|
The Christopher Columbus Rule and DHS Mark Weatherford Deputy Undersecretary for Cybersecurity for the National Protection and Programs Directorate (NPPD) at the United States Department of Homeland Security. "Never fail to distinguish what's new, from what's new to you." This rule applies to a lot people when they think about innovation and technology in the government. At the U.S. Department of Homeland Security, in addition to r....
|
|
The Christopher Columbus Rule and DHS Mark Weatherford Deputy Undersecretary for Cybersecurity for the National Protection and Programs Directorate (NPPD) at the United States Department of Homeland Security. "Never fail to distinguish what's new, from what's new to you." This rule applies to a lot people when they think about innovation and technology in the government. At the U.S. Department of Homeland Security, in addition to r....
|
|
DEF CON Documentary Trailer Jason Scott Director, DEF CON Documentary As you may have heard, in honor of our 20th anniversary, we have a DEF CON Documentary in the making by none other than Jason Scott of textfiles.com! At the beginning of this hour he will give you a quick sneak peek of the film and maybe discuss a few juicy tidbits!
|
|
DEF CON Documentary Trailer Jason Scott Director, DEF CON Documentary As you may have heard, in honor of our 20th anniversary, we have a DEF CON Documentary in the making by none other than Jason Scott of textfiles.com! At the beginning of this hour he will give you a quick sneak peek of the film and maybe discuss a few juicy tidbits!
|
|
DEF CON Documentary Trailer Jason Scott Director, DEF CON Documentary As you may have heard, in honor of our 20th anniversary, we have a DEF CON Documentary in the making by none other than Jason Scott of textfiles.com! At the beginning of this hour he will give you a quick sneak peek of the film and maybe discuss a few juicy tidbits!
|
|
Black Ops Dan Kaminsky Chief Scientist, DKH If there's one thing we know, it's that we're doing it wrong. Sacred cows make the best hamburgers, so in this year's talk I'm going to play with some techniques that are obviously wrong and evil and naive. There will also be a lot of very interesting code, spanning the range from high speed network stacks to random number engines to a much deeper analysis of non-neutral networks. Finally..
|
|
Black Ops Dan Kaminsky Chief Scientist, DKH If there's one thing we know, it's that we're doing it wrong. Sacred cows make the best hamburgers, so in this year's talk I'm going to play with some techniques that are obviously wrong and evil and naive. There will also be a lot of very interesting code, spanning the range from high speed network stacks to random number engines to a much deeper analysis of non-neutral networks. Finally..
|
|
Black Ops Dan Kaminsky Chief Scientist, DKH If there's one thing we know, it's that we're doing it wrong. Sacred cows make the best hamburgers, so in this year's talk I'm going to play with some techniques that are obviously wrong and evil and naive. There will also be a lot of very interesting code, spanning the range from high speed network stacks to random number engines to a much deeper analysis of non-neutral networks. Finally..
|
|
Bankston Blaze and Granick - Should the Wall of Sheep Be Illegal
-
www.defcon.org
-
13 years ago
-
eng
Should the Wall of Sheep Be Illegal? A Debate Over Whether and How Open WiFi Sniffing Should Be Regulated Kevin Bankston Senior Counsel & Director of Free Expression, Center for Democracy & Technology Matt Blaze Director, Distributed Systems Lab at the University of Pennsylvania Jennifer Granick General Counsel, Worldstar, LLC Prompted by the Google Street View WiFi sniffing scandal, the question of whether and how the law re....
|
|
Bankston Blaze and Granick - Should the Wall of Sheep Be Illegal
-
www.defcon.org
-
13 years ago
-
eng
Should the Wall of Sheep Be Illegal? A Debate Over Whether and How Open WiFi Sniffing Should Be Regulated Kevin Bankston Senior Counsel & Director of Free Expression, Center for Democracy & Technology Matt Blaze Director, Distributed Systems Lab at the University of Pennsylvania Jennifer Granick General Counsel, Worldstar, LLC Prompted by the Google Street View WiFi sniffing scandal, the question of whether and how the law re....
