Slashdot Mirror


Monitoring Your Monitor

bje2 writes "Rememeber this story from a couple months ago about reconstructing data from the blinking LEDs of modems...well, CNet is running a story about reconstructing the display of a computer by using special hardware and the reflected glow of the monitor." Kuhn's paper (400k PDF) is available.

148 comments

  1. i have something that works just as well by Anonymous Coward · · Score: 0

    It reconstructs a monitor image from the monitor glow too. I call it the "video camera"

    1. Re:i have something that works just as well by spike+hay · · Score: 2

      I have heard of somthing different that does this same purpose much better. I believe it was developed by the NSA. This device analyzes your electrical use. By your monitor's electric drain, it can reconstruct an image.

      --
      If you don't understand any of my sayings, come to me in private and I shall take you in my German mouth.
  2. Usefulness? by supercytro · · Score: 1, Insightful

    If you're in a situation in which you can take advantage of this effect, why not just look at the monitor itself?

    1. Re:Usefulness? by Anonymous Coward · · Score: 0

      This is old news.
      you could always read info off a monitor using the basic oscilloscope (sp)
      This is just another way of doing it.
      /. should post better paranoia stories.
      Like how our govt isnt ran by elected officials.
      There just figureheads.

  3. Special Hardware... by danamania · · Score: 2, Funny

    CNet is running a story about reconstructing the display of a computer by using special hardware and the reflected glow of the monitor."

    ...like a mirror!

    a grrl & her server

    1. Re:Special Hardware... by dingo · · Score: 1

      You know I was going to put up a long comment on how this is a very nice academic activity but real dangers come from more low tech dangers like cameras, and how we all are a product of how we like to see the world(ie high tech), but a mirror is even lower tech so i guess i am as guilty as everyone else.

      --
      The Borg assimilated my race & all I got was this lousy T-shirt
  4. Wonderful... by TheNecromancer · · Score: 2

    While Kuhn calculated that the technique could be used at a range of 50 meters at twilight using a small telescope

    Now I can watch my neighbor surf pr0n from his computer, instead of filling up my hard drive with the filth!

    --
    Attention all planets of the Solar Federation! We have assumed control! - Neil Peart
    1. Re:Wonderful... by ealar+dlanvuli · · Score: 1

      do you really want to see your neighbor surfing porn?!?

      *AHHH MENTAL IMAGE NOOOOOOOO*

      exactly

      --
      I live in a giant bucket.
  5. "special equipment" by Nathan+Brazil · · Score: 0, Redundant

    What, like, a mirror?

    --
    echo Prpv a\'rfg cnf har cvcr | tr Pacfghnrvp Cnpstuaeic
  6. Mr. Peabody's Slashback Machine by realgone · · Score: 4, Informative

    Same article appeared on /. back in March, dinnit?

    1. Re:Mr. Peabody's Slashback Machine by brianber · · Score: 1

      It sure did. The editors must have a short memory. As they say, the first three things to go with age (or smoking a certain plant) are memory, uh...damn! What are the other two?

      It must be a real slow day for them to have to resort to recycling. And to think, some people are actually paying for the privilage of reading recycled material.

    2. Re:Mr. Peabody's Slashback Machine by anon757 · · Score: 1

      I would mod you up if I hadn't had my moderation privliges permanently revoked for moderating another comment the 'slashdot gods' didn't agree with.

    3. Re:Mr. Peabody's Slashback Machine by swagr · · Score: 2

      Do the slashdot authors know about the search features?

      --

      -... --- .-. . -.. ..--..
  7. New? by sgtron · · Score: 1

    How is this different from a standard tempest attack which has been around forever?

    --
    No todo lo que es oro brilla
    1. Re:New? by Anonymous Coward · · Score: 0
      How is this different from a standard tempest attack which has been around forever?

      This paper was reported by slashdot last month. Basically, the pixel being updated this nanosecond (or whatever) is significantly brighter then all other pixels. If you can record the average light emmitted by the monitor with enough speed, you can decode what each pixel is.


      If the average spikes up, the most recent update was bright. If the average spikes down, the most recently updated was dark.


      The guys paper has screen shots of his test screen and the results that he managed. Just scroll down to the end.

      -
      I've got something useful to say and don't feel like logging in. Karma > /dev/null :)

  8. then maybe by doubtless · · Score: 2

    my porn distributor is going to sue the FBI for p2p-ing my collection through my monitor via DMCA. haha, got you!

    --
    geek page at KY speaks
    1. Re:then maybe by FleshWound · · Score: 1
      my porn distributor is going to sue the FBI for p2p-ing my collection through my monitor via DMCA. haha, got you!
      Or they're sue you for "public display" of their copyrighted material. =)
  9. Directional by srichman · · Score: 2

    Because the monitor is facing away from the window through which you're snooping.

    1. Re:Directional by supercytro · · Score: 1

      Doesn't change the fact that either a) The snooper has an open view to your room i.e. the window is open or there are no curtains...etc so there are still other privacy issues... or b) The equipment is in the room If so, then why not take better advantage of the situation...

    2. Re:Directional by bluethundr · · Score: 1

      If this technology were taken as fully mature, then I would completely agree with your inference that this is technology were of no practical use. Especially in light of the fact (no pun intended) that one could just look at the damn screen if all this expensive, high-falutin gear that we're talking about were in the same bloddy room as the monitor! However, it looks like were talking about some rare air that even the inventor admits is only a curiosity. What's interesting is where this tech could lead, vis a vis satellite technologies, etc. One has to wonder if this method of spying can become fully mature while the bulk of us are still staring at CRTs (vs LCDs). God knows how long it would take for this technology to mature! But I found the article interesting, nevertheless. I, personally, like being surprised by new ideas like this one. -T

      --
      Quod scripsi, scripsi.
  10. Old news by ozbird · · Score: 2, Informative

    CRT Eavesdropping: Optical Tempest by michael with 219 comments on 10:57 10 March 2002

    1. Re:Old news by swagr · · Score: 2, Funny

      If a post to this story is on-topic, it must also be redundant (seeing as the story was already posted).

      So every post should either be modded down to offtopic or redundant.

      ....I'm waiting...

      --

      -... --- .-. . -.. ..--..
  11. Repeat... and not even correct at that... by AmigaAvenger · · Score: 2
    First, once again the poster must not actually read most of the stories. The original slashdot article about reconstructing info based on LED's does NOT mean you can spy on someone, instead, it means if you are a spy, you can secretly send information by the blinky LED's on your modem/hub/router whatever....

