I have the pleasure to announce the Active Directory Security Summit 2018 at
13^(th). of November of 2018. The summit covers current Active Directory
security related topics such as challenging tasks of hybrid Active Directory
operations as well as new security best practices and some ‘evergreens’ – Admin
Tiering implementations (what about Exchange and DNS…??), ESAE operations etc.
😉
The primary objective of the Active Directory Security Summit is to bring
experts together:
We are very excited to publish some (more to come!) of our photos from
TROOPERS18! Based on feedback from #TR18
we would also like to take a moment for our official TROOPERS photographer to
introduce himself and tell you a little about what inspires him.
Peter Walter is a 37 year old photographer based in Germany near Stuttgart. For
many years now he is the official TROOPERS photographer and very proud to be
part of the Troopers family.
This blogpost contains summaries of talks from this year’s
TROOPERS18 Attack & Research Track.
Reverse Engineering Blackbox Systems with GreatFET & Facedancer by Kate Temkin and Dominic Spill
USB is everywhere, your phone, gaming consoles, IoT waffle irons, you name it.
Due to its’ widespread use in everyday life it is typically trusted by the user.
And even if one wanted to find out what’s happening behind the scenes, surely
digging into USB communication is too much of a chore to be worth the hassle,
right? This talk by Kate Temkin and Dominic Spill are about to prove that very
wrong with an impressive display of their tools
GreatFET and
Facedancer.
This blogpost contains summaries of talks from this year’s
TROOPERS18 Defense & Management Track.
All Your Cloud Are Belong to Us
The talk “All Your Cloud Belong Are Belong to Us” was held by
Nate Warfield, who is a Senior Security Program
Manager for the Microsoft Security Response Center (MSRC).
Before Microsoft he worked as a network engineer about 18 years and 10 of this
for a large amount of cell phone companies.
Nate gives an overview about the state of the cloud solution provided by
Microsoft, Azure, and how he hunts vulnerabilities in this environment.
Finally he concludes that the giving up your infrastructure to the cloud doesn’t
mean that you give up your responsibility.
Before his infosec career Graeme was a street performer, then security
researcher, now he calls himself a defender. The talk was built around the
following sentence: “The infosec industry and community have completely failed
to create meaningful change in the behavior of people”.
The following example is a resume of how hacking worked from 1988 to 2017:
This blogpost contains summaries of talks from this year’s
TROOPERS18 SAP Security Track.
SAP IGS : The ‘vulnerable’ forgotten component by Yvan Genuer
The Internet Graphics Server (IGS) is used to generate Web Based graphics from
the SAP Web AS. Yvan Genuer looked at the security of an ancient component with
very few public vulnerabilities available so far. In his talk he gave us
insights on the structure of the IGS, its services, and problems he had when
looking for documentation of the IGS and its components.
During years, many different researches and attacks against digital and physical
payment methods have been discussed. New security techniques and methodologies
such as tokenization process attempts to reduce or prevent fraudulent
transactions.
Extracting or capturing data from a transaction have been studied in different
ways, and some of the most common techniques are skimming, wireless skimming,
relay attacks,
traffic sniffing or
modifying a PoS(Point of Sale)
system. In our talk,
“NFC Payments: The Art of Relay & Replay Attacks”
at TROOPERS18, we will discuss a new technique and
methodology that malicious individuals could implement to extract data.
The first time I’ve heard about RFID was at high school, back in 2002, when I
was studying Electronics. Back in that time, this technology was like some sort
of black magic to me. A few years later in 2011, our government in Argentina
decided to implement a “new technology” called NFC, designed as the new and only
way of payment for the use of public transport. So, I decided to understand it
better, play with it, and try some hacks I heard from the cool people of the
CCC.
In this article, we describe the impact of the increased use of Docker in
corporate environments on forensic investigations and incident analysis. Even
though Docker is being used more and more (Portworx, Inc., 2017), the
implications of the changed runtime environment for forensic processes and tools
have barely been considered. We describe the technological basics of Docker and,
based on them, outline the differences that occur with respect to digital
evidence and previously used methods for evidence acquisition. Specifically, we
look at digital evidence within a Docker container which are lost or need to be
acquired in different ways compared to a classical virtual machine, and what new
traces and opportunities arise from Docker itself.
TROOPERS17 was unlike any TROOPERS we had
known before. Everything just seemed bolder, better, and beyond our
expectations. From surprise speakers like
the grugq (do you have a follow-up talk for
#TR18 by the way?) to new speakers who are now TROOPERS family, TROOPERS17 is
one for the history books!
If you were there you might be wondering to yourself, how could they possibly
top it (and if you were not there check out this
video from TR17)? Well, I am not
going to lie, it will be a challenge. However, the high quality of talk and
training submissions for this year have us feeling pretty positive about making
#TR18 the “best year ever”!