|
|
Bankston Blaze and Granick - Should the Wall of Sheep Be Illegal
-
www.defcon.org
-
13 years ago
-
eng
Should the Wall of Sheep Be Illegal? A Debate Over Whether and How Open WiFi Sniffing Should Be Regulated Kevin Bankston Senior Counsel & Director of Free Expression, Center for Democracy & Technology Matt Blaze Director, Distributed Systems Lab at the University of Pennsylvania Jennifer Granick General Counsel, Worldstar, LLC Prompted by the Google Street View WiFi sniffing scandal, the question of whether and how the law re....
|
|
Cryptohaze Cloud Cracking Bitweasil Lead Developer, Cryptohaze Tools Bitweasil goes through the latest developments in the Cryptohaze GPU based password cracking suite. WebTables is a new rainbow table technology that eliminates the need to download rainbow tables before using them, and the new Cryptohaze Multiforcer is an open source, GPLv2, network enabled platform for password cracking that is easy to extend with new algorithms fo....
|
|
Cryptohaze Cloud Cracking Bitweasil Lead Developer, Cryptohaze Tools Bitweasil goes through the latest developments in the Cryptohaze GPU based password cracking suite. WebTables is a new rainbow table technology that eliminates the need to download rainbow tables before using them, and the new Cryptohaze Multiforcer is an open source, GPLv2, network enabled platform for password cracking that is easy to extend with new algorithms fo....
|
|
Cryptohaze Cloud Cracking Bitweasil Lead Developer, Cryptohaze Tools Bitweasil goes through the latest developments in the Cryptohaze GPU based password cracking suite. WebTables is a new rainbow table technology that eliminates the need to download rainbow tables before using them, and the new Cryptohaze Multiforcer is an open source, GPLv2, network enabled platform for password cracking that is easy to extend with new algorithms fo....
|
|
Francis Brown and Rob Ragan - Tenacious Diggity Skinny Dippin in a Sea of Bing
-
www.defcon.org
-
13 years ago
-
eng
Tenacious Diggity: Skinny Dippin' in a Sea of Bing Francis Brown Managing Partner - Stach & Liu, LLC Rob Ragan Senior Security Associate - Stach & Liu, LLC All brand new tool additions to the Google Hacking Diggity Project - The Next Generation Search Engine Hacking Arsenal. As always, all tools are free for download and use. When last we saw our heroes, the Diggity Duo had demonstrated how search engine hacking could be us....
|
|
Fuzzing Online Games Elie Bursztein Researcher, Google Patrick Samy Research Engineer, Stanford University Fuzzing online games to find interesting bugs requires a unique set of novel techniques. In a nutshell the lack of direct access to the game server and having to deal with clients that are far too complex to be easily emulated force us to rely on injecting fuzzing data into a legitimate connections rather than use the....
|
|
Francis Brown and Rob Ragan - Tenacious Diggity Skinny Dippin in a Sea of Bing
-
www.defcon.org
-
13 years ago
-
eng
Tenacious Diggity: Skinny Dippin' in a Sea of Bing Francis Brown Managing Partner - Stach & Liu, LLC Rob Ragan Senior Security Associate - Stach & Liu, LLC All brand new tool additions to the Google Hacking Diggity Project - The Next Generation Search Engine Hacking Arsenal. As always, all tools are free for download and use. When last we saw our heroes, the Diggity Duo had demonstrated how search engine hacking could be us....
|
|
Fuzzing Online Games Elie Bursztein Researcher, Google Patrick Samy Research Engineer, Stanford University Fuzzing online games to find interesting bugs requires a unique set of novel techniques. In a nutshell the lack of direct access to the game server and having to deal with clients that are far too complex to be easily emulated force us to rely on injecting fuzzing data into a legitimate connections rather than use the....
