|
Runtime Kernel Patching on Mac OS X Bosse Eriksson Security Researcher, Bitsec Runtime kernel patching has been around for almost ten years and is a technique frequently used by various rootkits to subvert the kernel's used in many modern operating systems. This technique does not require any types of kernel modules or extensions and will allow you to hide various things like processes, files, folders and network connections by ....
|
|
Bosse Eriksson- Runtime Kernel Patching on Mac OS X - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Runtime Kernel Patching on Mac OS X Bosse Eriksson Security Researcher, Bitsec Runtime kernel patching has been around for almost ten years and is a technique frequently used by various rootkits to subvert the kernel's used in many modern operating systems. This technique does not require any types of kernel modules or extensions and will allow you to hide various things like processes, files, folders and network connections by ....
|
|
Runtime Kernel Patching on Mac OS X Bosse Eriksson Security Researcher, Bitsec Runtime kernel patching has been around for almost ten years and is a technique frequently used by various rootkits to subvert the kernel's used in many modern operating systems. This technique does not require any types of kernel modules or extensions and will allow you to hide various things like processes, files, folders and network connections by ....
|
|
Antony Rucci - Protecting Against and Investigating Insider Threats A Methodical Multi-Pronged Approach to Protecting Your Organization
-
www.defcon.org
-
16 years ago
-
eng
Protecting Against and Investigating Insider Threats (A methodical, multi-pronged approach to protecting your organization) Antonio "Tony" Rucci Program Director, Technical Intelligence and Security Programs, Oak Ridge National Laboratory This presentation will focus on indicators of insider threats and how to detect them. I’ll primarily focus on specific hiring practices to minimize risk to your organization. We’ll take a deep dive ....
|
|
eXercise in Messaging and Presence Pwnage Ava Latrope Security Consultant, iSEC Partners eXtensible Messaging and Presence Protocol, or XMPP, is a is a set of specialized XML-based protocols that are an increasingly popular choice for a variety of middleware applications. It's a sprawling project implemented differently by many popular projects and services, and is used for purposes ranging from chat rooms and video conferencing to c....
|
|
Beth Noid and Nick Farr - Robot Shark Laser What Hackerspaces Do
-
www.defcon.org
-
16 years ago
-
eng
Robot Shark Laser! What Hackerspaces Do Beth FreeSide, dc404 and KaosTheory Security Research Noid BlackLodge Nick Farr HacDC Leigh Honeywell HackLab Steve Clement Syn2cat Ever wonder what they mean by 'Fight Club for Nerds'? Do you daydream about what you could do if you had an underground lab and minions or a workshop and helpers? Have you considered all the ways to incorporate lasers into your life? Are you sure about that....
|
|
Ava Latrope - eXercise in Messaging and Presence Pwnage - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
eXercise in Messaging and Presence Pwnage Ava Latrope Security Consultant, iSEC Partners eXtensible Messaging and Presence Protocol, or XMPP, is a is a set of specialized XML-based protocols that are an increasingly popular choice for a variety of middleware applications. It's a sprawling project implemented differently by many popular projects and services, and is used for purposes ranging from chat rooms and video conferencing to c....
|
|
Beth Noid and Nick Farr - Robot Shark Laser What Hackerspaces Do - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Robot Shark Laser! What Hackerspaces Do Beth FreeSide, dc404 and KaosTheory Security Research Noid BlackLodge Nick Farr HacDC Leigh Honeywell HackLab Steve Clement Syn2cat Ever wonder what they mean by 'Fight Club for Nerds'? Do you daydream about what you could do if you had an underground lab and minions or a workshop and helpers? Have you considered all the ways to incorporate lasers into your life? Are you sure about that....
|
|
Ava Latrope - eXercise in Messaging and Presence Pwnage - Slides
-
www.defcon.org
-
16 years ago
-
eng
eXercise in Messaging and Presence Pwnage Ava Latrope Security Consultant, iSEC Partners eXtensible Messaging and Presence Protocol, or XMPP, is a is a set of specialized XML-based protocols that are an increasingly popular choice for a variety of middleware applications. It's a sprawling project implemented differently by many popular projects and services, and is used for purposes ranging from chat rooms and video conferencing to c....
