• Landing Page
  • Shop
  • Contact
  • Privacy Policy
  • Login
  • Register
Upgrade
TrivDaily
">
  • WorldNew
    Pound

    Pound hits 37-year low against dollar

    Palm Trees - WIND

    Hurricane Tracker : Tropical Storm Hurricane Nine has the potential to reach Florida

    Prince of Wales - TrivDaily

    Princess Diana’s title has been passed on to the Duchess of Cambridge

    TrivDaily - King Charles Speech

    3 main points to be gleaned from King Charles first public speech

    Abdul Qadeer Khan: ‘Father of Pakistan’s nuclear bomb’ dies

    Abdul Qadeer Khan: ‘Father of Pakistan’s nuclear bomb’ dies

    The Afghanistan airport explosion came about beneathneath Biden however lines lower back to Trump

    The Afghanistan airport explosion came about beneathneath Biden however lines lower back to Trump

    Hibernian  beat Arsenal 2-1 in first preseason game on Easter Road

    Hibernian beat Arsenal 2-1 in first preseason game on Easter Road

    After a “racist” tweet against England black players, comedian Andrew Lawrence’s agent cancelled his appearance in show.

    After a “racist” tweet against England black players, comedian Andrew Lawrence’s agent cancelled his appearance in show.

    Lionel Messi, Argentina win Copa America over Brazil

    Lionel Messi, Argentina win Copa America over Brazil

    Trending Tags

    • Lifestyle

      Trending Tags

      • Pandemic
    • Business
      From £650 To Six Figures: How Shelly Nuruzzaman Turned Her Love for Curry Into Profit With Bang! Curry

      From £650 To Six Figures: How Shelly Nuruzzaman Turned Her Love for Curry Into Profit With Bang! Curry

      Did Elon Musk Buy MSNBC? Alex Jones Posts That Tech Billionaire ‘Officially Purchased’ News Outlet

      Did Elon Musk Buy MSNBC? Alex Jones Posts That Tech Billionaire ‘Officially Purchased’ News Outlet

      Philippines VP Threatens To Assassinate President And First Lady, Echoing Her Father’s Brutal Legacy

      Philippines VP Threatens To Assassinate President And First Lady, Echoing Her Father’s Brutal Legacy

      Quick Facts About Kelly Loeffler: Age, Net Worth, Family And Insider Trading Scandal

      Quick Facts About Kelly Loeffler: Age, Net Worth, Family And Insider Trading Scandal

      Ford To Cut 4000 Jobs Across Europe By 2027: 800 UK Roles On The Chopping Block

      Ford To Cut 4000 Jobs Across Europe By 2027: 800 UK Roles On The Chopping Block

      Netflix Co-Founder Reveals Strict Tuesday Habit That Helped Him ‘Stay Sane’ While Running An Empire

      Netflix Co-Founder Reveals Strict Tuesday Habit That Helped Him ‘Stay Sane’ While Running An Empire

      Trending Tags

      • Vaccine
      • Pandemic
    • Entertainment
      The Good, The Bad, and the Review of Netflix’s ‘Uglies’ (2024)

      The Good, The Bad, and the Review of Netflix’s ‘Uglies’ (2024)

      Led Zeppelin’s Robert Plant On His Inspirational Elvis Presley Meeting

      Led Zeppelin’s Robert Plant On His Inspirational Elvis Presley Meeting

      Oxy Picks Up The Pace with New EP, ‘Misplaced’

      Oxy Picks Up The Pace with New EP, ‘Misplaced’

      Ariana Grande addresses ‘closeted’ character in Wicked

      Ariana Grande addresses ‘closeted’ character in Wicked

      Hidden Gems: Nowhere Boy

      Hidden Gems: Nowhere Boy

      Daniel Craig praises Chappell Roan for speaking out about the treatment of celebrities

      Daniel Craig praises Chappell Roan for speaking out about the treatment of celebrities

      Stella Rose Shares Dark-Pop Hymn ‘Hollybaby’

      Stella Rose Shares Dark-Pop Hymn ‘Hollybaby’

      Live Report: Ezra Collective – OVO Wembley Arena

      Live Report: Ezra Collective – OVO Wembley Arena

      Eva Longoria denies leaving the US because of Trump

      Eva Longoria denies leaving the US because of Trump

      Trending Tags

      • Sports
        Mario Andretti named as director on board of General Motors F1 team

