TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

A cheap radio hack disrupted Poland's railway system

171 点作者 xrayarx超过 1 年前

13 条评论

oatmeal1超过 1 年前
The world is astoundingly safe that these sorts of thing don't happen all the time. Anyone who could light a cigarette could start wildfires all over California and many other places during the summer. Anyone who can buy a GPS jammer could disrupt one of the busiest airports in the world. With all the misanthropes out there you'd think chaos would happen more often. Glad it doesn't.
评论 #37313821 未加载
评论 #37315029 未加载
评论 #37315064 未加载
评论 #37315941 未加载
评论 #37314876 未加载
评论 #37313600 未加载
评论 #37319061 未加载
评论 #37313650 未加载
评论 #37319740 未加载
Animats超过 1 年前
This is a problem. You don&#x27;t want an emergency stop signal to be ignored because somebody didn&#x27;t update their encryption keys. And it&#x27;s very useful for railroad workers to be provided with handhelds that can send an emergency stop signal. Here&#x27;s one used in the US.[1] This is for yard operations, where there&#x27;s slow-speed (the US limit is 20mph) traffic going in various directions without full signal control. Outside the &quot;yard limit&quot;, signals control, and speeds are higher.<p>If you have no idea what a railroad yard working environment is like, here&#x27;s a Union Pacific recruiting video.[2] They&#x27;re up-front about what you&#x27;re getting into; the intro shows someone at 5:48 AM in a snowstorm in a railyard in Chicago.<p>[1] <a href="https:&#x2F;&#x2F;railserve.biz&#x2F;react-safety-device&#x2F;" rel="nofollow noreferrer">https:&#x2F;&#x2F;railserve.biz&#x2F;react-safety-device&#x2F;</a><p>[2] <a href="https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=lMViWazEYoc">https:&#x2F;&#x2F;www.youtube.com&#x2F;watch?v=lMViWazEYoc</a>
评论 #37318069 未加载
评论 #37315569 未加载
praptak超过 1 年前
This hack is publicly known since at least 2010, here&#x27;s a police note about the earliest case I found (in Polish): <a href="https:&#x2F;&#x2F;policja.pl&#x2F;pol&#x2F;aktualnosci&#x2F;56015,quotRadioamatorquot-zatrzymywal-pociagi.html" rel="nofollow noreferrer">https:&#x2F;&#x2F;policja.pl&#x2F;pol&#x2F;aktualnosci&#x2F;56015,quotRadioamatorquot...</a>
评论 #37318498 未加载
0xA43超过 1 年前
I&#x27;ve tried to translate the article on the one and only polish offensive cybersec site in case if you want to learn more<p><a href="https:&#x2F;&#x2F;telegra.ph&#x2F;How-easy-is-it-to-paralyze-the-Polish-railroad-Lets-find-out-08-28" rel="nofollow noreferrer">https:&#x2F;&#x2F;telegra.ph&#x2F;How-easy-is-it-to-paralyze-the-Polish-rai...</a>
评论 #37316980 未加载
smilespray超过 1 年前
Could you effectively perform this hack from a satellite or an aircraft? 150 MHz should propagate quite a distance given line of sight.
评论 #37312804 未加载
评论 #37315201 未加载
xnzakg超过 1 年前
<a href="https:&#x2F;&#x2F;archive.is&#x2F;vXAEb" rel="nofollow noreferrer">https:&#x2F;&#x2F;archive.is&#x2F;vXAEb</a>
burtekd超过 1 年前
It&#x27;s not a hack. It&#x27;s just sending a well-known three tones sequence on given frequency.
评论 #37318621 未加载
jakozaur超过 1 年前
Poland needs to upgrade rail systems, there were plans years ago, but it was costly and postponed. Unfortunately, the radio-stop works well and it&#x27;s reliable.<p>Now with around 80% of military equipment to Ukraine is transported through Poland, those vulnerabilities are going to be exploited.<p>Russia already run remotely groups though encrypted messages and crypto payments:<p><a href="https:&#x2F;&#x2F;www.washingtonpost.com&#x2F;world&#x2F;2023&#x2F;08&#x2F;18&#x2F;ukraine-weapons-sabotage-gru-poland&#x2F;" rel="nofollow noreferrer">https:&#x2F;&#x2F;www.washingtonpost.com&#x2F;world&#x2F;2023&#x2F;08&#x2F;18&#x2F;ukraine-weap...</a><p>The aim is to do some diversion or disinformation. There were many instances of producing fake news or misrepresent about some events. Please do your part and refrain from sharing those news about Poland without double checking sources.<p>Unfortunately, some &quot;news&quot; were picked by mainstream media, even though they could not find any evidence behind that (e.g. turning back non-white people on Poland-Ukrainian border by Polish officials).
评论 #37322549 未加载
nimbius超过 1 年前
True story some amateur radio hams managed to nearly torch our shops substation relay with radios.<p>Basically our main transformer switchgear was opening and closing on its own every few minutes. We run a diesel truck repair company and it was killing everything from the front office to the air compressors and anything in between. The electric company told us there&#x27;s an ultra low frequency &quot;DX&quot; the hams sometimes get into that their own power lines use to communicate with substations. Pretty silly. We lost the air conditioner and the boombox that year.
评论 #37317638 未加载
评论 #37318995 未加载
PM_me_your_math超过 1 年前
I like how they give you the frequency so you can try it yourself.
toomuchtodo超过 1 年前
Previous: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=37288856">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=37288856</a>
fnord77超过 1 年前
why aren&#x27;t hack sabotages seen as acts of war?<p>they can do as much or more damage as, say, blowing up a bridge
评论 #37314489 未加载
评论 #37315252 未加载
评论 #37318420 未加载
评论 #37313367 未加载
评论 #37318479 未加载
评论 #37313381 未加载
toss1超过 1 年前
&gt;&gt;Because the trains use a radio system that lacks encryption or authentication for those commands, Olejnik says, anyone with as little as $30 of off-the-shelf radio equipment can broadcast the command to a Polish train—sending a series of three acoustic tones at a 150.100 megahertz frequency—and trigger their emergency stop function.<p>Goes without saying here that this needs to be fixed ASAP.<p>&gt;&gt;The railway agency wrote that “there is no threat to rail passengers. The result of this event is only difficulties in the running of trains.”<p>There is no threat to rail passengers, unless a passenger train does not know about a stopped train ahead of it on the tracks, e.g., a cargo train go stopped by the hack, but the passenger train 10min behind it did not and continues to rush onward towards the stopped cargo train. IDK if Poland&#x27;s control system would reliably detects these conditions, but if it does not with 100% reliability, this is a real threat.
评论 #37313092 未加载
评论 #37313089 未加载
评论 #37313314 未加载