|
|
Beth Noid and Nick Farr - Robot Shark Laser What Hackerspaces Do - Slides
-
www.defcon.org
-
16 years ago
-
eng
Robot Shark Laser! What Hackerspaces Do Beth FreeSide, dc404 and KaosTheory Security Research Noid BlackLodge Nick Farr HacDC Leigh Honeywell HackLab Steve Clement Syn2cat Ever wonder what they mean by 'Fight Club for Nerds'? Do you daydream about what you could do if you had an underground lab and minions or a workshop and helpers? Have you considered all the ways to incorporate lasers into your life? Are you sure about that....
|
|
Andrea Barisani and Daniele Bianco - Sniffing Keystrockes with Lasers and Voltmeters
-
www.defcon.org
-
16 years ago
-
eng
Sniff Keystrokes With Lasers/Voltmeters - Side Channel Attacks Using Optical Sampling Of Mechanical Energy And Power Line Leakage Andrea Barisani Chief Security Engineer, Inverse Path Ltd. Founder& Project Coordinator, oCERT Daniele Bianco Hardware Hacker, Inverse Path Ltd. TEMPEST attacks, exploiting Electro Magnetic emissions in order to gather data, are often mentioned by the security community, movies and wanna-be ....
|
|
Antione Gademer and Corentin Cheron - Low cost Spying Quadrotor for Global Security Applications
-
www.defcon.org
-
16 years ago
-
eng
A Low Cost Spying Quadrotor for Global security Applications Using Hacked Commercial Digital Camera Antoine Gademer Corentin Chéron Accessing centimetric georeferenced images is crucial for local military or civil intelligence, reconnaissance and surveillance applications. When classical satellite or aerial imagery is not available the Unmanned Aircraft Systems (UAS) are often a very interesting solution. But having an operational ....
|
|
Andrea Barisani and Daniele Bianco - Sniffing Keystrockes with Lasers and Voltmeters - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Sniff Keystrokes With Lasers/Voltmeters - Side Channel Attacks Using Optical Sampling Of Mechanical Energy And Power Line Leakage Andrea Barisani Chief Security Engineer, Inverse Path Ltd. Founder& Project Coordinator, oCERT Daniele Bianco Hardware Hacker, Inverse Path Ltd. TEMPEST attacks, exploiting Electro Magnetic emissions in order to gather data, are often mentioned by the security community, movies and wanna-be ....
|
|
Antione Gademer and Corentin Cheron - Low cost Spying Quadrotor for Global Security Applications -Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
A Low Cost Spying Quadrotor for Global security Applications Using Hacked Commercial Digital Camera Antoine Gademer Corentin Chéron Accessing centimetric georeferenced images is crucial for local military or civil intelligence, reconnaissance and surveillance applications. When classical satellite or aerial imagery is not available the Unmanned Aircraft Systems (UAS) are often a very interesting solution. But having an operational ....
|
|
Andrea Barisani and Daniele Bianco - Sniffing Keystrockes with Lasers and Voltmeters - Slides
-
www.defcon.org
-
16 years ago
-
eng
Sniff Keystrokes With Lasers/Voltmeters - Side Channel Attacks Using Optical Sampling Of Mechanical Energy And Power Line Leakage Andrea Barisani Chief Security Engineer, Inverse Path Ltd. Founder& Project Coordinator, oCERT Daniele Bianco Hardware Hacker, Inverse Path Ltd. TEMPEST attacks, exploiting Electro Magnetic emissions in order to gather data, are often mentioned by the security community, movies and wanna-be ....
|
|
Session Donation Alek Amrani It's easier to give away than it is to take. Apply that theory to Session Hijacking, and enter Session Donation. Session Donation is a computer session attack that attempts to gain information by taking session hijacking in an entirely new direction. Session Donation is an interesting new spin on an old attack that is much harder to prevent than it's predecessor, and equally as dangerous. Alek ..
|
|
Session Donation Alek Amrani It's easier to give away than it is to take. Apply that theory to Session Hijacking, and enter Session Donation. Session Donation is a computer session attack that attempts to gain information by taking session hijacking in an entirely new direction. Session Donation is an interesting new spin on an old attack that is much harder to prevent than it's predecessor, and equally as dangerous. Alek ..