        Mario Andretti named as director on board of General Motors F1 team

        Why General Motors got the green light that Andretti did not

        Why General Motors got the green light that Andretti did not

        Michael Strahan confirmed as honorary pace car driver for 2025 Indy 500

        Michael Strahan confirmed as honorary pace car driver for 2025 Indy 500

        Rally Japan organisers hit with hefty €50,000 fine for safety breach

        Rally Japan organisers hit with hefty €50,000 fine for safety breach

        MLBB M6 Wildcard: Connection Issue Spark Investigation on ULFHEDNAR vs DFYG

        MLBB M6 Wildcard: Connection Issue Spark Investigation on ULFHEDNAR vs DFYG

        Eagles RB Saquon Barkley hopes former teammate Daniel Jones finds ‘same fresh start and success’ after release by Giants Nov …

        Eagles RB Saquon Barkley hopes former teammate Daniel Jones finds ‘same fresh start and success’ after release by Giants Nov …

        Watch: Free Fight — Deiveson Figueiredo vs Marlon ‘Chito’ Vera

        Watch: Free Fight — Deiveson Figueiredo vs Marlon ‘Chito’ Vera

        Machado Garry sends Joaquin Buckley message ahead of Covington bout

        Machado Garry sends Joaquin Buckley message ahead of Covington bout

        Steelers WR George Pickens started fighting Browns CB as game ended, had to be restrained

        Steelers WR George Pickens started fighting Browns CB as game ended, had to be restrained

        Trending Tags

        • Travel
          ‘As a travel editor I swear by this Ryanair-approved backpack and it now has 30% off’

          ‘As a travel editor I swear by this Ryanair-approved backpack and it now has 30% off’

          Seven travel items are hidden in this tricky airport brain teaser

          Seven travel items are hidden in this tricky airport brain teaser

          Three major UK airports are ‘put up for multi-billion pound sale’ as owners look to seize on ‘resurgence in air travel’

          Three major UK airports are ‘put up for multi-billion pound sale’ as owners look to seize on ‘resurgence in air travel’

          Man United ponder January move for Championship teenager

          Man United ponder January move for Championship teenager

          Three things from the training video

          Three things from the training video

          Brits set for travel chaos as a major train line is closed over Christmas

          Brits set for travel chaos as a major train line is closed over Christmas

          Trending Tags

          • Technology
            The Jim Henson Company Responds to The Muppets Ride Closing at Disney World

            The Jim Henson Company Responds to The Muppets Ride Closing at Disney World

            For Black Friday, Take Advantage of This High-Quality Cloud Storage at a Discounted Price

            For Black Friday, Take Advantage of This High-Quality Cloud Storage at a Discounted Price

            Russian spies may have moved in next door to target your network

            Russian spies may have moved in next door to target your network

            China sends cloud powered by homebrew Loongson CPUs into space

            China sends cloud powered by homebrew Loongson CPUs into space

            One thing AI can’t generate at the moment – compelling reasons to use it for work

            One thing AI can’t generate at the moment – compelling reasons to use it for work

            Trump taps border hawk to head DHS. Will Noem’s ‘enthusiasm’ extend to digital domain?

            Trump taps border hawk to head DHS. Will Noem’s ‘enthusiasm’ extend to digital domain?

            Trending Tags

            • Real Estate
              Malaysia Plans To Open Worldwide Tourism On December 1

              Malaysia Plans To Open Worldwide Tourism On December 1

              #1 UK housing: renting has turn out to be less expensive than shopping

              #1 UK housing: renting has turn out to be less expensive than shopping

              UK assets marketplace pastime maintains at record-breaking levels

              UK assets marketplace pastime maintains at record-breaking levels

              GUUD Launches New RYTE Financing Platform To Make Trade Finance Accessible for All Businesses

              GUUD Launches New RYTE Financing Platform To Make Trade Finance Accessible for All Businesses

              Climate Finance Partnership Raises US$250 Million at First Close to Invest in Emerging Market Climate Infrastructure

              Climate Finance Partnership Raises US$250 Million at First Close to Invest in Emerging Market Climate Infrastructure

              Interior Jennifer Lopez’s luxe Miami rental: 5 stress-free details in regards to the mansion

              Interior Jennifer Lopez’s luxe Miami rental: 5 stress-free details in regards to the mansion

              Trending Tags

              No Result
              View All Result
              • WorldNew
                Pound

                Pound hits 37-year low against dollar

                Palm Trees - WIND

                Hurricane Tracker : Tropical Storm Hurricane Nine has the potential to reach Florida

                Prince of Wales - TrivDaily

                Princess Diana’s title has been passed on to the Duchess of Cambridge

                TrivDaily - King Charles Speech

                3 main points to be gleaned from King Charles first public speech

                Abdul Qadeer Khan: ‘Father of Pakistan’s nuclear bomb’ dies

                Abdul Qadeer Khan: ‘Father of Pakistan’s nuclear bomb’ dies

                The Afghanistan airport explosion came about beneathneath Biden however lines lower back to Trump

                The Afghanistan airport explosion came about beneathneath Biden however lines lower back to Trump

                Hibernian  beat Arsenal 2-1 in first preseason game on Easter Road

                Hibernian beat Arsenal 2-1 in first preseason game on Easter Road

                After a “racist” tweet against England black players, comedian Andrew Lawrence’s agent cancelled his appearance in show.

