UNIVERSIDAD NACIONAL EXPERIMENTAL
"SIMÓN RODRÍGUEZ"
NÚCLEO PALO VERDE

CONTENIDO PROGRAMÁTICO

TEMA 1: GENERALIDADES.

1. DEFINICIÓN DE FINANZAS.
2. CONCEPTO DE FINANZAS INTERNACIONALES.
3. IMPORTANCIA DE LAS FINANZAS INTERNACIONALES.
4. NOMENCLATURA USADAS EN LAS FINANZAS INTERNACIONALES.
5. VALOR DE CAMBIO CON RESPECTO AL DÓLAR Y AL EURO.
6. TIPOS DE OPERACIONES INTERNACIONALES.
7. VENTAJAS Y DESVENTAJAS.

TEMA 2: BALANZA DE PAGOS.

1. CONCEPTO, CARACTERÍSTICAS, TIPOS DE CUENTAS.
2. REGISTRO DE LAS OPERACIONES CONTABLES.
3. PROBLEMAS EN EL REGISTRO DE LAS OPERACIONES EN LA BALANZA DE PAGOS.
4. ANÁLISIS DE LOS EFECTOS DE LA BALANZA DE PAGOS.
5. DESCRIPCIÓN DE LA BALANZA DE PAGOS EN VENEZUELA DESDE EL AÑO 2005 HASTA EL PRESENTE.

TEMA 3: SISTEMA MONETARIO INTERNACIONAL.

1. CONCEPTO DEL SISTEMA MONETARIO INTERNACIONAL.
2. SISTEMA PATRÓN ORO: DEFINICIÓN Y FUNCIONAMIENTO.
3. SISTEMA BRETÓN WOODS: CONCEPTO Y CARACTERÍSTICAS, COMPORTAMIENTO DESDE 1944 HASTA EL PRESENTE.
4. INSTITUCIONES FINANCIERAS INTERNACIONALES: FONDO MONETARIO INTERNACIONAL: SU CREACIÓN, FUNCIONES, TIPOS DE SERVICIO QUE PRESTA, ROL DE ESTOS ORGANISMOS A NIVEL GLOBAL EN LOS ÚLTIMOS AÑOS.
5. BANCO MUNDIAL: CREACIÓN, FUNCIONES, TIPOS DE SERVICIO QUE PRESTA Y ROL DE ESTE ORGANISMO MUNDIAL EN LOS ÚLTIMOS TIEMPOS HASTA EL PRESENTE.
6. BANCO INTERNACIONAL DE PAGO (COMPENSACIÓN): ACUERDO DE BASILEA: SU CREACIÓN, FUNCIONES Y TIPOS DE SERVICIO QUE PRESTA.
7. SISTEMA MONETARIO EUROPEO: CREACIÓN, ESTRUCTURA, FUNCIONES Y TIPOS DE SERVICIO QUE PRESTA.
8. LA MONEDA EURO: COTIZACIÓN, ESTRUCTURA (CANASTA DE VARIAS MONEDAS).
9. DERECHO ESPECIAL DE GIRO: CONCEPTO, FUNCIONES Y ESTRUCTURA.

TEMA 4: MERCADO CAMBIARIO.

1. CONCEPTO DE DIVISA.
2. MERCADO DE DIVISAS.
3. OPERACIONES DE CAMBIO EN EL MERCADO INTERNACIONAL.
4. TIPOS DE COTIZACIONES DE CAMBIO.
5. CONTRATOS A FUTURO (FORWARD): CONCEPTO, FUNCIONES Y TIPOS DE CONTRATOS.
6. SISTEMA CAMBIARIO DE BANDAS: DEFINICIÓN Y FUNCIONAMIENTO.
7. RIESGO CAMBIARIO: CONCEPTO, ELEMENTOS FUNDAMENTALES DEL RIESGO CAMBIARIO: POSICIÓN CORTA Y POSICIÓN LARGA, TIPOS DE RIESGOS DE CAMBIO: TRANSACCIÓN DE BALANCE Y ECONÓMICO, ENDEUDAMIENTO EMPRESARIAL EN MONEDA EXTRANJERA.
8. COMPORTAMIENTO DEL MERCADO CAMBIARIO EN VENEZUELA DESDE 2005 HASTA EL PRESENTE.

TEMA 5: MERCADO FINANCIERO INTERNACIONAL.

1. CONCEPTO Y FINALIDAD.
2. ESTRUCTURA DEL MERCADO FINANCIERO INTERNACIONAL.
3. TIPOS Y FUNCIONAMIENTO DE LOS CRÉDITOS INTERNACIONALES. (TRAER MODELO).
4. MERCADO DE EURODÓLARES: TIPOS Y FUNCIONAMIENTO (TRAER MODELO).
5. MERCADO INTERNACIONAL DE BONOS: CLASIFICACIÓN DEL MERCADO DE BONOS, ESTRUCTURA Y FUNCIONAMIENTO.
6. MERCADO DE EUROCRÉDITOS: ESTRUCTURA Y FUNCIONAMIENTO.

