Students from 亚洲AV鈥檚 (MCC) club have dominated in multiple national competitions. The team got 1st place in the 2024 VMI CyberFusion and 2nd place in the 2024 Spring National Cyber League.听
Next, the students will be competing in the inaugural 听
鈥淲e'll be presenting live demos with our exploits in front of a judge and audience. So, we'll basically go from not having access to a certain device to showing that we can get access in the eight different attack vectors that we discovered,鈥 said club president Dylan Knoff, a junior major.听
This demonstration is known as the , and the device they鈥檙e hacking is a router. In preparation for the demo, the team is conducting multiple analyses and rehearsing talking points for verification of their research.听
鈥淲e basically ripped the firmware off of it, which is the code that runs on embedded devices like this one,鈥 said Knoff, who participated in the in Chile with the U.S. Cyber Team.听
鈥淲e utilized hardware debugging interfaces on the device to both find potential bugs by analyzing our own local copy of the firmware and confirm their existence and exploitability by trying to trigger them on the live device and utilizing the debug interface exposed,鈥 he said.听
In addition to Knoff, his teammates Danyaal Shaozab and will also participate in the junkyard competition and other cybersecurity challenges including 鈥渃apture the flag,鈥 also called CTF, where the teams receive challenges, such as web app exploitation, binary exploitation, cryptography, reverse engineering, forensics, and a description that they must solve and then get a flag that is redeemed for points.听
In September 2023, MCC hosted its own international CTF event, attracting more than 3,000 participants and 1,600 teams as well as hosted PatriotCTF 2024 attracting over 5400 participants and 2200 teams. The club practices are offensive cybersecurity, which is a type of ethical hacking used to evaluate and determine a system鈥檚 security, Murphy explained.听
Murphy, who transferred to George Mason from Virginia Peninsula Community College as a part of the Mason Virginia Promise, has been passionate about cybersecurity since middle school and participated in CyberPatriot, a national youth cyber education program.听
鈥淚'm still pretty new at George Mason, but it's been a really good experience so far,鈥 said Murphy, a junior major. 鈥淚 got involved with the club from the get- go because they're a bunch of like-minded people and I鈥檓 really grateful for the opportunities the club and the university have offered me.鈥
The team will have two time slots and two presentations. They plan to do a dry run the day before the conference, as well as more analysis to solidify the information, said Murphy.听
Shaozab is currently working as an associate vulnerability researcher at TFP0 Labs, a Reston-based security research firm. Shaozab鈥檚 role entails finding and exploiting vulnerabilities of various security systems and he compares his professional responsibilities to that of his club and school assignments.听听
鈥淲orking with Dylan and Ryan is great. We all have similar career goals, and it makes projects and assignments a lot easier,鈥 said Shaozab, who is a senior cyber security engineering major.听
Shaozab credits his courses, including CYSE 465 Transportation Systems Design, for helping him prepare for the upcoming competition.听听
鈥 is a very smart professor and a very talented individual in this field. His course really helped me hone my cyber techniques,鈥 he said.听听
Shaozab explained that the team is focused on exploiting the [Control Area Network] bus, which鈥痠s like the nervous system of a vehicle, allowing different components like the engine, brakes, and doors to communicate with each other. 鈥淓xploiting it involves sending malicious messages in the CAN bus to manipulate the car's function, such as unlocking doors or starting the engine,鈥 he said.听
鈥淲hat made this particularly interesting to me is that I'm a huge car enthusiast, so being able to merge my passion for cars and cybersecurity was a unique experience. Getting hands-on with that in a classroom setting made it even more engaging. It鈥檚 rare to get that kind of knowledge taught in schools,鈥 he said.听
听
听
Related Stories
- January 27, 2025
- January 27, 2025
- January 21, 2025
- January 16, 2025
- January 13, 2025
听
听