                After a “racist” tweet against England black players, comedian Andrew Lawrence’s agent cancelled his appearance in show.

                Lionel Messi, Argentina win Copa America over Brazil

                Lionel Messi, Argentina win Copa America over Brazil

                Trending Tags

                • Lifestyle

                  Trending Tags

                  • Pandemic
                • Business
                  From £650 To Six Figures: How Shelly Nuruzzaman Turned Her Love for Curry Into Profit With Bang! Curry

                  From £650 To Six Figures: How Shelly Nuruzzaman Turned Her Love for Curry Into Profit With Bang! Curry

                  Did Elon Musk Buy MSNBC? Alex Jones Posts That Tech Billionaire ‘Officially Purchased’ News Outlet

                  Did Elon Musk Buy MSNBC? Alex Jones Posts That Tech Billionaire ‘Officially Purchased’ News Outlet

                  Philippines VP Threatens To Assassinate President And First Lady, Echoing Her Father’s Brutal Legacy

                  Philippines VP Threatens To Assassinate President And First Lady, Echoing Her Father’s Brutal Legacy

                  Quick Facts About Kelly Loeffler: Age, Net Worth, Family And Insider Trading Scandal

                  Quick Facts About Kelly Loeffler: Age, Net Worth, Family And Insider Trading Scandal

                  Ford To Cut 4000 Jobs Across Europe By 2027: 800 UK Roles On The Chopping Block

                  Ford To Cut 4000 Jobs Across Europe By 2027: 800 UK Roles On The Chopping Block

                  Netflix Co-Founder Reveals Strict Tuesday Habit That Helped Him ‘Stay Sane’ While Running An Empire

                  Netflix Co-Founder Reveals Strict Tuesday Habit That Helped Him ‘Stay Sane’ While Running An Empire

                  Trending Tags

                  • Vaccine
                  • Pandemic
                • Entertainment
                  The Good, The Bad, and the Review of Netflix’s ‘Uglies’ (2024)

                  The Good, The Bad, and the Review of Netflix’s ‘Uglies’ (2024)

                  Led Zeppelin’s Robert Plant On His Inspirational Elvis Presley Meeting

                  Led Zeppelin’s Robert Plant On His Inspirational Elvis Presley Meeting

                  Oxy Picks Up The Pace with New EP, ‘Misplaced’

                  Oxy Picks Up The Pace with New EP, ‘Misplaced’

                  Ariana Grande addresses ‘closeted’ character in Wicked

                  Ariana Grande addresses ‘closeted’ character in Wicked

                  Hidden Gems: Nowhere Boy

                  Hidden Gems: Nowhere Boy

                  Daniel Craig praises Chappell Roan for speaking out about the treatment of celebrities

                  Daniel Craig praises Chappell Roan for speaking out about the treatment of celebrities

                  Stella Rose Shares Dark-Pop Hymn ‘Hollybaby’

                  Stella Rose Shares Dark-Pop Hymn ‘Hollybaby’

                  Live Report: Ezra Collective – OVO Wembley Arena

                  Live Report: Ezra Collective – OVO Wembley Arena

                  Eva Longoria denies leaving the US because of Trump

                  Eva Longoria denies leaving the US because of Trump

                  Trending Tags

                  • Sports
                    Mario Andretti named as director on board of General Motors F1 team

                    Mario Andretti named as director on board of General Motors F1 team

                    Why General Motors got the green light that Andretti did not

                    Why General Motors got the green light that Andretti did not

                    Michael Strahan confirmed as honorary pace car driver for 2025 Indy 500

                    Michael Strahan confirmed as honorary pace car driver for 2025 Indy 500

                    Rally Japan organisers hit with hefty €50,000 fine for safety breach

                    Rally Japan organisers hit with hefty €50,000 fine for safety breach

                    MLBB M6 Wildcard: Connection Issue Spark Investigation on ULFHEDNAR vs DFYG

                    MLBB M6 Wildcard: Connection Issue Spark Investigation on ULFHEDNAR vs DFYG

                    Eagles RB Saquon Barkley hopes former teammate Daniel Jones finds ‘same fresh start and success’ after release by Giants Nov …

                    Eagles RB Saquon Barkley hopes former teammate Daniel Jones finds ‘same fresh start and success’ after release by Giants Nov …

