Upgrade to Pro — share decks privately, control downloads, hide ads and more …

A Brief Overview of the Red Star OS 3.0 Security Flaw

TJC573
January 12, 2015

A Brief Overview of the Red Star OS 3.0 Security Flaw

TJC573

January 12, 2015
Tweet

More Decks by TJC573

Other Decks in Technology

Transcript

  1. “HEADS UP, DEAR LEADER: SECURITY HOLE FOUND IN NORTH KOREA’S

    HOME-GROWN OS” SEAN GALLAGHER, ARS TECHNICA
  2. “ATTACKING 'RED STAR': LEAKS SHOW JUST HOW EASY IT MIGHT

    BE TO HACK NORTH KOREA” THOMAS FOX-BREWSTER, FORBES
  3. MOST OF NORTH KOREA’S CONNECTIVITY COMES FROM NETWORKS ISOLATED FROM

    THE REST OF THE WORLD. IT’S HARD TO SAY FOR SURE, BUT SOME BELIEVE THAT THE OS ISN’T RUN BY MANY INDIVIDUALS, BUT BY ORGANIZATIONS. MANY INDIVIDUALS RUN VERSIONS OF WINDOWS XP.
  4. VERSION 3.0 RELEASED SUMMER 2013 DESIGNED TO LOOK LIKE APPLE’S

    OS X PREVIOUS VERSIONS DESIGNED TO LOOK LIKE WINDOWS
  5. THE FLAW ALLOWS A USER ACCESS TO ROOT PRIVILEGES; THIS

    IN TURN GIVES THEM THE CAPABILITY TO DISABLE SECURITY RESTRICTIONS IN PLACE BY THE GOVERNMENT.
  6. A RULE FILE FOR A BUILT-IN GENERIC KERNEL DEVICE MANAGER

    IS WORLD-WRITEABLE. THIS RULE FILE WAS ORIGINALLY INTENDED FOR AN HP LASERJET 1000 PRINTER. THE RULE FILE CAN BE MODIFIED TO RUN COMMANDS WITH ROOT ACCESS.
  7. WITH SUCH A SMALL NUMBER OF PEOPLE USING RED STAR

    3.0, THE DEVELOPERS MAY NOT HAVE FOUND THE FLAW IN THE BASIC SECURITY.
  8. THERE IS SPECULATION THAT THE FLAWS IN RED STAR ASSISTED

    THE FBI IN PINNING THE BLAME ON NORTH KOREA FOR THE SONY PICTURES HACK LAST DECEMBER.
  9. THIS MAY SIGNIFY THAT MANY COMPUTERS IN NORTH KOREA ARE

    EASY TARGETS. THAT MAY ALSO BE THE POINT. ERRORS LIKE THIS ONE HAVE PLAGUED EARLIER VERSIONS OF RED STAR.
  10. REFERENCES FOX-BREWSTER, THOMAS. "ATTACKING 'RED STAR': LEAKS SHOW JUST HOW

    EASY IT MIGHT BE TO HACK NORTH KOREA." FORBES. FORBES MAGAZINE, 9 JAN. 2015. WEB. 12 JAN. 2015. GALLAGHER, SEAN. "HEADS UP, DEAR LEADER: SECURITY HOLE FOUND IN NORTH KOREA’S HOME-GROWN OS." ARS TECHNICA. 9 JAN. 2015. WEB. 12 JAN. 2015.