| Date |
Type |
Title |
Author |
Event |
| March 18, 2012 |
Slides |
Time is on my Side
|
Sebastian Schinzel
|
Chaos Communication Congress 28th (28C3) 2011 |
| March 18, 2012 |
Video |
Time is on my Side
|
Sebastian Schinzel
|
Chaos Communication Congress 28th (28C3) 2011 |
| March 17, 2012 |
Audio |
Time is on my Side
|
Sebastian Schinzel
|
Chaos Communication Congress 28th (28C3) 2011 |
| March 16, 2012 |
Audio |
Hacking MFPs
|
Andrei Costin
|
Chaos Communication Congress 28th (28C3) 2011 |
| March 16, 2012 |
Video |
Hacking MFPs
|
Andrei Costin
|
Chaos Communication Congress 28th (28C3) 2011 |
| February 26, 2012 |
Video |
A Linguistic Platform for Threat Development
|
Ben Kurtz
|
DEFCON 13 |
| February 25, 2012 |
Audio |
A Linguistic Platform for Threat Development
|
Ben Kurtz
|
DEFCON 13 |
| February 04, 2012 |
Slides |
New Ways I'm Going to Hack Your Web App
|
Jesse Ou
Rich Lundeen
|
Black Hat Abu Dhabi 2011 |
| February 04, 2012 |
Paper |
New Ways I'm Going to Hack Your Web App
|
Jesse Ou
Rich Lundeen
|
Black Hat Abu Dhabi 2011 |
| January 30, 2012 |
Paper |
Exposing Vulnerabilities in Media Software
|
David Thiel
|
Black Hat EU 2008 |
| January 30, 2012 |
Slides |
Exposing Vulnerabilities in Media Software
|
David Thiel
|
Black Hat EU 2008 |
| January 28, 2012 |
Slides |
0-Day Patch -Exposing Vendors (In)Security Performance
|
Bernard Tellenbach
Stefan Frei
|
Black Hat EU 2008 |
| January 27, 2012 |
Paper |
0-Day Patch -Exposing Vendors (In)Security Performance
|
Bernard Tellenbach
Stefan Frei
|
Black Hat EU 2008 |
| January 19, 2012 |
Slides |
Attacking with Character Encoding for Profit and Fun
|
Yosuke Hasegawa
|
Black Hat Asia 2008 |
| January 17, 2012 |
Slides |
Angel Recon System (ARS) Prototype: Heuristic Vulnerability Analysis and Attack
|
Drew Copley
|
Black Hat Federal 2006 |
| January 15, 2012 |
Slides |
Skeletons in Microsoft's Closet - Silently Fixed Vulnerabilities
|
Andre Protas
Steve Manzuik
|
Black Hat EU 2006 |
| January 12, 2012 |
Slides |
Attacking Internationalized Software
|
Scott Stender
|
Black Hat USA 2006 |
| January 01, 2012 |
Slides |
Attacking Internationalized Software
|
Scott Stender
|
Black Hat Asia 2006 |
| December 31, 2011 |
Slides |
Automatically Detecting Web Application Vulnerabilities by Variable Flow Reconstruction
|
Stefano Zanero
|
Black Hat EU 2005 |
| December 25, 2011 |
Slides |
Injection Flaws: Stop Validating Your Input
|
Mike Pomraning
|
Black Hat USA 2005 |
| December 23, 2011 |
Slides |
Top Ten Issues in Computer Security
|
Jennifer Granick
|
Black Hat USA 2005 |
| December 18, 2011 |
Slides |
Architecture Flaws in Common Security Tools
|
David Maynor
|
Black Hat Asia 2005 |
| November 21, 2011 |
Slides |
The Politics of Vulnerabilities
|
Scott Blake
|
Black Hat USA 2002 |
| October 29, 2011 |
Slides |
Politics of Vulnerability Reporting
|
Scott Blake
|
Black Hat EU 2001 |
| October 27, 2011 |
Slides |
National Information Assurance Partnership
|
Terry Losonsky
|
Black Hat USA 2000 |
| October 11, 2011 |
Slides |
Adversary Characterization and Scoring Systems
|
|
Black Hat USA 2003 |
| October 08, 2011 |
Slides |
More (Vulnerable) Embedded Systems
|
Felix 'FX' Lindner
|
Black Hat USA 2003 |
| October 06, 2011 |
Slides |
Cisco Vulnerabilities - Yesterday, Today and Tomorrow
|
Felix 'FX' Lindner
|
Black Hat Federal 2003 |
| October 05, 2011 |
Slides |
Adversary Characterization and Scoring Systems
|
Tom Parker
|
Black Hat Federal 2003 |
| September 27, 2011 |
Slides |
Finger Pointing for Fun, Profit and War?
