part in rolling key explanation. Someone cover that plz lol

    • @pahvalrehljkov
      @pahvalrehljkov Před 3 lety

      dalai lama once said:
      if you need an hour to explain something, you know jack sh**...

    • @since1876
      @since1876 Před 2 lety +2

      @@pahvalrehljkov in things like business related videos, they artificially inflate the information to fill a certain amount of time. Because the person creating the presentation isn't gonna get shit for a two minute presentation compared to one that looks like he put more effort into it. Even if it's better for everyone if it's short.

  • @butterflygroundhog
    @butterflygroundhog Před 3 lety +327

    Steve be like "click out of mouse, W is binding.."

  • @tutacat
    @tutacat Před 11 měsíci +1

    You could exchange with the car to get the current RTC time, and reduce cost.
    It would also prevent changing the time on the keyfob into the future.

  • @Napert
    @Napert Před 2 lety +1

    i like how you tried to hide the key in the close-up but completly ignored it in the next clip where it's clear enough to be visible

  • @fadiyaldo7167
    @fadiyaldo7167 Před 3 lety +46

    1:00 Love the very realistic view of the parking lot🤣🤣

  • @SthamerAMVs
    @SthamerAMVs Před 3 lety +52

    That face after he goes “I wasn’t expecting it to work first time”😂 I felt that😂

  • @stoojinator
    @stoojinator Před 3 lety +2

    0:54 absolutely lost it at that graphic! Well played!

  • @ksavierkrajewski716
    @ksavierkrajewski716 Před 2 lety

    thanks for the video, was really helpful!!

  • @mediaaccount8390
    @mediaaccount8390 Před 3 lety +75

    THANK YOU for showing all the attempts that didn't work. It's sooo important to show that success requires work.

  • @petermarsh4578
    @petermarsh4578 Před 3 lety +83

    I love that this covered your whole thought process from the ground up, rather than just stating information. Top notch stuff!

  • @matthieu4337
    @matthieu4337 Před měsícem

    When i saw that car park situation i had to pause for a few minutes for the giggles to go away. 😆
    Thank you very much, i needed that.

  • @martagdok3695
    @martagdok3695 Před 4 měsíci

    Alright, I never ever bother to leave a comment but THIS video was so fun, informative, engaging and most of all so damn easy to follow for a beginner like me, hats down! I'm just starting my journey of learning how to program and code, researching fields that I'd like to focus on in the future, you've inspired me to pursue cybersecurity engineering! Big thanks!

  • @ATGG
    @ATGG Před 3 lety +91

    5:57 That’s soooo Mr. Bean moment!!!! 😂😆🤣

  • @mformandar
    @mformandar Před 3 lety +34

    That is most accurate depiction of a car park I've ever seen @1:00

    • @DavidGossettMusic
      @DavidGossettMusic Před 3 lety +1

      Steve does realize that Mini is made by BMW right? 😂

    • @mformandar
      @mformandar Před 3 lety

      Doesn't matter though, does it?

  • @Shahroz9658
    @Shahroz9658 Před 3 lety +2

    One of the best CZcams channels I've subscribed to.

  • @Clownmeati8
    @Clownmeati8 Před 2 lety

    Great video interesting content and presentation and also nice editing on the ahh ffff.. moment when the aerial fell off the table!

  • @JohnDlugosz
    @JohnDlugosz Před 3 lety +65

    Social engineering:
    Use your SDR to be receiving. Make an app or script or whatever, so that every time a signal is received it plays an interesting sound clip. Each one is different, and after introducing it everyone will try theirs to see what noise it makes.
    For example, having a party at home, say "watch this" and get out my key fob, show them when I press the button, an old-fashond "auuuuuga" horn sounds from the home theater sound system in surround sound. Much more dramatic than a laptop sound.
    "Now try yours!"

    • @ianr2002
      @ianr2002 Před 3 lety +7

      Well shit. That's a very good idea that'd definitely get a lot of people to fall into the trap

    • @donthurtmyfeelingsplz
      @donthurtmyfeelingsplz Před 3 lety +11

      I don't know about you but if I'm inviting people to my house for a party I'm not trying to steal from them haha. What kind of friends do you keep?

    • @simonseis744
      @simonseis744 Před 3 lety +6

      That's not really social engineering, that's just tricking your friends, also why you stealing from your friends?

