Kevin Mitnick: Live Hack at CeBIT Global Conferences 2015

He is the most famous hacker of the world – and at CeBIT Global Conferences 2015 he performs a hack live on center stage: Kevin Mitnick.

  16. List of tools/techniques used in the video:

    19:18 – BadUSB[1]
    25:34 – Adobe Acrobat Reader – malicious PDF
    27:56 – Proxclone – cloning RFID cards
    35:19 – Tracers Information Specialists, Inc.[2] – Social Secure Numbers
    37:23 – VitalSearch-California[3] – Birthdates and Middle name
    38:50 – WiFi Pineapple
    47:04 – SMS Spoofing
    55:00 – Java Signed Applet
    58:17 – SMB Relay Attack

    Some key take-aways:

    For Users:
    1. Update Adobe Acrobat Reader to latest version
    2. Update Antivirus signatures
    3. Don't Plug-in USB Flash disks from unverified source
    4. Disable JavaScript in Adobe Acrobat Reader
    5. Configure Firewall to filter egress connections.
    6. Do NOT join any Open Wireless Network.
    7. Call verify weird SMS as they can be spoofed.
    8. Turn off Java or pay close attention to Publisher field in the Java applet.

    This is most likely for companies:
    9. Implement IDS/IPS where possible.
    10. If you have RFID cards on-site, add PIN-codes to doors, implement anti pass-back to avoid tailgating. If you are high-tech use face recognition verified with the internal directory.


