Latest News

These Legit-Looking iPhone Lightning Cables Will Hijack Your Computer
Tuesday, August 13, 2019 IST
These Legit-Looking iPhone Lightning Cables Will Hijack Your Computer

It looks like an Apple lightning cable. It works like an Apple lightning cable. But it will give an attacker a way to remotely tap into your computer.

 
 

I plugged the Apple lightning cable into my iPod and connected it to my Mac, just as I normally would. My iPod started charging, iTunes detected the device, and my iPod produced the pop-up asking if I wanted to trust this computer. All expected behaviour.
 
But this cable was hiding a secret. A short while later, a hacker remotely opened a terminal on my Mac's screen, letting them run commands on my computer as they saw fit. This is because this wasn't a regular cable. Instead, it had been modified to include an implant; extra components placed inside the cable letting the hacker remotely connect to the computer.
 
"It looks like a legitimate cable and works just like one. Not even your computer will notice a difference. Until I, as an attacker, wirelessly take control of the cable," the security researcher known as MG who made these cables told Motherboard after he showed me how it works at the annual Def Con hacking conference.
 
One idea is to take this malicious tool, dubbed O.MG Cable, and swap it for a target's legitimate one. MG suggested you may even give the malicious version as a gift to the target—the cables even come with some of the correct little pieces of packaging holding them together.
 
MG typed in the IP address of the fake cable on his own phone's browser, and was presented with a list of options, such as opening a terminal on my Mac. From here, a hacker can run all sorts of tools on the victim's computer.
 
"It’s like being able to sit at the keyboard and mouse of the victim but without actually being there," MG said.
 
The cable comes with various payloads, or scripts and commands that an attacker can run on the victim's machine. A hacker can also remotely "kill" the USB implant, hopefully hiding some evidence of its use or existence.
 
MG made the cables by hand, painstakingly modifying real Apple cables to include the implant.
 
"In the end, I was able to create 100 percent of the implant in my kitchen and then integrate it into a cable. And these prototypes at Def con were mostly done the same way," he said. MG did point to other researchers who worked on the implant and graphical user interface. He is selling the cables for $200 each.
 
In the test with Motherboard, MG connected his phone to a wifi hotspot emanating out of the malicious cable in order to start messing with the target Mac itself.
 
"I’m currently seeing up to 300 feet with a smartphone when connecting directly," he said, when asked how close an attacker needs to be to take advantage of the cable once a victim has plugged it into their machine. A hacker could use a stronger antenna to reach further if necessary, "But the cable can be configured to act as a client to a nearby wireless network. And if that wireless network has an internet connection, the distance basically becomes unlimited." he added.
 
Now MG wants to get the cables produced as a legitimate security tool; he said the company Hak5 is onboard with making that happen. These cables would be made from scratch rather than modified Apple ones, MG said.
 
MG added, "Apple cables are simply the most difficult to do this to, so if I can successfully implant one of these, then I can usually do it to other cables."

 
 
 
 
 

Related Topics

 
 
 

Trending News & Articles

 Article
Tata Harrier’s 7-seater Version H7X Will Be Quite Different – Report

Tata Harrier’s three-row seat version in works, details out  

Recently posted . 2K views . 0 min read
 

 Article
How to make you car as silent as a Rolls Royce inside

Rolls Royce cars are extremely luxurious. While there are many expensive pieces of equipment in Rolls Royce cars, their most relaxing feature is the silence that ...

Recently posted . 2K views . 2 min read
 

 Article
India's Top 5 Mobile Charger manufacturer Brand 2019

The following list of India's Top 5 Mobile Charger manufacture Brand 2019  

Recently posted . 2K views . 0 min read
 

 Article
Mahindra XUV300 vs Maruti Brezza, Ford EcoSport, Tata Nexon – Price

XUV300 is the latest entrant in the compact SUV segment.

Recently posted . 2K views . 0 min read
 

 
 

More in Electronics & Gadgets

 Article
2018 Isuzu MU-X facelift SUV launch price Rs 26.26 lakhs and Rs 28.22 lakhs

Jonty Rhodes was present with his family at the launch event in Hyderabad today. Rhodes is the brand ambassador of Isuzu India.  

Recently posted. 810 views . 1 min read
 

 Article
Beware of ‘Agent Smith’, a new malware that has infected 15 million devices in India

Disguised as a Google-related app, ‘Agent Smith’ malware exploits known Android vulnerabilities and automatically replaces installed apps with malicious...

Recently posted. 911 views . 1 min read
 

 Article
WhatsApp is on a spree to ban users, here's how you can ensure you are not next

WhatsApp appears to be getting stricter on how its platform is used. According to reports, the instant messaging app is permanently banning users who are part of ...

Recently posted. 743 views . 2 min read
 

 Reviews
Motorcycle Review: 2018 Suzuki V-Strom 1000



Recently posted . 960 views . 45 min read
 

 Article
Intel Launches New U-Series And Y-Series 8th Generation Core Processors

The unveiled 8th Gen Intel Core U-Series processors include i7-8565U, i5-8265U and i3-8145U while the 8th Gen Intel Core Y-Series processors include i7-8500, i5-8...

Recently posted. 626 views . 1 min read
 

 Article
Mobile antivirus software sold most in 2016: Amazon

At a time when cyber crimes are affecting millions of devices globally, e-tailer Amazon.in said that cellular software witnessed a growth of over a hundred in kee...

Recently posted. 1K views . 17 min read
 

 
 
 

   Prashnavali

  Thought of the Day

If you want something you never had, you have to do something you’ve never done.
Thomas Jefferson

Be the first one to comment on this story

Close
Post Comment
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST


ads
Back To Top