<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Niki Vonderwell on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/authors/niki-vonderwell/</link>
    <description>Recent content in Niki Vonderwell on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Mon, 03 Sep 2018 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/authors/niki-vonderwell/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Active Directory Security Summit 2018, 13th. of November of 2018</title>
      <link>https://insinuator.net/2018/09/active-directory-security-summit-2018-13th.-of-november-of-2018/</link>
      <pubDate>Mon, 03 Sep 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/09/active-directory-security-summit-2018-13th.-of-november-of-2018/</guid>
      <description>&lt;p&gt;I have the pleasure to announce the Active Directory Security Summit 2018 at 13^(th). of November of 2018. The summit covers current Active Directory security related topics such as challenging tasks of hybrid Active Directory operations as well as new security best practices and some ‘evergreens’ – Admin Tiering implementations (what about Exchange and DNS…??), ESAE operations etc. 😉&lt;/p&gt;&#xA;&lt;p&gt;The primary objective of the Active Directory Security Summit is to bring experts together:&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS18 Photos online!</title>
      <link>https://insinuator.net/2018/05/troopers18-photos-online/</link>
      <pubDate>Thu, 03 May 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/05/troopers18-photos-online/</guid>
      <description>&lt;p&gt;We are very excited to publish some (more to come!) of our photos from &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt;! Based on feedback from #TR18 we would also like to take a moment for our official TROOPERS photographer to introduce himself and tell you a little about what inspires him.&lt;/p&gt;&#xA;&lt;p&gt;Peter Walter is a 37 year old photographer based in Germany near Stuttgart. For many years now he is the official TROOPERS photographer and very proud to be part of the Troopers family.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Attack &amp; Research Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-attack-research-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-attack-research-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; Attack &amp;amp; Research Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;reverse-engineering-blackbox-systems-with-greatfet--facedancer-by-kate-temkin-and-dominic-spill&#34;&gt;Reverse Engineering Blackbox Systems with GreatFET &amp;amp; Facedancer by Kate Temkin and Dominic Spill&lt;/h1&gt;&#xA;&lt;p&gt;USB is everywhere, your phone, gaming consoles, IoT waffle irons, you name it. Due to its’ widespread use in everyday life it is typically trusted by the user. And even if one wanted to find out what’s happening behind the scenes, surely digging into USB communication is too much of a chore to be worth the hassle, right? This talk by Kate Temkin and Dominic Spill are about to prove that very wrong with an impressive display of their tools &lt;a href=&#34;https://greatscottgadgets.com/greatfet/&#34;&gt;GreatFET&lt;/a&gt; and &lt;a href=&#34;https://github.com/ktemkin/Facedancer&#34;&gt;Facedancer&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Defense &amp; Management Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-defense-management-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-defense-management-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; Defense &amp;amp; Management Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;all-your-cloud-are-belong-to-us&#34;&gt;All Your Cloud Are Belong to Us&lt;/h1&gt;&#xA;&lt;p&gt;The talk “All Your Cloud Belong Are Belong to Us” was held by &lt;a href=&#34;https://twitter.com/dk_effect&#34;&gt;Nate Warfield&lt;/a&gt;, who is a Senior Security Program Manager for the Microsoft Security Response Center (MSRC).&lt;br&gt;&#xA;Before Microsoft he worked as a network engineer about 18 years and 10 of this for a large amount of cell phone companies.&lt;br&gt;&#xA;Nate gives an overview about the state of the cloud solution provided by Microsoft, Azure, and how he hunts vulnerabilities in this environment.&lt;br&gt;&#xA;Finally he concludes that the giving up your infrastructure to the cloud doesn’t mean that you give up your responsibility.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Next Generation Internet (NGI) Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-next-generation-internet-ngi-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-next-generation-internet-ngi-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; Next Generation Internet Event.