|
Tom Parker
|
Black Hat USA 2010 |
| July 31, 2011 |
Paper |
Being Explicit about Software Weaknesses
|
Robert A. Martin
Sean Barnum
Steve Christey
|
Black Hat DC 2007 |
| July 31, 2011 |
Slides |
Being Explicit about Software Weaknesses
|
Robert A. Martin
Sean Barnum
Steve Christey
|
Black Hat DC 2007 |
| July 27, 2011 |
Paper |
Attack Patterns: Knowing Your Enemies in Order to Defeat Them
|
Sean Barnum
|
Black Hat DC 2007 |
| July 27, 2011 |
Slides |
Attack Patterns: Knowing Your Enemies in Order to Defeat Them
|
Sean Barnum
|
Black Hat DC 2007 |
| July 16, 2011 |
Paper |
Challenging Malicious Inputs with Fault Tolerance Techniques
|
Bruno Luiz
|
Black Hat EU 2007 |
| July 16, 2011 |
Slides |
Challenging Malicious Inputs with Fault Tolerance Techniques
|
Bruno Luiz
|
Black Hat EU 2007 |
| June 08, 2011 |
Paper |
Type Conversion Errors: How a Little Data Type Can Do a Whole Lot of Damage
|
Jeff Morin
|
Black Hat USA 2007 |
| June 08, 2011 |
Slides |
Type Conversion Errors: How a Little Data Type Can Do a Whole Lot of Damage
|
Jeff Morin
|
Black Hat USA 2007 |
| April 27, 2011 |
Paper |
Unforgivable Vulnerabilities
|
Steve Christey
|
Black Hat USA 2007 |
| April 27, 2011 |
Slides |
Unforgivable Vulnerabilities
|
Steve Christey
|
Black Hat USA 2007 |
| January 27, 2011 |
Audio |
Bad Memories
|
Baptiste Gourdin
Elie Bursztein
Gustav Rydstedt
|
DEFCON 18 |
| January 27, 2011 |
Video |
Bad Memories
|
Baptiste Gourdin
Elie Bursztein
Gustav Rydstedt
|
DEFCON 18 |
| December 24, 2010 |
Slides |
Padding Oracle for the Masses
|
Nicolas Waisman
|
Ruxcon 2010 |
| December 23, 2010 |
Slides |
Killing the Elephant in the Room - Enterprise Vulnerability Management Tactics
|
|
Ruxcon 2010 |
| December 22, 2010 |
Slides |
Breaking Virtualization by switching the CPU to Virtual 8086 Mode
|
Jonathan Brossard
|
Ruxcon 2010 |
| December 21, 2010 |
Slides |
Milking a Horse or Executing Remote Code in Modern Java Web Frameworks
|
Meder Kydyraliev
|
Ruxcon 2010 |
| December 06, 2010 |
Video |
400 Apps in 40 Days
|
Nish Bhalla
Sahba Kazerooni
|
SecTor 2010 |
| December 06, 2010 |
Slides |
400 Apps in 40 Days
|
Nish Bhalla
Sahba Kazerooni
|
SecTor 2010 |
| December 06, 2010 |
Video |
How Many Vulnerabilities? And Other Wrong Questions
|
David Mortman
|
SecTor 2010 |
| December 06, 2010 |
Slides |
How Many Vulnerabilities? And Other Wrong Questions
|
David Mortman
|
SecTor 2010 |
| November 23, 2010 |
Video |
Keynote: Involuntary Case Studies in Data Security
|
Mike Rothman
|
SecTor 2010 |
| November 23, 2010 |
Slides |
Keynote: Involuntary Case Studies in Data Security
|
Mike Rothman
|
SecTor 2010 |
| November 19, 2010 |
Video |
Introduction to Vulnerability Analysis
|
|
PhreakNIC 11 |
| October 31, 2010 |
Video |
Responsible Disclosure
|
Michael Kemp
|
