Close

Satellite CyberSecurity / POC Rouge Ground Station (Recon Only Unless Permission Given)

A project log for Cyberdeck for 2024 Challenge

A multi-use modular cyberdeck ranging across the EMS. Sonar, RF, Ham, Sat, Robotics, Drone Control Center, Coding w/ prototypeing GPIOs / BB

neohackerjdneohackerjd 01/15/2024 at 11:540 Comments

So my cyber deck can or will take the form of three different sizes it depends on how I end up actually choosing to make it more or less portable if I make it in the larger one it would have potentially room to carry all the antennas and stuff but that might just be tested for her backpack and maybe a smaller hand cyber day both more wise and more manageable but it would be nice to have the storage space and it is easy too pull those pillow in cases on this really rugged Wheels they have. I found the pelican case that was used and already wired for me with an ethernet connection how absolutely fortunate or how could you guessed.....  

So this is merely a proof of concept and they'll be no active but only passive reconnaissance unless I'm giving explicit permission is I'm both a lawyer and I researcher so I believe in stating your goals, securing your research to make sure you don't accidentally have premature disclosure, if you have partners that you sign in agreement with one another about that disclosure, and write out your responsible to disclosure technique and I'll use the group who recently just close tetra as a disclosure protocol being pretty close to a good template from a legal point of view.

Given the fact that it had infrastructure implications as well as these people being the users of it as well but so were railroads and gas valves and power stations etc and given how terrible tier 3 was and tier 2 not much better and then tier one had something odd in it reminiscent of Crypto AG. The researcher said that they weren't good enough with cryptography or mathematics to figure out what it was but they were certain it was not the way it should be....

They also suggested that they go open source and at first ERSI so that they weren't and then they did a 180 and took the advice that we all know security by obscurity is stupidity especially now and I highly educated and sophisticated community that exists quite widespread and generalized. 

I always like to put in this word of advice it's never worth any amount of money that anybody thinks in front of your face to sell your exploit or your intellectual work to a bad party even if they are company it doesn't make it legal and I know that seems common sense to most I had a friend in University who ended up going on to work for Microsoft who was a mathematics genius I didn't even know what discrete maths was like really quiet math s? He couldn't write the first paragraph of a ethics paper and I was a philosophy major and he was a computer science major or a math major and I was struggling struggling with relational databases despite the fact that I was able to think and abstract ways it took many years for my ADHD brain calm down enough to the point where I found math beautiful and I finally reached that point when I escort him graduate level epidemiology after the professor started the course with you remember from undergraduate algebra and calculus so I'll skip this part and I just sent him a seat and then I sprinted to the coffee shop and found Khans Academy.

But a single paragraph question that requires five pages of written out mathematical proofs when they all just fit and you get a 100% on it it's beautiful you see the beauty and how Mass are so objective and there is something quite beautiful in it and when you've really understood Maths then that word is the word that you would use. Thank you very much Dr A! It's funny she was a crossover and was head of the Ph.D. program in Biostatistics and Epidemiology but had a philosophy undergraduate. 

But this is a reconnaissance no active probing whatsoever device it could but I won't however it could be used for amateur radio and it could be used for reaching out and touching and Oscar Q100, if you're so licensed to do so, and maybe I'll ask Alan Johnson if I could do Port scanning and such on it with the permission and carefully? I think she would have to get the permission of the government Qatar I think you would need the permission from the sheik who's the minister of telecommunications I think in Qatar correct? 

And then there's a bug bounty program that I'll have to read the terms from SpaceX and perhaps one from Global star I need to have a look at them but there was one of them anyway recently had a bug bounty and they used that now very controversial book stores I didn't pay people and was being run by cryptocurrency folks that's the reason I say don't go to companies go to the user the national cyber security apparatus reported to them and to the company who makes it and that way I only have you covered yourself with the law but you've also perhaps even change yourself in Ally and to me to clear that you were first in time and they might even push for a much faster revision and or firmware etc update and a payout. I think that any requirement that you tell them before you tell an official government agency whose duty it is to deal with these matters would be contrary to public policy therefore void and the remainder of that agreement would remain valid. So Not only would you mark your time stamp of having found the exploit but you might also have a partner in receiving a either whatever you're after publishing, career advancement, or the actual money if that's what you're after ever go down the bad pass because once you do it they've got you and your own you think that you're not but you are and it's not at all unreasonable or it's not as rare as you might think that you get as one researcher who researches command and control service for watts and bot-nets as well as ransomware your risk of getting "VANNED" sure that money might show up in your bank account and then you just disappear and what are people going to think so he did something really bad.....

