I've been meaning to do some research on breaking the Zigbee protocol for a while now. Both to increase my knowledge so I can build an unstoppable army of swarm bots, and also so I can see what my current Zigbee devices are saying about me behind my back. Then yesterday a tweet from Ed Skoudis pointed me towards a set of slides from a talk Josh Wright gave at Toorcon.

Yeah, Zigbee security seems to be somewhere between non-existent and dead in the water, perhaps it's not the best control channel for my deathbot kill squads.

See for yourself.