                    Watch: Free Fight — Deiveson Figueiredo vs Marlon ‘Chito’ Vera

                    Watch: Free Fight — Deiveson Figueiredo vs Marlon ‘Chito’ Vera

                    Machado Garry sends Joaquin Buckley message ahead of Covington bout

                    Machado Garry sends Joaquin Buckley message ahead of Covington bout

                    Steelers WR George Pickens started fighting Browns CB as game ended, had to be restrained

                    Steelers WR George Pickens started fighting Browns CB as game ended, had to be restrained

                    Trending Tags

                    • Travel
                      ‘As a travel editor I swear by this Ryanair-approved backpack and it now has 30% off’

                      ‘As a travel editor I swear by this Ryanair-approved backpack and it now has 30% off’

                      Seven travel items are hidden in this tricky airport brain teaser

                      Seven travel items are hidden in this tricky airport brain teaser

                      Three major UK airports are ‘put up for multi-billion pound sale’ as owners look to seize on ‘resurgence in air travel’

                      Three major UK airports are ‘put up for multi-billion pound sale’ as owners look to seize on ‘resurgence in air travel’

                      Man United ponder January move for Championship teenager

                      Man United ponder January move for Championship teenager

                      Three things from the training video

                      Three things from the training video

                      Brits set for travel chaos as a major train line is closed over Christmas

                      Brits set for travel chaos as a major train line is closed over Christmas

                      Trending Tags

                      • Technology
                        The Jim Henson Company Responds to The Muppets Ride Closing at Disney World

                        The Jim Henson Company Responds to The Muppets Ride Closing at Disney World

                        For Black Friday, Take Advantage of This High-Quality Cloud Storage at a Discounted Price

                        For Black Friday, Take Advantage of This High-Quality Cloud Storage at a Discounted Price

                        Russian spies may have moved in next door to target your network

                        Russian spies may have moved in next door to target your network

                        China sends cloud powered by homebrew Loongson CPUs into space

                        China sends cloud powered by homebrew Loongson CPUs into space

                        One thing AI can’t generate at the moment – compelling reasons to use it for work

                        One thing AI can’t generate at the moment – compelling reasons to use it for work

                        Trump taps border hawk to head DHS. Will Noem’s ‘enthusiasm’ extend to digital domain?

                        Trump taps border hawk to head DHS. Will Noem’s ‘enthusiasm’ extend to digital domain?

                        Trending Tags

                        • Real Estate
                          Malaysia Plans To Open Worldwide Tourism On December 1

                          Malaysia Plans To Open Worldwide Tourism On December 1

                          #1 UK housing: renting has turn out to be less expensive than shopping

                          #1 UK housing: renting has turn out to be less expensive than shopping

                          UK assets marketplace pastime maintains at record-breaking levels

                          UK assets marketplace pastime maintains at record-breaking levels

                          GUUD Launches New RYTE Financing Platform To Make Trade Finance Accessible for All Businesses

                          GUUD Launches New RYTE Financing Platform To Make Trade Finance Accessible for All Businesses

                          Climate Finance Partnership Raises US$250 Million at First Close to Invest in Emerging Market Climate Infrastructure

                          Climate Finance Partnership Raises US$250 Million at First Close to Invest in Emerging Market Climate Infrastructure

                          Interior Jennifer Lopez’s luxe Miami rental: 5 stress-free details in regards to the mansion

                          Interior Jennifer Lopez’s luxe Miami rental: 5 stress-free details in regards to the mansion

                          Trending Tags

                          No Result
                          View All Result
                          TrivDaily
                          No Result
                          View All Result
                          Home Technology

                          Uncle Sam wants DEF CON hackers to pwn this Moonlighter satellite in space

                          Ferhan Rana by Ferhan Rana
                          June 4, 2023
                          in Technology
                          Reading Time:6 mins read
                          30.2k 1.6k
                          A A
                          0
                          Uncle Sam wants DEF CON hackers to pwn this Moonlighter satellite in space
                          29.7k
                          SHARES
                          33.8k
                          VIEWS
                          Share on FacebookShare on Twitter
                          ">
                          ">

                          Feature Assuming the weather and engineering gods cooperate, a US government-funded satellite dubbed Moonlighter will launch at 1212 EDT (1612 UTC) on Sunday, hitching a ride on a SpaceX rocket before being releasing into Earth’s orbit.

                          And in roughly two months, five teams of DEF CON hackers will do their best to successfully remotely infiltrate and hijack the satellite while it’s in space. The idea being to try out offensive and defensive techniques and methods on actual in-orbit hardware and software, which we imagine could help improve our space systems.

                          Moonlighter, dubbed “the world’s first and only hacking sandbox in space,” is a mid-size 3U cubesat [PDF] with a mass of about 5kg. Stowed, it is 34 cm x 11 cm x 11cm in size, and when fully deployed with its solar panels out, it measures 50 cm x 34 cm x 11 cm.