Do the right thing do it the right way and you'll get both the job and you'll get the respect and you'll be seen as honorable and trustworthy and a whole bunch of other things that are all positive for your future and I don't think anybody would disagree with me on this issue. I don't care how much it is they're offering again it'll never be enough to sell yourself which is what you would be doing. 

I am a lawyer so I will get off my soapbox now but I just wanted to help make that clear and on the flip side law enforcement please treat these people with respect and as I have commented to m i t t r e it would be interesting to do a retroactive study to look at the social demographics of the people who have reported the various CVS throughout time and how many of those people were independent cyber security researchers or if you will "ethical hackers" and I understand that there's a history behind this word, it's almost the historical badge of honor not a negative term whatsoever but modern media and modern social media have altered the common social understanding of what that means.  I had my own phone line and a Commodore 64 with four daisy chain big huge floppy drives and a BBS at 10 years old

Cases: 


3 different pelican case sizes and types chosen deciding about portability versus functionality and may go with the version that has a handle and some wheels. However I carry a long case would be ideal but I think I'd have to carry a backpack with me for antenna and an umbrella style fold out dish and then put together my automatic tracking antenna set which has:

Antenna: 

 A . Yagi 1. 100-300Mhz approx. 2. 400-600Mhz 3.  Wideband PCB directional 4. CAMOS Flat Panel GHz, attached to a high torque Auto tracking mounts with precision GPS sensor attached so that it knows its own place on the face of the planet and is using the data through Gperdict. 

B. Omni - 6. General Scanner type wideband 800+ MHz Omni-directional 4. 1700Mhz +/- QHF Helix.

C.  Umbrella Style portable manually aimed gigahertz dishes with Bias T and LNB. X, Ku, and S Band. 

SDR(s)

2 x Hack RF1, 1 Analog Devices Adalm Pluto (Favorite as it has armed course and fpga and the option to add additional transmit and receive antennas as well as an external clock on the board so I think that's version 2, 2 x RTL-SDRs v 3 & 4, Sony ICF -7600 D 153-29995kHz with a plug in and groundable variable length single wire full wavelength add-on antenna (6v) DC or Rechargeable AA batteries (the deck will have a variable battery size and chemistry recharger (12v DC). 

120 W total flexible Solar panels (need to buy), a small tripod mountable wind tribune (need to buy or make, have acquired a 3D printer and 40W Laser Cutter. 

I have access to my landlords E-Waste bin and have recovered 6 laptops and 2 i7 Dell mini towers and a Dell Micro computer which runs on 18v DC. 

I have completely rebuilt and added both memory and solid state hard drives and M2 solid state drives to those and I'm toying with the idea of using various inverters and converters fly backs power of the towers without the need for a conversion from AC to DC. I've been able to scavenge five or six different Enterprise grade switches power over the internet as well as to Apple desktops which have some amazing power supplies inside one is an Intel based and the other a new form factor but they have nice speakers and Power Systems as well as other additional components that I can scavenge off of the boards.

I think I'll use the one with power over the internet and then I've also acquired a Wi-Fi router which I'll install Open Router on and p.since is the same protection internal land and I can be radio silent and listen or I can connect to via 5G if I'm within any cell tower or a Wi-Fi hotspot provided by my countries backbone internet and telephone provider service with a long rang range Yagi or by buying some heavy duty balloons with some helium cartridges to carry an antenna for line of sight high up in the air. I guess I could always Jerry Rick one of my drones that I have a drone pilot's license here and with a very sin power cable I could tether it with the silent or less than what is he the royal shaped propellers.

For small amounts of data I do have the capability for LORAWAN. The cyber deck will have to separate breadboard breakouts and I picked one up at the second hand store which is absolutely incredible and has like six double a batteries on the bottom of a breadboard and built in speaker and a switch it's from another era. I also stumbled across an entire collection of old ICS and even lights from before the LED air which are little itty bitty incandescent bulbs.. I thought those were really kind of neat along with a variety of very interesting and different capacitors and even when I think are capacitors that are shaped like a diode and then those old potted epoxy plastic ones..