TEMA 6: FINANCIAMIENTO DEL COMERCIO INTERNACIONAL.

1. CONCEPTO Y FINALIDAD.
2. CARTA DE CRÉDITO: DEFINICIÓN, TIPOS, MODALIDADES, VENTAJAS Y DESVENTAJAS (TRAER MODELO).
3. COBRO DOCUMENTARIO: CONCEPTO Y TIPOS (TRAER MODELO).
4. ACEPTACIÓN BANCARIA: CONCEPTO Y TIPOS. (TRAER MODELO).
5. FACTORIZACIÓN: DEFINICIÓN Y TIPOS (TRAER MODELO).
6. FORFETIZACIÓN: CONCEPTO Y TIPOS (TRAER MODELO).
7. ARRENDAMIENTO INTERNACIONAL: CONCEPTO Y TIPOS (TRAER MODELO).
8. PERMUTA INTERNACIONAL: CONCEPTO Y TIPOS (TRAER MODELO).

TEMA 7: MERCADO BURSÁTIL INTERNACIONAL.

1. MERCADO WALL STREET (NEW YORK): FUNCIONAMIENTO Y TIPOS DE OPERACIONES.
2. MERCADO DEL ORO: FUNCIONAMIENTO Y TIPOS DE OPERACIONES.
3. DEUDA EXTERNA MUNDIAL: MERCADO DE LA DEUDA EXTERNA LATINOAMERICANA, TIPOS DE TÍTULOS QUE SE COTIZAN Y OPERACIONES; PLAN BRADY: CONCEPTO, VENTAJA Y DESVENTAJAS.
4. DEUDA EXTERNA VENEZOLANA: COMPORTAMIENTO DESDE 1983 HASTA NUESTROS DÍAS.
5. CLUB DE PARÍS: FUNCIONAMIENTO, VENTAJAS Y DESVENTAJAS.
6. MERCADO DE TÍTULOS ADR Y GDR: CONCEPTO Y FUNCIONAMIENTO DE ESTOS TÍTULOS.

TEMA 8: INVERSIÓN EXTERNA DIRECTA.

1. CONCEPTO.
2. EFECTOS DE LA INVERSIÓN EXTERNA DIRECTA EN LA BALANZA DE PAGOS EN EL PAÍS RECEPTOR Y DEL PAÍS INVERSOR.
3. LA EMPRESA MULTINACIONAL: DEFINICIÓN, CARACTERÍSTICAS, VENTAJA Y DESVENTAJAS DE SU INSTALACIÓN EN EL PAÍS.
4. FINANCIAMIENTO DE CASA MATRIZ A FILIAL Y VICEVERSA.
5. ASOCIACIONES ESTRATÉGICAS: CONCEPTO Y FUNCIONAMIENTO EN VENEZUELA (TRAER 02 MODELOS DE CASOS EN NUESTRO PAÍS).
6. COMPORTAMIENTO DE LA INVERSIÓN EXTRANJERA DIRECTA EN VENEZUELA DESDE 2005 HASTA NUESTROS DÍAS.

sábado, 27 de enero de 2024

How To Start | How To Become An Ethical Hacker

Are you tired of reading endless news stories about ethical hacking and not really knowing what that means? Let's change that!
This Post is for the people that:

  • Have No Experience With Cybersecurity (Ethical Hacking)
  • Have Limited Experience.
  • Those That Just Can't Get A Break


OK, let's dive into the post and suggest some ways that you can get ahead in Cybersecurity.
I receive many messages on how to become a hacker. "I'm a beginner in hacking, how should I start?" or "I want to be able to hack my friend's Facebook account" are some of the more frequent queries. Hacking is a skill. And you must remember that if you want to learn hacking solely for the fun of hacking into your friend's Facebook account or email, things will not work out for you. You should decide to learn hacking because of your fascination for technology and your desire to be an expert in computer systems. Its time to change the color of your hat 😀

 I've had my good share of Hats. Black, white or sometimes a blackish shade of grey. The darker it gets, the more fun you have.