&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;h1 id=&#34;ngi-keynote-by-graeme-neilson&#34;&gt;NGI Keynote by &lt;a href=&#34;https://www.troopers.de/events/speaker/7_graeme_neilson/&#34;&gt;Graeme Neilson&lt;/a&gt;&lt;/h1&gt;&#xA;&lt;p&gt;Before his infosec career Graeme was a street performer, then security researcher, now he calls himself a defender. The talk was built around the following sentence: “The infosec industry and community have completely failed to create meaningful change in the behavior of people”.&lt;/p&gt;&#xA;&lt;p&gt;The following example is a resume of how hacking worked from 1988 to 2017:&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 SAP Security Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-sap-security-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-sap-security-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; SAP Security Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;sap-igs--the-vulnerable-forgotten-component-by-yvan-genuer&#34;&gt;SAP IGS : The ‘vulnerable’ forgotten component by Yvan Genuer&lt;/h1&gt;&#xA;&lt;p&gt;The Internet Graphics Server (IGS) is used to generate Web Based graphics from the SAP Web AS. Yvan Genuer looked at the security of an ancient component with very few public vulnerabilities available so far. In his talk he gave us insights on the structure of the IGS, its services, and problems he had when looking for documentation of the IGS and its components.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Extracting data from an EMV (Chip-And-Pin) Card with NFC technology</title>
      <link>https://insinuator.net/2018/02/extracting-data-from-an-emv-chip-and-pin-card-with-nfc-technology/</link>
      <pubDate>Thu, 15 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/extracting-data-from-an-emv-chip-and-pin-card-with-nfc-technology/</guid>
      <description>&lt;p&gt;&lt;em&gt;This is a guest blog post by Salvador Mendoza.&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;During years, many different researches and attacks against digital and physical payment methods have been discussed. New security techniques and methodologies such as tokenization process attempts to reduce or prevent fraudulent transactions.&lt;/p&gt;&#xA;&lt;p&gt;Extracting or capturing data from a transaction have been studied in different ways, and some of the most common techniques are skimming, wireless skimming, &lt;a href=&#34;https://media.defcon.org/DEF%20CON%2025/DEF%20CON%2025%20presentations/DEFCON-25-Haoqi-Shan-and-Jian-Yuan-Man-in-the-NFC.pdf&#34;&gt;relay attacks&lt;/a&gt;, traffic sniffing or &lt;a href=&#34;https://www.cl.cam.ac.uk/research/security/banking/relay/&#34;&gt;modifying a PoS(Point of Sale)&lt;/a&gt; system. In our talk, “&lt;a href=&#34;https://www.troopers.de/troopers18/agenda/tr18-nfc-payments/&#34;&gt;NFC Payments: The Art of Relay &amp;amp; Replay Attacks&lt;/a&gt;” at &lt;a href=&#34;https://www.troopers.de/&#34;&gt;TROOPERS18&lt;/a&gt;, we will discuss a new technique and methodology that malicious individuals could implement to extract data.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Get your hands dirty playing with RFID/NFC</title>
      <link>https://insinuator.net/2018/02/get-your-hands-dirty-playing-with-rfid/nfc/</link>
      <pubDate>Wed, 14 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/get-your-hands-dirty-playing-with-rfid/nfc/</guid>
      <description>&lt;p&gt;&lt;em&gt;This is a guest blog post by Nahuel Grisolia.&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;The first time I’ve heard about RFID was at high school, back in 2002, when I was studying Electronics. Back in that time, this technology was like some sort of black magic to me. A few years later in 2011, our government in Argentina decided to implement a “new technology” called NFC, designed as the new and only way of payment for the use of public transport. So, I decided to understand it better, play with it, and try some hacks I heard from the cool people of the CCC.&lt;/p&gt;</description>
    </item>
    <item>
      <title>White Paper on Incident Analysis and Forensics in Docker Environments</title>
      <link>https://insinuator.net/2018/02/white-paper-on-incident-analysis-and-forensics-in-docker-environments/</link>
      <pubDate>Wed, 14 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/white-paper-on-incident-analysis-and-forensics-in-docker-environments/</guid>
      <description>&lt;p&gt;In this article, we describe the impact of the increased use of &lt;em&gt;Docker&lt;/em&gt; in corporate environments on forensic investigations and incident analysis. Even though Docker is being used more and more (Portworx, Inc., 2017), the implications of the changed runtime environment for forensic processes and tools have barely been considered. We describe the technological basics of Docker and, based on them, outline the differences that occur with respect to digital evidence and previously used methods for evidence acquisition. Specifically, we look at digital evidence within a Docker container which are lost or need to be acquired in different ways compared to a classical virtual machine, and what new traces and opportunities arise from Docker itself.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Announcing the first 5 talks of TROOPERS18!!!!</title>
