DEF CON 18
Table of Contents
Event Overview
DEF CON 18 was the eighteenth annual DEF CON hacker convention, held at the Riviera Hotel in Las Vegas, Nevada. This year is particularly memorable for Barnaby Jack's groundbreaking ATM hacking demonstration that captured worldwide media attention.
Notable Talks
Jackpotting Automated Teller Machines Redux
The most famous talk from DEF CON 18. Barnaby Jack demonstrated live on stage how to exploit vulnerabilities in standalone ATM machines, causing them to dispense all their cash on command - a technique he dubbed "Jackpotting." The demonstration showed two different attack methods:
- A remote, network-based attack that exploited a vulnerability in the ATM's remote management system
- A physical attack using a master key (commonly available) to access the ATM's internals and install malicious firmware via USB
The dramatic moment when the ATM began spewing bills onto the stage while displaying "JACKPOT" became one of the most iconic images in DEF CON history.
Your ISP and the Government: Best Friends Forever
An exploration of the cozy relationship between internet service providers and law enforcement, examining surveillance capabilities and data retention practices.
Hacking Video Conferencing Systems
HD Moore, creator of Metasploit, presented research on vulnerabilities in enterprise video conferencing systems, demonstrating how attackers could gain unauthorized access to meetings and sensitive communications.
Extreme Makeover: BIOS Edition
Research on persistent BIOS-level rootkits that could survive operating system reinstallation and hard drive replacement.
Practical Cellphone Spying
Demonstration of GSM interception using a homemade $1,500 IMSI catcher, showing how cellphone calls could be intercepted in real-time.
Breaking Forensics Software: Weaknesses in Critical Evidence Collection
Analysis of vulnerabilities in forensics software commonly used by law enforcement, showing how evidence could potentially be manipulated or investigations compromised.
Exploiting the iPhone
The authors of "The Mac Hacker's Handbook" presented iOS security research and exploitation techniques.
Badge Talk
Joe Grand presented the design and features of the DEF CON 18 electronic badge.
Topics
Key themes at DEF CON 18 included:
- ATM and financial systems security
- Mobile and cellular security
- BIOS and firmware attacks
- Surveillance and privacy
- Video conferencing security
- Forensics tools analysis
- iPhone/iOS security
Villages
- Lockpick Village
- Hardware Hacking Village
- Wireless Village
- Social Engineering Village
Contests and Events
- Capture the Flag (CTF)
- Hacker Jeopardy
- Lock Picking Contest
- Social Engineering CTF
- Robot Wars
Media Coverage
The ATM Jackpotting demonstration received extensive worldwide media coverage:
Historical Note
Barnaby Jack's ATM research was originally scheduled for Black Hat 2009 but was pulled at the last minute after ATM manufacturer Juniper Networks requested more time to patch the vulnerabilities. The year-long delay built significant anticipation, making the DEF CON 18 presentation one of the most anticipated talks in conference history.
Tragically, Barnaby Jack passed away in 2013, but his groundbreaking security research on ATMs, insulin pumps, and pacemakers helped catalyze significant improvements in embedded device security.