    • @KatorNia
      @KatorNia Před 3 lety +9

      @@simonseis744
      _"That's not really social engineering, that's just tricking..."_
      That's exactly what Social Engineering is:
      "The use of deception to manipulate individuals into divulging confidential or personal information."

    • @seraphina985
      @seraphina985 Před 3 lety

      @@simonseis744 They don't necessarily need to particularly be friends though, this is the sort of attack someone could pull off by investing a few weeks infiltrating say a company so they can produce their party trick at the office Christmas party. Especially easy to pull off given how many companies hire temporary staff during the Christmas period which would give a would-be gang of car thieves a chance to infiltrate the employee social group.

  • @Alba_Longa
    @Alba_Longa Před 3 lety +48

    0:59 That a-hole BMW is a nice touch lol

  • @_SABARIVASANS
    @_SABARIVASANS Před 2 lety

    The lighting is awesome ❤️

  • @gabrielpetcu5502
    @gabrielpetcu5502 Před rokem

    0:55...nice touch, Sir!! Nice touch, indeed!!!

  • @javigarcia-ripoll6578
    @javigarcia-ripoll6578 Před 3 lety +20

    I love how passionate you are explaining the process and what you discovered. Nice video!

  • @jellyfishjelly1941
    @jellyfishjelly1941 Před 3 lety +81

    "but most of all, Samy is my hero"

    • @robspiess
      @robspiess Před 3 lety +2

      Lol! I didn't realize it was *that* Samy! I still have that on my Facebook profile as an homage to that infamous Myspace hack.
      For those who don't know, check out the Wikipedia page on Samy Kamkar or "Samy (computer worm)".

    • @inigocasanovadiaz5927
      @inigocasanovadiaz5927 Před 3 lety

      Samy is my hero

  • @richardwilson9476
    @richardwilson9476 Před 2 lety

    Really, interesting, Steve. Great video.

  • @edmisterman
    @edmisterman Před 2 lety

    “It’s interesting to see how far you could go for a really high value target”
    This man is admitting something here

  • @davebond4451
    @davebond4451 Před 3 lety +106

    Wait. I've seen this before..

    • @lostkorok5375
      @lostkorok5375 Před 3 lety +7

      Haha me too, missed somes sounds

    • @SteveMould
      @SteveMould  Před 3 lety +120

      But this is the first time I'm uploading it. Don't know what you're taking about!

    • @timgooding2448
      @timgooding2448 Před 3 lety +3

      @@SteveMould Second time worked a charm. First time I couldn't hear any of your chat or leave a comment? Posted before I saw this.

    • @SteveMould
      @SteveMould  Před 3 lety +54

      @Thu Nell Ⓥ I was trying to be funny. Failed at that too!

    • @hazgebu
      @hazgebu Před 3 lety +9

      @Thu Nell Ⓥ he was joking. Check his community tab for more information :)

  • @MINERAL-115
    @MINERAL-115 Před 3 lety +21

    That video was absolutely fascinating. I'd never really thought about how these keyfob systems actually work; somewhat ironically, as I'm a fairly decent electronics repair tech and have fixed plenty of car keyfobs in the past!

  • @rljpdx
    @rljpdx Před rokem

    you keeping in the fails is GENIUS!

  • @media1critter
    @media1critter Před 3 lety

    your channel is amazing man :)

  • @matthewmontgomery3693
    @matthewmontgomery3693 Před 3 lety +17

    Halfway through I'm waiting for one of the other cars in the background to go *chirp chirp*.

  • @thetafritz9868
    @thetafritz9868 Před 3 lety +8

    1:00 I love how you made the BMW occupy 2 spaces XD

  • @user-xy9kh2sx8o
    @user-xy9kh2sx8o Před 7 měsíci +1

    hhhh he is helping robbers 🤣🤣 every time he said "it's better than smashing the window"

  • @tomjones366
    @tomjones366 Před 2 lety

    Awesome channel just subscribed let the binge watching begin 😂👍✌️😎

  • @Jesse__H
    @Jesse__H Před 3 lety +10

    This was super interesting once again, Steve. I really value the _variety_ on your channel.
    I'm like you, I find EVERYTHING (potentially) interesting.

  • @BMWclubb
    @BMWclubb Před 3 lety +34

    Can we just appreciate that this man is still rocking is Pebble in 2020. I finally dont feel alone

  • @daviddavidson2357
    @daviddavidson2357 Před 2 lety

    I like how you blurred the key out in the closeup but you can still easily see the cuts when you hold it up.