If you have no experience don't worry. We ALL had to start somewhere, and we ALL needed help to get where we are today. No one is an island and no one is born with all the necessary skills. Period.OK, so you have zero experience and limited skills…my advice in this instance is that you teach yourself some absolute fundamentals.
Let's get this party started.
  •  What is hacking?
Hacking is identifying weakness and vulnerabilities of some system and gaining access with it.
Hacker gets unauthorized access by targeting system while ethical hacker have an official permission in a lawful and legitimate manner to assess the security posture of a target system(s)

 There's some types of hackers, a bit of "terminology".
White hat — ethical hacker.
Black hat — classical hacker, get unauthorized access.
Grey hat — person who gets unauthorized access but reveals the weaknesses to the company.
Script kiddie — person with no technical skills just used pre-made tools.
Hacktivist — person who hacks for some idea and leaves some messages. For example strike against copyright.
  •  Skills required to become ethical hacker.
  1. Curosity anf exploration
  2. Operating System
  3. Fundamentals of Networking
*Note this sites





Read more
  1. Hacking Tools Download
  2. Growth Hacker Tools
  3. Termux Hacking Tools 2019
  4. Install Pentest Tools Ubuntu
  5. Hack Website Online Tool
  6. Pentest Reporting Tools
  7. Hacker Tools For Pc
  8. Pentest Tools For Ubuntu
  9. Pentest Tools List
  10. Hack Tools For Windows
  11. Hackrf Tools
  12. Hacker Security Tools
  13. Hacker
  14. Hacker Tools List
  15. Android Hack Tools Github
  16. Pentest Tools Framework
  17. Hack Tools Online
  18. Hacking Tools Usb
  19. Pentest Tools Subdomain
  20. Bluetooth Hacking Tools Kali
  21. Hacker Techniques Tools And Incident Handling
  22. Hacking Tools Usb
  23. Pentest Tools Android
  24. Install Pentest Tools Ubuntu
  25. Beginner Hacker Tools
  26. Hacking Tools Usb
  27. Pentest Tools Framework
  28. Pentest Tools For Windows
  29. Github Hacking Tools
  30. Hacker Tools Free Download
  31. Hacking App
  32. Pentest Tools Bluekeep
  33. Game Hacking
  34. Top Pentest Tools
  35. Computer Hacker
  36. Pentest Tools For Windows
  37. Blackhat Hacker Tools
  38. Pentest Tools Subdomain
  39. Underground Hacker Sites
  40. How To Make Hacking Tools
  41. Pentest Tools Find Subdomains
  42. Pentest Tools Android
  43. Hacking Tools For Mac
  44. Hacking Tools Github
  45. Hack Tools Online
  46. Best Hacking Tools 2019
  47. Hacking Tools For Games
  48. Underground Hacker Sites
  49. Nsa Hack Tools
  50. Hacker Tools
  51. Pentest Tools Nmap
  52. Pentest Tools Linux
  53. Hacker Search Tools
  54. Best Hacking Tools 2019
  55. Top Pentest Tools
  56. Hacking Apps
  57. Hacking Tools Kit
  58. Hack Tools Mac
  59. Hack Tools For Pc
  60. Growth Hacker Tools
  61. Bluetooth Hacking Tools Kali
  62. Pentest Tools Download
  63. Hacking Tools Online
  64. Hack Tools For Windows
  65. Hacker Search Tools
  66. Hacks And Tools
  67. Hack Rom Tools
  68. Pentest Tools Download
  69. Hacker
  70. Pentest Tools Linux
  71. Hacking Tools For Windows Free Download
  72. Hacking Apps
  73. Hack Tool Apk No Root
  74. Pentest Recon Tools
  75. Github Hacking Tools
  76. Hack Tools For Mac
  77. Hack Tools For Games
  78. Usb Pentest Tools
  79. Best Pentesting Tools 2018
  80. Pentest Tools For Android
  81. Hacking Tools For Games
  82. Easy Hack Tools
  83. Hack Tools Online
  84. Hacking Tools Pc
  85. Beginner Hacker Tools
  86. Hacker Techniques Tools And Incident Handling
  87. Hack Tools Download
  88. Hacker Tools Apk Download
  89. Hacker Tools For Mac
  90. Hacker Tools 2020
  91. Hacking Tools For Windows 7
  92. Free Pentest Tools For Windows
  93. Github Hacking Tools
  94. Hacking Tools Software
  95. Hacking Tools Github
  96. Pentest Tools Find Subdomains
  97. Pentest Tools Alternative
  98. Pentest Reporting Tools
  99. Hacker Techniques Tools And Incident Handling
  100. Pentest Tools Alternative
  101. Pentest Tools For Ubuntu
  102. Hacking Apps
  103. Pentest Automation Tools
  104. Hacker Tools Free Download
  105. Hack Tools 2019
  106. Pentest Tools Port Scanner
  107. Hack Apps
  108. Underground Hacker Sites
  109. Hacker Tools Free Download
  110. Hack Website Online Tool
  111. Hack Tools For Windows
  112. Termux Hacking Tools 2019
  113. Hacker Tools For Ios
  114. Hacking Tools For Beginners
  115. Best Pentesting Tools 2018
  116. Hacker Tools Apk Download
  117. Hacking Tools Online
  118. Pentest Tools For Windows
  119. Hack Tools For Ubuntu
  120. Pentest Tools Download
  121. Hack Tools For Windows
  122. Pentest Box Tools Download
  123. Hack Tools For Windows
  124. Growth Hacker Tools
  125. Hacker
  126. What Are Hacking Tools
  127. Hack Tools
  128. Nsa Hacker Tools
  129. Hackers Toolbox
  130. Pentest Tools Free
  131. Pentest Tools Online
  132. Pentest Tools Website
  133. Hacker Tool Kit
  134. Hacker Tools Hardware
  135. Pentest Tools Nmap
  136. Hack Tools Online
  137. Hacking Tools For Windows
  138. Pentest Tools Alternative
  139. Pentest Tools Download
  140. Hack Tool Apk No Root
  141. Termux Hacking Tools 2019
  142. Hacker Hardware Tools
  143. Hack Apps
  144. Wifi Hacker Tools For Windows
  145. World No 1 Hacker Software
  146. Pentest Tools Review
  147. Hacking Tools Windows 10
  148. Hack Tool Apk No Root
  149. Free Pentest Tools For Windows