|
|
Francis Brown and Rob Ragan - Tenacious Diggity Skinny Dippin in a Sea of Bing
-
www.defcon.org
-
13 years ago
-
eng
Tenacious Diggity: Skinny Dippin' in a Sea of Bing Francis Brown Managing Partner - Stach & Liu, LLC Rob Ragan Senior Security Associate - Stach & Liu, LLC All brand new tool additions to the Google Hacking Diggity Project - The Next Generation Search Engine Hacking Arsenal. As always, all tools are free for download and use. When last we saw our heroes, the Diggity Duo had demonstrated how search engine hacking could be us....
|
|
Fuzzing Online Games Elie Bursztein Researcher, Google Patrick Samy Research Engineer, Stanford University Fuzzing online games to find interesting bugs requires a unique set of novel techniques. In a nutshell the lack of direct access to the game server and having to deal with clients that are far too complex to be easily emulated force us to rely on injecting fuzzing data into a legitimate connections rather than use the....
|
|
The Open Cyber Challenge Platform Linda C. Butler Everyone from MIT to the DoD have agreed that teaching cyber security using cyber challenges, where groups of students attack or defend a live network, has proven to be an incredibly effective educational tactic. Unfortunately, current cyber challenge tools also suffer from being very hard to configure, and/or very expensive, and/or limited to certain audiences (e.g. the military), ....
|
|
The Open Cyber Challenge Platform Linda C. Butler Everyone from MIT to the DoD have agreed that teaching cyber security using cyber challenges, where groups of students attack or defend a live network, has proven to be an incredibly effective educational tactic. Unfortunately, current cyber challenge tools also suffer from being very hard to configure, and/or very expensive, and/or limited to certain audiences (e.g. the military), ....
|
|
The Open Cyber Challenge Platform Linda C. Butler Everyone from MIT to the DoD have agreed that teaching cyber security using cyber challenges, where groups of students attack or defend a live network, has proven to be an incredibly effective educational tactic. Unfortunately, current cyber challenge tools also suffer from being very hard to configure, and/or very expensive, and/or limited to certain audiences (e.g. the military), ....
|
|
Sandy Clark and Matt Blaze - SIGINT and Traffic Analysis for the Rest of Us
-
www.defcon.org
-
13 years ago
-
eng
SIGINT and Traffic Analysis for the Rest of Us Sandy Clark University of Pennsylvania Matt Blaze Professor and Lab Director, University of Pennsylvania Last year, we discovered practical protocol weaknesses in P25, a "secure" two-way radio system used by, among others, the federal government to manage surveillance and other sensitive law enforcement and intelligence operations. Although some of the problems are quite serious (ef....
|
|
DC RECOGNIZE Awards Hosts: Jeff Moss Founder, DEF CON and Black Hat Jericho Russ Rogers Contest Guru DEF CON is proud to announce the 2nd annual DEF CON awards ceremony, renamed the DC Recognize Awards. These awards are given to deserving individuals in the community, industry, and media. You voted, so come see who made the cut. The categories we're giving out awards in are: - Worst coverage of security/hacker ..
|
|
Sandy Clark and Matt Blaze - SIGINT and Traffic Analysis for the Rest of Us
-
www.defcon.org
-
13 years ago
-
eng
SIGINT and Traffic Analysis for the Rest of Us Sandy Clark University of Pennsylvania Matt Blaze Professor and Lab Director, University of Pennsylvania Last year, we discovered practical protocol weaknesses in P25, a "secure" two-way radio system used by, among others, the federal government to manage surveillance and other sensitive law enforcement and intelligence operations. Although some of the problems are quite serious (ef....
|
|
DC RECOGNIZE Awards Hosts: Jeff Moss Founder, DEF CON and Black Hat Jericho Russ Rogers Contest Guru DEF CON is proud to announce the 2nd annual DEF CON awards ceremony, renamed the DC Recognize Awards. These awards are given to deserving individuals in the community, industry, and media. You voted, so come see who made the cut. The categories we're giving out awards in are: - Worst coverage of security/hacker ..
