WirelessHART is a wireless sensor networking technology based on the Highway Addressable Remote Transducer Protocol (HART). In short WirelessHART is widely used in the SCADA/ICS field.
For this reason ensuring its deployment and implementation from a security point of view becomes critical. The main issue is that at the moment there are not tools to properly audit and/or challenge it from a security perspective. No detailed information is available which makes it challenging to conduct vulnerability development research against it.
Our presentation will cover the research it was required to build a WirelessHART fuzzing platform. From acquiring information, choosing targets, development platform (hardware and software), reverse engineering third party implementation and trial and error we went though while developing hour WirelssHART fuzzing platform.
Agenda
Researching WirelessHART
Understanding the protocol
Reverse Engineering Third Party implementations
Designing and Building a WirelessHART Fuzzing platform
Hardware Platform
Transmitter
WH debugging (Sniffing and Dissecting)
Triggering and Catching crashes
Case study
Demo