
Newstweek: The Short Demonstration
1 year ago
Newstweek: a device to manipulate news read by other people on wireless hotspots (cafes, libraries, airports):
This video demonstrates the technology behind this hack.
Three points:
1/ You will notice in the video, when we plug the device into the wall it takes a while to boot before the traffic is altered.
2/ No physical access to the router or laptop/smartphone/tablet device is needed.
3/ We issue the 'arp' commands as forensic proof that the network layout was modified. The spoofing uses 'remote' mode and thus we sniff all remote connections that pass through the gateway (direction router -> client).After the second arp table check there is a new device in the arp table of the client, the Newstweek module. This is the device through which all traffic between router and client is passed. Note also that immediately after spoofing, the 'arp -a' command can't retrieve the hostname(s) as it could before, so we cancel and use 'arp -an' instead, hence the '?' symbols instead of the hostnames. This is expected behaviour immediately after cache modification.
All the witnessed alteration is done by the Newstweek module directly. The laptop is not connected to any external device or network and no additional software or scripts are run.
newstweek.com
music credits:
artist - BinRay
track - Trench
CC by NC ND
Please note a far more detailed demonstration, intended to clear up any doubts as to the efficacy of this technique, has been posted here:
vimeo.com/18637790
Be sure also to check out out project video for an overview of this project
vimeo.com/21707290
This video demonstrates the technology behind this hack.
Three points:
1/ You will notice in the video, when we plug the device into the wall it takes a while to boot before the traffic is altered.
2/ No physical access to the router or laptop/smartphone/tablet device is needed.
3/ We issue the 'arp' commands as forensic proof that the network layout was modified. The spoofing uses 'remote' mode and thus we sniff all remote connections that pass through the gateway (direction router -> client).After the second arp table check there is a new device in the arp table of the client, the Newstweek module. This is the device through which all traffic between router and client is passed. Note also that immediately after spoofing, the 'arp -a' command can't retrieve the hostname(s) as it could before, so we cancel and use 'arp -an' instead, hence the '?' symbols instead of the hostnames. This is expected behaviour immediately after cache modification.
All the witnessed alteration is done by the Newstweek module directly. The laptop is not connected to any external device or network and no additional software or scripts are run.
newstweek.com
music credits:
artist - BinRay
track - Trench
CC by NC ND
Please note a far more detailed demonstration, intended to clear up any doubts as to the efficacy of this technique, has been posted here:
vimeo.com/18637790
Be sure also to check out out project video for an overview of this project
vimeo.com/21707290
-
Vimeo: About / Blog / Developers / Jobs /
Community Guidelines /
Help Center / Video School / Music Store / Site Map
/ Vimeo
or
-
Legal: TM + ©2012 Vimeo, LLC. All rights reserved. / Terms of Service / Privacy Statement / Copyright

Prev week
Thanks to several enthusiastic hackers looking at the video, we agree there is not enough technical information to satisfy curious minds. For this reason we are preparing a new video with thorough information and tests, that we think will prove the efficacy of this technique and device in practice.
vimeo.com/18637790