{"repo":"RoseSecurity/Abusing-Roku-APIs","free":true,"listed":false,"github":"https://github.com/RoseSecurity/Abusing-Roku-APIs","clone":"git clone https://github.com/RoseSecurity/Abusing-Roku-APIs.git","description":"A fun repository on how to externally issue commands to Roku devices utilizing the External Control Protocol (ECP). The repository covers how to enumerate devices, issue commands via \"curl,\" and designing custom scripts to mess with friends and family!","language":null,"stars":294,"topics":["api","cybersecurity","iot","roku","smarthome"],"license":null,"category":"security-tools","readme_excerpt":":tv: Abusing ROKU APIs Introduction: I am excited to share how to successfully enumerate your network for Roku devices, issue External Control Protocol (ECP) commands to remotely manipulate televisions, and how to design custom scripts to automate messing with your friends! For more information, check out my Medium article: https://medium.com/@RoseSecurity/a-quick-guide-on-how-to-aggravate-friends-family-and-foes-37182230d7. Enumerating Your Network for Roku Devices: Utilizing Nmap, we can issue the following command to enumerate our network for Roku devices by looking for service versions (-sV), operating systems (-O), and speeding up the scan by not resolving DNS (-n). Output of Nmap scan: We see that Nmap identified the OUI of the MAC address, but I have provided a list of Roku MAC addresses to search for on your network! ROKU MAC Addresses MAC Range ----------- 9C:F1:D4 34:5E:08 7C:67:AB D4:E2:2F A8:B5:7C BC:D7:D4 20:EF:BD D8:31:34 C8:3A:6B B0:EE:7B AC:AE:19 8C:49:62 84:EA:ED 10:59:32 AC:3A:7A 88:DE:A9 8A:C7:2E B8:A1:75 00:0D:4B DC:3A:5E D0:4D:2C CC:6D:A0 B8:3E:59 B0:A7:37 08:05:81 More Enumeration We can identify the device location, name, and several other pertinent fields such as supporting remote capabilities! Another way of enumerating Roku devices is by sending a request to the Simple Service Discovery Port (SSDP) multicast address and port 1900. We can do this by using Netcat: The device will respond with this information which can also be observed in Wireshark: Ut","default_branch":null,"files":null,"tree":[],"storefront":"/r/RoseSecurity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/RoseSecurity/Abusing-Roku-APIs/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}