LayerOne 2007 |
| October 31, 2010 |
Slides |
Responsible Disclosure
|
Michael Kemp
|
LayerOne 2007 |
| October 22, 2010 |
Slides |
Choosing SATE Test Cases Based on CVEs
|
Sue Wang
|
Static Analysis Tool Exposition (SATE 2010) Workshop |
| October 21, 2010 |
Slides |
Bugs that Matter - Static Analysis True Positives and False Negatives
|
Paul Anderson
|
Static Analysis Tool Exposition (SATE 2010) Workshop |
| October 20, 2010 |
Slides |
Can you trust your workers?
|
Paul Theriault
|
Hack In The Box 2010 Malaysia |
| October 19, 2010 |
Slides |
iPhone security model & vulnerabilities
|
Cedric Halbronn
Jean Sigwald
|
Hack In The Box 2010 Malaysia |
| October 07, 2010 |
Audio |
Case study of recent Windows vulnerabilities
|
Gynvael Coldwind
Mateusz Jurczyk
|
Confidence 2010 Krakow |
| October 07, 2010 |
Video |
Case study of recent Windows vulnerabilities
|
Gynvael Coldwind
Mateusz Jurczyk
|
Confidence 2010 Krakow |
| October 07, 2010 |
Slides |
Case study of recent Windows vulnerabilities
|
Gynvael Coldwind
Mateusz Jurczyk
|
Confidence 2010 Krakow |
| October 07, 2010 |
Video |
Well known vulnerabilities in human brain and behavior – common admin mistakes
|
Wojciech Bojdol
|
Confidence 2010 Krakow |
| October 07, 2010 |
Audio |
Analysis of Software Vulnerabilities
|
Celil Ünüver
Ulascan Aytlolun
|
Confidence 2010 Krakow |
| October 07, 2010 |
Video |
Analysis of Software Vulnerabilities
|
Celil Ünüver
Ulascan Aytlolun
|
Confidence 2010 Krakow |
| October 07, 2010 |
Audio |
Well known vulnerabilities in human brain and behavior – common admin mistakes
|
Wojciech Bojdol
|
Confidence 2010 Krakow |
| October 07, 2010 |
Slides |
Well known vulnerabilities in human brain and behavior – common admin mistakes
|
Wojciech Bojdol
|
Confidence 2010 Krakow |
| October 04, 2010 |
Slides |
Case Study of Recent Windows Vulnerabilities
|
Gynvael Coldwind
Mateusz Jurczyk
|
Hack In The Box 2010 Dubai |
| August 30, 2010 |
Video |
One Cell is Enough to Break Tor's Anonymity
|
Xinwen Fu
|
Black Hat DC 2009 |
| August 30, 2010 |
Slides |
One Cell is Enough to Break Tor's Anonymity
|
Xinwen Fu
|
Black Hat DC 2009 |
| August 30, 2010 |
Audio |
One Cell is Enough to Break Tor's Anonymity
|
Xinwen Fu
|
Black Hat DC 2009 |
| August 18, 2010 |
Audio |
Blinded by Flash: Widespread Security Risks Flash Developers Don't See
|
Prajakta Jagdale
|
Black Hat DC 2009 |
| June 24, 2010 |
Video |
Predictable RNG in the Vulnerable Debian OpenSSL package, the What and the How
|
Luciano Bello
Maximiliano Bertacchini
|
Black Hat USA 2008 |
| June 24, 2010 |
Audio |
Predictable RNG in the Vulnerable Debian OpenSSL package, the What and the How
|
Luciano Bello
Maximiliano Bertacchini
|
Black Hat USA 2008 |
| June 22, 2010 |
Video |
Hiding in the Familiar: Steganography and Vulnerabilities in Popular Archives Formats