    And if I were a little more ambitious I would post a link to this story that was already on slashdot a month or two ago...

  12. Quake by Bouncings · · Score: 4, Funny

    The real danger here, I think, isn't some kind of "national security" or "bank fraud" or anything like that -- security schmecurity. The real danger, is Quake cheating!

    Think about it. If I can reconstruct what is on your monitor, I can tell where you are. Are you down the tunnel? In the water? Are you on top of that goddamnfucking sniper tower? I could reconstruct your screen and determine exactly where you are in the Quake map.

    Quick, someone, solve this problem before it tears society apart!!

    --
    -- Ken Kinder ken@_nospam_kenkinder.com http://kenkinder.com/
    1. Re:Quake by supercytro · · Score: 2, Funny

      I can just see the lusers typing
      "You cheater. You're reconstructing the display of a computer by using special hardware and the reflected glow of .... dammit you shot me again":)

    2. Re:Quake by Nos. · · Score: 3, Funny

      We used to do quite a bit of gaming at a buddy of mine's apartment back in the day. He'd always turn his desk so it faced away from the rest of us (no looking at his monitor). However, it wasn't until after a couple of weeks of always knowing his starting point in Starcraft that he realized I could see a very nice image of his screen in the patio doors behind him. Back in the day we didn't need no high-tech gadgets, just a window in a lit room at night and I could see all I needed to :)

  13. I don't remember what they called it, by neight9 · · Score: 1

    But this is straight out of Neal Stephenson's Cryptonomicon. Coupla hackers built one on a bet in a hotel room... Just one of thousands of kickin things from that book.

    --
    ceci n'est pas une sig.
    1. Re:I don't remember what they called it, by Anonymous Coward · · Score: 0

      Van Eck phreaking, IIRC

    2. Re:I don't remember what they called it, by Anonymous Coward · · Score: 0

      that was different; it was called "van eck phreaking" and was somehow based on monitoring waves in another part of the em spectrum to reconstruct the image in video memory.

    3. Re:I don't remember what they called it, by Cpt_Kirks · · Score: 1

      Van Eck phreaking can even be used to steal cable, if you don't mind a cruddy picture and watching what your neighbor watches.

      Cryptonomicon also used the "blinky LED" trick in reverse, sending information in Morse Code via the Num Lock LED, to avoid the Van Eck spying.

  14. LCDs? by CrackerJackz · · Score: 1

    Hmmm yet another use for LCD monitors, increased security for the paranoid... but whats the use really? if you have line of sight to the *screen* ??? You could use the old fashioned way of "just looking over someone's shoulder..."

  15. Movie Mumbo Jumbo by dnoyeb · · Score: 0

    This is akin to what you see in the movies all the time. someone has a computer image and the "zoom in" to some obscene level of resolution and then the "Enhance" it. Foolishness. If the data is not there, no algorithm will add it.

    I assume some company will get 2-3 million from the government to study this and 2-3 years later they will have wasted the money and concluded its not feasible. If they would start with basic graphics class and take a look at what resolution means they might have a clue...

    1. Re:Movie Mumbo Jumbo by gwizah · · Score: 1

      Hey Moronicus!

      Guess what? Had you read the paper, you would understand that not only is it feasible, but it's already been tested. Why? Because the data is there. The flicker is trasmitting the signal that appears on your screen to the rear wall or whatever other reflective surface there is. Using a photomultiplier, He is able to collect that transmitted light and use an algorithm to "enhance" the data. This is more akin to "tuning out" the noise appearing in the image.

      --

      There is no spork.
    2. Re:Movie Mumbo Jumbo by Anonymous Coward · · Score: 0

      You are missing the point completely. You are not taking a snapshot of the monitor glow and doing the equivalent of unsharp in Photoshop -- instead you use the knowledge that the electron gun always moves in a particular pattern and look at the glow from that perspective.

    3. Re:Movie Mumbo Jumbo by hazem · · Score: 1

      I don't think it's like the movie stuff.

      If you could look at the monitor with high speed photography, only one pixel is being illuminated by the electron gun at a time. And while the phosphor continues to glow for a period of time after being hit, it will be brightest upon being hit.

      The scan pattern of the gun is already known, so you could in theory, watch (at high speed) for the changes in the light color and intensity in the glow of the room to find out the order of the colors as the pixels are hit - you have a long stream of pixel colors and intensities.

      Here's where the number crunching comes in. You try to arrange this stream of pixels into a 1280x1024 (or whatever resolution) grid until you get a recognizable image. Et voila!

  16. Great! by BurritoWarrior · · Score: 5, Funny

    Now I can begin selling my high-tech, computer privacy protection devices.

    I will call them curtains.

    1. Re:Great! by laserjet · · Score: 2

      curtains won't bring you in enough cash. Sell LCD's instead.

      You could call them Secure Monitors and tell people they prevents spies from eavesdropping on their screen.

      or curtains would work too...

      --
      Moon Macrosystems. Sun's biggest competitor.
    2. Re:Great! by BurritoWarrior · · Score: 5, Funny

      But with the LCD, we won't have the dastardly spy saying:

      "Curtains, foiled again!"

      OK, that was bad. Forgive me. :-)

    3. Re:Great! by SquadBoy · · Score: 2

      Read the article curtains will not work. But turning on the lights will. :)

      --

      Cypherpunks: Civil Liberty Through Complex Mathematics. Those who live by the sword die by the arrow.
    4. Re:Great! by daeley · · Score: 2

      I'm surprised you didn't say 'It's coitains for you, Mugsy, coitains!'

      --
      I watched C-beams glitter in the dark near the Tannhauser gate.
    5. Re:Great! by 56ker · · Score: 2

      Seems the only place to run a computer without fear of eavesdropping soon will be a bank vault! Think about it - no radio waves would get out (due to its underground nature and Faraday cage) - no windows for people to watch your LEDs - in fact can anyone think of a way to bug a bank vault short of something that needs access to it - like a tape recorder?

  17. sure, this'll work by Xaoswolf · · Score: 1
    anybody with a brawny PC, a special light detector and some lab hardware

    Now all I need to do is hide it all in a closet.
    Seriously, how does this create a security risk, someone not only has to be in the room with you, but half a meter behind the monitor, which is a meter from the wall. Oh, and did I forget to mention, that all the lights had to be off. Like they said, it's a curiosity, and nothing else.