      <link>https://insinuator.net/2017/11/announcing-the-first-5-talks-of-troopers18/</link>
      <pubDate>Wed, 29 Nov 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/11/announcing-the-first-5-talks-of-troopers18/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/troopers17/&#34;&gt;TROOPERS17&lt;/a&gt; was unlike any TROOPERS we had known before. Everything just seemed bolder, better, and beyond our expectations. From surprise speakers like &lt;a href=&#34;https://twitter.com/thegrugq&#34;&gt;the grugq&lt;/a&gt; (do you have a follow-up talk for #TR18 by the way?) to new speakers who are now TROOPERS family, TROOPERS17 is one for the history books!&lt;/p&gt;&#xA;&lt;p&gt;If you were there you might be wondering to yourself, how could they possibly top it (and if you were not there check out this &lt;a href=&#34;https://www.youtube.com/watch?v=pfA63LGkf0w&#34;&gt;video from TR17&lt;/a&gt;)? Well, I am not going to lie, it will be a challenge. However, the high quality of talk and training submissions for this year have us feeling pretty positive about making #TR18 the “best year ever”!&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS for Students!</title>
      <link>https://insinuator.net/2017/10/troopers-for-students/</link>
      <pubDate>Thu, 12 Oct 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/10/troopers-for-students/</guid>
      <description>&lt;p&gt;We are super excited for &lt;a href=&#34;https://www.troopers.de/&#34;&gt;TROOPERS18&lt;/a&gt; (March 12-16th, 2018) as are many of you! We even have this great saying that “&lt;em&gt;after&lt;/em&gt; TROOPERS is &lt;em&gt;before&lt;/em&gt; TROOPERS”, which means we spend a lot of time looking through feedback from attendees, speakers/trainers, and our own Crew for ways to not only top what we’ve done in the years before, but also how to simply make it &lt;strong&gt;better&lt;/strong&gt; for everyone involved.  Looking around at our Crew we realized how many have either attended TROOPERS or other conferences as students. We heard from them, as well as other students, how life changing it was to be able, as a student, to attend an IT-Security conference. How they got to meet a speaker whose work they’d read about in class. How people felt even more a part of the community they were studying hard to belong to. &lt;/p&gt;</description>
    </item>
    <item>
      <title>Black Hat 20 &amp; DEFCON 25</title>
      <link>https://insinuator.net/2017/08/black-hat-20-defcon-25/</link>
      <pubDate>Wed, 09 Aug 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/08/black-hat-20-defcon-25/</guid>
      <description>&lt;p&gt;Some of the ERNW Crew hit up Black Hat USA and DEFCON. Our own Omar Eissa even gave his first BH and DEFCON talks! See which talk we liked and what inspiration we took home.&lt;/p&gt;&#xA;&lt;p&gt;BlackHat US 20:&lt;/p&gt;&#xA;&lt;p&gt;ERNW´s Omar Eissa presented on Cisco Autonomic networks showing how&lt;br&gt;&#xA;slides: &lt;a href=&#34;https://www.blackhat.com/docs/us-17/wednesday/us-17-Eissa-Network-Automation-Isn&#39;t-Your-Safe-Haven-Protocol-Analysis-And-Vulnerabilities-Of-Autonomic-Network.pdf&#34;&gt;https://www.blackhat.com/docs/us-17/wednesday/us-17-Eissa-Network-Automation-Isn’t-Your-Safe-Haven-Protocol-Analysis-And-Vulnerabilities-Of-Autonomic-Network.pdf&lt;/a&gt;&lt;br&gt;&#xA;insinuator blogposts:&lt;br&gt;&#xA;&lt;a href=&#34;https://insinuator.net/2017/03/autonomic-network-overview/&#34;&gt;https://insinuator.net/2017/03/autonomic-network-overview/&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://insinuator.net/2017/03/autonomic-network-analysis/&#34;&gt;https://insinuator.net/2017/03/autonomic-network-analysis/&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://insinuator.net/2017/04/autonomic-network-vulnerabilities/&#34;&gt;https://insinuator.net/2017/04/autonomic-network-vulnerabilities/&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;BoradPWN&lt;br&gt;&#xA;– Speaker: Nitay Artenstein&lt;br&gt;&#xA;– Slides: &lt;a href=&#34;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets.pdf&#34;&gt;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets.pdf&lt;/a&gt;&lt;br&gt;&#xA;– Paper: &lt;a href=&#34;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets-wp.pdf&#34;&gt;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets-wp.pdf&lt;/a&gt;&lt;br&gt;&#xA;– Broadly covered in main stream Media –&amp;gt; Wired article, tons of write-ups…link: &lt;a href=&#34;https://www.wired.com/story/broadpwn-wi-fi-vulnerability-ios-android/&#34;&gt;https://www.wired.com/story/broadpwn-wi-fi-vulnerability-ios-android/&lt;/a&gt;&lt;br&gt;&#xA;– Initial Blog Post: &lt;a href=&#34;https://blog.exodusintel.com/2017/07/26/broadpwn/&#34;&gt;https://blog.exodusintel.com/2017/07/26/broadpwn/&lt;/a&gt;&lt;br&gt;&#xA;– He took a deep dive into the internals of the BCM4354, 4358 and 4359 Wi-Fi chipsets and found an issue that he exploited to an extent where he created the world´s first wifi worm.&lt;br&gt;&#xA;– This hits most of the mobiles users pretty hard. Affected devices are for example: Samsung Galaxy from S3 through S8, inclusive All Samsung Notes3. Nexus 5, 6, 6X and 6P, All iPhones after iPhone 5&lt;br&gt;&#xA;– An infected device can be used to infect other mobile devices.&lt;br&gt;&#xA;– Luckily currently there is no malware that is actively exploiting this issue.&lt;/p&gt;</description>