I have a collection of different T-beam based or Heltech Esp32 boards which are also pretty cool you can set those up as small ground stations.

If I get around to a building an electric bike pullable teardrop trailer that would be a nice covert place but in the meantime I also picked up a second hand tent and other camping supplies and being as tall as I am I have to get a large tent so plenty of space and also got two different kinds of gilly covers one for the snow and one for the color of the mountains where I live. But in all reality, all I have to do is put on a Blazer wrench vest and wear a cap and everyone will think I'm just doing research which is what I'm doing but where other people are discreet and at the same time quite noesy. I'm going to implement my own recommendations which I would think that any independent security researcher or ethical hacker should do is to document your goals implement internal security to prevent the premature leaks and have a third party witness it along with your disclosure plan should you discover anything through passive surveillance. 

Even though my equipment would be capable of active probing without permission or without direct authorization from a manufacturer or a the owner of any system or constellation as satellites are my primary interest it would be unethical for me to actively Pro but I can possibly surveil. But my summer deck will be on huge very quiet year across the entire Spectrum and if I had infrared cameras and a few other additional items it'll be a very interesting device especially if it's equipped with the pre-trained models which I intend to merge with the new Minstral 8 * 7 billion parameter and orca pre-emerged model offered by the The Bloke on Hugging Face. If I pick a place which is high up and with a nice view of the horizon while at the same time somewhat shielded from spurious radio interference from the ground that would be ideal especially if I could get a 5G data connection as I could access my server at home and take advantage of my locally run large language model which I'm going to merge with a convolutional neural network called SigTourch and Sig53, as well as I didn't have some official elements, voice elements, text to video video to text etc as well as an agent I can't go out on the internet but I want to isolate that agent for my actual model in some way. I want to scan with you instruction today returns and have it not directly dump it into a data sets. Also intends on loading everything there is on KICAD 7, FPGAs, Data Sheets, GNU Radio, and all of the repositories from GitHub related to satellites and the various programs that are being used which mainly has been RTOS and Pike OS, free academic and experimental cubesats in the low earth orbit.

 My Canon full frame 600 mm telescopic camera lens as well as less expensive but not bad higher grade pocket camera where I very carefully removed the infrared filter should be interesting when those images are processed through my locally hosted model even if it takes a little time it's transmit the data from location to my server and back. And would notice things in the sky that your eyes could never small changes in pixels here and there and if it's mounted to my automatic telescope amount rather than my telescope which it does it fits just perfectly the amounts on the bottom of the camera for a tripod and that's perfectly on the easy I'm not that I have which is what you're able to connect to a computer. Additionally I can hardwire my camera into my cyber deck or use the Wi-Fi connection but again if I wanted to remain radio silent I can remain radio silent. I could just sit there and enjoy some tea and coffee take some astrophotography and capture an enormous amount of data of all sorts and run it through my machine when I come home. 

Being far away from any large city at 3,000 m or more within a slight depression so that my horizons not too limited but I'm still shielded from direct line of sight spurious radio interference would be ideal. 

I'm pretty excited to get the laser cutter because I'm very terrible with a hand coping saw and at the moment my budget is a little bit limited I'm living off savings as I recover from severe complex? Stress disorder which I'm not at all ashamed cuz the toughest man I've ever known in my life who went through about 1/3 of what I did sadly is suffering himself he told me this last holiday.

I've been approved for experimental medication and I have high hopes but anyone willing to donate some better sdrs and or perhaps those collapsible fold up gigahertz dishes would be more than welcome and I would love to have an Orion invadia Jetson on board as well as any donations of any type of lithium chemistry battery would be more than appreciated as those are all extremely expensive and an fpga development board any type of device that is based around that type of architecture would be fantastic when used in combination with several thousand shooter course I do have a 1,000 series Nvadia GPU ans it has about the same number of Cuda cores as a Jetson Nano but it also means it'll increase my energy overhead my life because it's a pcie mini tower type of plugin it would be almost like taking a tower out with my 2080. I just acquired a new very nice five M2 SSD am05 architecture AMD Ryzen 9 16 cores 4.5Ghz Maschine with a 4080.16 GB of VRAM and 64GB of DDR5 5400 RAM and I'll set it to RAID 10 with 1Tb Samsung 980 Pros with a hot swap spare, and will set up my old NAS for dumpping data and data sets as well as a few custom instances of the llm specifically made for the legal profession, Medical researchers, doctors, and places where confidentiality is of a personal privacy and human rights level type of thing. That way I can get back for taking what someone has already helped make better well I'll make it better and give it back and keep it FOSS!!!l I want a pro bono award 1 year and I wonder if society's changed so much that it used to be that when you gave and gave and gave you would usually get back a hundred fold especially when you gave just a gift not for what you might get back that's called reciprocal altruism but just for altruism altruism without expecting return I wonder what will happen? 