  18. That's easy to fix! by Tidan · · Score: 2, Funny

    It's clearly the same as the problem with the blinking modem LED's -- just cover the front of your monitor with duct tape.

    --
    free ipod? yeah.
    1. Re:That's easy to fix! by Waffle+Iron · · Score: 1
      just cover the front of your monitor with duct tape.

      While that works, it's not very ergonomic. A better solution is to use duct tape and cardboard to make a cone-shaped visor like the one used by Mr. Spock.

      You'll have the satisfaction of knowing that your visor has a real function, whereas Mr. Spock's visor was a just cheap prop made necessary by the constraints of a low production budget.

      This solution provides security, and makes you look way 1337 to boot!

    2. Re:That's easy to fix! by edbarrett · · Score: 1
      You'll have the satisfaction of knowing that your visor has a real function, whereas Mr. Spock's visor was a just cheap prop made necessary by the constraints of a low production budget. This solution provides security, and makes you look way 1337 to boot!
      Make sure the snoop isn't pointing his equipment at your tin foil hat, though.
    3. Re:That's easy to fix! by Anonymous Coward · · Score: 0

      Actually, real solution could be using two monitors and displaying some stuff on the second monitor with brightness turned to maximum. :)

      Btw, you should run some fun divx movie on it, so spy's may have fun at their job :)

      Btw, they anyway should know your monitor resolution.
      Using some weird interlacing algorithm while making image blinking, but may help to hide real data from wall watchers.

      And of course some more solutions:
      Use carpet/cover/anything that hides light coming from monitor.
      Paint everything in your room black.
      Watch your pr0n as text using notepad :) You should anyway remember how this girl looks , dont you :)
      Use that flickering lamp. :)

  19. Other Cool Stuff by Kuhn by jacobb · · Score: 1
    Kuhn's done a lot of other interesting stuff, too...

    For example:
    StegFS: the Steganographic Linux Filesystem from 1999 Information Hiding proceedings
    A TEMPEST variation for hiding data, "Soft tempest", from IH'98
    A One-time password package intended for login or ftpd
    and some other stuff.... cool guy!

  20. Slashdot Articles by billh · · Score: 1, Funny

    Rememeber this story from a couple months ago about reconstructing data from the blinking LEDs of modems... and remember that CNet story about reconstructing the display of a computer by using special hardware and the reflected glow of the monitor.? Well, now it seems that someone has figured out how to recreate Slashdot articles just by not checking to see if they have already been posted!!!

    1. Re:Slashdot Articles by curtisk · · Score: 1

      bwahahaaha! :) Where will technology take us next my friend?!

      --

      Sehr geehrter Toilettenbenutzer!

  21. Practical in the "REAL" world? by RobertAG · · Score: 4, Insightful

    "Until that's resolved, the safest solution is to compute with the lights on. "

    Or just close the window shades.

    It seems like you can read the contents of a monitor under optimal conditions, but how often do you get optimal conditions? More often that not, a person sits in front of a monitor as he or she works. At best, then, you'd only be able to get bits and pieces of what's on the screen. You also have to contend with different grades of wall paint and/or wallpaper (not to mention furniture behind you) which might make this endeavor fruitless in most cases.

    It's a nice trick in a lab, and probably worth publishing. But I think there are too many uncontrollable variables to make this practical.

    1. Re:Practical in the "REAL" world? by silicon_synapse · · Score: 1

      Admit it. You didn't read the article did you? Neither did the moderators I'd imagine.

    2. Re:Practical in the "REAL" world? by JohnPM · · Score: 1

      Um, yeah and yesterday it seemed like this kind of attack was absolutely impossible. That's cause no one had tried it properly yet. Today, no one has tried it properly under real-world conditions.

      In fact we can pretty much assume that if it is possible then the NSA or CIA has been doing it for years and at the same time conspiring to hold up the prices of flat-panel displays that are immune to the attack.

      --
      Karma police, I've given all I can, it's not enough, I've given all I can, but we're still on the payroll.
    3. Re:Practical in the "REAL" world? by pz · · Score: 1

      One of the (many) hats I wear is that of scientist-looking-for-data-in-a-sea-of-noise. Given that most images on a screen don't change that often (save for gaming and related animations), or perhaps more pertinently, most images worth spying on (read: documents) are fairly static, one would have the opportunity of many, many, many presentations (each 60-100 Hz frame is a presentation) to wade through any environmental noise such as room lights, motion of people in the room (which are slow compared to the refresh rate), etc. Remember, all you need is some reasonably reflecting surface, not direct line-of-sight. I have no doubt this can readily be done from a long distance, given good optics, including from space.

      --

      Put my fist through my alarm clock with its ding-dong death inside my ear. - The Blackjacks.
  22. low-tech solution by British · · Score: 2

    Just get a pair of those glasses that have mirrors on the outer sides of the lenses. Mind you, everything will be backwards, but you can see what's going on while pretending to look in the other direction.

    As for monitor LED monitoring, big deal. They can find out if my monitor's on, in powersave mode, or off. Yeah, big security risk there. :)

  23. This just in... by laserjet · · Score: 2

    We will be doing a special on Printing Your Printer. More details at 11.

    --
    Moon Macrosystems. Sun's biggest competitor.
  24. It works for Windows boxes- not sure on Mac by Anti-Microsoft+Troll · · Score: 0

    You can tell what's being displayed on a Windows box from its reflection by looking to see if the reflection is a uniform, unchanging shade of blue.

    It usually will be.

  25. it may be old news by Jacer · · Score: 1

    but this article goes much more in depth, the other could be considered a prelude. why is everyone on slashdot so critical when the don't bother to read the fucking articles?

    --
    --fetch daddy's blue fright wig, i must be handsome when i release my rage
  26. Not at my house... by huckda · · Score: 1

    First he'd need to figure out a way to reconstruct the 'glow' that is NOT there, due to the silhouette caused by head being in front of my monitor.

    --
    "Just Smile and Nod." --Huck
    1. Re:Not at my house... by Anonymous Coward · · Score: 0

      Not to mention the cat's paws hanging over the monitor.

