|
Eric Robi and Michael Perklin - Forensic Fails - Shift + Delete won't help you here
-
media.defcon.org
-
12 years ago
-
eng
Forensic Fails - Shift + Delete won't help you here ERIC ROBI FORENSIC EXAMINER, ELLUMA DISCOVERY MICHAEL PERKLIN CYBER INVESTIGATOR Forensic fails illustrates the rather comedic attempts at "anti-forensics" by inept computer users trying to hide their tracks. We will recount real-life stories about folks whose level of hacker-mojo might aspire to 1337 status but fall a little short. This talk covers why and how these fails happened a....
|
|
Chris John Riley - Defense by numbers: Making problems for script kiddies and scanner monkeys
-
www.defcon.org
-
12 years ago
-
eng
Defense by numbers: Making problems for script kiddies and scanner monkeys CHRIS JOHN RILEY On the surface most common browsers look the same, function the same, and deliver web content to the user in a relatively uniformed fashion. Under the shiny surface however, the way specific user agents handle traffic varies in a number of interesting and unique ways. This variation allows for defenders to play games with attackers and scripted ....
|
|
Chris John Riley - Defense by numbers: Making problems for script kiddies and scanner monkeys
-
media.defcon.org
-
12 years ago
-
eng
Defense by numbers: Making problems for script kiddies and scanner monkeys CHRIS JOHN RILEY On the surface most common browsers look the same, function the same, and deliver web content to the user in a relatively uniformed fashion. Under the shiny surface however, the way specific user agents handle traffic varies in a number of interesting and unique ways. This variation allows for defenders to play games with attackers and scripted ....
|
Hacker Law School JIM RENNIE ATTORNEY MARCIA HOFMANN ATTORNEY In the past year, several high-profile prosecutions of hackers have underscored the need for legal education in our community. This workshop will provide you with the fundamentals of Intellectual Property, Crimimal Law, and Criminal Procedure that you need to protect yourself. Learn where the grey areas of law are that increase your risk. This session will also enable you t....
|
|
Dr. Philip Polstra- We are Legion: Pentesting with an Army of Low-power Low-cost Devices
-
www.defcon.org
-
12 years ago
-
eng
We are Legion: Pentesting with an Army of Low-power Low-cost Devices DR. PHILIP POLSTRA HACKER IN RESIDENCE, UNIVERSITY OF DUBUQUE This talk will show attendees how they can do penetration testing with a network of small, battery-powered, penetration testing systems. The small devices discussed will be running a version of The Deck, a full-featured penetration testing and forensics Linux distro. The Deck runs on the BeagleBoard and Beag....
|
|
Dr. Philip Polstra- We are Legion: Pentesting with an Army of Low-power Low-cost Devices
-
media.defcon.org
-
12 years ago
-
eng
We are Legion: Pentesting with an Army of Low-power Low-cost Devices DR. PHILIP POLSTRA HACKER IN RESIDENCE, UNIVERSITY OF DUBUQUE This talk will show attendees how they can do penetration testing with a network of small, battery-powered, penetration testing systems. The small devices discussed will be running a version of The Deck, a full-featured penetration testing and forensics Linux distro. The Deck runs on the BeagleBoard and Beag....
|
Let's screw with nmap GREGORY PICKETT PENETRATION TESTER, HELLFIRE SECURITY Differences in packet headers allow tools like nmap to fingerprint operating systems. My new approach to packet normalization removes these header differences. Starting TTL, TCP Options used, and TCP Option order, after normalization, are the same from one packet to the next no matter which operating system sends it. If we normalized the packets transiting our n....
|
Let's screw with nmap GREGORY PICKETT PENETRATION TESTER, HELLFIRE SECURITY Differences in packet headers allow tools like nmap to fingerprint operating systems. My new approach to packet normalization removes these header differences. Starting TTL, TCP Options used, and TCP Option order, after normalization, are the same from one packet to the next no matter which operating system sends it. If we normalized the packets transiting our n....
|
|
Alexandre Pinto - Defending Networks with Incomplete Information: A Machine Learning Approach
-
www.defcon.org
-
12 years ago
-
eng
Defending Networks with Incomplete Information: A Machine Learning Approach ALEXANDRE PINTO SECURITY RESEARCHER Let's face it: we may win some battles, but we are losing the war pretty badly. Regardless of the advances in malware and targeted attacks detection technologies, our top security practitioners can only do so much in a 24 hour day. Even less, if you let them eat and sleep. On the other hand, there is a severe shortage of capab....
