Site uses cookies to provide basic functionality.
Javascript rendering is set to off by default when visiting the site via .onion and .i2p domains. It can be enabled back again in user's settings section. Javascript rendering set to off means, that you can disable javascript in your browser now and the site will remain functional.
There is also IRC server now available via native IRC clients or non javascript web based one.
Fonts can be adjusted in user's settings section as well.
Check FAQ for more.

OK

DEF CON 11 was held August 1-3, 2003 at the Alexis Park Hotel and Resort in Las Vegas, Nevada, USA Past speeches and talks from DEF CON hacking conferences in an iTunes friendly m4b & m4v format. The DEFCON series of hacking conferences were started in 1993 to focus on both the technical and social trends in hacking, and has grown to be world known event. If you did not make it, or missed the speaker you wanted to see here is your cha..

Airsnarf - Why 802.11b Hotspots Ain't So Hot As wireless hotspots continue to pop up around the country, the opportunity to take advantage of the weakest point of this new networking fad becomes greater. What weak point is that? Why, the user, of course. Why sniff traffic, or crack WEP, or spoof MACs, when you can simply ASK for and easily receive usernames and passwords? Members of the Shmoo Group discuss how wireless miscreants can g....

Punishing Collaborators Redux: CAPPS II, Passenger Profiling, and the Boycott of Delta Air Lines Just when you thought Total Information Awareness was dead, The Department of Homeland Security rolled out plans in February of this year to introduce an Orwellian airport passenger profiling system called CAPPS II. The plan originally called for running checks on credit, banking, and criminal records every time a citizen flew on a commerci....

Airsnarf - Why 802.11b Hotspots Ain't So Hot As wireless hotspots continue to pop up around the country, the opportunity to take advantage of the weakest point of this new networking fad becomes greater. What weak point is that? Why, the user, of course. Why sniff traffic, or crack WEP, or spoof MACs, when you can simply ASK for and easily receive usernames and passwords? Members of the Shmoo Group discuss how wireless miscreants can g....

Punishing Collaborators Redux: CAPPS II, Passenger Profiling, and the Boycott of Delta Air Lines Just when you thought Total Information Awareness was dead, The Department of Homeland Security rolled out plans in February of this year to introduce an Orwellian airport passenger profiling system called CAPPS II. The plan originally called for running checks on credit, banking, and criminal records every time a citizen flew on a commerci....

Airsnarf - Why 802.11b Hotspots Ain't So Hot As wireless hotspots continue to pop up around the country, the opportunity to take advantage of the weakest point of this new networking fad becomes greater. What weak point is that? Why, the user, of course. Why sniff traffic, or crack WEP, or spoof MACs, when you can simply ASK for and easily receive usernames and passwords? Members of the Shmoo Group discuss how wireless miscreants can g....

Punishing Collaborators Redux: CAPPS II, Passenger Profiling, and the Boycott of Delta Air Lines Just when you thought Total Information Awareness was dead, The Department of Homeland Security rolled out plans in February of this year to introduce an Orwellian airport passenger profiling system called CAPPS II. The plan originally called for running checks on credit, banking, and criminal records every time a citizen flew on a commerci....

Malicious Code & Wireless Networks With over 55,000 viruses circling the globe it is no wonder we are so paranoid about protection, but are we being paranoid enough? A new threat stands to potentially disrupt systems worldwide and cause hundreds of millions in damage. In this presentation we will discuss current wireless trends and some of the vulnerabilities they bring. In addition we will also discuss some potential wireless thr....

Malicious Code & Wireless Networks With over 55,000 viruses circling the globe it is no wonder we are so paranoid about protection, but are we being paranoid enough? A new threat stands to potentially disrupt systems worldwide and cause hundreds of millions in damage. In this presentation we will discuss current wireless trends and some of the vulnerabilities they bring. In addition we will also discuss some potential wireless thr....

Malicious Code & Wireless Networks With over 55,000 viruses circling the globe it is no wonder we are so paranoid about protection, but are we being paranoid enough? A new threat stands to potentially disrupt systems worldwide and cause hundreds of millions in damage. In this presentation we will discuss current wireless trends and some of the vulnerabilities they bring. In addition we will also discuss some potential wireless thr....