I have a philosophy bachelor so excuse me for my digression.

So I think I'm going to have two full size LCD monitors that I will have taken out of their cases so like the 20 something inch and just strip down to the bare basics that fold out kind of stacked on top of each other within the case so that I have two wide screens in front of me and then on the deck they'll be a mechanical keyboard because just nothing better as well as a few flip over your apartments which will contain things like to break out red breadboards attached via a wire to the internal raspberry pies for prototyping and a full nice multimeter as well as an internal battery the most I can get in there while I'm not overdoing it and I'll probably have to have an external battery that's the reason going all out on the wind turbine and the rollout flexible solar cells because all of that equipment will create quite a nice power overhead. I want to overbuild the power availability so that I'm never without if I go all that way and take make that much effort to haul that equipment high up in the mountain set up camp then I want it all to function day and night. 

So I'm not sure and laser cut out some nice panels so I might make out of sexy so you can see some of the interior and I want to custom cut out the various parts into their various places and do a good job on isolating each place for any cross talk or RF exposure from one device to another so the power section will be completely Faraday caged off from the remainder and every especially the SDR and the components will be highly segmented and shielded. I'll have everything turned off until I want to turn it on so no Bluetooth or Wi-Fi or anything or even my 4 or 5G connection until I want to turn it on so that's what I actually have switches or the cards for children not in the slots. I'd like to put the two touch screen raspberry Pi screens on the deck perhaps that kind of pop up a little bit and they can provide information like airplanes and perhaps even alive the latest live images from the weather satellites. So I think I'm going to have to probably wire it up with the old invade your graphics card unless I can figure out a way to make it work with the very small micro deal I can find a PCI breakout somehow it does have an M2 slot and her Wi-Fi M2 and I'm not going to use the Wi-Fi for sure and it hasn't a set of solid state connection as well so I don't necessarily need the M2 for a solid state or the one for the Wi-Fi and Bluetooth because I'll be using ethernet between everything and in the case. 

Or it's going to be heavily shielded USB or very lossless 50 ohm coax and any other wires will be the heat treated stuff that I've pulled out of commercial Enterprise server form factor switches and equipment that have come from the e-waste. I think some of those power supply inverter security actually come in handy there high quality everything's potted capacitors are huge steroids are huge they're all shielded one actually has an actual huge heat dissipating aluminum shield inside of the box and then it's wrapped in another like weird kind of material but that's a poes and then I have an HP Poe and it has two separate means lines for the the board and one for the power over the internet and so I think one is 54v and one is 12v.

I wish I had my own two biometric form factor authentication that meets and exceeds by far the phyto standard with enough space to have the slots you need connected to your person so your professional ones and then I completely different section that aren't connected anything regarding your device because some stuff is private and it's nobody's business like if you're what's that one website everybody got busted off for cheating? 😂 

I'm single cell doesn't bother me I live in a country where at least not necessarily in this city but another city they're quite crazy with their personal lives as long as it doesn't interfere with their professional lives they really are not at all modest.

Yeah imagine a Kentucky boy if you just happened to do well at this job and fell in love with somebody from somewhere else and you get over here and it takes a little while for you to get used to walking around the lake where there's ladies getting tan with no top on and I try to be all cool and like like it's no big deal and normal and you don't mean to be like that weirdo or like a what's the new slang for it "sep?" First doctors and with it when you look too much Google yeah I don't mean to Google but when you're from Kentucky that's just a huge leap but then after a while it's just all normal and I wasn't empty so I can think of bodies like that, but sometimes it's still extremely difficult you're born with that I wasn't born here. And some people are just WOW! I don't care if it's politically correct or what's the new word now you have ____!