|
|
Alexandre Pinto - Defending Networks with Incomplete Information: A Machine Learning Approach
-
media.defcon.org
-
12 years ago
-
eng
Defending Networks with Incomplete Information: A Machine Learning Approach ALEXANDRE PINTO SECURITY RESEARCHER Let's face it: we may win some battles, but we are losing the war pretty badly. Regardless of the advances in malware and targeted attacks detection technologies, our top security practitioners can only do so much in a 24 hour day. Even less, if you let them eat and sleep. On the other hand, there is a severe shortage of capab....
|
|
Theron Conrey writes about using: BitTorrent Sync as Geo-Replication for Storage We got a chance to talk about this idea at Linuxcon. I'm not entirely convinced there aren't some problem edge cases with this solution, but I think it will be hard to tell as long as the BitTorrent sync library is proprietary. I did come up with a special case of Theron's idea that I believe could work well. The special case uses the optimization that t..
|
|
Theron Conrey writes about using: BitTorrent Sync as Geo-Replication for Storage We got a chance to talk about this idea at Linuxcon. I'm not entirely convinced there aren't some problem edge cases with this solution, but I think it will be hard to tell as long as the BitTorrent sync library is proprietary. I did come up with a special case of Theron's idea that I believe could work well. The special case uses the optimization that t..
|
|
Slices are used everywhere in my code. If I am working with data from MongoDB, it is stored in a slice. If I need to keep track of a collection of problems after running an operation, it is stored in a slice. If you don’t understand how slices work yet or have been avoiding them like I did when I started, read these two posts to learn more. https://www.ardanlabs.com/blog/2013/08/understanding-slices-in-go-programming.html https..
|
|
Hi All, I wrote this a while back for myself and finally got around to polishing it enough to release into the store. It’s a really basic app which will connect to your flurry account and show you new users and number of sessions while your out and about! http://www.windowsphone.com/en-gb/store/app/flurrystats/94d9ad3c-61d2-4ce6-8a61-60b4b8b1fe87
|
An Ant Hill is a masterpiece of nature. Hidden from the human eye it grows intricate, complex and deep. It’s a beautiful structure crafted by one of the most humble creatures. But in the world of Colosseum’s and Eiffel’s tower it is generally overlooked. How do we define creativity in such a context? Is creativity … Continue reading Creativity: Taj Mahals and Ant-Hills
|
|
I’m here in New Orleans hacking up a storm and getting to meet fellow gluster users IRL. John Mark Walker started off with a great “State of the GlusterFS union” style talk. Today Louis (semiosis) gave a great talk about running glusterfs on amazon. It was highly pragmatic and he explained how he chose the number of bricks per host. The talk will be posted online shortly. Marco Ceppi from Canonical gave a talk about juju and glust....
|
|
I’m here in New Orleans hacking up a storm and getting to meet fellow gluster users IRL. John Mark Walker started off with a great “State of the GlusterFS union” style talk. Today Louis (semiosis) gave a great talk about running glusterfs on amazon. It was highly pragmatic and he explained how he chose the number of bricks per host. The talk will be posted online shortly. Marco Ceppi from Canonical gave a talk about juju and glust....
|
|
Phorkus and Evilrob - Doing Bad Things to 'Good' Security Appliances
-
www.defcon.org
-
12 years ago
-
eng
Doing Bad Things to 'Good' Security Appliances PHORKUS (MARK CAREY) CHIEF SCIENTIST, PEAK SECURITY EVILROB (ROB BATHURST) THAT GUY The problem with security appliances is verifying that they are as good as the marketing has lead you to believe. You need to spend lots of money to buy a unit, or figure out how to obtain it another way; we chose eBay. We now have a hardened, encrypted, AES 256 tape storage unit and a mission, break it ev....
|
|
Phorkus and Evilrob - Doing Bad Things to 'Good' Security Appliances
-
media.defcon.org
-
12 years ago
-
eng
Doing Bad Things to 'Good' Security Appliances PHORKUS (MARK CAREY) CHIEF SCIENTIST, PEAK SECURITY EVILROB (ROB BATHURST) THAT GUY The problem with security appliances is verifying that they are as good as the marketing has lead you to believe. You need to spend lots of money to buy a unit, or figure out how to obtain it another way; we chose eBay. We now have a hardened, encrypted, AES 256 tape storage unit and a mission, break it ev....
|
|
Michael Perklin - ACL Steganography - Permissions to Hide Your Porn
-
www.defcon.org
-
12 years ago
-
eng
ACL Steganography - Permissions to Hide Your Porn MICHAEL PERKLIN SECURITY RESEARCHER Everyone's heard the claim: Security through obscurity is no security at all. Challenging this claim is the entire field of steganography itself - the art of hiding things in plain sight. Most people know you can hide a text file inside a photograph, or embed a photograph inside an MP3. But how does this work under the hood? What's new in the stego fie....