|
Mario Vuksan
Tomislav Pericin
Brian Karney
|
Black Hat EU 2010 |
| June 22, 2010 |
Slides |
Hiding in the Familiar: Steganography and Vulnerabilities in Popular Archives Formats
|
Mario Vuksan
Tomislav Pericin
Brian Karney
|
Black Hat EU 2010 |
| June 04, 2010 |
Slides |
Why the Google Aurora Attack Will Happen Again. How to Analyze your Defenses and Stay Out of the Headlines
|
Vikram Phatak
|
Source Conference Boston 2010 |
| June 02, 2010 |
Slides |
Bullseye on Your Back - Life on the Adobe Product Incident Response Team
|
Wendy Poland
David Lenoe
|
Source Conference Boston 2010 |
| June 02, 2010 |
Slides |
Linux Kernel Exploitation: Earning Its Pwnie a Vuln at a Time: Earning Its Pwnie a Vuln at a Time
|
Jon Oberheide
|
Source Conference Boston 2010 |
| May 31, 2010 |
Slides |
Panel: Vulnerability Management
|
|
Source Conference Boston 2010 |
| May 27, 2010 |
Slides |
Drinking from the Firehose: Ten Years of Vulnerabilities through the CVE Lens
|
Steve Christey
|
Source Conference Boston 2010 |
| April 24, 2010 |
Audio |
The security risks of Web 2.0
|
David Rook
|
DEFCON 17 |
| April 24, 2010 |
Slides |
The security risks of Web 2.0
|
David Rook
|
DEFCON 17 |
| April 24, 2010 |
Video |
The security risks of Web 2.0
|
David Rook
|
DEFCON 17 |
| April 24, 2010 |
Audio |
0-day, gh0stnet and the inside story of the Adobe JBIG2 vulnerability
|
Matt Richard
Steven Adair
|
DEFCON 17 |
| April 24, 2010 |
Video |
0-day, gh0stnet and the inside story of the Adobe JBIG2 vulnerability
|
Matt Richard
Steven Adair
|
DEFCON 17 |
| April 09, 2010 |
Audio |
Clobbering the Cloud
|
Haroon Meer
Marco Slaviero
Nicholas Arvanitis
|
DEFCON 17 |
| April 09, 2010 |
Slides |
Clobbering the Cloud
|
Haroon Meer
Marco Slaviero
Nicholas Arvanitis
|
DEFCON 17 |
| April 09, 2010 |
Video |
Clobbering the Cloud
|
Haroon Meer
Marco Slaviero
Nicholas Arvanitis
|
DEFCON 17 |
| April 08, 2010 |
Video |
More Tricks For Defeating SSL
|
Moxie Marlinspike
|
DEFCON 17 |
| April 07, 2010 |
Audio |
More Tricks For Defeating SSL
|
Moxie Marlinspike
|
DEFCON 17 |
| March 27, 2010 |
Audio |
Attacks Against 2wire Residential Gateways
|
Pedro Joaquin
|
DEFCON 17 |
| March 27, 2010 |
Slides |
Attacks Against 2wire Residential Gateways
|
Pedro Joaquin
|
DEFCON 17 |
| March 27, 2010 |
Video |
Attacks Against 2wire Residential Gateways
|
Pedro Joaquin
|
DEFCON 17 |
| February 19, 2010 |
Slides |
Vulnerabilities in FreeBSD Kernel
|
Przemysław Frasunek
|
Confidence 2009 Warszawa |
| January 30, 2010 |
Paper |
Verified by Visa and MasterCard SecureCode: or, How Not to Design Authentication
|
Steven J. Murdoch
Ross Anderson
|
|
| January 04, 2010 |
Video |
Owning the Linksys wrtp54g VOIP Router
|
Arias Hung
|
DEFCON 14 |
| January 04, 2010 |