                          It was built by The Aerospace Corporation, a federally funded research and development center in southern California, in partnership with the US Space Systems Command and the Air Force Research Laboratory. It will run software developed by infosec and aerospace engineers to support in-orbit cybersecurity training and exercises.

                          This effort was inspired by the Hack-A-Sat contest co-hosted by the US Air Force and Space Force, now in its fourth year at the annual DEF CON computer security conference.

                          The goal of Moonlighter was to move offensive and defensive cyber-exercises for space systems out of an on-Earth lab setting and into low Earth orbit, according to project leader Aaron Myrick of Aerospace Corp. Not only that, but the satellite needs to be able to handle multiple teams competing to seize control of its software without losing or damaging the whole thing and ruining the project. Thus, an onboard sandbox approach was taken.

                          “If you’re doing a hacking competition, or any sort of cyber activity or exercise with a live vehicle, it’s difficult because you’re potentially putting that vehicle’s mission at risk,” Myrick told The Register.

                          “And that’s not a good option when you’ve spent a lot of engineering hours and a lot of money to get this launched. So we said if we want to do this right, we have to build this from the ground up.”

                          Aerospace Corporation's Moonlighter satellite

                          Sending to outer space … The Moonlighter satellite. Click to enlarge. Credit: The Aerospace Corporation

                          To this end, the small satellite runs a software payload that behaves like a real flight computer, which can — hopefully! — to be subjected to multiple, realistic attacks and commandeered without underlying critical subsystems being affected.

                          “This allows cyber experiments to be repeatable, realistic, and secure, while maintaining the health and safety of the satellite,” as Aerospace Corp put it.

                          Moonlighter’s first test will come in August when it will be part of the Hack-A-Sat 4 competition in Las Vegas. Five teams qualified for the contest’s final at DEF CON, during which they’ll get a crack at the bird.

                          This year’s annual competition will thus be the first time conference hackers get to test their skills against a live, in-orbit satellite. The top three teams will win a monetary price: $50,000 for first place, $30,000 for second, and $20,000 for third.

                          Space Jam

                          James Pavur, lead cybersecurity software engineer at Istari, participated in the three earlier Hack-A-Sat competitions, and gave a talk on radio frequency attacks in outer space at last year’s DEF CON.

                          He describes himself as a “passionate security researcher” when it comes to poking holes in satellites, and did his PhD thesis at Oxford on securing these kinds of systems. You also might remember him from his exploitation of GDPR requests talk at Black Hat, where a boring Polish airport delay inspired a delve into serious issues with the application of the European legislation.

                          Pavur participated in the qualification round for this year’s satellite hacking competition, though didn’t make it to the finals.

                          The qualification round included “wicked-hard astrodynamics problems related to overall mechanics and positioning, figuring out where objects in space will be, and where they are going,” he told The Register. “It’s a lot of really deep mathematics on the physics side of things, and it requires a lot of expertise in embedded systems and reverse engineering.”

                          Space systems … are always under a degree of environmental attack that we’re not really accustomed to

                          There are a couple of things that make securing space systems unique, he explained.

                          “The most obvious is you can’t just go up there and reboot them,” he said. “So your risk tolerance is very low for losing access to communications to the device.”

                          Because of this, space systems are built in a risk-averse way, and employ redundancy to provide multiple communication pathways to recover a system if it fails, or to debug equipment that’s malfunctioning.

                          These pathways, however, also give miscreants more opportunities to gain access to, and ultimately compromise, a satellite. “They can all become attack surfaces that an attacker might target,” Pavur said.

                          Priorities

                          “The other big thing that makes space systems different is that they’re always under a degree of environmental attack that we’re not really accustomed to,” he added.

                          This includes physical threats, such as solar radiation, extreme temperatures, and orbital debris.

                          “So when people build space systems, and they’re deciding which risks to prioritize, they’ll often treat cybersecurity as a lesser risk against the absolutely certain aggressive environmental harms,” Pavur explained.

                          “They’ll make choices around costs and priorities that deprioritize cybersecurity concerns and elevate physical concerns.”

                          That’s not always a bad choice, he added, it’s just not a choice we typically have to make with ground-based networks and nodes. And it’s one of the reasons why space systems have struggled to keep up, cybersecurity wise, with their Earthly counterparts.

                          • US National Cyber Director: Fending off cyber threats in space is ‘urgent,’ needs ‘high level attention’
                          • In wars of the future, national security won’t end at space
                          • This ain’t Boeing very well: Starliner’s first crewed flight canceled yet again
                          • DEF CON to set thousands of hackers loose on LLMs

                          Then there’s the growing commercialization of the aerospace industry, coupled with hardware and software used in space becoming increasingly commoditized and mass manufactured, not unlike the tech used in ground-based systems.