Internet Radio Politics: A Tale Of Betrayal And Hope A summary of the current legal state of internet radio. How the RIAA, a group of popular commercial webcasters, and Congress conspired to betray smaller webcasters, in an attempt to eliminate the majority of stations broadcasting on the internet. We will compare the philosophies of those who see internet radio as just another mass medium to be controlled and consolidated into as few ....

Bluetooth - The Future of Wardriving By some estimates, there are more Bluetooth radios deployed than 802.11 radios. However, Bluetooth as largely been ignored by the security community. Over the next several years, this will change dramatically as Bluetooth security tools catch up with 802.11 security tools. Bluetooth devices tend to be always-on machines that generally contain and transmit highly personalized information. Due to limi....

Internet Radio Politics: A Tale Of Betrayal And Hope A summary of the current legal state of internet radio. How the RIAA, a group of popular commercial webcasters, and Congress conspired to betray smaller webcasters, in an attempt to eliminate the majority of stations broadcasting on the internet. We will compare the philosophies of those who see internet radio as just another mass medium to be controlled and consolidated into as few ....

Bluetooth - The Future of Wardriving By some estimates, there are more Bluetooth radios deployed than 802.11 radios. However, Bluetooth as largely been ignored by the security community. Over the next several years, this will change dramatically as Bluetooth security tools catch up with 802.11 security tools. Bluetooth devices tend to be always-on machines that generally contain and transmit highly personalized information. Due to limi....

Internet Radio Politics: A Tale Of Betrayal And Hope A summary of the current legal state of internet radio. How the RIAA, a group of popular commercial webcasters, and Congress conspired to betray smaller webcasters, in an attempt to eliminate the majority of stations broadcasting on the internet. We will compare the philosophies of those who see internet radio as just another mass medium to be controlled and consolidated into as few ....

Bluetooth - The Future of Wardriving By some estimates, there are more Bluetooth radios deployed than 802.11 radios. However, Bluetooth as largely been ignored by the security community. Over the next several years, this will change dramatically as Bluetooth security tools catch up with 802.11 security tools. Bluetooth devices tend to be always-on machines that generally contain and transmit highly personalized information. Due to limi....

PDA Insecurity Palmtops are going in power and popularity. How is the security on these devices and what can be easily bypassed. We will look at the HP 5455 , the pinnacle of Palmtop security and see how easily it's biometric security can be overcome. We will also cover basic security holes present in all palmtops - regardless of model. Bryan Glancey is the Vice President of Research & Development for Mobile Armor. Mr. Glance....

PDA Insecurity Palmtops are going in power and popularity. How is the security on these devices and what can be easily bypassed. We will look at the HP 5455 , the pinnacle of Palmtop security and see how easily it's biometric security can be overcome. We will also cover basic security holes present in all palmtops - regardless of model. Bryan Glancey is the Vice President of Research & Development for Mobile Armor. Mr. Glance....

PDA Insecurity Palmtops are going in power and popularity. How is the security on these devices and what can be easily bypassed. We will look at the HP 5455 , the pinnacle of Palmtop security and see how easily it's biometric security can be overcome. We will also cover basic security holes present in all palmtops - regardless of model. Bryan Glancey is the Vice President of Research & Development for Mobile Armor. Mr. Glance....

Aura: A Peer To Peer Reputation System Aura is a peer-to-peer reputation system designed to create localized reputation information linked to specific users and/or systems. It can also function as a carrier of information in the form of 'recommendations'. Current research in trust metrics and reputation systems will be briefly covered, and implementation and design challenges will be discussed in greater depth. Cat Okita has a bac..

The WorldWide WarDrive: The Myths, The Misconceptions, The Truth, The Future The WorldWide WarDrive is an effort by security professionals and hobbyists to generate awareness of the need by individual users and companies to secure their access points. The goal of the WorldWide WarDrive (or WWWD) is to provide a statistical analysis of the many access points that are currently deployed. Roamer will discuss the origin of the project....

