Week 11 In Review – 2014

Events Related Pwn2Own 2014: A recap – hp.com Two record-setting days of payouts for zero-day vulnerabilities brought the 2014 Pwn2Own contest tantalizingly close to the first million-dollar competition, with $850,000 paid to eight entrants. $385,000 of potential prize money remained unclaimed. Researchers pocket record $400K at Pwn2Own hacking contest's first day – computerworld.com Researchers on Wednesday cracked [...]

Week 12 in Review – 2013

Event Related IPv6 Focus Month IPv6 Focus Month: What is changing with DHCP - isc.sans.edu Among the different methods to configure IPv6 addresses, most managed networks will likely stick with DHCP. DHCPv6 however is a bit different then DHCPv4. We will summarize here some of the basic differences between DHCPv4 and DHCPv6. IPv6 Focus Month: [...]

Week 31 in Review – 2012

Event Related DEFCON 20 DEFCON 20: Day 2 Interesting Presentations - it.toolbox.com Day 2 of DEFCON, and things are jamming. There is a tremendous amount of energy at this 20 year celebration of the Con. People are behaving, and the talks are pretty interesting. Defcon Day 2 Talk Notes – The DCWG Debriefing - novainfosecportal.com [...]

Week 30 in Review – 2012

Event Related Black Hat USA 2012 BlackHat USA 2012: Day One - it.toolbox.com Carrying on with my tradition of posting my notes from each session I attend... I present to you the first day of BlackHat Briefings 2012. Black Hat Day 1 Talk Notes – STIX: The Structured Threat Information eXpression - novainfosecportal.com This Turbo [...]

Week 13 in Review – 2012

Event Related Pwn2Own Lesson From Pwn2Own: Focus On Exploitability - darkreading.com The Pwn2Own contest earlier this month at the CanSecWest Conference showed off the speed with which knowledgeable security professionals can code exploits for known vulnerabilities. On the failings of Pwn2Own 2012 - scarybeastsecurity.blogspot.com This year's Pwn2Own and Pwnium contests were interesting for many reasons. [...]

Week 10 in Review – 2012

Event Related CanSecWest CanSecWest evolving - blog.securiteam.com Let me say, right off the top, that I love CanSecWest. I am tired of “vendor” conferences, where you pay outrageous fees for the privilege of sitting through a bunch of sales pitches. At least CanSecWest has real information, as opposed to virtual information. CanSecWest Day 1 Pen [...]

Week 34 In Review

Events Related DefCon 2011 Leftover notes and resources five weeks after. Crack Me If You Can teams - contest.korelogic.com Crack Me If You Can InsidePro - contest.korelogic.com Crack Me If You Can team john users - contest.korelogic.com The Art of Exploiting Lesser Known Injection Flaws Revealed At BlackHat - penetration-testing.7safe.com The audience at Black Hat, Las Vegas [...]

Week 27 In Review

Events Related OWASP AppSec 2011 Capture The Flag briefings Capture The Flag - www.appsecusa.org/ctf.html AppSecUSA CTF! Another Write Up - notsosecure.com Resources Whitepaper "Python Arsenal For Reverse Engineering" - dsecrg.com This whitepaper (beta release) is a collection of various Python engines, extensions, libraries, shells, that aids in the job code for understanding, analyzing and sometimes breaking. [...]