Audio |
Owning the Linksys wrtp54g VOIP Router
|
Arias Hung
|
DEFCON 14 |
| January 01, 2010 |
Slides |
Revealing the Secrets: Source Code Disclosure, Techniques and Impacts
|
Anant Kochar
|
ClubHack2009 |
| December 25, 2009 |
Video |
Ripples in the Gene Pool: Creating Genetic Mutations to Survive the Vulerability Window
|
Chris Eagle
|
DEFCON 14 |
| December 25, 2009 |
Slides |
Ripples in the Gene Pool: Creating Genetic Mutations to Survive the Vulerability Window
|
Chris Eagle
|
DEFCON 14 |
| December 24, 2009 |
Audio |
Ripples in the Gene Pool: Creating Genetic Mutations to Survive the Vulerability Window
|
Chris Eagle
|
DEFCON 14 |
| December 20, 2009 |
Paper |
Improving Application Security with Data Flow Assertions
|
|
|
| December 14, 2009 |
Audio |
Breaking Forensics Software: Weaknesses in Critical Evidence Collection
|
Chris Palmer
Alex Stamos
|
DEFCON 15 |
| December 14, 2009 |
Audio |
OpenBSD remote Exploit and another IPv6 vulnerabilities
|
Alfredo Ortega
|
DEFCON 15 |
| December 05, 2009 |
Audio |
Kernel Wars
|
|
DEFCON 15 |
| November 27, 2009 |
Video |
Discovering Mac OS X Weaknesses and Fixing Them with the New Bastille OS X Port
|
Jay Beale
|
DEFCON 14 |
| November 27, 2009 |
Audio |
Discovering Mac OS X Weaknesses and Fixing Them with the New Bastille OS X Port
|
Jay Beale
|
DEFCON 14 |
| November 27, 2009 |
Slides |
Discovering Mac OS X Weaknesses and Fixing Them with the New Bastille OS X Port
|
Jay Beale
|
DEFCON 14 |
| November 19, 2009 |
Audio |
Gaming - The Next Overlooked Security Hole
|
Ferdinand Schober
|
DEFCON 16 |
| November 12, 2009 |
Video |
DNS Goodness
|
Dan Kaminsky
|
DEFCON 16 |
| November 12, 2009 |
Audio |
DNS Goodness
|
Dan Kaminsky
|
DEFCON 16 |
| November 11, 2009 |
Video |
Race-2-Zero Unpacked
|
Simon Howard
|
DEFCON 16 |
| November 11, 2009 |
Audio |
Race-2-Zero Unpacked
|
Simon Howard
|
DEFCON 16 |
| November 07, 2009 |
Audio |
de-Tor-iorate Anonymity
|
Christian Grothoff
Nathan Evans
|
DEFCON 16 |
| November 06, 2009 |
Audio |
Security and Anonymity Vulnerabilities in Tor: Past, Present, and Future
|
Roger Dingledine
|
DEFCON 16 |
| November 05, 2009 |
Audio |
Climbing Everest: An Insider's Look at one State's Voting Systems
|
Sandy Clark
|
DEFCON 16 |
| November 03, 2009 |
Audio |
Cloud Computing Models and Vulnerabilities: Raining on the Trendy New Parade
|
Alex Stamos
Andrew Becherer
Nathan Wilcox
|
Black Hat USA 2009 |
| November 01, 2009 |
Audio |
Predictable RNG in the Vulnerable Debian OpenSSL Package, the What and the How
|
Luciano Bello
Maximiliano Bertacchini
|
DEFCON 16 |
| October 31, 2009 |
Audio |
VulnCatcher: Fun with Vtrace and Programmatic Debugging
|
|
DEFCON 16 |
| October 18, 2009 |
Video |
x509 is considered harmful
|
Dan Kaminsky
|
HAR 2009 |
| October 17, 2009 |
Video |