  27. PGP has a mode that can circumvent this by i_am_pi · · Score: 1

    When decrypting a file, check "Secure View." It makes it slightly hard to read on screen but it renders this method useless. It also removes the ability to copy/paste text and save as a file.

    Pi

  28. Re:Repeat... and not even correct at that... by laserjet · · Score: 0, Offtopic

    Mod this poster up. He is correct. The Slashdot editors have done a repeat (that included another repeat in the summary!), and have managed to get the facts wrong, twice in a row now!

    go slashdot!

    --
    Moon Macrosystems. Sun's biggest competitor.
  29. This is great news by drew_kime · · Score: 5, Funny

    Now I can justify the 21 LCD at work on the grounds that the CRT poses a risk of industrial espionage.

    --
    Nope, no sig
  30. Old news by retro128 · · Score: 1

    This technology has been around for years. The difference with this article on CNET is that it appears it has fallen into the hands of local law enforcement, rather than outfits like the CIA or FBI. It's called

    --
    -R
  31. Now all we need... by binarytoaster · · Score: 1

    is monitor LED monitoring so we can find out if the monitor's actually ON or not! Yeah!

    Wasn't this posted, like, months ago?

  32. LCD is the answer by Lxy · · Score: 2, Informative

    Looks like it doesn't apply to flat panels. It relies on the CRT electrons coming out of the monitor and striking a photosensitive component. Not to mention, what if you have a large person using a small monitor? It would seem to me that you'd have to have an unobstructed view for this to work.

    This could be detrimental to geeks though. Quoting the article: the safest solution is to compute with the lights on. Dangit.

    --

    There is no reasonable defense against an idiot with an agenda
    :wq
    1. Re:LCD is the answer by nochops · · Score: 4, Informative

      First of all, they're not electrons, they're photons, the quantegy of light. Your CRT has an electron gun that directs a narrow beam of electrons onto a phosphorus coated glass (the 'screen'). The phosphorus then glows, and radiates photons.

      While LCD panels don't have an electron beam to radiate phosphorus, they still radiate photons. Otherwise you wouldn't be able to see them.

      Basically, if your monitor is radiating photons (read: turned on) someone can intercept those photons and reconstruct an image, given the right equipment and circumstances.

      I suppose given the right equipment and circumstances, they can read your mind as well, so we're screwed anyway.

      --
      "A terrorist is someone who has a bomb but doesn't have an air force." -William Blum
    2. Re:LCD is the answer by hazem · · Score: 1

      You may not need an unobstructed view. While the electron beam goes in a fairly linear fashion, once the phoshpor is lit, the light is emitted as if it's a point-source, in all directions.

      While I'm guessing, he's watching the light from the monitor, and contstucting a stream of pixel intensity/colors from the light that is emitted by each pixel as it's illuminated. Since the light goes in all directions, this doesn't rely on having a complete image "projected" on a wall - it simply needs to see the light patterns, from which it can decode a series of pixels. These are then arranged in a grid until a recognizeable image is seen.

    3. Re:LCD is the answer by akh · · Score: 1

      >> While LCD panels don't have an electron beam to radiate phosphorus, they still radiate >> photons. Otherwise you wouldn't be able to see them.

      With a CRT, each pixel in each row is scanned individually; with an LCD, all the pixels in a row are simultaneously scanned. This makes LCDs more secure than CRT because one can only determine the brightness of each row in the display while with a CRT one cand determine the brightness of each point in a row as well thus allowing one to reconstruct the image.

      --
      Accept Eris as your Fnord and personally sate her
    4. Re:LCD is the answer by markmoss · · Score: 3, Informative

      Basically, if your monitor is radiating photons (read: turned on) someone can intercept those photons and reconstruct an image, given the right equipment and circumstances.

      If by "right equipment and circumstances" you mean direct vision or a mirror-like reflection, then that's true. However, this article is about a technique for reconstructing CRT images when the monitor is facing away from the window and the only reflections are off of rough surfaces, which thoroughly scramble the pixels. You cannot directly determine what part of the screen a photon came from, but you can determine when it was emitted. Since the CRT scans one dot at a time, that creates the possibility of turning a recording of brightness & color vs time back into a picture.

      However, most flat-panel displays will set a number of pixels at the same time (for example, writing to an entire row at a time). This makes it impossible to separate out one pixel or even one small area of the screen by the time when the light arrives. Also, LCD's don't create light, it is created by the backlights, generally flourescent lights running on high voltage, high frequency AC -- so the only thing time analysis gets you is the high frequency flicker of the backlights. The liquid crystals retain most of their "set" between scans through the display, so the light passed through a pixel doesn't vary much depending on how long it's been since the pixel was scanned.

      OTOH, unless your video cable and electronics is all shielded very well, you are probably transmitting radio waves that could be turned back into the picture. This might be even more difficult than reconstructing a CRT image from the visible light, but certain three-letter government agencies can do it when they really want to. One limitation to the radio ("Tempest) method is that you've got to be able to isolate the target computer's signal from all the others; with optical methods this probably requires just pointing the scope in the right direction (if you are lucky enough to get a strong enough reflection in any direction), but radio waves bend around corners, reflect, and merge more so it's pretty unlikely that Tempest could find the one computer bringing up atomic bomb diagrams in a college dorm (say) among the hundreds downloading MP3's, playing Quake, or whatever.

    5. Re:LCD is the answer by garbuck · · Score: 1
      the one computer bringing up atomic bomb diagrams in a college dorm (say) among the hundreds downloading MP3's, playing Quake, or whatever.

      One solution is to increase the number with the bomb diagrams. Click here.

  33. CRT-sunburn by kipple · · Score: 1

    well I suppose they will soon be able to reconstruct what I looked on a monitor by looking at my CRT-sunburn.

    Obviously I'm just kidding, I have an LCD monitor.

    :)

    --
    -- There are two kind of sysadmins: Paranoids and Losers. (adapted from D. Bach)
  34. Let's try that one again by retro128 · · Score: 1

    That's what happens when you get trigger happy on the submit button, the comment was to read as: This technology has been around for years. The difference with this article on CNET is that it appears it has fallen into the hands of local law enforcement, rather than outfits like the CIA or FBI. It's called TEMPEST. And it appears I'm smoking something mentioning local law enforcement, I don't know where I got that from, skimmed the article too fast or mixed it up with something else I was reading..Heh, I shouldn't be posting this morning.