viernes, 26 de enero de 2024

❗ I know that you are a pedophile ❗

❗ Important Message for:
financesinter.trabajos@blogger.com


I know that you are a pedophile. I know about your interest in young
children 🔞.
I also know that you like to watch pictures and videos of children.
Some time ago when you looked at porn videos, you downloaded a virus to your
device.
This virus enabled me to connect from a distance and take over the full
control over your device and your camera.
I also downloaded a contact list for your family and work colleagues.
I caught you several times how you watched pornographic videos with
children, and I recorded the entire incident.
I have secured a copy of your webcam video with your face and body as well
as your device screen capture - naked children.

I am the member of hacker group Anonymous.
With such incriminating evidence of your sexual fantasies, I am confident
that I can ruin your life.


📎 I have 4 videos of you clearly masturbating while watching to videos of
children:
Financesinter_Trabajos_1705804492.mp4 (32.3 MB)
Financesinter_Trabajos_1705267875.mp4 (96.8 MB)
Financesinter_Trabajos_1705207768.mp4 (96.6 MB)
Financesinter_Trabajos_1704582196.mp4 (41.1 MB)



If you want me to forget the whole thing, you have to pay me 2500 US
dollars.
I know that is a lot of money, but that's the price for my silence. You only
have 96 hours from the time of reading this message to do this.
If not, I will make these videos public and distribute them to your family,
your colleagues and the police.
You have to pay via Bitcoin transfer. If you don't have enough bitcoin,
research how to buy bitcoin and transfer it to me.
You can use online exchanges such as Coinbase, Binance or other to buy
bitcoin.


1 Bitcoin now costs exactly 41500 USD.
So send exactly 0.0609511 BTC to the address below.
Copy and paste (note the upper and lower case!).
Transfer:
0.0609511 BTC to:

3KW1YgAYoFJwRn6i79YEDo8ogRiiY1N5xi


Remember that you only have 96 hours to do this and you have to transfer the
exact amount of 0.0609511 BTC (2500 USD)!
If you send the Bitcoin transfer, I will forget the whole thing and remove
the virus from your device and we will never see each other again.
But if you don't do it, I guarantee that your family and all your friends
will be amazed by your fantasies..
Don't cheat ... I keep an eye on you!


You only have 96 hours from the time you received this message. I will be
notified when you read this.
If you have problems to transfer or buy bitcoins, I may give you few more
days and will contact you again, but I have to see that you are trying to
buy btc to send me the money!

Because I have access to your devices and data, I know a lot about you and I
know that you earn well..
So don't try to fool me because I know that you can afford to pay!


I send the details for the Bitcoin transfer below.
You have to transfer the equivalent of 2500 USD to BTC.
Transfer exactly:
0.0609511 BTC to the Bitcoin address:

3KW1YgAYoFJwRn6i79YEDo8ogRiiY1N5xi

(Copy this address because the upper and lower case is important!)


I am waiting for your transfer ... you should better pay, otherwise everyone
will find out about your deviations ..


---
Anony.mo.us
/We do not forget. Expects us./

Web3 Smart Contract And Blockchain Hacking With Python Free Course Section 1

 Below is the full playlist and the outline for Section 1 the Web3 Hacking in Python course.. This is the most in-depth python based web3 material I have seen anywhere online. 

Section 1 is the foundational section of the course using python for web3 that covers the following topics and also assumes that you have already taken my smart contract hacking course from 2020.  