WebAppInSec : 101 threats
|
Jacco van Tuijl
|
HAR 2009 |
| October 17, 2009 |
Slides |
Classic Mistakes
|
Roel Verdult
|
HAR 2009 |
| October 17, 2009 |
Video |
Classic Mistakes
|
Roel Verdult
|
HAR 2009 |
| October 04, 2009 |
Video |
Cloud Computing Models and Vulnerabilities: Raining on the Trendy New Parade
|
Alex Stamos
Andrew Becherer
Nathan Wilcox
|
Black Hat USA 2009 |
| September 23, 2009 |
Slides |
Worst of the Best of the Best
|
Kevin Stadmeyer
Garrett Held
|
Black Hat USA 2009 |
| September 23, 2009 |
Paper |
Worst of the Best of the Best
|
Kevin Stadmeyer
Garrett Held
|
Black Hat USA 2009 |
| September 19, 2009 |
Slides |
Fight Against 1-day Exploits: Diffing Binaries vs Anti-diffing Binaries
|
Jeongwook Oh
|
Black Hat USA 2009 |
| September 19, 2009 |
Paper |
Fight Against 1-day Exploits: Diffing Binaries vs Anti-diffing Binaries
|
Jeongwook Oh
|
Black Hat USA 2009 |
| September 19, 2009 |
Slides |
A Black Hat Vulnerability Risk Assessment
|
David Mortman
|
Black Hat USA 2009 |
| September 18, 2009 |
Slides |
Clobbering the Cloud!
|
Haroon Meer
Marco Slaviero
Nick Arvanitis
|
Black Hat USA 2009 |
| August 26, 2009 |
Paper |
Embedded Management Interfaces: Emerging Massive Insecurity
|
Hristo Bojinov
Dan Boneh
Elie Bursztein
|
Black Hat USA 2009 |
| August 26, 2009 |
Slides |
Embedded Management Interfaces: Emerging Massive Insecurity
|
Hristo Bojinov
Dan Boneh
Elie Bursztein
|
Black Hat USA 2009 |
| July 08, 2009 |
Video |
Breaking Forensics Software: Weaknesses in Critical Evidence Collection
|
Chris Palmer
Alex Stamos
|
DEFCON 15 |
| July 08, 2009 |
Paper |
Breaking Forensics Software: Weaknesses in Critical Evidence Collection
|
Chris Palmer
Alex Stamos
|
DEFCON 15 |
| July 03, 2009 |
Video |
OpenBSD remote Exploit and another IPv6 vulnerabilities
|
Alfredo Ortega
|
DEFCON 15 |
| July 03, 2009 |
Slides |
OpenBSD remote Exploit and another IPv6 vulnerabilities
|
Alfredo Ortega
|
DEFCON 15 |
| July 03, 2009 |
Paper |
OpenBSD remote Exploit and another IPv6 vulnerabilities
|
Alfredo Ortega
|
DEFCON 15 |
| June 27, 2009 |
Slides |
Java and JEE Vulnerabilities explained
|
Marc Schoenefeld
|
Confidence 2009 Krakow |
| June 25, 2009 |
Slides |
Remote Rootshell on a SOHO Router
|
Michał Sajdak
|
Confidence 2009 Krakow |
| June 25, 2009 |
Slides |
I thought you were my friend Malicious markup, browser issues and other obscurities
|
Mario Heiderich
|
Confidence 2009 Krakow |
| June 20, 2009 |
Slides |
A Pentester’s Guide to Credit Card Theft Techniques
|
Adrian Pastor
|
Confidence 2009 Krakow |
| June 09, 2009 |
Video |
Kernel Wars
|
|
DEFCON 15 |
| June 09, 2009 |
Slides |
Kernel Wars
|
|
DEFCON 15 |
| June 09, 2009 |
Paper |
Kernel Wars
|
|
DEFCON 15 |
| May 29, 2009 |
Video |
Stranger in a Strange Land: Reflections on a Linux Guy's First Year at Microsoft
