Welcome to Diana Initiative 2022 Virtual and In-Person Conference schedule.
For more information, please see our conference page here :
Back To Schedule
Saturday, July 16 • 2:00pm - 2:30pm
How I hacked into the OFO Bikes in Singapore

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.

I would like to talk about how I hacked into the bluetooth low energy bikes from OFO that were all over Singapore in 2018, and was able to unlock it and ride it for free! This is a classic monster in the middle replay attack which I was able to exploit. I would walk over the steps of conducting the exploit and show a video of the same. I would end the talk with some recommendations to make devices safer against these kinds of attacks. This vulnerability report led the company to form its bug bounty program

avatar for Sivaranjani Sankaralingam

Sivaranjani Sankaralingam

I am a security researcher currently on a break . Previously , I worked on vehicle security at Desay SV , Singapore and prior to that I had a short stint at National University of Singapore, where I got the chance to hack into the OFO bikes. I also interned at NCC Group for a short... Read More →

Saturday July 16, 2022 2:00pm - 2:30pm PDT