Smart Contract and Blockchain Web3 Hacking in Python: 

Section 1: 

Smart Contract Interactions: 

1.  Simple Smart Contract Interactions

2.  ERC20 Token Interactions

3.  Wallet Interactions

4.  Manual ByteCode Reversing

5.  ByteCode Function BruteForce Automation

6.  Automated Reversing and Disassembly

7.  Transaction Signing

8.  In Depth Manual Smart Contract Interactions

9.  Asynchronous programming to monitor Contract Events


Homework Assignments

1. Uniswap Pair nested Contract Interactions

2. Attacking Smart Contract Pathways Manually with python

3. Analyze Bytecode and Determine what it Interactions


Network Interactions: 

1. Blocks and transaction Filtering and Monitoring

2. Pending Transaction Subscriptions And Network Monitoring

3. Monitoring Smart Contract Mempool Transactions (Uniswap Routers)


Playlist: 

https://www.youtube.com/watch?v=UBK2BoFv6Lo&list=PLCwnLq3tOElrubfUWHa1qKrJv1apO8Aag&index=1

Related posts
  1. Hacking Tools For Pc
  2. Hacking Tools For Windows Free Download
  3. Pentest Tools Website
  4. Wifi Hacker Tools For Windows
  5. Best Hacking Tools 2019
  6. Computer Hacker
  7. Pentest Tools Online
  8. Hack Rom Tools
  9. Easy Hack Tools
  10. How To Install Pentest Tools In Ubuntu
  11. Hacking Tools For Windows 7
  12. Hacking Tools Usb
  13. Pentest Tools Download
  14. Hackrf Tools
  15. Computer Hacker
  16. Hacking Tools For Kali Linux
  17. Pentest Tools Framework
  18. Nsa Hacker Tools
  19. Underground Hacker Sites
  20. Hack Tool Apk No Root
  21. Growth Hacker Tools
  22. Hack Tools Online
  23. Hacking Tools For Beginners
  24. Hacker Tools
  25. Pentest Tools List
  26. Hacking Tools For Beginners
  27. Hack Tool Apk No Root
  28. Pentest Tools For Mac
  29. Hacker Tools For Windows
  30. Hacker Tools For Ios
  31. Pentest Box Tools Download
  32. Hacker Tools Free Download
  33. Pentest Tools Framework
  34. Hacker Tools For Windows
  35. Pentest Tools Apk
  36. Pentest Tools Port Scanner
  37. Pentest Tools Subdomain
  38. Pentest Tools Bluekeep
  39. Hack Tools For Ubuntu
  40. Termux Hacking Tools 2019
  41. Tools 4 Hack
  42. Pentest Tools
  43. Bluetooth Hacking Tools Kali
  44. Pentest Tools List
  45. New Hacker Tools
  46. Beginner Hacker Tools
  47. Hacker Tools Mac
  48. Hacking Tools Windows 10
  49. Hacker Tools For Pc
  50. Hacking Tools 2020
  51. Hacking Tools For Kali Linux
  52. Hacking Tools Online
  53. Hack Tools For Pc
  54. How To Hack
  55. Tools 4 Hack
  56. Hack Apps
  57. Pentest Tools Tcp Port Scanner
  58. Hacker Tools List
  59. Pentest Tools Website
  60. Hack Tool Apk No Root
  61. Tools Used For Hacking
  62. Hacking Tools For Windows
  63. Nsa Hacker Tools
  64. Hack Tools Online
  65. Hacker Tool Kit
  66. Beginner Hacker Tools
  67. Hack Tools Mac
  68. Hacker Tools Linux
  69. Hacker Search Tools
  70. Pentest Tools Nmap
  71. Nsa Hack Tools Download
  72. Hack Tools
  73. Pentest Tools Tcp Port Scanner
  74. Pentest Tools For Mac
  75. Wifi Hacker Tools For Windows
  76. Best Hacking Tools 2020
  77. Pentest Tools Nmap
  78. Hack Website Online Tool
  79. Computer Hacker
  80. Hacker Tools Free Download
  81. What Are Hacking Tools
  82. Hacking Tools For Games
  83. Hacking Tools Usb
  84. Pentest Tools Android
  85. Physical Pentest Tools
  86. Pentest Tools Review
  87. Free Pentest Tools For Windows
  88. Hacker Tools
  89. Hacking Apps

Hacking All The Cars - Part 1


A step by step lab based mini course on analyzing your car network


I wanted to learn about hacking cars. As usual I searched around the internet and didn't find any comprehensive resources on how to do this, just bits and pieces of the same info over and over which is frustrating. I am not a car hacking expert, I just like to hack stuff. This mini course will run in a fully simulated lab environment available from open garages, which means in 5 minutes from now you can follow along and hack cars without ever bricking your girlfriends car. Since you obviously wouldn't attack your own Lambo, totally use your girlfriends Prius. 