|
Crispin Cowan
|
ShmooCon 2009 |
| May 29, 2009 |
Slides |
Stranger in a Strange Land: Reflections on a Linux Guy's First Year at Microsoft
|
Crispin Cowan
|
ShmooCon 2009 |
| May 24, 2009 |
Video |
Fail 2.0: Further Musings on Attacking Social Networks
|
|
ShmooCon 2009 |
| May 24, 2009 |
Slides |
Fail 2.0: Further Musings on Attacking Social Networks
|
|
ShmooCon 2009 |
| May 23, 2009 |
Slides |
Blinded By Flash: Widespread Security Risks Flash Developers Dont See
|
Prajakta Jagdale
|
ShmooCon 2009 |
| May 17, 2009 |
Video |
Cracking into embedded devices and beyond!
|
Adrian Pastor
|
Confidence 2008 |
| May 17, 2009 |
Slides |
Cracking into embedded devices and beyond!
|
Adrian Pastor
|
Confidence 2008 |
| May 16, 2009 |
Video |
Security Challenges in Virtualized Environments
|
Joanna Rutkowska
|
Confidence 2008 |
| May 16, 2009 |
Slides |
Security Challenges in Virtualized Environments
|
Joanna Rutkowska
|
Confidence 2008 |
| May 15, 2009 |
Slides |
Passports Reloaded Goes Mobile
|
Jeroen van Beek
|
Black Hat EU 2009 |
| May 11, 2009 |
Slides |
Stripping SSL To Defeat HTTPS In Practice
|
Moxie Marlinspike
|
Black Hat EU 2009 |
| May 07, 2009 |
Paper |
OpenOffice Security Design Weaknesses
|
Eric Filiol
|
Black Hat EU 2009 |
| May 07, 2009 |
Slides |
OpenOffice Security Design Weaknesses
|
Eric Filiol
|
Black Hat EU 2009 |
| May 03, 2009 |
Video |
Predictable RNG in the vulnerable Debian OpenSSL package
|
|
Chaos Communication Congress 25th (25C3) 2008 |
| May 02, 2009 |
Video |
Blinded by Flash: Widespread Security Risks Flash Developers Don't See
|
Prajakta Jagdale
|
Black Hat DC 2009 |
| May 02, 2009 |
Slides |
Blinded by Flash: Widespread Security Risks Flash Developers Don't See
|
Prajakta Jagdale
|
Black Hat DC 2009 |
| May 02, 2009 |
Paper |
One Cell is Enough to Break Tor's Anonymity
|
Xinwen Fu
|
Black Hat DC 2009 |
| May 02, 2009 |
Video |
Security and anonymity vulnerabilities in Tor
|
Roger Dingledine
|
Chaos Communication Congress 25th (25C3) 2008 |
| May 02, 2009 |
Slides |
Hacking SecondLife
|
Michael Thumann
|
Troopers 2008 |
| April 18, 2009 |
Slides |
Synthesizing PDF Attacks
|
Aditya K Sood
|
EUSecWest 2008 |
| April 18, 2009 |
Slides |
Abusing X.509 certificate features
|
Alexander Klink
|
EUSecWest 2008 |
| April 18, 2009 |
Slides |
Advances in attacking interpreted languages
|
Justin Ferguson
|
EUSecWest 2008 |
| April 16, 2009 |
Slides |
Bug classes we have found in *BSD, OS X and Solaris kernels
|
|
CanSecWest 2009 |
| April 10, 2009 |
Video |
Gaming - The Next Overlooked Security Hole
|
Ferdinand Schober
|
DEFCON 16 |
| April 10, 2009 |
Slides |
Gaming - The Next Overlooked Security Hole
|
Ferdinand Schober
|
DEFCON 16 |
| April 08, 2009 |
Video |
TCP Denial of Service Vulnerabilities
