10.09.2016 Views

Hacking_and_Penetration_Testing_with_Low_Power_Devices

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

230 CHAPTER 9 Adding air support<br />

FIGURE 9.9<br />

The AirDeck ready to fly.<br />

In the ideal case the QuadShot <strong>with</strong> router can be l<strong>and</strong>ed nearby the target <strong>and</strong> used<br />

for an extended period of time. A flat roof makes the perfect l<strong>and</strong>ing spot. In the event<br />

that you crash on the roof, you can likely get away <strong>with</strong> asking the company to retrieve<br />

your toy as it does not look suspicious. Of course, it is a good idea to practice flying the<br />

QuadShot <strong>and</strong> l<strong>and</strong>ing it on roofs before taking it along on a penetration test.<br />

If there is no place to safely l<strong>and</strong> the QuadShot it could orbit the target. This is not a<br />

verypracticalsolution,however,giventhat theflighttimeoftheQuadShotisundertwenty<br />

minutes. In addition, orbiting a target <strong>with</strong> a 4-motor RC aircraft is not terribly subtle.<br />

USING THE AIRDECK<br />

Sometimes drones are not easily planted in <strong>and</strong> around a target. The organization’s<br />

office might be inside a secure fence <strong>with</strong> guards at the gates. Even if you are able to<br />

get access to the outside of the building, it may be under constant surveillance or lack<br />

any practical hiding places for drones. In these cases a single AirDeck might be the<br />

only practical solution. As <strong>with</strong> the router-only option, l<strong>and</strong>ing the AirDeck on a flat<br />

roof is a good choice.<br />

Even if you are able to plant drones in <strong>and</strong> around your target, the AirDeck can<br />

still be a useful addition to a penetration test. Your drones might have only the low<br />

power Xbee modems <strong>and</strong> the AirDeck can operate as a router (in addition to being<br />

used as a hacking drone) in order to extend the range of the test. If you can park a car<br />

<strong>with</strong> a drone near the target, the AirDeck can be used as a secondary router <strong>and</strong> will<br />

also provide coverage when you move the car periodically to avoid suspicion.<br />

CONSERVING POWER<br />

The LEDs on the QuadShot can be turned off after a certain amount of inactivity<br />

in order to increase stealth <strong>and</strong> conserve power. In order to accomplish this<br />

the Toytronics branch of the Paparazzi software which the LIA runs must be<br />

downloaded from github.com. Details on how to accomplish this can be found at<br />

http://wiki.thequadshot.com/wiki/Software_User_Guide. The steps for doing this<br />

on Ubuntu 12.04 are briefly described here.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!