    --
    -R
  35. Similar technology? by acoustix · · Score: 2

    I think there was a story on /. before about catching the radiation from the monitor to reconstruct the images.

    I wonder which technology can produce the more accurate picture?

    --
    "A plan fiendishly clever in its intricacies"- Homer Simpson
  36. Better Idea by NETHED · · Score: 1

    Right now, i'm sitting in the bathroom with no windows, the only thing that connects me to the outside world is my network cable and power cable. HA spy on me now!

    //drunk, fix later//

    --
    --sig fault--
    1. Re:Better Idea by Anonymous Coward · · Score: 0

      Actually, your laying down in the tub, and using a labtop with wireless connection...

      The matric sees all...

  37. Emmisions arnt the only problem by linuxbert · · Score: 2

    People face there monitors so they are visable to windows. i cant belive the number of first floor offices i see where the monitor's display can clearly be seen with the the naked eve through the window. so dont point your monitor outside.

    Tempest is a real risk, but you have to evaluate how sensitive your information is and is a tempest attack likely.

    the easiest way i think to reduce these attacks to to put up a big fence around your facility, atleast 50m from any window.

  38. Reconstructing Slashdot by micromoog · · Score: 5, Funny

    Now you can reconstruct Slashdot from the reflected glow of old stories!

    1. Re:Reconstructing Slashdot by slyborg · · Score: 2, Funny

      Yes, Slashdot's redundancy clearly is increasing, soon you will be able to generate a day's Slashdot in advance by interpolative prediction. Already possible for all Katz submissions!

    2. Re:Reconstructing Slashdot by Merlin42 · · Score: 1

      Not to be pedantic, but what exactly is 'interpolative prediction'?

      Interpolation involvels finding values b/w two known values.
      I think extrapolative prediction would be a better way to phrase it :)

      Hmm I wonder what the lyapunov exponent of slashdot would be ... definately positive ;) I think everyone would agree its a bit 'chaotic' around here.

  39. Re:Repeat... and not even correct at that... by micromoog · · Score: 2
    The original slashdot article about reconstructing info based on LED's does NOT mean you can spy on someone...

    Um, wrong. The original article involved researchers demonstrating that certain modem/network devices allow you to read the actual data stream based on the blinkenlights. Spying is theoretically possible (though unlikely) with this.

  40. Yawn... by Anonymous Coward · · Score: 0

    They have been able to read your monitor remotely by the RF noise it gives off for quite some time. Now almost decades later you can use this nifty new method that only works for a small window. Oooo wow, so impressed, sNOT! Sorry, the LED issue still seems far more important to me.

    But hey, I'm not complaining that this story was posted, its better reading then white space. ;)

  41. I saw this coming years ago by Anonymous Coward · · Score: 1, Funny

    That's why I invested in thick shields for my windows.

    Well, that's what I call them.

    She calls them curtains.

    Oh well.

  42. Newflash! by ChenLing · · Score: 1, Offtopic

    Newsflash!

    Covin Technologies Announces Technology Breakthrough!
    May 14th, 2002 at 11:55AM EST

    Covin Technologies has innovated a new innovative technology!
    Our new innovation: the Diaphoresis Device can scientifically measure *exactly*
    what your programmers were doing all day just from their caffeine intake!

    This will be a boon to middle managers everywhere!
    Just think -- you won't have to look over their shoulders or visit their dank caves^H^H^H^H^Hcubicles anymore!

    All you have to do, is go through their trash at the end of the day, put all the empty Coke bottles and coffee cups into your brand new Diaphoresis Device, and it will tell you:
    1) How many hours they spent programming
    2) How many times they left for the bathroom
    3) How many emails they sent making fun of *you*!
    4) How many times they reloaded Slashdot

    You can have it all!

    --
    "You have the option of insanity. I do not. And that makes me crazy!" - Brian to Angela, My So-Called Life
  43. More Interesting stuff from those people ... by Rolo+Tomasi · · Score: 1
    --
    Did you know you can fertilize your lawn with used motor oil?
  44. Remember... by CaseyB · · Score: 2
    Rememeber this story from a couple months ago about reconstructing data from the blinking LEDs of modems

    Remember the comment in that story about Kuhn's paper on this technique?

    1. Re:Remember... by Anonymous Coward · · Score: 0

      Remember the story Michael posted, and said "Hopefully people will also stop submitting the LED story now"?

      I can understand repeat stories by different authors, but this is just lazy.

  45. Re:Useful Spy Stuff by uberdave · · Score: 2, Funny

    Of course, we all know that high tech spy computers have monitors that throw a readable image onto the user's face. You see it all the time in the movies. They're reconstructing the image by analyzing the glow bouncing off of your walls and face.

  46. Amazing! by magic · · Score: 2
    Page 10 shows actual experimental results. You couldn't read code or e-mail very easily (although this is just a simple test system), but he demonstrates that it is really possible to read PowerPoint-size text just from the splashed light.


    There's some really nice signal processing going on in the paper; it isn't like he just feeds the raw signal into pixels or anything.


    -m

  47. Antitrust - movie by Anonymous Coward · · Score: 0

    This is just like in that movie Antitrust , sort of.

  48. Re:More Info about Monitor LEDs!!! by uberdave · · Score: 1

    Real crypto wouldn't have word breaks. It gives too much away.

  49. Perhaps it's time to get... by setre · · Score: 1

    A .
    Nah.

  50. start your own radio station by sirius_bbr · · Score: 0

    This could have a huge impact on amateur radio! People can now start their own station just by putting their CRT-monitor on the roof and stream their mp3's on it!
    I think the RIAA would not be happy whith that :)

    But seriously, a friend of me actually managed to play .midi files on is CRT and receive this with an AM-radio in the same room. I found it pretty cool :)

    --
    this sig has intentionally been left blank
  51. TV Ratings by TomRC · · Score: 4, Interesting


    Imagine a van driving slowly down the streets of a neighborhood every 10 minutes, monitoring the blue TV glow coming out of windows.

    Not reconstructing the actual image - just watching the gross flicker patterns, and matching them against all TV stations in real time.

    If it finds someone that's not on a known TV station, it pauses for a minute and logs a longer sequence of flickers to match against the flicker patterns of a large library of videos.

    Talk about precise marketing info!

    Talk about potential blackmail material - ("Did you enjoy your viewing of 'Under-age Girls' last night Mr. Politician? Doing a bit of research, were you?" What about the previous 15 nights?")