Aura: A Peer To Peer Reputation System Aura is a peer-to-peer reputation system designed to create localized reputation information linked to specific users and/or systems. It can also function as a carrier of information in the form of 'recommendations'. Current research in trust metrics and reputation systems will be briefly covered, and implementation and design challenges will be discussed in greater depth. Cat Okita has a bac..

The WorldWide WarDrive: The Myths, The Misconceptions, The Truth, The Future The WorldWide WarDrive is an effort by security professionals and hobbyists to generate awareness of the need by individual users and companies to secure their access points. The goal of the WorldWide WarDrive (or WWWD) is to provide a statistical analysis of the many access points that are currently deployed. Roamer will discuss the origin of the project....

Aura: A Peer To Peer Reputation System Aura is a peer-to-peer reputation system designed to create localized reputation information linked to specific users and/or systems. It can also function as a carrier of information in the form of 'recommendations'. Current research in trust metrics and reputation systems will be briefly covered, and implementation and design challenges will be discussed in greater depth. Cat Okita has a bac..

The WorldWide WarDrive: The Myths, The Misconceptions, The Truth, The Future The WorldWide WarDrive is an effort by security professionals and hobbyists to generate awareness of the need by individual users and companies to secure their access points. The goal of the WorldWide WarDrive (or WWWD) is to provide a statistical analysis of the many access points that are currently deployed. Roamer will discuss the origin of the project....

What Hackers Need to Know about Post 9/11 Legal Changes The Bush Administration's relentless assault on freedom and privacy online and offline hit the ground running with the Patriot Act in the immediate aftermath of 9/11, but hasn't slowed since then. While the terrorist acts had absolutely no relationship to computer hacking, hackers were a clear target in the Patriot Act and subsequent developments. The changes in the legal landscap....

What Hackers Need to Know about Post 9/11 Legal Changes The Bush Administration's relentless assault on freedom and privacy online and offline hit the ground running with the Patriot Act in the immediate aftermath of 9/11, but hasn't slowed since then. While the terrorist acts had absolutely no relationship to computer hacking, hackers were a clear target in the Patriot Act and subsequent developments. The changes in the legal landscap....

What Hackers Need to Know about Post 9/11 Legal Changes The Bush Administration's relentless assault on freedom and privacy online and offline hit the ground running with the Patriot Act in the immediate aftermath of 9/11, but hasn't slowed since then. While the terrorist acts had absolutely no relationship to computer hacking, hackers were a clear target in the Patriot Act and subsequent developments. The changes in the legal landscap....

Stack Black Ops: New Concepts for Network Manipulation What can your network do? You might be surprised. Layer by layer, this talk will examine previously undocumented and unrealized potential within modern data networks. We will discuss aspects of the newest versions of scanrand, a very high speed port scanner, and the rest of the Paketto Keiretsu. Interesting new techniques will also discussed, including: * Bandwidth Brokering....

Stack Black Ops: New Concepts for Network Manipulation What can your network do? You might be surprised. Layer by layer, this talk will examine previously undocumented and unrealized potential within modern data networks. We will discuss aspects of the newest versions of scanrand, a very high speed port scanner, and the rest of the Paketto Keiretsu. Interesting new techniques will also discussed, including: * Bandwidth Brokering....

Stack Black Ops: New Concepts for Network Manipulation What can your network do? You might be surprised. Layer by layer, this talk will examine previously undocumented and unrealized potential within modern data networks. We will discuss aspects of the newest versions of scanrand, a very high speed port scanner, and the rest of the Paketto Keiretsu. Interesting new techniques will also discussed, including: * Bandwidth Brokering....

ncreasing The Security Of Your Election By Fixing It In response to the problems that plagued the last United States presidential election, many communities plan to replace existing paper ballot machines with electronic voting systems. Unfortunately, the new systems open up a Pandora's box of security issues that traditional paper ballots do not face. It is difficult to understand the issues because there is a serious lack of data desc....