                          “The bar is being lowered for entry to space,” Myrick said.

                          “And that’s both for people that are trying to put things there but also for people that are willing and able to make other people have a bad day,” he continued, using last year’s Viasat debacle as an example of “a pretty destructive event that made people have a very bad day.”

                          “With Moonlighter, we’re trying to get in front of the problem, before it is a problem.”

                          Space security is national security

                          To be clear, Russia’s cyberattack on Viasat’s Ukrainian satellite broadband system — which knocked out service for tens of thousands across Europe as Putin’s army invaded its neighboring county — began with an intrusion into the company’s satellite ground infrastructure.

                          “But they used the satellite network to deploy, which is important,” Myrick said. “It highlighted the issue, and made it so it’s not theoretical.”

                          For many, both in government and the private sector, the Viasat security breach moved the issue of cybersecurity in space away from the stuff of sci-fi novels and into reality.

                          “We are all aware that the first ‘shot’ in the current Ukraine conflict was a cyberattack against a US space company,” acting US National Cyber Director Kemba Walden told reporters at the RSA Conference in April, en route to the White House’s first space industry cybersecurity workshop.

                          Defending space systems against threats remains “urgent and requires high-level attention,” Walden said.

                          Space geeks and hackers

                          Still, the space industry hasn’t been the most welcoming of security researchers, even ethical hackers looking to find and disclose bugs before the baddies exploit them.

                          Pavur said he hopes Moonlighter will encourage more “acceptance of offensive security research,” in the aerospace industry. This could include companies offering bug bounties, hosting hacking competitions, or hiring penetration testers to stress test their systems.

                          “Hopefully a project like Moonlighter will get the industry thinking about ways they could apply the fact that space is really cool and fun, and that hackers are interested in it,” he said. “There are lots of incredibly talented security people who would like to make the space world more secure.” ®

                          Moonlighter is set to launch Sunday from the Kennedy Space Center in Florida on a SpaceX Falcon 9 rocket carrying supplies and equipment to the International Space Station. A live-stream of the lift-off should appear here.

                          The launch was due to take place Saturday but was delayed due to weather.

                          ">
                          ">

                          Feature Assuming the weather and engineering gods cooperate, a US government-funded satellite dubbed Moonlighter will launch at 1212 EDT (1612 UTC) on Sunday, hitching a ride on a SpaceX rocket before being releasing into Earth’s orbit.

                          And in roughly two months, five teams of DEF CON hackers will do their best to successfully remotely infiltrate and hijack the satellite while it’s in space. The idea being to try out offensive and defensive techniques and methods on actual in-orbit hardware and software, which we imagine could help improve our space systems.

                          Moonlighter, dubbed “the world’s first and only hacking sandbox in space,” is a mid-size 3U cubesat [PDF] with a mass of about 5kg. Stowed, it is 34 cm x 11 cm x 11cm in size, and when fully deployed with its solar panels out, it measures 50 cm x 34 cm x 11 cm.

                          It was built by The Aerospace Corporation, a federally funded research and development center in southern California, in partnership with the US Space Systems Command and the Air Force Research Laboratory. It will run software developed by infosec and aerospace engineers to support in-orbit cybersecurity training and exercises.

                          This effort was inspired by the Hack-A-Sat contest co-hosted by the US Air Force and Space Force, now in its fourth year at the annual DEF CON computer security conference.

                          The goal of Moonlighter was to move offensive and defensive cyber-exercises for space systems out of an on-Earth lab setting and into low Earth orbit, according to project leader Aaron Myrick of Aerospace Corp. Not only that, but the satellite needs to be able to handle multiple teams competing to seize control of its software without losing or damaging the whole thing and ruining the project. Thus, an onboard sandbox approach was taken.

                          “If you’re doing a hacking competition, or any sort of cyber activity or exercise with a live vehicle, it’s difficult because you’re potentially putting that vehicle’s mission at risk,” Myrick told The Register.

                          “And that’s not a good option when you’ve spent a lot of engineering hours and a lot of money to get this launched. So we said if we want to do this right, we have to build this from the ground up.”

                          Aerospace Corporation's Moonlighter satellite

                          Sending to outer space … The Moonlighter satellite. Click to enlarge. Credit: The Aerospace Corporation

                          To this end, the small satellite runs a software payload that behaves like a real flight computer, which can — hopefully! — to be subjected to multiple, realistic attacks and commandeered without underlying critical subsystems being affected.

                          “This allows cyber experiments to be repeatable, realistic, and secure, while maintaining the health and safety of the satellite,” as Aerospace Corp put it.