    Maybe we need to extend "peeping tom" laws to cover any deliberate use of EM radiation coming out of our homes...

    1. Re:TV Ratings by 10Brett-T · · Score: 1

      It's easier than that. The tuner in your television (and many other types of tuners around your house) produces a weak signal at a fixed frequency offset from whatever channel you're tuning. It would be pretty easy for someone to drive through your neighborhood, point an aerial at your house, and figure out not only what channel you're watching, but what frequencies you're listening to on your Radio Shack scanner. Of course, this wouldn't work for videos...

      --
      10Brett-T
      Oh, bother.
    2. Re:TV Ratings by dfenstrate · · Score: 2

      So maybe this isn't directly aplicable to blackmail activities, but the courts have held that any information percieved emanating from a house is inadmissiable if it requires the aid of a machine to detect. IE, if a human or dog police officer smells drugs wafting out of your house, thats admissable in court.

      If an officer points and infrared camera at your house and detects large quantities of heat coming from your attic, in such a manner that suggests you've growing weed there, and starts an investigation- well, that crosses the line into unreasonable search.

      --
      Alcohol, Tobacco and Firearms should be the name of a store, not a government agency.
    3. Re:TV Ratings by Anonymous Coward · · Score: 0

      This was already done 40 years ago in several
      San Fransico neighborhoods. Vans with a large
      antenna mounted on the front drove around
      and picked up RF interference from TV sets
      to collect data on what channels/shows people were watching and how many people were tuned in.

      Sombody here mentioned that the UK did(does)
      this to catch people who are watching TV
      without paying the license fees to the
      (viewer supported) stations.

  52. Guess what.... by geewiz45 · · Score: 2, Insightful

    My boss is an old spook who spent time at NASA and some other defense contractors. While there (about 10 years ago) he worked on this project. From what he tells me, they were able to monitor displays from a good distance without any troubles. Not only did they do this ten years ago, they also developed a coating for the monitors that would reduce the radio emissions. That way no one could monitor them...

    I don't know what this guy patented but it's already been deemed useless by 10 year old US Government research.

    --
    Sit back and relax as Windows 98 installs on your computer.
  53. This is not news. by Ketnar · · Score: 2, Insightful

    Jeeze, this is going around your E to your A, people.

    Anybody remember the tempest device? Able to lock on to a RF signal produced by hardware and reconstruct it, get displays, and rummored to be able to even spy on a CPU's activity if finely tuned enough. I read a rather lenghty article on how to build one years ago, but I'll be damned if I remember where I found it. I suggest a goodle hunt. The frightening thing is, the people who built it, were able to pick out a single display in a large office building -- eight blocks away.

    RF signals are easyer to get to than the reflection of a monitors glow, I would think.

    --
    My new top secret key -> C>N|KB
    1. Re:This is not news. by tweek · · Score: 1

      Well I remember Van Eck's from Cryptonomicon which IIRC was an actual technique.

      As to the idea of going around my E to get to A, I figure that even as paranoid as I am, that if someone were to go to this trouble to get information from me, more power to em.

      --
      "Fighting the underpants gnomes since 1998!" "Bruce Schneier knows the state of schroedinger's cat"
    2. Re:This is not news. by Horne-fisher · · Score: 1

      Anybody ever read Terminal Compromise? Novel by Winn Schwartau (1993) about computer security. Many of the 'hacks' mentioned in it were more pheaking then hacking, but it is interesting and available for free from Project Guetenberg.

      Download it here (1296 KB text, 583KB zip)

  54. Nope, That was different by OS24Ever · · Score: 2

    They were doing Van Eck Phreaking which was looking for the electrical eminations of a monitor through a solid wall in an effort to reconstruct the display.

    Little Different than staring at the monitor from a distance.

    --

    As a rock-in-roll Physicist once said, No matter where you go, there you are.

    1. Re:Nope, That was different by ChazeFroy · · Score: 2

      From what I understand, it does not work as nicely with SVGA monitors (especially 800x600+) because of the resolution. Perhaps back in the day with 80 x 24 straight text, it could be considered within close physical range of the monitor; but not today.

  55. What's it got on Van Eck? by gr · · Score: 1

    Strikes me that Van Eck phreaking works better, since you don't have to rely on visibility...

    Sure, you have to get closer, but since this seems to be aimed at TLAs for surveilance anyhow, that shouldn't be too hard.

    --
    Do you have a /. uid shorter than five digits? No? Then piss off.
  56. Re:New site focus by Anonymous Coward · · Score: 0

    Boy, I definately struck someone's nerves with that comment. Anyone around here able to take a joke?

  57. pull a DMCA on them! by LuxFX · · Score: 1

    if you read my monitor from the glow, I'll sue you for decrypting my wall's reflection algorithm!

    --
    Punctanym: alternate spelling of words using punctuation or numerals in place of some or all of its letters; see 'leet'
  58. Overview site on TEMPEST tech by curtisk · · Score: 1

    Unofficial Tempest Info site
    Just for those who may not know the jist of it, ALSO DIY shielding techniques! :)

    --

    Sehr geehrter Toilettenbenutzer!

  59. Exploring some simple alternatives by Anonymous Coward · · Score: 0

    Given the fact that the CRT is the responsible for the leak of information flow, LCD displays will be become better once again. They do not have enough power to light the wall in front of itself. This comes to add to the list of benefits of using LCDs, instead of common monitors. They are more expensive, but also healthier.

  60. Easy solution... by geojaz · · Score: 2

    This is no cause for alarm, just put some sort of lightproof cover over your monitor =P

  61. New way to reconstruct information by randomErr · · Score: 1

    New way to reconstruct information

    Carbon Paper
    Thats right, cut out a piece and place the carbon paper under the mouse. At the end of the day pull the paper and see the pattern left by the user.

    Place the carbon paper under the keyboard to record varies keystokes.

    Hide some under a chair. If serveral undulating motions are recorded you may have a porn problem.

    The really scaring part of this is the fact the half of /. viewer never even heard of carbon paper.

    --
    You say things that offend me and I can deal with it. Can you?
  62. Been there, done that ... by HerringFlavoredFowl · · Score: 2

    This is news? It is a well know effect ... The real trick is picking background noise out of your signal (hint : it is very trivial).

    Here is a trick for you kiddies ...

