Related Links

Related Stories

  • Linux, Symbian, Android, Apple or Blackberry? A tough choice for CIOs
    The recent launch of nine high-specification mobile phones that use the Mobile Linux operating system (Limo) will add fuel to an already overheated market.
  • Comment: Back to information security basics
    As security companies add new technologies to meet the demands of both the evolving threat landscape and a compressed market, it is important they try not to forget about the core information security technologies that have been protecting businesses for decades
  • ISSE 2009: Existing anti-virus software is not good enough
    Existing anti-virus is not good enough, a panel of speakers agreed on 7 October at ISSE 2009 in The Hague.
  • Information security in China: A license to print money
    With 200 million internet users in China, and a predicted annual growth rate of 17% for the information security market until 2013, why would security vendors want to go anywhere else? William Knight investigates
  • What’s in store for 2010?
    The Noughties are behind us now, but memories of a decade of data breaches will continue to haunt the infosec professional. If only there was a way of knowing what the threat landscape would look like in the months to come. Well you’re in luck as Davey Winder has dusted off the crystal ball and spoken to a broad church of infosec professionals to get some informed predictions for 2010

News

Microsoft wireless keyboard cracking technology revealed

18 June 2009

Users of Microsoft's Optical 1000 and 2000 keyboards should now take extreme care what data they enter using their wireless keyboards, as Dreamlab has taken the unusual step of publishing a 49 page presentation on how to `sniff' any keystrokes out of the ether.

The release of the presentation comes about 18 months after Max Moser and Thorsten Schroder - the two researchers behind Dreamlab - announced to an initially sceptical public that they had cracked the Microsoft wireless encryption system.

Cracking the system and developing the Keykeriki software to extract the keystrokes in real time, however, are two different things, and Dreamlab appear to have gone the distance and even published details of the circuit diagram required for the sniffer hardware.

Infosecurity understands that the hardware centres on the Texas Instruments TRF7900A 27 MHz receiver chipset commonly seen in wireless mice and keyboards.

According to Dreamlab, the chipset is controlled via an eight-bit Atmel controller.

The good news is that only Microsoft's wireless keyboards transmitting on the 27 MHz band are currently affected by the crack, and not the latest generation of Bluetooth keyboards, or wireless units from other manufacturers.

Dreamlab says that decoding the Microsoft keyboard codes is relatively easy, as the encryption system is based on a simple XOR operation and only requires an eight-bit key.

The two researchers are now reportedly turning their attention to 2.4 GHz-based wireless keyboards.


 

 

This article is featured in:
Data Loss Encryption Wireless and Mobile Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.