But my girl is to make this as high quality as possible and not something that's janky! Ha, I got that one. And I'm doing it as much as possible with up cycles erased and only the new stuff that you need like sdrs and then with my own machine at home for the large local language models you just can't do it without that much power and so that'll be a server and because my 2080 works just great still. 

Has anybody tell me why am I 20 80 went from 2080 to saying it's the 2060 was I like did I get like ripped off or something or? It was in this really awful HP gaming PC which was anything but a gaming PC but a modified like bad home consumer PC with a very bad power supply but at least it just didn't have much power and it's not even standard so that's becoming a live power supply with the variable I got the a t c play so that's kind of cool I now have a 3D printed the ATC power supply with fuses no less.

And I'll pick up a HIPAA air filter or I'll design one with some tubes and some PC fans to pull the air away from the cutter and my printer and push it out the window whenever I'm using it but passing it through a HEPA filter so it doesn't like blow right back in my neighbor's window maybe some activated charcoal or something I'll come up with something I'm a creative person seemingly.

But I still wish people would have liked my community crowd Source cubesat space probe idea was like a Carl Sagan type of album on it that actually it was as fast as it can to like to heal your paws and actually sends in the data in a single strength back that normal people can actually hear what it's saying and with the video please and a camara! 

Watch out for my next one I'm going to put up and see if it gets any reactions I had an idea of making a probe so it keeps it and loading in people's personal messages engraved into ceramic tiles like cruciform. And as long as it's in ceramic or any substance that won't be gas and those can survive the shaking that's cute and being in the vacuum of saying the space along with cosmic rays and everything else I'm going to have to decide but if I can get 2000 in there that means for like a couple hundred bucks per tablet I can afford a ride share and a commercial keeps it with some propulsion and maybe some decent radio transmitters and maybe sometime and batteries and we can send it to the closest I'll update that one try to shoot for a Goldilocks Planet Area! And have it like every once in a while flash out some if the government will let us do it depending on some kind of like power pulses like laser pulses and some radio waves long ones short ones try to catch the attention of somebody and I know that's a risk but it's also potentially beneficial never know. nic3 to have an answer to the Fermi paradox anyway 

So this thing is going to have at least micro PC in it as well as several raspberry pies some touch screens 5 sdrs I wish I had a lime or in a cracking but I don't and I can't afford that right now with everything else and I could really use some batteries a proper balancing system and inverter and either a pre-made wind turbine professional tripod level that I can actually attach to the ground it has a hook on the bottom and it has pointy feet I can put on there.

And if anybody wants to throw me a portable set of satellite dishes like the county umbrella kind of fold out with the appropriate lnb's and a Jets and Orion and I've waited so long for my raspberry 5:00 I don't know where it is and then you know to tell you oh now you need to buy these new cables and you can't use the pcie until you or the envy to or the M2 unless you buy the cable and the brake outboard I should have just come with an Orange pie! 

And I'm putting those on there merely because they have the gpio breakouts and it allows it to be expandable and serve as a laboratory because it'll have two separate breakout boards and I might even put this old school bread board for it I'll put a picture up.

So I've got most of the parts I've got the cases I've got the layout keyboard screens main computer which is going to be Adele micro computer that I cycle and yes it will be running Salinas because I don't have a spare Windows license or the money for one and I could always bring along a Windows I have it has a radio I think it's a 900 series m but I'd rather not from my own cyber dick while I don't want to take a laptop and then I have some compartments with a bunch of spare jumper wires diodes LEDs resistors capacitors inductors potentiometers timers crystals some heat ESP boards because and I might use the Pico to control my mount with g predict if I can get that to Ron and they came with those three pin high torque like that's the one that I got with this kind of I had to put them out together it could be a robotic arm but for me it's going to be an antenna and so you got to buy that higher power more expensive controller so anybody wants to tell me one of those? 

And I'll have to name it something really really cool fitting for what it is cuz the awesome writer and science educator and complemented me on this project has been a wonderful person to read over the last couple years for me all of his articles are interesting and he is such a good writer and presents things our way and not only educate you but also if you already have that knowledge it's not it doesn't feel like it's too underwritten the either. Thank Dan! 

Discussions