    The US power grid is 60 cycles,
    That means Fluorescence lights turn on and off 120 times a second ...
    That means filament lights have a detectable 120 hz intensity ripple ...
    60 cycles gives you a wavelength about the size of north America ...
    So the whole US turns on and off 120 times a second

    In Europe it is 50 cycles ...

    What does this mean from space?

    The whole power grid turns on and off between 120 and 100 times a second (depending which frequency it uses)

    Watching the phase of a single light compared to the rest of the grid tells you if that part of the grid has a large inductive load (big motors), resistive load (big computers), or capacitive load (big particle accelerator) on it.

    Watching a light that doesn't flicker in sync with the local grid tells you it is on internal generator power (big target).

    And you ask how do we know the facility is a viable target?

    Lesson : if you want to avoid being noticed stay on the grid and stay in phase. Otherwise big brother will find you and send your coordinates to a circling B-52 :-)

    --
    TastesLikeHerringFlavoredChicken
  63. TEMPEST attacks by horza · · Score: 2

    Doesn't your first statement "From what he tells me, they were able to monitor displays from a good distance without any troubles" contradict "I don't know what this guy patented but it's already been deemed useless by 10 year old US Government research"?

    Here is a good source of information about TEMPEST attacks, including the "Urban Folklore" LCD displays on laptops eliminate the risks of TEMPEST attacks (answers a few posts in this thread). It may be more than 10 years old as these guys claim to have been around 17 years.

    Phillip.

    1. Re:TEMPEST attacks by billstewart · · Score: 2
      The eskimo.com site really has some excellent stuff, and it also has lots of pointers to Cryptome, John Young's archive. TEMPEST protection was *much* easier a decade or two ago, when computers were typically 1-50 MHz, as opposed to now when anything new is 1GHz or more. The higher frequencies are much more penetrating, so blocking them (and their harmonics) is much harder. On the other hand, they're often lower power than in the past (my VAX used 3-phase power :-) and the higher frequencies probably don't travel as far.


      By the way, I'm the source of at least some of the anecdotes Joel mentions about laptop screens being received on televisions - I no longer have that laptop, but my mom still has the TV :-) It wasn't very good sync, and I was running 640x480, so it wasn't a direct full-screen image and rolled around slowly, but it had clearly recognizable text, and a device built for the purposes of eavesdropping would be able to get the sync right. I suspect that most of the emissions were from the VGA port on the back of the laptop rather than from the LCD circuitry itself, but that's pure guesswork, and the depth of scientific inquiry consisted of looking at the noise on the screen, saying "yes, that looks it's like the text on my computer", and turning the PC off so we could go back to watching TV :-)

      --

      Bill Stewart
      New Fast-Compression-only CPR http://preview.tinyurl.com/dy575ks
  64. OOOOOOLLLLLLDDDDDD NEWS! by krogoth · · Score: 2

    Burn my karma!

    --

    They that quote Benjamin Franklin on liberty and safety deserve neither.
  65. Re:Usefulness? - Hello? by Anonymous Coward · · Score: 0

    Um. Go get in your pickup truck tonight and drive into the city. You'll probably drive by many buildings. In some of those buildings you will be able to see glowing from computer monitors. With this technology, you would be able to see what is being displayed on the screen even if it's not facing the window.

  66. Patent Pending Monitor Security Device by stinkydog · · Score: 2

    1. Get a bunch of monitors
    2. Get a bunch of composite to VGA Converters
    3. Attach All.
    4. Play Brittney Spears videos 24/7

    This will produce enough noise to negate any spy system other than direct view. Brittney might damage the watchers as well.

    Who watches the watchers while watching the watched?

    SD

    --
    âoeWho knew something as harmless as willful ignorance could end up having real consequences?â
  67. That's not how Markus explained it to me by Tim+Ward · · Score: 2

    He said that you could (theoretically) be outside the room quite some distance away as long as you had a half-way reasonable telescope. Of course you get a trade-off with distance, ambient lighting level (S/N ratio is the big problem) etc.

    But he reckoned that if I sat at this computer right here with all the lights off and the curtains open the reflection of the monitor on the wall behind me should be readable from the bottom of the garden. (The monitor isn't facing the window so you can't read it directly with a telescope.)

    Probably safe, though, because I only have all the lights off if I'm playing games - if I'm doing real work there's usually a light on.

  68. Related news by jheinen · · Score: 1

    In related news, it has been discovered that the source code for Windows can be reconstructed by analyzing the arrangment of empty Mountain Dew cans in developer's cubicles.

    --
    -Vercingetorix
    "Necessitas non habet legem." -St. Augustine
  69. A guess as to how it works... by markmoss · · Score: 3, Insightful

    I'm not any sort of expert in this, however from what I know of video the process has to be something like this:

    The phosphors in the CRT do not emit only when hit by the electron beam. They have a certain persistence, so a dot keeps on glowing while the beam moves on through other dots. If you get a perfect recording of the signal, then reconstructing the picture requires merely syncing onto the video scan by means of the long and short black intervals (vertical and horizontal retrace), calculating each pixel's actual output by subtracting the fading output of previous pixels, and feeding the resulting video and sync into your own monitor.

    However in using this in a normal "spying" situation, you get room lights and other "noise" in the signal. You've got to guess at the average ambient level and compensate (subtract it out) so the picture isn't washed out. Then, you are probably working with such a low level of signal per pixel that quantum fluctuations add significant noise. Subtracting signals accentuates the noise, so you'll wind up with a pretty grainy picture -- after lots of trial and error adjustments to find the best background level compensation, pixel fade rate, etc. But most data on computers is presented in quite high contrast, and stays on the screen for quite a while, so you can improve the picture by averaging frames. So it does sound possible to get a good enough picture for most espionage purposes (extracting text and diagrams, or sometimes just finding out what the guy is reading).

    What it probably won't do unless you get really close:
    -Spy on your Quake rivals; (I assume, not being a
    Quake player myself) the picture changes too fast for frame-averaging to help much, and in general it's a detailed, lower contrast picture so graininess would have a greater impact.
    -Pirate the Playboy channel from your rich neighbor, unless you are so hard up that just staring at a screen of approximately fleshtoned grains and imagining there's a nekkid woman somewhere in there is enough...
    -Steal passwords protected by the "*" character, unless the login was incompetently programmed and it shows the actual character for a frame before covering it up. And probably not even then, because frame-averaging will often be needed for legibility...