|
Fabian Yamaguchi
|
Chaos Communication Congress 25th (25C3) 2008 |
| March 29, 2009 |
Paper |
Understanding the Web browser threat: Examination of vulnerable online Web browser populations and the "insecurity iceberg"
|
|
DEFCON 16 |
| March 29, 2009 |
Video |
de-Tor-iorate Anonymity
|
Nathan Evans
Christian Grothoff
|
DEFCON 16 |
| March 29, 2009 |
Slides |
de-Tor-iorate Anonymity
|
Nathan Evans
Christian Grothoff
|
DEFCON 16 |
| March 28, 2009 |
Video |
Security and Anonymity Vulnerabilities in Tor: Past, Present, and Future
|
Roger Dingledine
|
DEFCON 16 |
| March 26, 2009 |
Video |
Climbing Everest: An Insider's Look at one State's Voting Systems
|
Sandy Clark
|
DEFCON 16 |
| March 26, 2009 |
Slides |
Climbing Everest: An Insider's Look at one State's Voting Systems
|
Sandy Clark
|
DEFCON 16 |
| March 24, 2009 |
Slides |
Increasing the reliability of exploits for non-trivial remote vulnerabilities
|
|
uCon Security Conference 2008 |
| March 22, 2009 |
Slides |
Hacking PDF Readers
|
|
uCon Security Conference 2009 |
| March 14, 2009 |
Video |
Predictable RNG in the Vulnerable Debian OpenSSL Package, the What and the How
|
Maximiliano Bertacchini
Luciano Bello
|
DEFCON 16 |
| March 13, 2009 |
Video |
Vulnerability discovery in encrypted closed source PHP applications
|
Stefan Esser
|
Chaos Communication Congress 25th (25C3) 2008 |
| March 12, 2009 |
Video |
VulnCatcher: Fun with Vtrace and Programmatic Debugging
|
|
DEFCON 16 |
| March 08, 2009 |
Slides |
VulnCatcher: Fun with Vtrace and Programmatic Debugging
|
|
DEFCON 16 |
| January 28, 2009 |
Slides |
MD5 considered harmful today
|
Alexander Sotirov
|
Chaos Communication Congress 25th (25C3) 2008 |
| January 28, 2009 |
Slides |
Predictable RNG in the vulnerable Debian OpenSSL package
|
Luciano Bello
|
Chaos Communication Congress 25th (25C3) 2008 |
| January 03, 2009 |
Slides |
Network Vulnerability Assessments: Lessons Learned
|
Chris Goggans
|
ClubHack2008 |
| July 18, 2008 |
Slides |
Website Vulnerabilities Revealed: What everyone knew, but afraid to believe
|
Jeremiah Grossman
|
|
| January 27, 2008 |
Paper |
Responsible Vulnerability Disclosure Process
|
Steve Christey
|
|
| January 27, 2008 |
Paper |
Introducing constructive vulnerability disclosures
|
|
|
| January 27, 2008 |
Paper |
An informal analysis of vendor acknowledgement of vulnerabilities
|
Steve Christey
|
|
| January 27, 2008 |
Paper |
Vulnerability Reporting: Bugs in the bug reporting process
|
Ivan Arce
|
|
| January 27, 2008 |
Paper |
Windows of Vulnerability: A Case Study Analysis
|
William A. Arbaugh
|
|
| January 27, 2008 |
Paper |
The Vulnerability Process: a tiger team approach to resolving vulnerability cases
|
|
|
| January 24, 2008 |
Paper |
Memory Retrieval Vulnerabilities
|
|
|