Site uses cookies to provide basic functionality.
Javascript rendering is set to off by default when visiting the site via .onion and .i2p domains. It can be enabled back again in user's settings section. Javascript rendering set to off means, that you can disable javascript in your browser now and the site will remain functional.
There is also IRC server now available via native IRC clients or non javascript web based one.
Fonts can be adjusted in user's settings section as well.
Check FAQ for more.

OK

Win at Reversing: Tracing and Sandboxing through Inline Hooking Nick Harbour Principal Consultant, Mandiant This presentation will discuss a new free tool for Reverse Engineering called API Thief, the "I Win" button for malware analysis. The unique way the tool operates will be explored as well as how it is able to provide better quality data than other tracing tools currently available. Advanced usage of the tool for malware analysi....

DEFCON 101 HighWiz, The Dark Tangent, Russr, DJ Jackalope, Deviant Ollam, Thorn, ThePrez98, LosT, Noid, Siviak What is DefCon 101? With the ever expanding landscape of DefCon: the amount of Games and Contests, the Parties, the Villages, the vast array of Art and Music... All that is going on and to do can be quite daunting to New People beginning their first DefConian adventure. There are even many long time DefCon attendees who....

DEFCON 101 HighWiz, The Dark Tangent, Russr, DJ Jackalope, Deviant Ollam, Thorn, ThePrez98, LosT, Noid, Siviak What is DefCon 101? With the ever expanding landscape of DefCon: the amount of Games and Contests, the Parties, the Villages, the vast array of Art and Music... All that is going on and to do can be quite daunting to New People beginning their first DefConian adventure. There are even many long time DefCon attendees who....

DEFCON 101 HighWiz, The Dark Tangent, Russr, DJ Jackalope, Deviant Ollam, Thorn, ThePrez98, LosT, Noid, Siviak What is DefCon 101? With the ever expanding landscape of DefCon: the amount of Games and Contests, the Parties, the Villages, the vast array of Art and Music... All that is going on and to do can be quite daunting to New People beginning their first DefConian adventure. There are even many long time DefCon attendees who....

Hardware Black Magic - Building devices with FPGAs Dr. Fouad Kiamilev Professor, Electrical and Computer Engineering Department, University of Delaware Rodney McGee Researcher, Electrical and Computer Engineering Department, University of Delaware Last year at the HHV we rolled into town full of goodies in our bags. To excite people about hardware we demoed and gave away some FPGA boards to those in attendance. We realized quickly ....

Hardware Black Magic - Building devices with FPGAs Dr. Fouad Kiamilev Professor, Electrical and Computer Engineering Department, University of Delaware Rodney McGee Researcher, Electrical and Computer Engineering Department, University of Delaware Last year at the HHV we rolled into town full of goodies in our bags. To excite people about hardware we demoed and gave away some FPGA boards to those in attendance. We realized quickly ....

Hardware Black Magic - Building devices with FPGAs Dr. Fouad Kiamilev Professor, Electrical and Computer Engineering Department, University of Delaware Rodney McGee Researcher, Electrical and Computer Engineering Department, University of Delaware Last year at the HHV we rolled into town full of goodies in our bags. To excite people about hardware we demoed and gave away some FPGA boards to those in attendance. We realized quickly ....

Metasploit Evolved H.D. Moore Metasploit has continuously evolved since its inception in 2003, switching focuses, development teams, licenses, and languages as the demands of the security community changed. This talk focuses on the organizational and development changes that have taken place over the last year and where things are headed in the future. This briefly touches on the dozens of new features and technologies that have been....

Metasploit Evolved H.D. Moore Metasploit has continuously evolved since its inception in 2003, switching focuses, development teams, licenses, and languages as the demands of the security community changed. This talk focuses on the organizational and development changes that have taken place over the last year and where things are headed in the future. This briefly touches on the dozens of new features and technologies that have been....

Metasploit Evolved H.D. Moore Metasploit has continuously evolved since its inception in 2003, switching focuses, development teams, licenses, and languages as the demands of the security community changed. This talk focuses on the organizational and development changes that have taken place over the last year and where things are headed in the future. This briefly touches on the dozens of new features and technologies that have been....

Injecting Electromagnetic Pulses into Digital Devices Paul F. Renda Data Security Analyst, Futurist This talk is not about someone on the ground firing a ray gun at a jet and bringing it down, this talk is about someone on the jet injecting EMP in the wiring system of the jet and causing great problems with the aviation systems and the black box. I will define smart and dumb digital devices based to how they respond to injected pulse....

Injecting Electromagnetic Pulses into Digital Devices Paul F. Renda Data Security Analyst, Futurist This talk is not about someone on the ground firing a ray gun at a jet and bringing it down, this talk is about someone on the jet injecting EMP in the wiring system of the jet and causing great problems with the aviation systems and the black box. I will define smart and dumb digital devices based to how they respond to injected pulse....

Injecting Electromagnetic Pulses into Digital Devices Paul F. Renda Data Security Analyst, Futurist This talk is not about someone on the ground firing a ray gun at a jet and bringing it down, this talk is about someone on the jet injecting EMP in the wiring system of the jet and causing great problems with the aviation systems and the black box. I will define smart and dumb digital devices based to how they respond to injected pulse....

Attacks Against 2wire Residential Gateways Pedro "hkm" Joaquin Some time ago there was a vulnerability in 2wire residential routers that allowed DNS Poisoning via Cross Site Request Forgery, this was widely exploited in Mexico where this router is most commonly used. The patch actually contained an Authentication Bypass vulnerability that made things worse, and now, after the patch got patched, there are still many public unpatc....

Smashing the Stack with Hydra: The Many Heads of Advanced Polymorphic Shellcode Pratap Prabhu Research Assistant, Columbia University Yingbo Song Research Assistant, Columbia University Salvatore. J. Stolfo Professor of Computer Science, Columbia University Recent work on the analysis of polymorphic shellcode engines suggests that modern obfuscation methods would soon eliminate the usefulness of signature-based network intrusion ....

Smashing the Stack with Hydra: The Many Heads of Advanced Polymorphic Shellcode Pratap Prabhu Research Assistant, Columbia University Yingbo Song Research Assistant, Columbia University Salvatore. J. Stolfo Professor of Computer Science, Columbia University Recent work on the analysis of polymorphic shellcode engines suggests that modern obfuscation methods would soon eliminate the usefulness of signature-based network intrusion ....

Smashing the Stack with Hydra: The Many Heads of Advanced Polymorphic Shellcode Pratap Prabhu Research Assistant, Columbia University Yingbo Song Research Assistant, Columbia University Salvatore. J. Stolfo Professor of Computer Science, Columbia University Recent work on the analysis of polymorphic shellcode engines suggests that modern obfuscation methods would soon eliminate the usefulness of signature-based network intrusion ....

Maximum CTF: Getting the Most Out of Capture the Flag Psifertex Among all the amazing Defcon competitions, the Capture the Flag contest reigns supreme. Psifertex will examine some of the history of CTF, focusing on the reign of terror pwnage that was the Kenshoto CTF from 2005-2008. The talk will both be technical (including rapid-fire discussions of technical challenges and solutions), and entertaining (expect guest appearances from....

Maximum CTF: Getting the Most Out of Capture the Flag Psifertex Among all the amazing Defcon competitions, the Capture the Flag contest reigns supreme. Psifertex will examine some of the history of CTF, focusing on the reign of terror pwnage that was the Kenshoto CTF from 2005-2008. The talk will both be technical (including rapid-fire discussions of technical challenges and solutions), and entertaining (expect guest appearances from....

Maximum CTF: Getting the Most Out of Capture the Flag Psifertex Among all the amazing Defcon competitions, the Capture the Flag contest reigns supreme. Psifertex will examine some of the history of CTF, focusing on the reign of terror pwnage that was the Kenshoto CTF from 2005-2008. The talk will both be technical (including rapid-fire discussions of technical challenges and solutions), and entertaining (expect guest appearances from....

USB Attacks: Fun with Plug&0wn Rafael Dominguez Vega Security Researcher How many times have you been handed a USB device and asked to copy a presentation or spreadsheet onto it? Often our biggest concern is around whether the device will be lost along with our company projections or takeover proposals. However, should we be more concerned about whether the device itself can be used to attack us and gain access to our system. In....

USB Attacks: Fun with Plug&0wn Rafael Dominguez Vega Security Researcher How many times have you been handed a USB device and asked to copy a presentation or spreadsheet onto it? Often our biggest concern is around whether the device will be lost along with our company projections or takeover proposals. However, should we be more concerned about whether the device itself can be used to attack us and gain access to our system. In....

USB Attacks: Fun with Plug&0wn Rafael Dominguez Vega Security Researcher How many times have you been handed a USB device and asked to copy a presentation or spreadsheet onto it? Often our biggest concern is around whether the device will be lost along with our company projections or takeover proposals. However, should we be more concerned about whether the device itself can be used to attack us and gain access to our system. In....

Hacker vs. Disasters Large and Small: Hacker Skills for Wilderness and Disaster Survival RenderMan Michael "theprez98" Schearer Part 1: Our hacker brains are pre-wired to find alternate uses for many devices, but most often we're "on the grid" and close to our precious electronics and high speed internet. What would happen if you find yourself stranded in the middle of nowhere, become lost during a simple daytime hike, or wake up i....

Hacker vs. Disasters Large and Small: Hacker Skills for Wilderness and Disaster Survival RenderMan Michael "theprez98" Schearer Part 1: Our hacker brains are pre-wired to find alternate uses for many devices, but most often we're "on the grid" and close to our precious electronics and high speed internet. What would happen if you find yourself stranded in the middle of nowhere, become lost during a simple daytime hike, or wake up i....

Hacker vs. Disasters Large and Small: Hacker Skills for Wilderness and Disaster Survival RenderMan Michael "theprez98" Schearer Part 1: Our hacker brains are pre-wired to find alternate uses for many devices, but most often we're "on the grid" and close to our precious electronics and high speed internet. What would happen if you find yourself stranded in the middle of nowhere, become lost during a simple daytime hike, or wake up i....

Hacking, Biohacking, and the Future of Humanity Richard Thieme ThiemeWorks I was asked in 2006 at AusCert in Australia, my second of three years of keynoting, where did I see hacking headed in the future? I described biohacking and noted that genetic engineering, neuroscience (both black and white R&D) and the availability of everything one needs for a few thousand bucks to hack the genome in a garage, all made hacking human attribut....

Hacking, Biohacking, and the Future of Humanity Richard Thieme ThiemeWorks I was asked in 2006 at AusCert in Australia, my second of three years of keynoting, where did I see hacking headed in the future? I described biohacking and noted that genetic engineering, neuroscience (both black and white R&D) and the availability of everything one needs for a few thousand bucks to hack the genome in a garage, all made hacking human attribut....

Hacking, Biohacking, and the Future of Humanity Richard Thieme ThiemeWorks I was asked in 2006 at AusCert in Australia, my second of three years of keynoting, where did I see hacking headed in the future? I described biohacking and noted that genetic engineering, neuroscience (both black and white R&D) and the availability of everything one needs for a few thousand bucks to hack the genome in a garage, all made hacking human attribut....

Air Traffic Control: Insecurity and ADS-B Righter Kunkel Security Researcher This presentation will take a look at the Air Traffic Control (ATC) system from a pilot's view. I have found some interesting security problems with the ATC system. We will start the talk by explaining how the current ATC system works. Talk about an interesting attack vector that starts with going to a doctor to get a class 3 physical. We will talk about the..

Air Traffic Control: Insecurity and ADS-B Righter Kunkel Security Researcher This presentation will take a look at the Air Traffic Control (ATC) system from a pilot's view. I have found some interesting security problems with the ATC system. We will start the talk by explaining how the current ATC system works. Talk about an interesting attack vector that starts with going to a doctor to get a class 3 physical. We will talk about the..

Air Traffic Control: Insecurity and ADS-B Righter Kunkel Security Researcher This presentation will take a look at the Air Traffic Control (ATC) system from a pilot's view. I have found some interesting security problems with the ATC system. We will start the talk by explaining how the current ATC system works. Talk about an interesting attack vector that starts with going to a doctor to get a class 3 physical. We will talk about the..

Picking Electronic Locks Using TCP Sequence Prediction Ricky Lawshae Network Technician, Texas State University As networked building access systems become more and more popular, the security of using RFID, magstripe, and biometrics as authentication mediums is constantly under scrutiny. But what about the security of the access system itself? Is it possible to unlock a door by sending a spoofed command to it over the network, bypass....

Picking Electronic Locks Using TCP Sequence Prediction Ricky Lawshae Network Technician, Texas State University As networked building access systems become more and more popular, the security of using RFID, magstripe, and biometrics as authentication mediums is constantly under scrutiny. But what about the security of the access system itself? Is it possible to unlock a door by sending a spoofed command to it over the network, bypass....

Picking Electronic Locks Using TCP Sequence Prediction Ricky Lawshae Network Technician, Texas State University As networked building access systems become more and more popular, the security of using RFID, magstripe, and biometrics as authentication mediums is constantly under scrutiny. But what about the security of the access system itself? Is it possible to unlock a door by sending a spoofed command to it over the network, bypass....

Con Kung-Fu: Defending Yourself @ DEFCON Rob "Padre" DeGulielmo After the authors laptop fell victim to a slick redirection technique and subsequent malicious .lzm injection and MBR Trojan infiltration during DEFCON 16 he thought it would be interesting to talk about the episode (besides, his psychotherapist recommended it), and give new con-goers some tips and tricks to help them avoid the same fate. We will see a demonstration of a..

Con Kung-Fu: Defending Yourself @ DEFCON Rob "Padre" DeGulielmo After the authors laptop fell victim to a slick redirection technique and subsequent malicious .lzm injection and MBR Trojan infiltration during DEFCON 16 he thought it would be interesting to talk about the episode (besides, his psychotherapist recommended it), and give new con-goers some tips and tricks to help them avoid the same fate. We will see a demonstration of a..

Con Kung-Fu: Defending Yourself @ DEFCON Rob "Padre" DeGulielmo After the authors laptop fell victim to a slick redirection technique and subsequent malicious .lzm injection and MBR Trojan infiltration during DEFCON 16 he thought it would be interesting to talk about the episode (besides, his psychotherapist recommended it), and give new con-goers some tips and tricks to help them avoid the same fate. We will see a demonstration of a..

Computer and Internet Security Law - A Year in Review 2008 - 2009 Robert Clark Attorney This presentation reviews the important prosecutions, precedents and legal opinions of the last year that affect internet and computer security. We will discuss the differences between legal decisions from criminal cases and civil lawsuits and what that means to the security professional. This presentation is strongly audience driven and it quickl....

Computer and Internet Security Law - A Year in Review 2008 - 2009 Robert Clark Attorney This presentation reviews the important prosecutions, precedents and legal opinions of the last year that affect internet and computer security. We will discuss the differences between legal decisions from criminal cases and civil lawsuits and what that means to the security professional. This presentation is strongly audience driven and it quickl....

Computer and Internet Security Law - A Year in Review 2008 - 2009 Robert Clark Attorney This presentation reviews the important prosecutions, precedents and legal opinions of the last year that affect internet and computer security. We will discuss the differences between legal decisions from criminal cases and civil lawsuits and what that means to the security professional. This presentation is strongly audience driven and it quickl....

Perspective of the DoD Chief Security Officer Robert F. Lentz The last year has been a tipping point for cyber security! Safeguarding the internet and the underlying critical information infrastructures has taken center stage as a National imperative. We share threats&vulnerabilities to these fragile underpinnings critical to our ability to sustain economic growth, foster international stability and achieve national security. Do we a....

Perspective of the DoD Chief Security Officer Robert F. Lentz The last year has been a tipping point for cyber security! Safeguarding the internet and the underlying critical information infrastructures has taken center stage as a National imperative. We share threats&vulnerabilities to these fragile underpinnings critical to our ability to sustain economic growth, foster international stability and achieve national security. Do we a....

Perspective of the DoD Chief Security Officer Robert F. Lentz The last year has been a tipping point for cyber security! Safeguarding the internet and the underlying critical information infrastructures has taken center stage as a National imperative. We share threats&vulnerabilities to these fragile underpinnings critical to our ability to sustain economic growth, foster international stability and achieve national security. Do we a....

131 visitors online