Security/BlackHat 2012: Difference between revisions

Jump to navigation Jump to search
m
Line 28: Line 28:
14:15
14:15
* [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Miller "Don't Stand So Close To Me: An Analysis of the NFC Attack Surface"] -''Who is attending, if anyone? Name here''
* [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Miller "Don't Stand So Close To Me: An Analysis of the NFC Attack Surface"] -''Who is attending, if anyone? Name here''
Defeating ASLR through info leaks, and how to cause them.
* Defeating ASLR through info leaks, and how to cause them.
* [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Serna "The Info Leak Era on Software Exploitation"] (an example of one he wrote up on Flash is http://seclists.org/bugtraq/2012/Apr/63 ) -''Who is attending, if anyone? Name here''
* [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Serna "The Info Leak Era on Software Exploitation"] (an example of one he wrote up on Flash is http://seclists.org/bugtraq/2012/Apr/63 ) -''Who is attending, if anyone? Name here''
* [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Wroblewski ModSecurity as Universal Cross-Platform Web Protection Tool] (Augustus I + II) - ''joes, kang''
** [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Soler HTExploit Bypassing Htaccess Restrictions ] (Augustus I + II) - ''joes, kang''


15:30
15:30
Line 35: Line 37:
ways to track people. [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Fleischer "Web Tracking for You"]
ways to track people. [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Fleischer "Web Tracking for You"]
* A wildcard... Math.random() isn't crytographically secure, could we be vulnerable to anything like these PHP issues? If you go bringyour open mind and wear your brainstorming hat. * [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Argyros "PRNG: Pwning Random Number Generators (in PHP applications)"]
* A wildcard... Math.random() isn't crytographically secure, could we be vulnerable to anything like these PHP issues? If you go bringyour open mind and wear your brainstorming hat. * [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Argyros "PRNG: Pwning Random Number Generators (in PHP applications)"]
* [https://www.blackhat.com/html/bh-us-12/bh-us-12-briefings.html#Flynn Intrusion Detection Along the Kill Chain: Why Your Detection System Sucks and What to do About It] (Palace II) - ''joes, kang''


17:00
17:00
Confirmed users
58

edits

Navigation menu