Skip to main content

Smart Adult Toys: Faster, Harder & Unencrypted

25-minute Talk

Learn about security awareness in IoT Devices

Virtual Pass session

Timetable

3:45 p.m. – 4:30 p.m. Thursday 19th

Room

Room F1 - Track 1: Talks

Security Testing

Audience

Anyone 18+

Key-Learnings

  • You'll learn about different kinds of bluetooth
  • You'll increase your IoT Security Awareness
  • You'll learn how to approach IoT devices for PenTesting

A Hackers Journey, For your pleasure!

Penetration testing isn’t always web applications, APIs, and cloud dashboards. It also concerns devices in people’s (private) daily life, known as IoT devices; Smart fridges, dishwashers, watches, etc ... but there are some which are even more private, and we don’t like to talk about them. Yes, Smart Adult Toys and I’m going to talk about them. ​

Smart adult toys combine mobile apps, bluetooth, firmware, and cloud services into a single system, yet they are often built with minimal security taken into considerations. In this talk I will show you how you can approach and exploit these devices for educational purpose. ​

I’ll guide you through my research & pen-testing experience of smart adult toys and I bet you’ll be shocked by the horrors that I’ve found. I’ll show you my process of how I approached it, the vulnerabilities found (such as: Information disclosures, IDORs, Account takeovers, Hijacking, Privacy Breaches and much more) and some fun stories!​

It's my hacker journey, for your pleasure, I hope you are as thrilled as I am!​

Trigger Warning: No worries, this session will be Code of Conduct proof. No explicit content or pictures will be shown.

Related Sessions

There are currently no related sessions listed. Please check back once the program is officially released.