|
|
Session Donation Alek Amrani It's easier to give away than it is to take. Apply that theory to Session Hijacking, and enter Session Donation. Session Donation is a computer session attack that attempts to gain information by taking session hijacking in an entirely new direction. Session Donation is an interesting new spin on an old attack that is much harder to prevent than it's predecessor, and equally as dangerous. Alek ..
|
|
Failure Adam Savage Co-Host, MythBusters A meditation on how I've screwed things up, lost friends and clients, and learned about myself in the process. Adam Savage has spent his life gathering skills that allow him to take what's in his brain, and make it real. He's built everything from ancient Buddhas to futuristic weapons, from spaceships to dancing vegetables, from fine art sculptures to animated chocolate -- and just about anyt....
|
|
Some concepts are difficult to teach to students because it is something which you take for granted because it is so deeply ingrained. Chemistry concepts from first year university can be like that. But the most difficult experience in my teaching practice might have been this morning. It was difficult because each answer the student gave raised new questions about how much she was missing in her educational foundation. During the morning ..
|
|
Tottenkoph - Good Vibrations Hacking Motion Sickness on the Cheap
-
www.defcon.org
-
16 years ago
-
eng
Good Vibrations: Hacking Motion Sickness on the Cheap Tottenkoph consultant, crypto-fiend, hacker, and awesome chix0r Motion sickness has been an issue since man learned how to travel by means other than by foot, with the earliest recorded cases dating back to ancient Greece. Although the problem has existed for such a long time, there has been no documented case of a cure for all forms and severities of motion sickness and the ..
|
|
Tottenkoph - Good Vibrations Hacking Motion Sickness on the Cheap - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Good Vibrations: Hacking Motion Sickness on the Cheap Tottenkoph consultant, crypto-fiend, hacker, and awesome chix0r Motion sickness has been an issue since man learned how to travel by means other than by foot, with the earliest recorded cases dating back to ancient Greece. Although the problem has existed for such a long time, there has been no documented case of a cure for all forms and severities of motion sickness and the ..
|
|
Tottenkoph - Good Vibrations Hacking Motion Sickness on the Cheap - Slides
-
www.defcon.org
-
16 years ago
-
eng
Good Vibrations: Hacking Motion Sickness on the Cheap Tottenkoph consultant, crypto-fiend, hacker, and awesome chix0r Motion sickness has been an issue since man learned how to travel by means other than by foot, with the earliest recorded cases dating back to ancient Greece. Although the problem has existed for such a long time, there has been no documented case of a cure for all forms and severities of motion sickness and the ..
|
|
Dominic Spill Michael Ossmann and Mark Steward - Bluetooth Smells like Chicken
-
www.defcon.org
-
16 years ago
-
eng
Bluetooth, Smells Like Chicken Dominic Spill Security Researcher Michael Ossmann Wireless Security Researcher Mark Steward Security Researcher Bluetooth traffic analysis is hard. Whilst most 802.11 chips support promiscuous mode, Bluetooth dongles cannot monitor all traffic due to a pseudo-random frequency hopping system. Previous attempts have recovered a small number of channels using software radio techniques but have required....
|
|
Dominic Spill Michael Ossmann and Mark Steward - Bluetooth Smells like Chicken - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Bluetooth, Smells Like Chicken Dominic Spill Security Researcher Michael Ossmann Wireless Security Researcher Mark Steward Security Researcher Bluetooth traffic analysis is hard. Whilst most 802.11 chips support promiscuous mode, Bluetooth dongles cannot monitor all traffic due to a pseudo-random frequency hopping system. Previous attempts have recovered a small number of channels using software radio techniques but have required....
|
|
Dominic Spill Michael Ossmann and Mark Steward - Bluetooth Smells like Chicken - Slides
-
www.defcon.org
-
16 years ago
-
eng
Bluetooth, Smells Like Chicken Dominic Spill Security Researcher Michael Ossmann Wireless Security Researcher Mark Steward Security Researcher Bluetooth traffic analysis is hard. Whilst most 802.11 chips support promiscuous mode, Bluetooth dongles cannot monitor all traffic due to a pseudo-random frequency hopping system. Previous attempts have recovered a small number of channels using software radio techniques but have required....
