SecTor 2025 | Detecting Forbidden White Labeled and Counterfeit Devices @BlackHatOfficialYT
SecTor 2025 | Detecting Forbidden White Labeled and Counterfeit Devices  @BlackHatOfficialYT
Uploaded May 2026 | Updated September 2026, 3 weeks ago
In 2022, the Canadian federal government banned the use of technologies from ZTE and Huawei in Canadian telecommunications networks, citing national security reasons. Bans on other manufacturers, such as Hikvision, are also under consideration. Technologies from these vendors may not be purchased, and existing installed devices must be removed.

However, many of these devices are "white labeled": sold under a different name, by a local vendor...but peel back the label and the forbidden device remains. The same goes for too-good-to-be-true prices for equipment on auction sites: counterfeit copies of name-brand devices are not rare.

This talk will discuss techniques to detect these devices, including Internet-wide statistical methods, and deep dives into telltale network protocol quirks. Learn how to tell if your expensive router (bought cheap!) really is the real thing, and whether your network really is free from forbidden devices.

By: Rob King | Director of Applied Security Research, runZero, Inc

blackhat.com/sector/2025/briefings/schedule/index.html#pay-no-attention-to-the-device-behind-the-curtain-detecting-forbidden-white-labeled-and-counterfeit-devices-47726
SecTor 2025 | Detecting Forbidden White Labeled and Counterfeit DevicesBlack Hat Europe 2025 | ORMageddon: Leaking More Than You Joined ForBlack Hat Europe 2025 | Ghost In The Stack: Evolving Call Stack Spoofing In A Post-CET EraSecTor 2025 | Security and Safety Testing for Agentic AIBlack Hat Intercepted Video Series | Lexie ThachThree Decades of Influence | Why Black Hat MattersBlack Hat Asia 2026 | Large-Scale macOS PID-Domain Vulnerability Discovery with LLM ReasoningBlack Hat USA 2025 | Burning, Trashing, Spacecraft CrashingBlack Hat USA 2026 | Keynote: The End of Rare Defending When Offense Is CheapBlack Hat Asia 2026 | Hidden Telemetry: Uncovering TraceLogging ETW Providers Youre Not Using (Yet)Black Hat Asia 2026 | Beyond the Golden Image: A Self-Healing Image Supply ChainBlack Hat Asia 2026 | IDEsaster 2.0: Another Novel Vulnerability Class in AI IDEs
Black Hat |

SecTor 2025 | Detecting Forbidden White Labeled and Counterfeit Devices

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER