Site uses cookies to provide basic functionality.
Javascript rendering is set to off by default when visiting the site via .onion and .i2p domains. It can be enabled back again in user's settings section. Javascript rendering set to off means, that you can disable javascript in your browser now and the site will remain functional.
There is also IRC server now available via native IRC clients or non javascript web based one.
Fonts can be adjusted in user's settings section as well.
Check FAQ for more.

OK

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Brossard/DEFCON-20-Brossard-Hardware-Backdooring-is-Practical.pdf Whitepaper Available here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Brossard/DEFCON-20-Brossard-Hardware-Backdooring-is-Practical-WP.pdf Hardware Backdooring is Practical Jonathan Brossa....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Brown/DEFCON-20-Dave-Brown-DIY-Electric-Car.pdf DIY Electric Car Dave Brown Electric Vehicles are an exciting area of developing technology entering the mainstream market. Every major manufacturer is working on new hybrid and electric vehicles but prices will be high and options few for years to c....

KinectasploitV2: Kinect Meets 20 Security Tools Jeff Bryner p0wnlabs/0wner Last year saw the release of Kinectasploit v1 linking the Kinect with Metasploit in a 3D, first person shooter environment. What if we expanded Kinectasploit to use 20 security tools in honor of DEF CON's 20th anniversary?! Jeff Bryner Jeff has toiled for over 20 years integrating systems, performing incident response and forensics and ultimately fixing s..

Into the Droid: Gaining Access to Android User Data Thomas Cannon Director of Research and Development, viaForensics This talk details a selection of techniques for getting the data out of an Android device in order to perform forensic analysis. It covers cracking lockscreen passwords, creating custom forensic ramdisks, bypassing bootloader protections and stealth real-time data acquisition. We’ll even cover some crazy techniques - t....

Bad (and Sometimes Good) Tech Policy: It's Not Just a DC Thing Chris Conley Technology & Civil Liberties Policy Attorney, ACLU of Northern California Efforts at the federal level to pass laws like SOPA and CISPA and require that tech companies build backdoors into their services for law enforcement use have attacted widespread attention and criticism, and rightly so. But DC is far from the only place that officials are making decisio....

Life Inside a Skinner Box: Confronting our Future of Automated Law Enforcement Greg Conti Director, Cyber Research Center, West Point Lisa Shay Ass't Professor, Electrical Engineering & Computer Science, West Point Woody Hartzog Ass't Professor, Cumberland School of Law, Samford University From smart pajamas that monitor our sleep patterns to mandatory black boxes in cars to smart trash carts that divulge recycling violations in ....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Bryner/DEFCON-20-Bryner-KinectASploitv2.pdf KinectasploitV2: Kinect Meets 20 Security Tools Jeff Bryner p0wnlabs/0wner Last year saw the release of Kinectasploit v1 linking the Kinect with Metasploit in a 3D, first person shooter environment. What if we expanded Kinectasploit to use 20 security to..

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cannon/DEFCON-20-Cannon-Into-The-Droid.pdf Into the Droid: Gaining Access to Android User Data Thomas Cannon Director of Research and Development, viaForensics This talk details a selection of techniques for getting the data out of an Android device in order to perform forensic analysis. It covers....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Conley/DEFCON-20-DEF-CON-Conley-Bad-Tech-Policy.pdf Bad (and Sometimes Good) Tech Policy: It's Not Just a DC Thing Chris Conley Technology & Civil Liberties Policy Attorney, ACLU of Northern California Efforts at the federal level to pass laws like SOPA and CISPA and require that tech companies buil....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Conti-Shay-Hartzog/DEFCON-20-Conti-Shay-Hartzog-SkinnerBox.pdf Life Inside a Skinner Box: Confronting our Future of Automated Law Enforcement Greg Conti Director, Cyber Research Center, West Point Lisa Shay Ass't Professor, Electrical Engineering & Computer Science, West Point Woody Hartzog Ass'....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Bryner/DEFCON-20-Bryner-KinectASploitv2.pdf KinectasploitV2: Kinect Meets 20 Security Tools Jeff Bryner p0wnlabs/0wner Last year saw the release of Kinectasploit v1 linking the Kinect with Metasploit in a 3D, first person shooter environment. What if we expanded Kinectasploit to use 20 security to..

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cannon/DEFCON-20-Cannon-Into-The-Droid.pdf Into the Droid: Gaining Access to Android User Data Thomas Cannon Director of Research and Development, viaForensics This talk details a selection of techniques for getting the data out of an Android device in order to perform forensic analysis. It covers....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Conley/DEFCON-20-DEF-CON-Conley-Bad-Tech-Policy.pdf Bad (and Sometimes Good) Tech Policy: It's Not Just a DC Thing Chris Conley Technology & Civil Liberties Policy Attorney, ACLU of Northern California Efforts at the federal level to pass laws like SOPA and CISPA and require that tech companies buil....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Conti-Shay-Hartzog/DEFCON-20-Conti-Shay-Hartzog-SkinnerBox.pdf Life Inside a Skinner Box: Confronting our Future of Automated Law Enforcement Greg Conti Director, Cyber Research Center, West Point Lisa Shay Ass't Professor, Electrical Engineering & Computer Science, West Point Woody Hartzog Ass'....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Bryner/DEFCON-20-Bryner-KinectASploitv2.pdf KinectasploitV2: Kinect Meets 20 Security Tools Jeff Bryner p0wnlabs/0wner Last year saw the release of Kinectasploit v1 linking the Kinect with Metasploit in a 3D, first person shooter environment. What if we expanded Kinectasploit to use 20 security to..

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cannon/DEFCON-20-Cannon-Into-The-Droid.pdf Into the Droid: Gaining Access to Android User Data Thomas Cannon Director of Research and Development, viaForensics This talk details a selection of techniques for getting the data out of an Android device in order to perform forensic analysis. It covers....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Conley/DEFCON-20-DEF-CON-Conley-Bad-Tech-Policy.pdf Bad (and Sometimes Good) Tech Policy: It's Not Just a DC Thing Chris Conley Technology & Civil Liberties Policy Attorney, ACLU of Northern California Efforts at the federal level to pass laws like SOPA and CISPA and require that tech companies buil....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Conti-Shay-Hartzog/DEFCON-20-Conti-Shay-Hartzog-SkinnerBox.pdf Life Inside a Skinner Box: Confronting our Future of Automated Law Enforcement Greg Conti Director, Cyber Research Center, West Point Lisa Shay Ass't Professor, Electrical Engineering & Computer Science, West Point Woody Hartzog Ass'....

Owning the Network: Adventures in Router Rootkits Michael Coppola Security Consultant at Virtual Security Research Routers are the blippy switchy boxes that make up the infrastructure of networks themselves, yet few administrators actually care to change the default login on these devices. Interestingly, nearly all consumer (SOHO) routers allow a user to reflash the device by uploading a (presumably vendor-provided) firmware image. B....

World War 3.0: Chaos, Control & the Battle for the Net Joshua Corman Director of Security Intelligence, Akamai Technologies Dan Kaminsky Jeff Moss Founder, DEF CON and Black Hat Rod Beckstrom Michael Joseph Gross Author of the Vanity Fair article 'A Declaration of Cyber-War', Moderator There is a battle under way for control of the Internet. Some see it as a fight between forces of Order (who want to superimpose existing, pre....

Embedded Device Firmware Vulnerability Hunting Using FRAK, the Firmware Reverse Analysis Konsole Ang Cui Red Balloon Security We present FRAK, the firmware reverse analysis konsole. FRAK is a framework for unpacking, analyzing, modifying and repacking the firmware images of proprietary embedded devices. The FRAK framework provides a programmatic environment for the analysis of arbitrary embedded device firmware as well as an interact....

Looking Into The Eye Of The Meter Cutaway InGuardians, Inc. When you look at a Smart Meter, it practically winks at you. Their Optical Port calls to you. It calls to criminals as well. But how do criminals interact with it? We will show you how they look into the eye of the meter. More specifically, this presentation will show how criminals gather information from meters to do their dirty work. From quick memory acquisition technique....

SQL Injection to MIPS Overflows: Rooting SOHO Routers Zachary Cutlip Security Researcher, Tactical Network Solutions Three easy steps to world domination: Pwn a bunch of SOHO routers. ??? Profit I can help you with Step 1. In this talk, I'll describe several 0-day vulnerabilities in Netgear wireless routers. I'll show you how to exploit an unexposed buffer overflow using nothing but a SQL injection and your bare h....

Copy of the slides for this talk are here: https://www.defcon.org/html/links/dc-archives/dc-20-archive.html Owning the Network: Adventures in Router Rootkits Michael Coppola Security Consultant at Virtual Security Research Routers are the blippy switchy boxes that make up the infrastructure of networks themselves, yet few administrators actually care to change the default login on these devices. Interestingly, nearly all consumer....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cui/DEFCON-20-Cui-FRAK.pdf Embedded Device Firmware Vulnerability Hunting Using FRAK, the Firmware Reverse Analysis Konsole Ang Cui Red Balloon Security We present FRAK, the firmware reverse analysis konsole. FRAK is a framework for unpacking, analyzing, modifying and repacking the firmware imag....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutaway/DEFCON-20-Cutaway-Eye-Of-the-Meter.pdf Whitepaper: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutaway/DEFCON-20-Cutaway-OptiGuard-WP.pdf Looking Into The Eye Of The Meter Cutaway InGuardians, Inc. When you look at a Smart Meter, it practical....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutlip/DEFCON-20-Cutlip-Rooting-SOHO-Routers.pdf Extra Materials: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutlip/Extras.zip SQL Injection to MIPS Overflows: Rooting SOHO Routers Zachary Cutlip Security Researcher, Tactical Network Solutions Th....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Panel-WW3.0/DEFCON-20-Corman-Panel-WW3dot0.pdf World War 3.0: Chaos, Control & the Battle for the Net Joshua Corman Director of Security Intelligence, Akamai Technologies Dan Kaminsky Jeff Moss Founder, DEF CON and Black Hat Rod Beckstrom Michael Joseph Gross Author of the Vanity Fair arti....

Copy of the slides for this talk are here: https://www.defcon.org/html/links/dc-archives/dc-20-archive.html Owning the Network: Adventures in Router Rootkits Michael Coppola Security Consultant at Virtual Security Research Routers are the blippy switchy boxes that make up the infrastructure of networks themselves, yet few administrators actually care to change the default login on these devices. Interestingly, nearly all consumer....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cui/DEFCON-20-Cui-FRAK.pdf Embedded Device Firmware Vulnerability Hunting Using FRAK, the Firmware Reverse Analysis Konsole Ang Cui Red Balloon Security We present FRAK, the firmware reverse analysis konsole. FRAK is a framework for unpacking, analyzing, modifying and repacking the firmware imag....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutaway/DEFCON-20-Cutaway-Eye-Of-the-Meter.pdf Whitepaper: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutaway/DEFCON-20-Cutaway-OptiGuard-WP.pdf Looking Into The Eye Of The Meter Cutaway InGuardians, Inc. When you look at a Smart Meter, it practical....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutlip/DEFCON-20-Cutlip-Rooting-SOHO-Routers.pdf Extra Materials: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutlip/Extras.zip SQL Injection to MIPS Overflows: Rooting SOHO Routers Zachary Cutlip Security Researcher, Tactical Network Solutions Th....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Panel-WW3.0/DEFCON-20-Corman-Panel-WW3dot0.pdf World War 3.0: Chaos, Control & the Battle for the Net Joshua Corman Director of Security Intelligence, Akamai Technologies Dan Kaminsky Jeff Moss Founder, DEF CON and Black Hat Rod Beckstrom Michael Joseph Gross Author of the Vanity Fair arti....

Copy of the slides for this talk are here: https://www.defcon.org/html/links/dc-archives/dc-20-archive.html Owning the Network: Adventures in Router Rootkits Michael Coppola Security Consultant at Virtual Security Research Routers are the blippy switchy boxes that make up the infrastructure of networks themselves, yet few administrators actually care to change the default login on these devices. Interestingly, nearly all consumer....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cui/DEFCON-20-Cui-FRAK.pdf Embedded Device Firmware Vulnerability Hunting Using FRAK, the Firmware Reverse Analysis Konsole Ang Cui Red Balloon Security We present FRAK, the firmware reverse analysis konsole. FRAK is a framework for unpacking, analyzing, modifying and repacking the firmware imag....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutaway/DEFCON-20-Cutaway-Eye-Of-the-Meter.pdf Whitepaper: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutaway/DEFCON-20-Cutaway-OptiGuard-WP.pdf Looking Into The Eye Of The Meter Cutaway InGuardians, Inc. When you look at a Smart Meter, it practical....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutlip/DEFCON-20-Cutlip-Rooting-SOHO-Routers.pdf Extra Materials: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Cutlip/Extras.zip SQL Injection to MIPS Overflows: Rooting SOHO Routers Zachary Cutlip Security Researcher, Tactical Network Solutions Th....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Panel-WW3.0/DEFCON-20-Corman-Panel-WW3dot0.pdf World War 3.0: Chaos, Control & the Battle for the Net Joshua Corman Director of Security Intelligence, Akamai Technologies Dan Kaminsky Jeff Moss Founder, DEF CON and Black Hat Rod Beckstrom Michael Joseph Gross Author of the Vanity Fair arti....

Hacking Humanity: Human Augmentation and You Christian "quaddi" Dameff Third Year Medical Student Jeff "r3plicant" Tully Third Year Medical Student You've played Deus Ex. You've seen Robocop. You've read Neuromancer. You've maybe even wondered just what dark mix of technology and black magic keeps the withered heart of Richard "Dick" Cheney pumping coronary after coronary. Now it's time to get off the couch and put down the control....

Not-So-Limited Warranty: Target Attacks on Warranties for Fun and Profit Darkred Frequently people consider a serial number as nothing but a number but in this presentation you will be shown the multitude of ways in which an attacker could utilize serial numbers to hurt you,to hurt companies as well as to track your movements. A brief primer on the function and use of serial numbers in the real world will be provided. Focusing on App....

Sploitego - Maltego's (Local) Partner in Crime Nadeem Douba Cygnos IT Security Have you ever wished for the power of Maltego when performing internal assessments? Ever hoped to map the internal network within seconds? Or that Maltego had a tad more aggression? Sploitego is the answer. In the presentation we'll show how we've carefully crafted several local transforms that gives Maltego the ooomph to operate nicely within internal net....

Not So Super Notes, How Well Does US Dollar Note Security Prevent Counterfeiting? Matthew Duggan Member of Technical Staff, VMware Inc. The security of US dollar notes is paramount for maintaining their value and safeguarding the US and dependent economies. Counterfeiting has historically been a crime of high sophistication, but has the prevalence of affordable color scanning and printing equipment changed that? This talk analyzes th..

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Dameff-Tully/DEFCON-20-Dameff-Tully-Hacking-Humanity.pdf Cited Works: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Dameff-Tully/DEFCON-20-Dameff-Tully-Hacking-Humnaity-Cited-Works-1.0.txt Hacking Humanity: Human Augmentation and You Christian "quaddi" Da....

Copy of the slides for this talk are here: http://m6rqq6kocsyugo2laitup5nn32bwm3lh677chuodjfmggczoafzwfcad.onion/dc-20/presentations/Darkred/DEFCON-20-Darkred-Not-so-Limited-Warranty.pdf Not-So-Limited Warranty: Target Attacks on Warranties for Fun and Profit Darkred Frequently people consider a serial number as nothing but a number but in this presentation you will be shown the multitude of ways in which an attacker could util....

119 visitors online