|
|
Douglas C Merrill - Is that you Baby or Just a Bridge in the Sky
-
www.defcon.org
-
16 years ago
-
eng
Is That You, Baby, or Just a Bridge in the Sky? Douglas C. Merrill Douglas C. Merrill was Chief Operating Officer of New Music for EMI Records and President of EMI’s Digital Business from 2008 to 2009. In those roles, he was responsible for the operation of the new music creation business, and led all of EMI’s digital strategy, innovation, business development, supply chain and global technology activities. Dr. Merrill served....
|
|
Douglas C Merrill - Is that you Baby or Just a Bridge in the Sky - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Is That You, Baby, or Just a Bridge in the Sky? Douglas C. Merrill Douglas C. Merrill was Chief Operating Officer of New Music for EMI Records and President of EMI’s Digital Business from 2008 to 2009. In those roles, he was responsible for the operation of the new music creation business, and led all of EMI’s digital strategy, innovation, business development, supply chain and global technology activities. Dr. Merrill served....
|
|
Douglas C Merrill - Is that you Baby or Just a Bridge in the Sky - Slides
-
www.defcon.org
-
16 years ago
-
eng
Is That You, Baby, or Just a Bridge in the Sky? Douglas C. Merrill Douglas C. Merrill was Chief Operating Officer of New Music for EMI Records and President of EMI’s Digital Business from 2008 to 2009. In those roles, he was responsible for the operation of the new music creation business, and led all of EMI’s digital strategy, innovation, business development, supply chain and global technology activities. Dr. Merrill served....
|
|
Doppelganger: The Web's Evil Twin Edward Zaborowski Senior Security Engineer, Apptis Users and administrators alike surf the web assuming that, for the most part, what they are looking at is what the website served to their browser; however, an attacker can deploy a malicious proxy, altering responses and requests, as well as potentially stealing sensitive data, all without a user being aware. In this presentation I will discuss....
|
|
Edward Zaborowski - Doppleganger The Webs Evil Twin - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Doppelganger: The Web's Evil Twin Edward Zaborowski Senior Security Engineer, Apptis Users and administrators alike surf the web assuming that, for the most part, what they are looking at is what the website served to their browser; however, an attacker can deploy a malicious proxy, altering responses and requests, as well as potentially stealing sensitive data, all without a user being aware. In this presentation I will discuss....
|
|
Metasploit Goes Web Efrain Torres Metasploit Team This topic will present and discuss the new Metasploit plugin for web exploitation and assessment. WMAP is part of the Metasploit framework and it is build with a different approach compared to other open source alternatives and commercial scanners. WMAP is not build around any browser or spider for data capture and manipulation and as test modules are implemented as auxiliary modules....
|
|
Metasploit Goes Web Efrain Torres Metasploit Team This topic will present and discuss the new Metasploit plugin for web exploitation and assessment. WMAP is part of the Metasploit framework and it is build with a different approach compared to other open source alternatives and commercial scanners. WMAP is not build around any browser or spider for data capture and manipulation and as test modules are implemented as auxiliary modules....
|
|
Metasploit Goes Web Efrain Torres Metasploit Team This topic will present and discuss the new Metasploit plugin for web exploitation and assessment. WMAP is part of the Metasploit framework and it is build with a different approach compared to other open source alternatives and commercial scanners. WMAP is not build around any browser or spider for data capture and manipulation and as test modules are implemented as auxiliary modules....
|
|
Efstratios Gavas - Asymetric Defense How to fight off the NSA Red Team
-
www.defcon.org
-
16 years ago
-
eng
Asymmetric Defense: How to Fight Off the NSA Red Team with Five People or Less Efstratios L. Gavas Assistant Professor, United States Merchant Marine Academy The NSA sponsors an annual Cyber Defense Exercise (CDX) to raise awareness of and help develop cyber defense skills in our armed forces. This is the story of how the United Stated Merchant Marine Academy, the smallest of the five undergraduate service academies, has managed to h....
|
|
Efstratios Gavas - Asymetric Defense How to fight off the NSA Red Team - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Asymmetric Defense: How to Fight Off the NSA Red Team with Five People or Less Efstratios L. Gavas Assistant Professor, United States Merchant Marine Academy The NSA sponsors an annual Cyber Defense Exercise (CDX) to raise awareness of and help develop cyber defense skills in our armed forces. This is the story of how the United Stated Merchant Marine Academy, the smallest of the five undergraduate service academies, has managed to h....