    Just handwaving here, but I expect that if someone can get a camera where this process works for any of the above, they probably could have focused it right on the screen and also physically wire-tapped the machine.

    1. Re:A guess as to how it works... by The+Raven · · Score: 2

      Who cares if the picture is washed out? Heck, even if you only get one color out of it (say, the person has blue wallpaper, so only blue reflects well) you will STILL be able to see most of the screen. Anyone who has had broken a pin or two on their monitor can still USE their computer, though it is ugly.

      Environmental conditions will add noise to the screen, but noise will not prevent it from working. I believe this system would work rather well even under less optimal conditions.

      The worst problem? Flourescant lighting. It flickers 60 times a second, which will add significant noise to the image, made worse if the user is using a refresh rate that is not 60Hz.

      But wallpaper? Lighting? That simply makes the signal weaker in one or more colors. It does not make it less accurate, just screws up the color balance. And for this application, color balance really does not matter much.

      --
      "I will trust Google to 'do no evil' until the founders no longer run it." Hello Alphabet.
  70. Again? by Anonymous Coward · · Score: 0

    Hasn't this been posted already?

  71. Practical in Star Trek ;) by fractaltiger · · Score: 1

    This technology is kinda like most of the magic tricks that I try to ignore in ST: Voyager: Long range scans. :)

    It seems so far from being taken seriously, though.

    --
    "Wireless : LAN :: Laptop : Desktop"
  72. umm.. by espilce · · Score: 1

    This is nothing new, and people actually do that, though they don't have to see your tv. It's called Tempest. And building a receiver that interprets and redisplays monitor/TV signals is not that hard.

    --
    :q!
  73. Already accounted for in most security schemes by Goldenhawk · · Score: 2

    Anyone who's ever been in a secure facility run by a halfway competent government or any large corporation knows that there are several countermeasures already in place. Many of them were designed for other reasons but serve the same purpose. For example, at one secure computing facility I've visited, the ENTIRE shell of the building's secure area is entirely surrounded by a Faraday cage of solid metal 1/8" thick. Even the floor and ceiling are covered. Seams are bolted shut. Wires and pipes run thru special conduits that trap EM energy. Doorways have metal-finger contacts and vault-style closing mechanisms. I doubt you'd get much diffused light through those measures. Also, several slightly less secure conference rooms I've seen included double blinds on the windows, including metal venitian blinds and thick pull drapes. Again, pretty light resistant. Now, those measures are designed for things like Tempest resistance (the metal Faraday cage) and preventing optical snooping (deadening the sound hitting the glass, thus preventing using an IR laser to bounce a reflection off the window, in an attempt to reconstruct the sound inside the room). But any company that is serious about security already takes great care to protect that information and wouldn't be susceptible to this problem.

    The one thing it does reemphasize is that simply sitting with your back to the wall isn't enough. Well, thanks to Tempest and LED blinking and insecure wireless and hosts of other issues, we already knew that.

    Frankly, the one surprising thing about this article is that it made it into the mainstream media. I'm quite surprised that the British government, or whatever home country, didn't consider this research highly classified and quickly squelch its publication.

    --
    --Brandon / Split Infinity Music

  74. interesting but useless by kwik_mart · · Score: 1

    In theory this is interesting, but would be practially useless in real life. What if someone was sitting in front of the computer, and there was no convenient white wall a metre away? Where would you hide your "special light sensing device"?

    Again, an interesting piece of theory, but I can't see many situations where this could be applied in real life. On the other hand, the concept of "Van Eck Phreaking" (using a tv, antenna, & tuner to pick up electromagnetic radiation from a monitor and duplicate the picture from a distance) is quite old now. It's a much more realistic approach, but even still, it hasn't been explored very well.

    if this inneffective light-and-reflection approach interests you, perhaps you'd like to check out some information on a more likely way to watch someone's monitor remotely like tempest, or the original paper on electromagnetic radiation as a security risk, by Wim Van Eck, the paper being written about tests he conducted in 1983.

  75. I read about better ones 4+ years ago by Anonymous Coward · · Score: 0

    I read an article about something like this, that scanned for the radiation emitted by the monitor, and worked down the street, rather than just up close. It only had to be facing the monitor.

  76. How to protect your self from this! by Anonymous Coward · · Score: 0

    Simple: Close your blinds and curtains and make
    sure no light is getting through!

  77. Shield of Dreams by idResponse · · Score: 1

    We can always start looking at our computers in lead-walled cameraman boxes such as in old photography cameras.

    Me? I'll opt for the best choice ever.

    Blinking modem light? NO PROBLEM!
    DUCK IT!

    Glowing Monitor? NO PROBLEM!
    DUCK IT!

    Big stupid mouth shouting a lot of bullshit to make people paranoid? NO PROBLEM!
    DUCK IT!

    When will people learn?

    --
    [)(]subliminal labs[)(]
  78. I don't buy it. by REALMAN · · Score: 2, Insightful

    It all sound pretty bogus to me. The claim that blinking LED's can be used to reconstruct what you do on the computer is laughable. To reconstruct from a LED what is being written you would have to be able to correlate each blink as one bit. a 0 or a 1. 8 bits per byte, 1024 bytes per kilobyte etc.. ad nauseum.

    Let's use the first half of a ripped mpg version of Star Wars Attack of the Clones.

    The first half is 701 MegaBytes or 5,883,382,624 bits (that's close to 6 billion bits)
    I can write that on my hard drive in 2 minutes which gives us apporximately 49,028,188 bits per second.

    Now can anyone tell me that an LED is capable of blinking at a rate of 49 million times per second? And if it can are we able to discern 49 million blinks with the technology we have? From a distance?

    Please...

    --
    - A Frog in a pond utters an azure cry. -
    1. Re:I don't buy it. by Farang · · Score: 1

      Excellent. I have been waiting for some common sense to appear here. Long overdue.

  79. If you drive by *my* office at night... by billstewart · · Score: 1

    you can look in the window and see the iMac sitting on the desk. (Unlike daytime, when you can see that my laptop is pointed the wrong way.) Of course, if you look more closely, you'll see that it's really just an iMac *poster* positioned at the right height :-)

    --

    Bill Stewart
    New Fast-Compression-only CPR http://preview.tinyurl.com/dy575ks