                          Moonlighter’s first test will come in August when it will be part of the Hack-A-Sat 4 competition in Las Vegas. Five teams qualified for the contest’s final at DEF CON, during which they’ll get a crack at the bird.

                          This year’s annual competition will thus be the first time conference hackers get to test their skills against a live, in-orbit satellite. The top three teams will win a monetary price: $50,000 for first place, $30,000 for second, and $20,000 for third.

                          Space Jam

                          James Pavur, lead cybersecurity software engineer at Istari, participated in the three earlier Hack-A-Sat competitions, and gave a talk on radio frequency attacks in outer space at last year’s DEF CON.

                          He describes himself as a “passionate security researcher” when it comes to poking holes in satellites, and did his PhD thesis at Oxford on securing these kinds of systems. You also might remember him from his exploitation of GDPR requests talk at Black Hat, where a boring Polish airport delay inspired a delve into serious issues with the application of the European legislation.

                          Pavur participated in the qualification round for this year’s satellite hacking competition, though didn’t make it to the finals.

                          The qualification round included “wicked-hard astrodynamics problems related to overall mechanics and positioning, figuring out where objects in space will be, and where they are going,” he told The Register. “It’s a lot of really deep mathematics on the physics side of things, and it requires a lot of expertise in embedded systems and reverse engineering.”

                          Space systems … are always under a degree of environmental attack that we’re not really accustomed to

                          There are a couple of things that make securing space systems unique, he explained.

                          “The most obvious is you can’t just go up there and reboot them,” he said. “So your risk tolerance is very low for losing access to communications to the device.”

                          Because of this, space systems are built in a risk-averse way, and employ redundancy to provide multiple communication pathways to recover a system if it fails, or to debug equipment that’s malfunctioning.

                          These pathways, however, also give miscreants more opportunities to gain access to, and ultimately compromise, a satellite. “They can all become attack surfaces that an attacker might target,” Pavur said.

                          Priorities

                          “The other big thing that makes space systems different is that they’re always under a degree of environmental attack that we’re not really accustomed to,” he added.

                          This includes physical threats, such as solar radiation, extreme temperatures, and orbital debris.

                          “So when people build space systems, and they’re deciding which risks to prioritize, they’ll often treat cybersecurity as a lesser risk against the absolutely certain aggressive environmental harms,” Pavur explained.

                          “They’ll make choices around costs and priorities that deprioritize cybersecurity concerns and elevate physical concerns.”

                          That’s not always a bad choice, he added, it’s just not a choice we typically have to make with ground-based networks and nodes. And it’s one of the reasons why space systems have struggled to keep up, cybersecurity wise, with their Earthly counterparts.

                          • US National Cyber Director: Fending off cyber threats in space is ‘urgent,’ needs ‘high level attention’
                          • In wars of the future, national security won’t end at space
                          • This ain’t Boeing very well: Starliner’s first crewed flight canceled yet again
                          • DEF CON to set thousands of hackers loose on LLMs

                          Then there’s the growing commercialization of the aerospace industry, coupled with hardware and software used in space becoming increasingly commoditized and mass manufactured, not unlike the tech used in ground-based systems.

                          “The bar is being lowered for entry to space,” Myrick said.

                          “And that’s both for people that are trying to put things there but also for people that are willing and able to make other people have a bad day,” he continued, using last year’s Viasat debacle as an example of “a pretty destructive event that made people have a very bad day.”

                          “With Moonlighter, we’re trying to get in front of the problem, before it is a problem.”

                          Space security is national security

                          To be clear, Russia’s cyberattack on Viasat’s Ukrainian satellite broadband system — which knocked out service for tens of thousands across Europe as Putin’s army invaded its neighboring county — began with an intrusion into the company’s satellite ground infrastructure.

                          “But they used the satellite network to deploy, which is important,” Myrick said. “It highlighted the issue, and made it so it’s not theoretical.”

                          For many, both in government and the private sector, the Viasat security breach moved the issue of cybersecurity in space away from the stuff of sci-fi novels and into reality.

                          “We are all aware that the first ‘shot’ in the current Ukraine conflict was a cyberattack against a US space company,” acting US National Cyber Director Kemba Walden told reporters at the RSA Conference in April, en route to the White House’s first space industry cybersecurity workshop.

                          Defending space systems against threats remains “urgent and requires high-level attention,” Walden said.

                          Space geeks and hackers

                          Still, the space industry hasn’t been the most welcoming of security researchers, even ethical hackers looking to find and disclose bugs before the baddies exploit them.

                          Pavur said he hopes Moonlighter will encourage more “acceptance of offensive security research,” in the aerospace industry. This could include companies offering bug bounties, hosting hacking competitions, or hiring penetration testers to stress test their systems.