  • @ehvway
    @ehvway Před 3 měsíci +1

    The title of this video was NOT CLICKBAIT: it really is EPIC!

  • @vishal_pho3nix
    @vishal_pho3nix Před 3 lety +8

    Awesome demonstration of working and security features of car keys and great way to point out the loopholes in simple terms.
    Great work.
    First time watching this channel. Loved ur work.
    👍

  • @egoworks5611
    @egoworks5611 Před 3 lety +33

    level of expertise: "actually that's manchester encoding"
    Love your content bruh!

  • @riendessus5793
    @riendessus5793 Před rokem

    It's ok to be completely lost, i think this is the real hacker's journey!
    Not knowing anything at first and slowly building up knowledge!
    Keep up the good work!! :)

  • @cmdrpausanias2332
    @cmdrpausanias2332 Před 6 měsíci +1

    One subtle thing I noticed - the BMW taking up two spaces and parked squiffy, nice touch, I'm not a BMW fan either!

  • @TheHive95
    @TheHive95 Před 3 lety +17

    The preamble isn't nessecarily saying 'im a key', it's actually pretty standard. Since Manchester encoding guarantees transitions, this preamble is used to synchronise the receiving clock exactly to the right edges so that the important payload doesn't get corrupted. (Phase locked loop circuit)

  • @RandornCanis
    @RandornCanis Před 3 lety +159

    0:49 Serious warning. It's unimaginably simple to decode a keys' physical bitting from picture. The entire internet can now unlock your car.

    • @revenevan11
      @revenevan11 Před 3 lety +13

      Yep, might not have the digital code but showing your key to the camera is basically the same as letting them take a copy of it to reproduce.

    • @SuperFruitbat99
      @SuperFruitbat99 Před 3 lety +33

      he even hid the key in the first time he showed it

    • @jetison333
      @jetison333 Před 3 lety +22

      I mean isn't he already showing the whole internet how to unlock his car? Lol

    • @niccy266
      @niccy266 Před 3 lety

      Whoopsie

    • @ahuman4433
      @ahuman4433 Před 3 lety +37

      Lockpicking lawer comes in

  • @aserta
    @aserta Před 7 měsíci

    I disabled the car key remote, it's exceedingly easy to break into even the most expensive cars. You can see them boast and do it online. The smartest thing one can do, is not play. In a digital world, analog is king. Like stick for automatic drivers and so on. Obviously, there's super easy ways to break analog locks (like Lishi) with relative ease, but that's for common car locks, which a smart owner would've replaced if they really value their car staying put.

  • @haydenlandry3837
    @haydenlandry3837 Před 2 lety

    Military radio systems use a similar technique to prevent jamming, called frequency hopping. It's like what Samy was saying; you have the two radios with synchronized clocks, and an encryption key determines the pattern of frequencies. The radios "hop" pseudo-randomly but remain synchronous, preventing jamming or interception.

  • @sdspivey
    @sdspivey Před 3 lety +155

    "The car door is locked, there's no way to get in." It is a convertible, so very easy to get in, no expensive tech needed, just a knife.

  • @danriddick914
    @danriddick914 Před 3 lety +19

    The BMW parked over 2 spots, lol. Great stuff.

  • @shaunkeys7887
    @shaunkeys7887 Před 3 lety +2

    Tim Harford also hosts my favorite podcast: Cautionary Tales published by Pushkin Industries. Totally unsolicited recommendation; it's really good

  • @madkirk7431
    @madkirk7431 Před 2 lety

    I did too just the other day! It's amazing what spare keys can do!

  • @mekelius
    @mekelius Před 3 lety +28

    8:20 Imagine going to a key party and Steve being there clicking away with his laptop :D

    • @dfess
      @dfess Před 2 lety +2

      Steve out here telling swingers how to steal cars

  • @quinnbattaglia5189
    @quinnbattaglia5189 Před 3 lety +27

    I can't believe CZcams actually sent me a notification as soon as the video went up.

    • @RoraighPrice
      @RoraighPrice Před 3 lety

      the youtube algorithm sent it to you so quickly because it knew youd instantly click on it.

  • @GothGuy885
    @GothGuy885 Před 8 měsíci

    the way the key code works, sounds almost like an Enigma machine
    every new code sent has a different decryption key.