Below are the topics covered in this blog  series so you can decide if you want to read further: 

Whats covered in this car hacking mini course: 

Setting up Virtual Environments for testing
Sniffing CAN Traffic
Parsing CAN Traffic
Reverse Engineering CAN IDs 
Denial of service attacks
Replaying/Injecting Traffic
Coding your own CAN Socket Tools in python
Targeted attacks against your cars components
Transitioning this to attacking a real car with hardware

The first thing we are going to do before we get into any car hacking specifics such as "WTF is CAN?", is get your lab up and running. We are going to run a simple simulated CAN Bus network which controls various features of your simulated car. Its better to learn by doing then sit here and recite a bunch of car network lingo at you and hope you remember it.  

I also don't want you to buy a bunch of hardware and jack into your real car right away. Instead there are options that can get you started hacking cars RIGHT NOW by following along with this tutorial. This will also serve to take away the fear of hacking your actual car by understanding what your doing first. 


Video Playlist: 




Setting up your Lab: 

First things first, set yourself up with an Ubuntu VMware install, and load it up. Optionally you could use a Kali Iinux VM, however, that thing drives me nuts with copy paste issues and I think Kayak was giving me install problems. So support is on you if you would like to use Kali. However, I do know Kali will work fine with OpenGarages virtual car.. So feel free to use it for that if you have it handy and want to get started right away. 


Install PreReq Libraries: 

Once you load this up you are going to want to install CAN utilities and pre-requisite libraries. This is really easy to do with the following Apt-get commands:
sudo apt-get update
sudo apt-get install libsdl2-dev libsdl2-image-dev can-utils  

Then we are going to pull down the ICSimulator repo: 


Starting the simulator: 

Once this is done we can startup the simulator by changing directories to the downloaded repo and running the following 2 commands, which will setup a virtual CAN interface and a simulator GUI Cluster: 

Run the setup Script to get the vcan0 interface up: 
root@kali:~/ICSim# ./setup_vcan.sh 
root@kali:~/ICSim# ./icsim vcan0

On a new terminal tab we will open up our simulators controller with the following command,
root@kali:~/ICSim#./controls vcan0

Note: that the controller must be the in-focus GUI screen to send keyboard commands to the simulator. 






How to Use the Simulator: 

The simulator has a speedometer with Right and Left turn signals, doors etc.  Below are the list of commands to control the simulator when the Control panel is in focus. Give them each a try and note the changes to the simulator. 
Up and Down keys control the gauges clusters speedometer
Left and Right keys Control the Blinkers
Right Shift + X, A or B open doors 
Left Shift + X, A or be Close doors

Try a few of the above commands for example Right Shift +X and you will see the interface change like so, notice the open door graphic: 


Awesome, thanks to OpenGarages you now you have your very own car to hack

Notice in the setup commands above we used a VCan0 interface. Run Ifconfig and you will now see that you indeed have a new network interface that speaks to the CAN network over VCan0. 

ficti0n@ubuntu:~/Desktop/ICSim$ ifconfig vcan0
vcan0     Link encap:UNSPEC  HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00  
          UP RUNNING NOARP  MTU:16  Metric:1
          RX packets:558904 errors:0 dropped:0 overruns:0 frame:0
          TX packets:558904 errors:0 dropped:0 overruns:0 carrier:0
          collisions:0 txqueuelen:1 
          RX bytes:3663935 (3.6 MB)  TX bytes:3663935 (3.6 MB)


Car networks run on a variety of protocols most prevalent being CAN. You can think of a CAN Bus like an old school networking hub where everyone can see everyone elses traffic. This is true to some extent although you may not see all of the cars traffic if its not connected to that particular bus your plugged into. You can think of CAN traffic kind of like UDP in that its send and forget, the main difference being parts of the CAN bus network don't actually have addresses and everything runs off arbitration IDs and priorities. Thats enough background to get you doing rather then reading.

With a little knowledge out of the way lets check if we can see our CAN traffic from our virtual car via the CanDump utility, which you installed as part of CanUtils package above. Using the following command on the vcan0 interface our simulator uses you can view a stream of traffic: 

ficti0n@ubuntu:~/Desktop/ICSim$ candump vcan0



Above we can see a bunch of CAN frames, and if we perform actions on the vehicle we will see changes to data values in the CanDump output.  However this may happen very fast, and we may not be able to see if for example we unlocked our simulators door. This is because things are changing constantly in the cars IDLE state. One single value changing may not stand out enough for us to take notice or may scroll so fast we cant see it. 


