Showing posts with label HITB. Show all posts
Showing posts with label HITB. Show all posts
Tuesday, June 3, 2014
HiTB Haxpo AMS 2014 - My takeaway
Yup. That's my crew T-shirt of Hack in the Box Amsterdam 2014 or now known as Haxpo. It was nice and fun meeting all the .MY and .NL folks again.
I have to admit, I feel like the presented conference topics are not as exciting as last year's. However, the Haxpo (the part where you can enter for free) was quite a success.
Nevertheless, there are couple of interesting topics that caught my attention:
1. Cool idea - splitting java exploits into multiple "innocent" looks Java applets in order to avoid detection. Check out Reloading Java Exploits: Long Live Old JRE! by renown security researcher (read Hacker) LUIGI AURIEMMA .
2. Wanna fly for free? Check-out Exploiting Passbook to Fly for Free by ANTHONY HARITON. This was the most funny presentation that I had seen this year. Full of fun and laughs. NOTE: He did not confirm nor deny whether he did indeed perform the "test: personally :)
See y'all again next year folks!
Tuesday, April 9, 2013
Hack in the Box Amsterdam 2013
Today marks the end of the first part - Tech Training. Yesterday was a pretty smooth but today was a different story.
The "TECH TRAINING 6 – RECENT ADVANCES IN IPV6 INSECURITIES" guys were trying to prove their points and they did succeed, few times in fact. Therefore, the network was unstable almost the whole day and at some points, not working at all. The Wifi APs suffered as well. Nevertheless, the network team did try their best to manage it.
![]() |
Yes. That's the routers. |
However, I was informed that the exploited vulnerability (buffer overflow) is not something that they can just fix it on the fly (they would if they could) as it is on a third party's software, something that they don't have control. I was also tipped that Marc (the trainer) will tell more soon.. so, stay tuned to his site - thc.org
Tomorrow is the most important day. It is the official opening of HITB AMS 2013 Security Conference, and the keynote speaker is the CISO of RSA, Edward Schwartz.Keynote speaker for the second day is Bob Lord, CISO of Twitter.
BTW, we are still setting it up.....
![]() |
Gateway to ComSec Village |
Subscribe to:
Posts (Atom)