Strom Carlson
From Wikipedia, the free encyclopedia
This article may not meet the general notability guideline or one of the following specific guidelines for inclusion on Wikipedia: Biographies, Books, Companies, Fiction, Music, Neologisms, Numbers, Web content, or several proposals for new guidelines. If you are familiar with the subject matter, please expand or rewrite the article to establish its notability. The best way to address this concern is to reference published, third-party sources about the subject. If notability cannot be established, the article is more likely to be considered for redirection, merge or ultimately deletion, per Wikipedia:Guide to deletion. This article has been tagged since November 2007. |
- This article is about Strom Carlson, a phone phreak. For the defunct American telephone equipment manufacturing company, see Stromberg-Carlson.
Strom Carlson is the pseudonym of an American phone phreak who is the organizer of the Los Angeles DEF CON Groups chapter DC213 and former co-host of Binary Revolution Radio.
Contents |
[edit] Biography
Strom has presented at the hacker conferences Def Con and LayerOne. He also co-hosted Binary Revolution Radio with fellow phone phreak Black Ratchet, having taken over from StankDawg when Stank took a sabbatical in July 2005.
In February 2006, Strom found a vulnerability in the Kinko's ExpressPay smart card system that makes it possible to change the serial number and the value stored on the card. An attacker could then make photocopies or rent computers completely anonymously or without paying anything at all. Furthermore, since remaining balance on the cards can be cashed out, it would be easy for an attacker to use the vulnerability as a quick source of cash. Kinko's has stated that abusing this vulnerability is "no different from stealing". [1][2]
[edit] Presentations
- DEFCON 14: "Hacking FedEx Kinko's: How Not To Implement Stored-Value Card Systems."[3]
- DEFCON 13: "Be Your Own Telephone Company...With Asterisk." (with BlackRatchet)[4]
- DEFCON 12: "Phreaking in the Age of Voice Over IP." (with Lucky225)[5]
[edit] References
[edit] External links
- http://www.stromcarlson.com/ - Strom Carlson's website
- http://www.la2600.org/recaps.php - notes on Strom's presentation on Asterisk and VoIP, July 1, 2005
- Kinko's Hack - Whitepaper on Strom's Kinko's Smart Card Hack