|
|
Sandy Clark and Matt Blaze - SIGINT and Traffic Analysis for the Rest of Us
-
www.defcon.org
-
13 years ago
-
eng
SIGINT and Traffic Analysis for the Rest of Us Sandy Clark University of Pennsylvania Matt Blaze Professor and Lab Director, University of Pennsylvania Last year, we discovered practical protocol weaknesses in P25, a "secure" two-way radio system used by, among others, the federal government to manage surveillance and other sensitive law enforcement and intelligence operations. Although some of the problems are quite serious (ef....
|
|
DC RECOGNIZE Awards Hosts: Jeff Moss Founder, DEF CON and Black Hat Jericho Russ Rogers Contest Guru DEF CON is proud to announce the 2nd annual DEF CON awards ceremony, renamed the DC Recognize Awards. These awards are given to deserving individuals in the community, industry, and media. You voted, so come see who made the cut. The categories we're giving out awards in are: - Worst coverage of security/hacker ..
|
|
DivaShark - Monitor your Flow Robert Deaton Analyzing live network traffic is nothing new but the tools still seem limited. Wireshark is great for post capture analysis but when the packets are coming at you live, nothing currently gives your stream or session level visibility. How many times have you clicked 'Follow this stream' just to have that stream update and you have to reprocess the entire PCAP? That's great when it's just ....
|
|
DivaShark - Monitor your Flow Robert Deaton Analyzing live network traffic is nothing new but the tools still seem limited. Wireshark is great for post capture analysis but when the packets are coming at you live, nothing currently gives your stream or session level visibility. How many times have you clicked 'Follow this stream' just to have that stream update and you have to reprocess the entire PCAP? That's great when it's just ....
|
|
DivaShark - Monitor your Flow Robert Deaton Analyzing live network traffic is nothing new but the tools still seem limited. Wireshark is great for post capture analysis but when the packets are coming at you live, nothing currently gives your stream or session level visibility. How many times have you clicked 'Follow this stream' just to have that stream update and you have to reprocess the entire PCAP? That's great when it's just ....
|
|
Last night I had the opportunity to hear Jason Fried, founder of 37signals, voice his thoughts on entrepreneurship.
|
|
Today, the first official Tea Club meeting took place. It was attended by Dave, Phil and Sam. It was held from approximately 3pm until 7pm, and a wide variety of topics were discussed.
|
|
Today, the first official Tea Club meeting took place. It was attended by Dave, Phil and Sam. It was held from approximately 3pm until 7pm, and a wide variety of topics were discussed.
|
|
I am writing a keepalived module for puppet. It will naturally be called: “puppet-keepalived”, and I will be releasing the code in the near future! In any case, if you’re familiar with VRRP , you’ll know that each managed link (eg: resource or VIP ) has a common routerid and password which are shared among all members in the group. It is important that these parameters are unique across the type definitions on a single node.
|
|
I am writing a keepalived module for puppet. It will naturally be called: “puppet-keepalived”, and I will be releasing the code in the near future! In any case, if you’re familiar with VRRP , you’ll know that each managed link (eg: resource or VIP ) has a common routerid and password which are shared among all members in the group. It is important that these parameters are unique across the type definitions on a single node.
|
|
Given the following code Map
|
|
A few weeks back I did a brief feature highlight on Postgres arrays . Since that time I’ve found myself using them with increasing regularity on small side projects. Much of this time I’m using Django and of course not opting to write raw SQL to be able to use arrays. Django actually makes it quite simple to work with Arrays in Postgres with a package by Andrey Antukh . Lets get started by installing two libraries: pip install djorm-ext-....
|
|
A few weeks back I did a brief feature highlight on Postgres arrays . Since that time I’ve found myself using them with increasing regularity on small side projects. Much of this time I’m using Django and of course not opting to write raw SQL to be able to use arrays. Django actually makes it quite simple to work with Arrays in Postgres with a package by Andrey Antukh . Lets get started by installing two libraries: pip install djorm-ext-....
|
|
In a curious turn of events, the Plone team is considering to remove their inline editing feature around the same time when similar features are being added to popular CMSs like TYPO3 and Drupal . While the reason why Ploners are considering to remove the feature is technical, wanting to remove an old library dependency, the discussion thread contains quite a lot of people complaining about inline editing. Some examples: No pro....
|