Decrypting SSL to Chinese Cloud Servers - Hacking the VStarcam CB73 Security Camera
Matt Brown Matt Brown
64.3K subscribers
259,049 views
8.7K

 Published On Jul 31, 2024

In this video, we discover cleartext communications and SSL communications that do not verify the server certificate coming from the VStarcam CB73 security camera.

certmitm repo:
https://github.com/aapooksman/certmitm

certmitm DEF CON talk:
   • DEF CON 31 - certmitm  Automatic Expl...  

mitmrouter repo:
https://github.com/nmatt0/mitmrouter

Need IoT pentesting or reverse engineering services?
Please consider Brown Fine Security:
https://brownfinesecurity.com/

IoT Hackers Hangout Community Discord Invite:
  / discord  

🛠️ Stuff I Use 🛠️

🪛 Tools:
Raspberry PI Pico: https://amzn.to/3XVMS3K
XGecu Universal Programmer: https://amzn.to/4dIhNWy
Multimeter: https://amzn.to/4b9cUUG
Power Supply: https://amzn.to/3QBNSpb
Oscilloscope: https://amzn.to/3UzoAZM
Logic Analyzer: https://amzn.to/4a9IfFu
USB UART Adapter: https://amzn.to/4dSbmjB
iFixit Toolkit: https://amzn.to/44tTjMB

🫠 Soldering & Hot Air Rework Tools:
Soldering Station: https://amzn.to/4dygJEv
Microsoldering Pencil: https://amzn.to/4dxPHwY
Microsoldering Tips: https://amzn.to/3QyKhrT
Rework Station: https://amzn.to/3JOPV5x
Air Extraction: https://amzn.to/3QB28yx

🔬 Microscope Setup:
Microscope: https://amzn.to/4abMMao
Microscope 0.7X Lens: https://amzn.to/3wrV1S8
Microscope LED Ring Light: https://amzn.to/4btqiTm
Microscope Camera: https://amzn.to/3QXSXsb

About Me:
My name is Matt Brown and I'm an Hardware Security Researcher and Bug Bounty Hunter. This channel is a place where I share my knowledge and experience finding vulnerabilities in IoT systems.

- Soli Deo Gloria

💻 Social:
website: https://brownfinesecurity.com/
twitter:   / nmatt0  
linkedin:   / mattbrwn  
github: https://github.com/nmatt0/

#hacking #iot #cybersecurity

show more

Share/Embed