<<39C3 Power Cycles
  • <<39C3Power Cycles
  • Schedule Calendar
  • Schedule List
  • Speakers
  • Help
  • Legal
  • <<39C3Power Cycles
  • Schedule Calendar
  • Schedule List
  • Speakers
  • Help
  • Legal

Frédéric Hoguin

I'm a low-level software engineer working at CERN, and I've been researching and hacking embedded devices for 20 years.

I always try to get arbitrary code execution on devices I'm not supposed to run code on, and sometimes I manage :)

Avatar of Frédéric Hoguin

Events with this speaker

Day 3
17:15
60m
Set-top box Hacking: freeing the 'Freebox'

The French ISP 'Free' was the first to introduce a set-top box in France in 2002, named the Freebox. Four years later, the fifth version of the Freebox was released and distributed to customers. It comprises two devices: a router, and a PVR called the Freebox HD, both running Linux. The Freebox HD had innovative features at the time, such as live television control and HD capabilities. Such a device has a lot of potential for running homebrew, so I decided to hack it. I present how I got arbitrary code execution on the Freebox HD and then root privileges, using a chain of two 0-day exploits, one of which is in the Linux kernel. I then analyze the device, run homebrew software, and explain the structure of the ISP's private network that I uncovered while exploring the device.

SecurityGround