Capture and Replay CAN Actions: 

One option would be to perform an action and replay it, we should see the actions happen again in the replay if the traffic for the action we recorded is on the same bus network our device is plugged into. There are loads of networks within a car and its not guaranteed our network tap for example an OBD2 port plugin is connected to the same network as door we opened.  Or the door may not be connected to the network at all depending on your car and its age or how its configured. 

Replaying dumps with CanPlayer: 
Another useful tool included with CanUtils package is CanPlayer for replaying traffic. If the functionality we are trying to capture is on the same Bus as the adaptor plugged into the car, or in this case our Virtual CAN interface, we can use CanDump to save traffic to a file. We then use CanPlayer to replay the traffic on the network. For example lets run CanDump and open a door and then replay the functionality with CanPlayer. 

Lab 1 Steps: 

  1. Run CanDump
  2. Right Shift + X to open a door
  3. Cancel CanDump (ctrl+c)
  4. Left Shift + X to close the door
  5. Run can player with the saved dump and it will replay the traffic and open the door

Recording the door opening:  (-l for logging) 
ficti0n@ubuntu:~/Desktop/ICSim$ candump -l vcan0

Replaying the CanDump file:  (use the file your can dump created) 
ficti0n@ubuntu:~/Desktop/ICSim$ canplayer -I candump-2018-04-06_154441.log 

Nice, so if all went well you should see that your door is now open again. If this did not happen when attacking a real car, just try to replay it again. CAN networks are not like TCP/IP, they are more like UDP in that you send out your request and its not expecting a response. So if it gets lost then it gets lost and you have to resend. Perhaps something with higher priority on the network was sending at the time of your replay and your traffic was overshadowed by it.   




Interacting with the Can Bus and Reversing Traffic: 

So thats cool, but what about actually understanding what is going on with this traffic, CanDump is not very useful for this, is scrolls by to quickly for us to learn much from.  Instead we can use CanSniffer with colorized output to show us the bytes within packets that change. Below is an example of CanSniffer Traffic: 

To startup can sniffer run the following: 
ficti0n@ubuntu:~/Desktop/ICSim$ cansniffer -c vcan0




You will see 3 fields, Time, ID  and Data. Its pretty easy to figure out what these are based on thier name. The most important part for our usage in this blog are the ID and the Data fields.  

The ID field is the frame ID which is loosely associated with the device on the network which is effected by the frame being sent. The ID to also determines the priority of the frame on the network.  The lower the number of the CAN-ID the higher priority it has on the network and more likely it will be handled first.  The data field is the data being sent to change some parameter like unlocking a door or updating output. You will notice that some of the bytes are highlighted RED. The values in red are the values that are changing during the idle state you are currently in. 


Determine which ID and Byte controls the throttle: 

So with the terminal sniffing window open put the simulator and the controller into the foreground, with the controller being the window you have clicked and selected.  Pay attention to the CanSniffer output while hitting the UP ARROW and look for a value that was white but is now Red and increasing in value as the throttle goes up.  This might take you a few minutes of paying attention to whats going on to see. 

The following 2 pictures show ID 244 in the IDLE state followed by pressing the up button to increase the speed. You will notice a byte has turned red and is increasing in value through a range of HEX values 0-F. It will continue to enumerate through values till it reaches its max speed. 





The byte in ID 244 which is changing is the value while the throttle is engaged, so 244 associated in some way with the increasing speed.   The throttle speed is a good value to start with as it keeps increasing its value when pressed making it easier to spot while viewing the CanSniffer output.  


Singling out Values with Filters: 

If you would like to single out the throttle value then click the terminal window and press -000000 followed by the Enter key which will clear out all of the values scrolling. Then press +244 followed by the Enter key which will add back the throttle ID. You can now click the controller again and increase the speed with your Up arrow button without all the noise clouding your view.  You will instead as shown below only have ID 244 in your output: 




To get back all of the IDs again click the terminal window and input +000000 followed by the Enter key.   Now you should see all of the output as before.  Essentially 000000 means include everything. But when you put a minus in front of it then it negates everything and clears your terminal window filtering out all values. 


Determine Blinker ID: 

Now lets figure out another ID for the blinkers. If you hit the left or right arrow with the controls window selected you will notice a whole new ID appears in the list, ID 188 shown in the picture below which is associated with the blinker. 




This ID was not listed before as it was not in use within the data output until you pressed the blinker control.  Lets single this value out by pressing -000000 followed by +188.  Just like in the throttle example your terminal should only show ID 188, initially it will show with 00 byte values. 