|
|
Efstratios Gavas - Asymetric Defense How to fight off the NSA Red Team - Slides
-
www.defcon.org
-
16 years ago
-
eng
Asymmetric Defense: How to Fight Off the NSA Red Team with Five People or Less Efstratios L. Gavas Assistant Professor, United States Merchant Marine Academy The NSA sponsors an annual Cyber Defense Exercise (CDX) to raise awareness of and help develop cyber defense skills in our armed forces. This is the story of how the United Stated Merchant Marine Academy, the smallest of the five undergraduate service academies, has managed to h....
|
|
Egypt - Automatic Browser Fingerprinting and Exploitation with Metasploit
-
www.defcon.org
-
16 years ago
-
eng
Using Guided Missiles in Drive-Bys: Automatic browser fingerprinting and exploitation with Metasploit Egypt Core Developer, Metasploit Project The blackhat community has been using client-side exploits for several years now. Multiple commercial suites exist for turning webservers into malware distribution centers. Unfortunately for the pentester, acquiring these tools requires sending money to countries with no extradition treaties, ....
|
|
Egypt - Automatic Browser Fingerprinting and Exploitation with Metasploit - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Using Guided Missiles in Drive-Bys: Automatic browser fingerprinting and exploitation with Metasploit Egypt Core Developer, Metasploit Project The blackhat community has been using client-side exploits for several years now. Multiple commercial suites exist for turning webservers into malware distribution centers. Unfortunately for the pentester, acquiring these tools requires sending money to countries with no extradition treaties, ....
|
|
Egypt - Automatic Browser Fingerprinting and Exploitation with Metasploit - Slides
-
www.defcon.org
-
16 years ago
-
eng
Using Guided Missiles in Drive-Bys: Automatic browser fingerprinting and exploitation with Metasploit Egypt Core Developer, Metasploit Project The blackhat community has been using client-side exploits for several years now. Multiple commercial suites exist for turning webservers into malware distribution centers. Unfortunately for the pentester, acquiring these tools requires sending money to countries with no extradition treaties, ....
|
|
Endgrain Dan Kaminsky and Tiffany Rad - Hello My Name is hostname
-
www.defcon.org
-
16 years ago
-
eng
Hello, My Name is /hostname/ Endgrain Student of computer science at the University of Southern Maine Tiffany Rad Part-time Professor, Computer Science Department, University of Southern Maine Dan Kaminsky Director of Pen Testing, IOActive It is widely known that MAC addresses are spoofable, however many access control models rely on them to uniquely identify devices. When host names are set to be user's real names and are broadc....
|
|
Endgrain Dan Kaminsky and Tiffany Rad - Hello My Name is hostname - Video and Slides
-
www.defcon.org
-
16 years ago
-
eng
Hello, My Name is /hostname/ Endgrain Student of computer science at the University of Southern Maine Tiffany Rad Part-time Professor, Computer Science Department, University of Southern Maine Dan Kaminsky Director of Pen Testing, IOActive It is widely known that MAC addresses are spoofable, however many access control models rely on them to uniquely identify devices. When host names are set to be user's real names and are broadc....
|
|
Endgrain Dan Kaminsky and Tiffany Rad - Hello My Name is hostname - Slides
-
www.defcon.org
-
16 years ago
-
eng
Hello, My Name is /hostname/ Endgrain Student of computer science at the University of Southern Maine Tiffany Rad Part-time Professor, Computer Science Department, University of Southern Maine Dan Kaminsky Director of Pen Testing, IOActive It is widely known that MAC addresses are spoofable, however many access control models rely on them to uniquely identify devices. When host names are set to be user's real names and are broadc....
|
|
Erez Metula - Managed Code Rootkits Hooking into Runtime Enviroments
-
www.defcon.org
-
16 years ago
-
eng
Managed Code Rootkits - Hooking into Runtime Environments Erez Metula Application Security Department manager, 2BSecure This presentation introduces a new concept of application level rootkit attacks on managed code environments, enabling an attacker to change the language runtime implementation, and to hide malicious code inside its core. Taking the ".NET Rootkits" concepts a step further, while covering generic methods of malware d....
|