BSidesPGH 2024 Talk: Introduction to Software Defined Radio For Offensive and Defensive Operations

Over on the YouTube channel "SecPGH" a talk by Grey Fox titled "Introduction to Software Defined Radio For Offensive and Defensive Operations" has been uploaded from the BSidesPGH 2024 conference. BSidesPGH 2024 was a security conference held in Pittsburgh, PA, USA on July 25.

The talks are generally about network security, however, Fox's talk is all about RF security topics and software defined radio. In the talk, he introduces SDR, and devices like the Flipper Zero and demonstrates various basic examples such as receiving FM from a handheld radio and ADS-B.

Next, he goes on to demonstrate security topics such as showing how to capture and analyze signals from a 433 MHz security alarm using an RTL-SDR and Flipper Zero, and how to jam frequencies and replay captured signals. Finally, he demonstrates WiFi cracking with the help of Kali Linux and Flipper Zero with WiFi dev board attached.

BSidesPGH 2024 Track 2 Grey Fox Introduction to Software Defined Radio For Offensive and Def

Easvesdropping on HDMI with TEMPESTSDR and SDRplay

Over on YouTube "Sam's eXperiments logs" have uploaded a video showing how he was able to succeed when using TEMPESTSDR to eavesdrop on HDMI cables with his SDRplay. TEMPESTSDR software combined with a software defined radio allows a user to eavesdrop on TVs, monitors, and more by wirelessly receiving their unintentional RF emissions and recovering information from those emissions. In many cases it is possible to recover live images of the display, clear enough to read text.  

Sam's video explains the challenges he faced with signal strength due to the highly effective shielding of his HDMI cables. To get around this Sam shows how he unshielded his HDMI cables for the test. This is good news for privacy, as it shows how effective shielding can be at stopping these kinds of attacks. He then goes on to show the results he obtained which show text being read from his screen.

I Finally Succeeded: HDMI Signal Eavesdropping with TEMPESTSDR

Tech Minds: Reviewing the Raspberry Pi 5 For Radio Amateurs Book by Elektor

Over on the Tech Minds YouTube channel, Matt has uploaded a video where he reviews a new book by Elektor titled "Raspberry Pi 5 For Radio Amateurs" (€5 off coupon code "Techminds"). The book is all about projects for the Raspberry Pi 5 that can be done with RTL-SDR Blog V3 and V4 software defined radios.

In the video Matt explores the books contents, showing off the various possible projects. Matt also shows how to get started with the book by installing Raspbian, and the RTL-SDR drivers, and then goes on to show how examples of the various software programs mentioned in the book such as SDR++, flrig, chirp, dump1090, predict, HamClock, rtl_tcp, rtl_433, qsstv, fldigi, Xdx and more.

Raspberry Pi 5 For Radio Amateurs With The RTL-SDR V4

A Video Review of FobosSDR

Back in April of this year, we posted about the FobosSDR, an upcoming software defined radio product from the Ukrainian company RigExpert. FobosSDR is an RX-only USB 3.0 device, with a 100 kHz to 6 GHz tuning range, 50 MHz of bandwidth, and 14-bit ADC resolution. At the time of the previous post, FobosSDR was not yet for sale, but now we see that it is available from some European distributors with a price of 495,00 € (~US$544).

Recently 'Radio Bunker' has uploaded a video review of the FobosSDR on his YouTube channel. Note that the video is in Spanish, however, you can use the YouTube auto-translate function.

In the video, Radio Bunker unboxes the FobosSDR and explains its specs and features, then goes on to show how to install the drivers and get it up and running with SDR#. He then shows the SDR receiving some signals like broadcast AM, FM, shortwave, DAB, and WiFi in SDR# with 50 MHz bandwidth.

▶️ REVIEW: FOBOS SDR ◀️ UN RECEPTOR SDR DE GAMA ALTA

Tracking Down an ATIS Tower with KrakenSDR

Over on YouTube The Comms Channel has uploaded a video showing how they used a KrakenSDR to track down the location of an ATIS transmission tower.

If you weren't already aware, KrakenSDR is our 5-channel coherent radio based on RTL-SDRs, and it can be used for applications like radio direction finding. It can be purchased on Crowd Supply.

Airports typically have an ATIS (Automatic Terminal Information Service) transmission tower that broadcasts audio of recorded information such as weather, runway conditions, and any important notices.

In the video, they use the KrakenSDR to track down the location of an ATIS transmission tower at their local airport. In the future, they intend on using the KrakenSDR to help track down Meshtastic radios.

Radio Direction Finding with the KrakenSDR | Radio Direction Finding Series

Pi Pico Rx: A Breadboard Software Defined Radio Based on the RP2040 Raspberry Pi Pico

Over on hackster.io we've seen a story about how maker Jon Dawson designed a self-contained software-defined radio based on the Raspberry Pi Pico that can receive 0 - 30 MHz, with up to 250 kHz of bandwidth. The Raspberry Pi Pico is a microcontroller board based on the Raspberry Pi Foundation's own RP2040 chip.

The Pi Pico Rx's front end consists of a Tayloe Quadrature Sampling Detector (QSD) mixer which makes use of the PIO (Programmable Input/Output) feature on the RP2040. The circuit also has an encoder knob for tuning and a small OLED screen.

Jon had originally created the Pi Pico Rx on a custom PCB, however, his latest work brings the cost down by showing that it can just as easily be implemented on a breadboard with through-hole components.

The full writeup can be found on Jon's blog "101 Things", as can the open source firmware. He has also uploaded a YouTube video explaining and demonstrating the project which we've embedded below.

Software Defined Radio with Pi-Pico

Tech Minds: Reviewing the LibreSDR / ZynqSDR 70 MHz to 6 GHz PlutoSDR Clone

The LibreSDR is a relatively new software defined radio on the market. It is based on the AD9363 radio transceiver chip and an AMD XC7Z020 FPGA, and appears to be an upgraded/modified Chinese clone of the PlutoSDR. It can be found on marketplace sites like Banggood for US$319.99. (The Tech Minds YouTube description box also notes coupon code BG91c241, Exp:8/31, which brings it down to US$$259.99)

In his video, Matt from the Tech Minds YouTube channel introduces the LibreSDR / ZynqSDR, and explains how to set up the LibreSDR firmware, which is an unofficial port of the PlutoSDR firmware.

He then tested the SDR with SDR++ on Windows for receiving the air-band and found that it worked well, except that it only worked over USB, and did not work with the ethernet connection. Next, he tries SDR-Console V3, and finds that he is able to connect to the LibreSDR via ethernet with this software. Matt goes on to test his QO-100 setup, replacing his PlutoSDR with the LibreSDR, noting that the VCTXO in the LibreSDR works great to prevent any signal drift.

Finally, Matt tests transmission of DATV with the LibreSDR, but finds an issue with a center spike causing issues with decoding. He notes that the center spike does not occur with his PlutoSDR.

LibreSDR / ZynqSDR Software Defined Radio - 70 MHz to 6 GHz

RadioWorld Magazine Article about Software Defined Radios for Shortwave Listening

The latest August edition of the RadioWorld Magazine has included an article by James Careless about the use of software defined radios for shortwave radio listening. RadioWorld is a magazine targeted towards radio broadcast owners, managers and engineers all over the world. The article explores SDRplay and RTL-SDR Blog V4 units from the perspective of a shortwave listener new to software defined radios, comparing them to his high-end Sangean ATS-909X2 shortwave digital receiver.

The article can be accessed freely from this link and is found on pages 18-21.

First page of the RadioWorld Magazine article on SDRs.
First page of the RadioWorld Magazine article on SDRs.