The coolest anti-surveillance tools at Defcon [video]
youtube.com
youtube.com
-ESP32 based device that tries to detect bluetooth/MAC addresses of flock cameras and beeps when it does
- a Stingray detector that runs on a second-hand mobile hotspot
- a device that alerts you about things that are moving approximately with you (AirTags, SSIDs, etc).
Is it this thing?
https://simeononsecurity.com/articles/flock-you-detection-pr...
That list reads like a fist year lab schedule. lol =3
The fact is with satellite to cell service online, there is a far greater risk automotive and civilian telemetry meta-data is collected regardless of what people want or do on the ground.
It is credulous to believe individuals can affect political policy with gadgets. =3
I would assume this would be highly illegal for individuals, what sort of hoops did law enforcement need to jump through to get this type of approval? Did FCC need to rubber stamp this?
Almost every RF (legal) communication device consumers own will back off broadcasting if it detects collision or interference.
The fact many governments of the past few decades feel entitled to run intelligence campaigns on their own citizens often points to a degenerative despotic trend.
The best plans simply don't require secrecy, and everyone has fun. =3
TLDR: the police do this whenever they want, pretty much.
[0] https://www.theguardian.com/tv-and-radio/2026/aug/03/john-ol...
Defcon stopped caring about privacy, hacker ethos, and digital sovereignty a long time ago.
Go there if you want to talk to their military recruiters or buy/sell proprietary snake oil security SaaS. It is really just another corpocon at this point. Hackers should probably skip it unless using it as a chance to hang out with friends in vegas on their corporate credit card.
The hackers are mostly at HOPE and CCC these days.
What does this look like in practice?
They even virtue signal with their "crypto means cryptography!" sign without actually promoting tools that let people have control of their own keys.
They do not use or support any privacy preserving comms, and thus, they are just yet another surveillance capitalism marketing village.
I actually encourage Defcon attendees to visit the village with context, as it really is a symbol of everything wrong with privacy advocacy in America, and why we are so so so far behind Europe.
HOPE still exists
MoneroKon and Monerotopia.
Wouldn't you be essentially doxxing yourself by attending?
Do you have a citation for this? I am not seeing anything on their website and they did not come up to me and demand I sign anything when I was there?
https://cryptovillage.github.io/ shows nothing has changed.
If you're not inclined to watch the video I'll save you a click to the youtube description and add a bit more detail than the earlier sibling for the devices shown:
Simulacra
"Simulacra continuously fabricates a churning crowd of plausible-but-fake wireless devices around you — drowning your real devices in noise so that passive trackers, ALPR add-ons, and co-travel correlators can't reliably pick your signal out of the crowd — while passively watching for the trackers that follow you."
https://github.com/Em3ritus/simulacra
---
Biscuit Ultra
"Wardriving Platform: A Full WiFi & BLE Security Toolkit. A headless wireless security research platform controlled entirely from your phone via Bluetooth. The platform supports dual-band WiFi (2.4GHz + 5GHz), Bluetooth Low Energy scanning and attacks, wardriving with GPS mapping, packet capture, and much more"
https://biscuitshop.us/products/biscuit-ultra
---
Rayhunter
"Rayhunter is a project for detecting IMSI catchers, also known as cell-site simulators or stingrays. It was first designed to run on a cheap mobile hotspot called the Orbic RC400L, but thanks to community efforts, it can support some other devices as well."
https://github.com/EFForg/rayhunter
---
OUI Spy
"ESP32-S3 multi-mode surveillance-detection board"
• Foxhunter — single-target RSSI-proximity tracker for radio direction finding
• Detector — multi-target BLE scanner with OUI filtering + web config portal
• PCAP — raw 2.4GHz Wi-Fi packet capture, Wireshark-ready (dev branch)
• BLE Sniff — raw Bluetooth LE advertising capture, Wireshark-ready (dev branch)
• Flock-You — Flock cam detection with GPS wardriving, JSON/CSV/KML export
"Oh, it's that guy with the bluetooth spammer."
Consider yourself lucky you didn't get the outright pornographic ones for boner pills "my husband fucked me 50 times".
Reporting them does nothing. Google does not care.