  • @jjensen4096
    @jjensen4096 Před 2 lety +4

    0:56 love what you did with the BMW parked there 😜

  • @ReallifeBambiDeerattheFarm1

    0:54 Busted out laughing! So true!

  • @jeremiasrobinson
    @jeremiasrobinson Před 3 lety +100

    I'm never going to a swingers' party again!

    • @ronwesilen4536
      @ronwesilen4536 Před 3 lety +4

      Do you leave your keys in a bowl in swinger parties?

    • @jeremiasrobinson
      @jeremiasrobinson Před 3 lety +4

      What kind of parties do you leave your keys in a bowl at?

    • @davidgustavsson4000
      @davidgustavsson4000 Před 3 lety +12

      @@ronwesilen4536 yes. That's how you decide who swaps with whom, you pick a key from the bowl, and hope it's not your spouse's.
      I hear.

    • @uplink-on-yt
      @uplink-on-yt Před 3 lety +1

      Uber. You're welcome.

    • @ronwesilen4536
      @ronwesilen4536 Před 3 lety

      @@davidgustavsson4000 honestly interested in this. I hope it is true. Also hope woman are the ones grabbing the keys so they can fill their keyhole

  • @boastyy
    @boastyy Před 2 lety

    Thanks for the very interesting video. One question, the part when you talked about when the hacker jams the signal and having the second box monitor the frequency to be able to get into the car. I was thinking, if the signal is jammed before the driver gets out of their car . When the driver presses the lock button on the fob the car is not going to get that signal and remain unlocked. That is, for a period of time before it auto locks. If the driver did not notice that the car did not lock a potential thief could just walk up to the car and open the door and take whatever was in there.

  • @modnar6865
    @modnar6865 Před 3 lety

    The fact that you blurred out your key was pretty brilliant

  • @Shakis87
    @Shakis87 Před 3 lety +10

    The BMW taking up 2 spaces absolutely ended me hahaha

  • @RalphDratman
    @RalphDratman Před 3 lety +21

    Watching this is like actually doing a project that involves manipulating remote-control keys or key fobs. You have to get deeper and deeper into the specifics of the device you are trying to emulate. It can be sometimes thrilling and sometimes tedious.

  • @chicchi1682
    @chicchi1682 Před rokem

    Great video. Enjoyed it

  • @siphyshu
    @siphyshu Před rokem

    This is so fascinating!

  • @AVCadar
    @AVCadar Před 3 lety +6

    That BMW parking reference. Spot on!

  • @NithinJune
    @NithinJune Před 3 lety +16

    Whenever you showed your key on camera I got anxious lmao

  • @acompletelynormalhuman6392

    Like how he centers of bitting since I have heard of people making keys from images and even form memory

  • @YamenNazer
    @YamenNazer Před 2 lety

    That's absolutely mind blowing video😍😍😍😍

  • @nickchow9291
    @nickchow9291 Před 3 lety +14

    "I ain't never seen three zeros in a row. It’s always one of them gotta be a one." ~Manchester encoding

  • @nl_morrison
    @nl_morrison Před 3 lety +52

    This is great Steve! You should try to get into parliament next and fix the country. Much love

    • @SteveMould
      @SteveMould  Před 3 lety +61

      Ah yes, the "run for office" hack.

    • @nl_morrison
      @nl_morrison Před 3 lety +5

      @@SteveMould Senator Mould has a nice ring to it!

    • @EcceJack
      @EcceJack Před 3 lety +6

      @@nl_morrison Senator? Wrong country, surely! :D would just be MP (often referred to as "The Right Honourable" gentleman/colleague/representative of [constituency] in the actual parliamentary debates)

    • @nl_morrison
      @nl_morrison Před 3 lety +4

      @@EcceJack Right! Well while he is at it he can fix the USA too, I'm sure it's just a bit shifting issue.

    • @simonjohnston3100
      @simonjohnston3100 Před 3 lety +3

      None of them have any idea what they're doing either

  • @niklas5336
    @niklas5336 Před 10 měsíci

    Regarding other ways to secure keyfobs, you can have the key merely be an unencrypted request for the car to initiate a challenge-reponse. The car sends the key a challenge, the key encrypts/hashes/signs this challenge with the secret key, and the car checks the response. With an only slightly higher level of sophistication, you can measure the timing of the response and compare it against time-of-flight of radio signals. If it's too far (e.g. further than 50m, or about one cycle on a 5 MHz processor), reject the response as invalid.
    That way you also protect against a signal extension attack.