# LrrK Def Cuts

**LRRK Watch / Conference Record** — Public DEF CON / Black Hat signals on software, firmware, and hardware that move physical systems.

| Field | Value |
| --- | --- |
| Collection cutoff | 11 August 2019 |
| Platform | Quiet Systems |
| Series | DC-S-05 |
| Status | short |
| Data label | Open-source intelligence // LRRK analytic product |
| Handling | Public-source material. Image rights require separate verification before publication. |

## Executive read

### BLUF

Victor Murray’s 2019 Black Hat USA briefing and DEF CON 27 Car Hacking Village after-record are one research program: unauthenticated civil GNSS lets a mobile, legally constrained spoofing system force an unmanned ground vehicle off-lane, off-road, or to a stop.

### Key judgments

1. **[Assessment — High confidence]** Inventory 2019-01 (*Legal GNSS Spoofing and its Effects on Autonomous Vehicles*, Black Hat USA, 7 August 2019) and 2019-02 (*Legal Over-the-Air Spoofing of GNSS and its Effects on Autonomous Vehicles*, DEF CON 27 Car Hacking Village) are the same SwRI work, not two disclosures.
2. **[Assessment — High confidence]** The failure class is civil-GNSS integrity, not a vehicle-OEM CVE. Inventory records no CVE, no Exploit-DB ID, and no GitHub repo. Exploit-status: public writeup.
3. **[Inference — Moderate confidence]** The physical consequence — UGV off-lane, off-road, or stopped — is the ground analog of the 2015 DEF CON civil-GPS finding on airframes.

## 01. Legal civil-GNSS spoofing drives a UGV off-lane or to a stop

*Event / publication dates: Black Hat USA 2019 briefing, 7 August 2019 (10:30 PT, 25 min); DEF CON 27 Car Hacking Village after-record, August 2019 (village program). Collection cutoff is DEF CON 27 Sunday, 11 August 2019.*

| Field | Value |
| --- | --- |
| Venue | Black Hat USA; village |
| Component | dependency |
| Product | civil GNSS on autonomous / unmanned ground vehicles |
| CVE / advisory | none found |
| Patch | none |
| Exploit status | public writeup |

**Verified record — [Fact — A1]** Speaker Victor Murray (Southwest Research Institute). Black Hat USA 2019 title *Legal GNSS Spoofing and its Effects on Autonomous Vehicles*; InfoconDB briefing card used as the live official-URL stand-in in the inventory (https://infocondb.org/con/black-hat/black-hat-usa-2019/legal-gnss-spoofing-and-its-effects-on-autonomous-vehicles); white paper https://i.blackhat.com/USA-19/Wednesday/us-19-Murray-Legal-GNSS-Spoofing-And-Its-Effects-On-Autonomous-Vehicles-wp.pdf; YouTube after-record `gxwkovHh3Ac`. Named after-record outlets: PCMag (bogus satellite-nav signals / autonomous cars); SwRI *Technology Today* spoof-proofing note. DEF CON 27 village title *Legal Over-the-Air Spoofing of GNSS and its Effects on Autonomous Vehicles*; media.defcon.org village video (`DEF CON 27 - Car Hacking Village - Victor Murray - Legal Over-the-Air Spoofing of GNSS and its Effects on Autonomous Vehicles.mp4`); TIB AV-Portal `48571`. **[Fact — A1]** CVE / advisory: none found. Exploit-DB ID: none found. GitHub research repo: none found. Exploit-status on both records: public writeup.

**Exposure.** Sense: the vehicle GNSS receiver. Move: off-lane, off-road, or commanded stop of a UGV. Act is the vehicle complying with a false navigation state. The “legal / over-the-air” constraint is a test-regime bound in the talk titles, not a claim that the dependency is authenticated.

**Intelligence assessment.** **[Assessment — High confidence]** Briefing plus village after-record is one research program; the title shift (“Legal” / “Legal Over-the-Air”) does not create a second finding. **[Assessment — High confidence]** Physical consequence is a ground vehicle that leaves its lane or road or stops because civil GNSS was unauthenticated. **[Uncertainty]** No OEM product SKU or CVE is attached; “autonomous vehicles” stays a class. **[Inference — Moderate confidence]** This is the same civil-GNSS dependency as Unicorn Team 2015, retargeted from UAS geofence to UGV lane-keeping.

**Opportunity.** Passport civil GNSS on any unmanned ground or air vehicle as unauthenticated unless a separate integrity source is evidenced. Do not treat “legal test regime” as a patch. Watch for an OEM advisory this talk never received. Lab multi-sensor navigation as a contrast class, not as a recipe.

**LRRK relevance.** Sense and Move on unmanned ground vehicles; the same dependency sits on UAS. Passport of GNSS integrity. Watch / Kestrel for air and ground repeats. Adjacent to Control Fabric only where autonomy consumes the fix as a command.

**Confidence.** High on the BH USA white paper, village media.defcon.org record, and the single-research merge. Moderate on InfoconDB as the briefing-card URL. Nil on CVE, EDB, and GitHub.

## Forward indicators

1. An OEM or GNSS-receiver CVE / advisory is tied to this 2019 UGV showing (inventory: none).
2. A later BH/DC talk measures authenticated GNSS or non-GNSS lane integrity as a Passport item on UGVs or UAS.
3. A village or briefing repeat names a product SKU that this record left as a class.

> **Collection integrity.** Built from leftover inventory 2019-01 and 2019-02 only (same research: Black Hat USA briefing + DEF CON 27 Car Hacking Village after-record). Official / archive sources: Black Hat USA-19 white paper on i.blackhat.com; media.defcon.org DC27 villages; named PCMag and SwRI after-records; TIB AV-Portal. InfoconDB is the inventory’s official-URL stand-in for the briefing card, used as cross-check plus that card, not as sole evidence of a second talk. DEF CON 27 main stage remains NIL for kinematic titles. Slides, white paper, and video treated as metadata; spoofing procedures, mobile-system recipes, and payloads excluded. No invented talks. CVE / EDB / GitHub / exploit-status copied from the inventory: none found / none found / none found / public writeup.

*LRRK — security assurance for systems that sense, move, and act.*

<p align="right"><span style="opacity:0.35;letter-spacing:0.18em;font-size:0.8em">L-C2</span></p>
