Security firm Check Point shows how ransomware can be installed on Canon cameras

Security firm Check Point shows how ransomware can be installed on Canon cameras
ÔÎÒÎ: dpreview.com

Security researchers with Check Point Research have demonstrated that it is possible to incapacitate a DSLR camera using wirelessly transmitted ransomware, a type of malware that forces victims to pay in order to decrypt their data.

Though the demonstration involved using Wi-Fi, the researchers say it is also possible to hijack a DSLR camera using USB.

Modern cameras feature an unauthenticated protocol called Picture Transfer Protocol (PTP) that comes in two varieties: PTP/USB for wired connections and PTP/IP for wireless connections. Whereas USB requires the hacker to compromise the camera owner's computer, Wi-Fi makes it possible to target the camera directly by simply being located near the device.

The DSLR malware demonstration involved a Canon EOS 80D camera, with the researchers explaining that they chose this model due to Canon's popularity combined with the 80D's support for USB, Wi-Fi and open-source software called Magic Lantern.

The researchers detailed the technical aspects of developing this malware in a blog post, ultimately explaining:

‘The ransomware uses the same cryptographic functions as the firmware update process, and calls the same AES functions in the firmware. After encrypting all of the files on the SD Card, the ransomware displays the ransom message to the user. ’

It's possible for hackers to set up a rogue Wi-Fi access point that causes these Wi-Fi-enabled cameras to automatically connect to the network, after which point the ransomware can be deployed. In a real-world scenario, this malware would demand payment from the victim -- usually a few hundred dollars -- in order to decrypt the images on the camera.

According to Check Point Research, Canon was contacted about these vulnerabilities in March and worked with the company to patch the security issues. Canon released the first security patch on August 6 alongside an advisory detailing the PTP vulnerability and the cameras affected by by it.

.

camera canon ransomware point ptp

2019-8-12 21:53

camera canon → Ðåçóëüòàòîâ: 126 / camera canon - ôîòî


DpreviewTV about the new EOS-R: This camera might fall short of the expectations but the lens lineup is cool

Well, as expected and just like Nikon…Canon made a good camera that’s not exceptional and has some of the usual Canon quirks. I think the best part of this new Canon are the lenses and I hope Sony will take a note on that :) Jared Polin: TOny and Chelsea Northrup: The post DpreviewTV about the new EOS-R: This camera might fall short of the expectations but the lens lineup is cool appeared first on sonyalpharumors. sonyalpharumors.com »

2018-09-05 18:31

Ôîòî: petapixel.com

Canon is Officially Done Selling Film Cameras After 80 Years

Canon just officially discontinued the EOS-1V, the company’s last remaining film camera. The move brings an official end to Canon’s film camera business after an 80-year run. Canon entered the camera industry back in 1937 as Precision Optical Instruments Laboratory, creating a Leica clone called “The Kwanon” that was Japan’s first 35mm focal-plane-shutter camera. The […] petapixel.com »

2018-05-30 17:28

Canon unveils ultra-compact EOS Rebel SL2 / EOS 200D

$(document). ready(function() { SampleGalleryV2({"containerId":"embeddedSampleGallery_7202840617","galleryId":"7202840617","isEmbeddedWidget":true,"standalone":false,"selectedImageIndex":0,"startInCommentsView":false,"isMobile":false}) }); Canon has introduced the EOS Rebel SL2 (known as the EOS 200D outside of North America), the replacement to the four-year-old SL1. dpreview.com »

2017-06-29 07:00

Ôîòî: dpreview.com

Canon EOS-1D X Mark II firmware updated to version 1.1.3

Canon has released firmware version 1. 1. 3 for the Canon EOS-1D X Mark II DSLR. The latest firmware version is a relatively small update, bringing a bug fix that corrects an issue displaying the drive mode icon, as well as improving USB communication reliability with a function in EOS Utility 3 and increasing the maximum 'release cycles' number displayed in the 'Camera system information' menu. dpreview.com »

2017-02-15 21:47