|
|
Michael Perklin - ACL Steganography - Permissions to Hide Your Porn
-
media.defcon.org
-
12 years ago
-
eng
ACL Steganography - Permissions to Hide Your Porn MICHAEL PERKLIN SECURITY RESEARCHER Everyone's heard the claim: Security through obscurity is no security at all. Challenging this claim is the entire field of steganography itself - the art of hiding things in plain sight. Most people know you can hide a text file inside a photograph, or embed a photograph inside an MP3. But how does this work under the hood? What's new in the stego fie....
|
Exploiting Music Streaming with JavaScript FRANZ PAYER PROGRAMMER, TACTICAL NETWORK SOLUTIONS As the music industry transitioned from physical to digital distribution, they have forgotten the one thing they hold most dear to them: Their DRM. Many browser-based music streaming services use no DRM to secure their music. By doing this, they leave their library of high quality songs free for the picking. This presentation details the use....
|
Exploiting Music Streaming with JavaScript FRANZ PAYER PROGRAMMER, TACTICAL NETWORK SOLUTIONS As the music industry transitioned from physical to digital distribution, they have forgotten the one thing they hold most dear to them: Their DRM. Many browser-based music streaming services use no DRM to secure their music. By doing this, they leave their library of high quality songs free for the picking. This presentation details the use....
|
|
Jaime Filson and Rob Fuller - gitDigger: Creating useful wordlists from public GitHub repositories
-
www.defcon.org
-
12 years ago
-
eng
gitDigger: Creating useful wordlists from public GitHub repositories JAIME FILSON (WIK) ROB FULLER (MUBIX) This presentation intends to cover the thought process and logistics behind building a better wordlist using github public repositories as its source. With an estimated 2,000,000 github projects to date, how would one store that amount of data? Would you even want or need to? After downloading approximately 500,000 repositories....
|
|
Jaime Filson and Rob Fuller - gitDigger: Creating useful wordlists from public GitHub repositories
-
media.defcon.org
-
12 years ago
-
eng
gitDigger: Creating useful wordlists from public GitHub repositories JAIME FILSON (WIK) ROB FULLER (MUBIX) This presentation intends to cover the thought process and logistics behind building a better wordlist using github public repositories as its source. With an estimated 2,000,000 github projects to date, how would one store that amount of data? Would you even want or need to? After downloading approximately 500,000 repositories....
|
VoIP Wars: Return of the SIP FATIH OZAVCI INFORMATION SECURITY RESEARCHER AND CONSULTANT, VIPROY SECURITY NGN (Next Generation Network) is modern TDM/PSTN system for communication infrastructure. SIP (Session Initiation Protocol) Servers are center of NGN services, they provide signaling services. SIP based communication is insecure, because of protocol implementation. Based on this fact, NGN is not actually Next Generation. It can be h....
|
VoIP Wars: Return of the SIP FATIH OZAVCI INFORMATION SECURITY RESEARCHER AND CONSULTANT, VIPROY SECURITY NGN (Next Generation Network) is modern TDM/PSTN system for communication infrastructure. SIP (Session Initiation Protocol) Servers are center of NGN services, they provide signaling services. SIP based communication is insecure, because of protocol implementation. Based on this fact, NGN is not actually Next Generation. It can be h....
|
|
John Ortiz - Fast Forensics Using Simple Statistics and Cool Tools
-
www.defcon.org
-
12 years ago
-
eng
Fast Forensics Using Simple Statistics and Cool Tools JOHN ORTIZ COMPUTER ENGINEER, CRUCIAL SECURITY/HARRIS Ever been attacked by malicious code leaving unknown files all over your computer? Trying to figure out if a file is encrypted or just compressed? Is the file really something else? Is there hidden data? Are you short on time! This talk leads you through file identification and analysis using some custom FREE tools that apply stat....
|
|
John Ortiz - Fast Forensics Using Simple Statistics and Cool Tools
-
media.defcon.org
-
12 years ago
-
eng
Fast Forensics Using Simple Statistics and Cool Tools JOHN ORTIZ COMPUTER ENGINEER, CRUCIAL SECURITY/HARRIS Ever been attacked by malicious code leaving unknown files all over your computer? Trying to figure out if a file is encrypted or just compressed? Is the file really something else? Is there hidden data? Are you short on time! This talk leads you through file identification and analysis using some custom FREE tools that apply stat....
|
Stalking a City for Fun and Frivolity BRENDAN O'CONNOR Tired of the government being the only entity around that can keep tabs on a whole city at once? Frustrated by dictators du jour knowing more about you than you know about them? Fed up with agents provocateur slipping into your protests, rallies, or golf outings? Suffer no more, because CreepyDOL is here to help! With open-source software, off-the-shelf sensors, several layers of ....