                          “Hopefully a project like Moonlighter will get the industry thinking about ways they could apply the fact that space is really cool and fun, and that hackers are interested in it,” he said. “There are lots of incredibly talented security people who would like to make the space world more secure.” ®

                          Moonlighter is set to launch Sunday from the Kennedy Space Center in Florida on a SpaceX Falcon 9 rocket carrying supplies and equipment to the International Space Station. A live-stream of the lift-off should appear here.

                          The launch was due to take place Saturday but was delayed due to weather.

                          Tags: Unclewants
                          ">
                          Ferhan Rana

                          Ferhan Rana

                          Related Posts

                          OpenAI denies it is building ad biz model into its platform
                          Technology

                          OpenAI denies it is building ad biz model into its platform

                          by Ferhan Rana
                          December 3, 2024
                          Apple’s backwards design mistake and the reversed capacitor
                          Technology

                          Apple’s backwards design mistake and the reversed capacitor

                          by Ferhan Rana
                          December 3, 2024
                          Forget Black Friday: Amazon Just Revealed 12 Gems This Sunday For Cyber Monday ⚡️
                          Technology

                          Forget Black Friday: Amazon Just Revealed 12 Gems This Sunday For Cyber Monday ⚡️

                          by Ferhan Rana
                          December 2, 2024
                          After Black Friday, The Roborock Qrevo S Robot Vacuum And Mop Is Now At Its Lowest Price Ever For Cyber Monday
                          Technology

                          After Black Friday, The Roborock Qrevo S Robot Vacuum And Mop Is Now At Its Lowest Price Ever For Cyber Monday

                          by Ferhan Rana
                          December 2, 2024
                          RansomHub claims to net data hat-trick against Bologna FC
                          Technology

                          RansomHub claims to net data hat-trick against Bologna FC

                          by Ferhan Rana
                          December 1, 2024

                          Premium Content

                          OnlyFans star Hannah Veillet: ‘I was a mentor assistant, now I’m making thousands and can assist my household’

                          OnlyFans star Hannah Veillet: ‘I was a mentor assistant, now I’m making thousands and can assist my household’

                          March 5, 2022
                          Taylor Swift desires to make a movie

                          Taylor Swift desires to make a movie

                          June 12, 2022
                          Precise Madrid bring together diverse transfer blueprint for defender, eager to enhance funds

                          Precise Madrid bring together diverse transfer blueprint for defender, eager to enhance funds

                          June 29, 2021

                          Browse by Category

                          • Business
                          • Crypto
                          • Entertainment
                          • Fashion
                          • Health
                          • Lifestyle
                          • Real Estate
                          • Sports
                          • Technology
                          • Travel
                          • Uncategorized
                          • World

                          Browse by Tags

                          Amazon Andrew announces Apple Barcelona Charles director Elizabeth Europe Exclusive First former Future George Google Harry health Intel James Jennifer launches Lewis Manchester Markle Meghan Michael Microsoft Middleton people Prince Princess Queen REPORT reveals Review Royal Samsung Shares Twitter wants WATCH William Woman World Years
                          TrivDaily

                          Get the latest World news and analysis, breaking news, features and special reports from World. Also watch videos from across the Europian continent.

                          Learn more

                          Categories

                          • Business
                          • Crypto
                          • Entertainment
                          • Fashion
                          • Health
                          • Lifestyle
                          • Real Estate
                          • Sports
                          • Technology
                          • Travel
                          • Uncategorized
                          • World

                          Browse by Tag

                          Business (1210) Crypto (1230) Entertainment (1608) Fashion (3) Health (1136) Lifestyle (1523) Real Estate (40) Sports (2277) Technology (2325) Travel (1126) Uncategorized (11) World (23)

                          Recent Posts

                          • The International 2025 Wishlist
                          • Historic Victory for KTM: Daniel Sanders and Edgar Canet Shine at the 2025 Dakar Rally!
                          • Luxury and Leisure: Staying in a Duck, Outer Banks Vacation Home

                          © 2021 TrivDaily - Developed by ADSA Solutions.

                          Welcome Back!

                          Login to your account below

                          Forgotten Password? Sign Up

                          Create New Account!

                          Fill the forms bellow to register

                          All fields are required. Log In

                          Retrieve your password

                          Please enter your username or email address to reset your password.

                          Log In

                          Add New Playlist

                          • Login
                          • Sign Up
                          • Cart
                          No Result
                          View All Result
                          • Home
                          • Business News
                          • Entertainment News
                          • Lifestyle News
                          • Health News
                          • Tech News
                          • Real Estate News
                          • World News

                          © 2021 TrivDaily - Developed by ADSA Solutions.

                          Are you sure want to unlock this post?
                          Unlock left : 0
                          Are you sure want to cancel subscription?