HTTP IDS Evasions Revisited HTTP IDS evasions have been prevalent ever since the release of RFP's whisker. But what's been happening since? This presentation addresses the advancement in HTTP IDS evasions since whisker. Some of the specific topics covered will be: * The evolution of protocol-based IDS and signature-based IDS in regards to HTTP evasions. What's the same and what's different? * Latest and greatest obfuscations i....

HTTP IDS Evasions Revisited HTTP IDS evasions have been prevalent ever since the release of RFP's whisker. But what's been happening since? This presentation addresses the advancement in HTTP IDS evasions since whisker. Some of the specific topics covered will be: * The evolution of protocol-based IDS and signature-based IDS in regards to HTTP evasions. What's the same and what's different? * Latest and greatest obfuscations i....

Increasing The Security Of Your Election By Fixing It In response to the problems that plagued the last United States presidential election, many communities plan to replace existing paper ballot machines with electronic voting systems. Unfortunately, the new systems open up a Pandora's box of security issues that traditional paper ballots do not face. It is difficult to understand the issues because there is a serious lack of data des....

HTTP IDS Evasions Revisited HTTP IDS evasions have been prevalent ever since the release of RFP's whisker. But what's been happening since? This presentation addresses the advancement in HTTP IDS evasions since whisker. Some of the specific topics covered will be: * The evolution of protocol-based IDS and signature-based IDS in regards to HTTP evasions. What's the same and what's different? * Latest and greatest obfuscations i....

Increasing The Security Of Your Election By Fixing It In response to the problems that plagued the last United States presidential election, many communities plan to replace existing paper ballot machines with electronic voting systems. Unfortunately, the new systems open up a Pandora's box of security issues that traditional paper ballots do not face. It is difficult to understand the issues because there is a serious lack of data des....

Why Anomaly Based Intrusion Detection Systems Are A Hackers Best Friend The security market is booming. New types of tools are emerging all the time with promises of being able to protect networks better than the last generation.The newest trend is anomly based intrusion detection systems.These systems claim the ability to detect new types of attacks before comprable signature based systems while being able to scale to higher network s....

Why Anomaly Based Intrusion Detection Systems Are A Hackers Best Friend The security market is booming. New types of tools are emerging all the time with promises of being able to protect networks better than the last generation.The newest trend is anomly based intrusion detection systems.These systems claim the ability to detect new types of attacks before comprable signature based systems while being able to scale to higher network s....

Why Anomaly Based Intrusion Detection Systems Are A Hackers Best Friend The security market is booming. New types of tools are emerging all the time with promises of being able to protect networks better than the last generation.The newest trend is anomly based intrusion detection systems.These systems claim the ability to detect new types of attacks before comprable signature based systems while being able to scale to higher network s....

Hacking Web Apps WARNING: The vulnerabilities you are about to see are real. Only the names have been changed to protect the vulnerable. Viewer discretion is advised. Is your web application secure? Many have found out the hard way: encryption and firewalls are not enough. a Since 1996 the instructor has performed security assessments against web-based applications for Fortune 500 companies. The applications audited included c....

Criminal Copyright Infringement and Warez Trading This talk will discuss criminal copyright infringement and how it applies to warez trading. We will discuss what is legal and what isn’t, who has been prosecuted, why they were prosecuted and what happened to them, and why the law is bad policy. You should expect to leave the talk more knowledgeable about what activities are criminal and how great or small the risks are. Eric Goldm..

Hacking Web Apps WARNING: The vulnerabilities you are about to see are real. Only the names have been changed to protect the vulnerable. Viewer discretion is advised. Is your web application secure? Many have found out the hard way: encryption and firewalls are not enough. a Since 1996 the instructor has performed security assessments against web-based applications for Fortune 500 companies. The applications audited included c....

Criminal Copyright Infringement and Warez Trading This talk will discuss criminal copyright infringement and how it applies to warez trading. We will discuss what is legal and what isn’t, who has been prosecuted, why they were prosecuted and what happened to them, and why the law is bad policy. You should expect to leave the talk more knowledgeable about what activities are criminal and how great or small the risks are. Eric Goldm..

106 visitors online