|
Stalking a City for Fun and Frivolity BRENDAN O'CONNOR Tired of the government being the only entity around that can keep tabs on a whole city at once? Frustrated by dictators du jour knowing more about you than you know about them? Fed up with agents provocateur slipping into your protests, rallies, or golf outings? Suffer no more, because CreepyDOL is here to help! With open-source software, off-the-shelf sensors, several layers of ....
|
Please Insert Inject More Coins NICOLAS OBERLI SECURITY ENGINEER, SCRT The ccTalk protocol is widely used in the vending machine sector as well as casino gaming industry, but is actually not that much known, and very little information exists about it except the official documentation. This protocol is used to transfer money-related information between various devices and the machine mainboard like the value of the inserted bill or how ....
|
Please Insert Inject More Coins NICOLAS OBERLI SECURITY ENGINEER, SCRT The ccTalk protocol is widely used in the vending machine sector as well as casino gaming industry, but is actually not that much known, and very little information exists about it except the official documentation. This protocol is used to transfer money-related information between various devices and the machine mainboard like the value of the inserted bill or how ....
|
The Road Less Surreptitiously Traveled PUKINGMONKEY Anonymously driving your own vehicle is becoming unattainable with the proliferation of automatic license plate readers (ALPRs) now coming into wide-spread use. Combined with always-on electronic toll tags, smart phone traffic apps and even plain cell phones are adding to this problem. There is little public disclosure of this tracking and little legislation limiting the length of time....
|
The Road Less Surreptitiously Traveled PUKINGMONKEY Anonymously driving your own vehicle is becoming unattainable with the proliferation of automatic license plate readers (ALPRs) now coming into wide-spread use. Combined with always-on electronic toll tags, smart phone traffic apps and even plain cell phones are adding to this problem. There is little public disclosure of this tracking and little legislation limiting the length of time....
|
|
Tony Mui and Wai-Leng Lee - Kill 'em All — DDoS Protection Total Annihilation!
-
www.defcon.org
-
12 years ago
-
eng
Kill 'em All — DDoS Protection Total Annihilation! TONY MIU TECHNICAL DIRECTOR, BLOODSPEAR RESEARCH GROUP WAI-LENG LEE VP OF ENGINEERING, BLOODSPEAR RESEARCH GROUP With the advent of paid DDoS protection in the forms of CleanPipe, CDN / Cloud or whatnot, the sitting ducks have stood up and donned armors... or so they think! We're here to rip apart this false sense of security by dissecting each and every mitigation techniques you can ....
|
PowerPreter: Post Exploitation Like a Boss NIKHIL MITTAL SECURITY RESEARCHER Powerpreter is "The" post exploitation tool. It is written completely in powershell which is present on all modern Windows systems. Powerpreter has multiple capabilties which any post exploitation shell worth its salt must have, minus the detection by anti virus or other countermeasure tools. Powerpreter has, to name a few, functions like stealing infromation, ....
|
PowerPreter: Post Exploitation Like a Boss NIKHIL MITTAL SECURITY RESEARCHER Powerpreter is "The" post exploitation tool. It is written completely in powershell which is present on all modern Windows systems. Powerpreter has multiple capabilties which any post exploitation shell worth its salt must have, minus the detection by anti virus or other countermeasure tools. Powerpreter has, to name a few, functions like stealing infromation, ....
|
Getting The Goods With smbexec ERIC MILAM PRINCIPAL CONSULTANT, ACCUVANT LABS Individuals often upload and execute a payload to a remote system during penetration tests for foot printing, gathering information, and to compromise additional hosts. When trying to remain stealthy, uploading a shell to a target may not be wise. smbexec takes advantage of native Windows functionality and SMB authentication to execute commands on remote Windo....
|
Getting The Goods With smbexec ERIC MILAM PRINCIPAL CONSULTANT, ACCUVANT LABS Individuals often upload and execute a payload to a remote system during penetration tests for foot printing, gathering information, and to compromise additional hosts. When trying to remain stealthy, uploading a shell to a target may not be wise. smbexec takes advantage of native Windows functionality and SMB authentication to execute commands on remote Windo....
|
|
Marion Marschalek - A Thorny Piece Of Malware (And Me): The Nastiness of SEH, VFTables & Multi-Threading
-
www.defcon.org
-
12 years ago
-
eng
A Thorny Piece Of Malware (And Me): The Nastiness of SEH, VFTables & Multi-Threading MARION MARSCHALEK ANALYST, IKARUS SECURITY SOFTWARE GMBH Reverse Engineering is the supreme discipline in analyzing malware, how else would you find out all capabilities of a malicious sample? But this task gets trickier nearly every day, as malware authors apply new techniques to evade analysis. Even worse, documentation of said techniques is barely ex....
|