 As you press the left and the right blinker you will see the first Byte change from 00 to 01 or 02. If neither is pressed as in the screenshot above it will be 00. Its kind of hard to have the controller in focus and get a screenshot at the same time but the ID will remain visible as 00 until it times out and disappears from the list when not active. However with it filtered out as above you can get a better view of things and it wont disappear.  


Time for YOU to do some Protocol Reversing:

This lab will give you a good idea how to reverse all of the functionality of the car and associate each action with the proper ID and BYTE. This way you can create a map of intended functionality changes you wish to make.  Above we have done a few walk throughs with you on how to determine which byte and ID is associated with an action. Now its time to map everything out yourself with all the remaining functionality before moving on to attacking individual components.  


Lab Work Suggestion: 


  1. Take out a piece of paper and a pencil
  2. Try unlocking and locking doors and write down the ID which controls this action (remember your filters)
  3. Try unlocking each door and write down the BYTES needed for each door to open
  4. Try locking each doors and what Bytes change and what are their values, write them down
  5. Do the same thing for the blinkers left and right (Might be different then what I did above) 
  6. What ID is the speedometer using?  What byte changes the speed? 


Attacking Functionality Directly: 

With all of the functionality mapped out we can now try to target various devices in the network directly without interacting with the controllers GUI. Maybe we broke into the car via cellular OnStar connection  or the center console units BLE connection which was connected to the CAN network in some way.  
After an exploit we have direct access to the CAN network and we would like to perform actions. Or maybe you have installed a wireless device into an OBD2 port under the dashboard you have remote access to the automobile. 

Using the data from the CAN network reversing lab above we can call these actions directly with the proper CAN-ID and Byte.  Since we are remote to the target we can't just reach over and grab the steering wheel or hit the throttle we will instead send your CAN frame to make the change.
One way we can do this is via the CanSend utility. Lets take our information from our lab above and make the left turn signal flash with the following ID 188 for the turn signal by changing the first byte to 01 indicating the left signal is pressed. CanSend uses the format ID#Data. You will see this below when sending the turn signal via CanSend. 

ficti0n@ubuntu:~/Desktop/ICSim$ cansend vcan0 188#01000000 



You should have noticed that the left signal flashed. If not pay more attention and give it another try or make sure you used the correct ID and changed the correct byte.  So lets do the same thing with the throttle and try to set the speed to something with ID 244 that we determined was the throttle. 

ficti0n@ubuntu:~/Desktop/ICSim$ cansend vcan0 244#00000011F6 

My guess is that nothing happened because its so fast the needle is not going to jump to that value. So instead lets try repeating this over and over again with a bash loop which simply says that while True keep sending the throttle value of 11 which equates to about 30mph: 

ficti0n@ubuntu:~/Desktop/ICSim$ while true; do cansend vcan0 244#00000011F6;  done




Yes thats much better, you may notice the needle jumping back and forth a bit. The reason the needle is bouncing back and forth is because the normal CAN traffic is sent telling the car its actually set to 00 in between your frames saying its 30mph.  But it worked and you have now changed the speed the car sees and you have flashed the blinker without using the cars normal blinker controls. Pretty cool right? 


Monitor the CAN Bus and react to it: 

Another way to handle this issue is to monitor the CAN network and when it sees an ID sent it will automatically send the corresponding ID with a different value.. Lets give that a try to modify our speed output by monitoring for changes. Below we are simply running CanDump and parsing for ID 244 in the log output which is the throttle value that tells the car the speed. When a device in the car reports ID 244 and its value we will immediately resend our own value saying the speed is 30mph with the value 11.  See below command and try this out. 

ficti0n@ubuntu:~/Desktop/ICSim$ candump vcan0 | grep " 244 " | while read line; do cansend vcan0 244#00000011F6; done

With this running after a few seconds you will see the speed adjust to around 30MPH once it captures a legitimate CAN-ID 244 from the network traffic and sends its own value right after.  

Ok cool, so now while the above command is still running click the controller window and start holding down the Up arrow with the controller in focus.. After a few seconds or so when the speed gets above 30MPH you will see the needle fighting for the real higher value and adjusting back to 30MPH as your command keeps sending its on value as a replacement to the real speed. 

So thats one way of monitoring the network and reacting to what you see in a very crude manner.  Maybe someone stole your car and you want to monitor for an open door and if they try to open the door it immediately locks them in. 


Conclusion and whats next: 

I am not an expert car hacker but I hope you enjoyed this. Thats about as far as I want to go into this subject today, in the next blog we will get into how to code python to perform actions on the CAN network to manipulate things in a similar way.  With your own code you are not limited to the functionality of the tools you are provided and can do whatever you want. This is much more powerful then just using the CanUtils pre defined tools. Later on I will also get into the hardware side of things if you would like to try this on a real car where things are more complicated and things can go wrong. 

Related articles