    </item>
    <item>
      <title>DevOps, Continuous Deployment &amp; Agile Security September 7, 2017</title>
      <link>https://insinuator.net/2017/06/devops-continuous-deployment-agile-security-september-7-2017/</link>
      <pubDate>Thu, 08 Jun 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/06/devops-continuous-deployment-agile-security-september-7-2017/</guid>
      <description>&lt;p&gt;&lt;em&gt;The following post is in German as it is covering an Event with German as the main language.&lt;/em&gt;&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt;&lt;strong&gt;INSIGHT SUMMIT 2017 präsentiert DevOps, Continuous Deployment &amp;amp; Agile Security&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Inspiriert durch die erfolgreichen Round Table Session der TROOPERS freuen wir uns Ihnen heute mit dem AgileSecurity Insight Summit 2017 eine weitere Veranstaltung in einer Reihe zu Trend-Themen im Bereich der IT-Sicherheit vorzustellen.&lt;/p&gt;&#xA;&lt;p&gt;Die Veranstaltung beginnt am Morgen mit einer Keynote, gefolgt von Fallstudien und Vorträgen durch interne und externe Referenten aus der Industrie. Im Anschluss werden alle Teilnehmer in zwei Gruppen aufgeteilt, die nacheinander an beiden Round-Table Sessions teilnehmen. In den Round-Table Sessions werden unter Expertenmoderation typische Problemstellungen und Lösungsansätze diskutiert.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Docker Security &amp; (Sec) DevOps Training July 19-20th</title>
      <link>https://insinuator.net/2017/06/docker-security-sec-devops-training-july-19-20th/</link>
      <pubDate>Mon, 05 Jun 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/06/docker-security-sec-devops-training-july-19-20th/</guid>
      <description>&lt;p&gt;&lt;em&gt;The following post is in German as it is covering a Training with German as the main language.&lt;/em&gt;&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt;&lt;strong&gt;Professionelles Training im Workshop Character:&lt;/strong&gt;&lt;br&gt;&#xA;Docker, Microservices, Kubernetes, DevOps, Continuous&lt;br&gt;&#xA;Integration/Deployment/Delivery (CI/CD), Container – moderne&lt;br&gt;&#xA;Entwicklungsprozesse kommen nicht mehr ohne diese Begriffe aus. In diesem Kurs&lt;br&gt;&#xA;lernen Sie die Security Grundlagen um diese Dinge zu beherschen.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Docker Security &amp;amp; (Sec) DevOps Training:&lt;/strong&gt;&lt;br&gt;&#xA;Im Training werden unter Anderem die folgenden Fragestellungen behandelt:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Wie stark/zuverlässig sind die Isolationsmechanismen hinter Docker/Linux/Betriebssystem-Containern?&lt;/li&gt;&#xA;&lt;li&gt;Wie beeinflussen Container typische Applikations- und Netzwerk-Landschaften?&lt;/li&gt;&#xA;&lt;li&gt;Wie beeinflussen die CI/CD/Microservice Paradigmen traditionelle Entwicklungsprozesse?&lt;/li&gt;&#xA;&lt;li&gt;Wie sieht eine typische CI/CD Pipeline aus?&lt;/li&gt;&#xA;&lt;li&gt;Was sind potentielle Schnittstellen zwischen „Security“ und diesen Paradigmen?&lt;/li&gt;&#xA;&lt;li&gt;Welche zusätzlichen Security-Herausforderungen ergeben sich aus der veränderten Entwicklungslandschaft und neuen Tool-Chains?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;&lt;strong&gt;Voraussetzungen:&lt;/strong&gt;&lt;br&gt;&#xA;Die Teilnehmer sollten grundlegende Kenntnisse der Linux Kommandozeile besitzen&lt;br&gt;&#xA;sowie ein System mit einem SSH Client. Teilnehmer die die Demo-VM gerne selbst&lt;br&gt;&#xA;betreiben möchten erhalten diese auf einem USB-Stick, müssen sich aber selbst um&lt;br&gt;&#xA;Import und Start kümmern.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Active Directory Security &amp; Secure Operations July 18, 2017</title>
      <link>https://insinuator.net/2017/06/active-directory-security-secure-operations-july-18-2017/</link>
      <pubDate>Thu, 01 Jun 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/06/active-directory-security-secure-operations-july-18-2017/</guid>
      <description>&lt;p&gt;&lt;em&gt;The following post is in German as it is covering an Event with German as the main language.&lt;/em&gt;&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt;&lt;strong&gt;INSIGHT SUMMIT 2017 präsentiert Active Directory Security &amp;amp; Secure Operations&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Inspiriert durch die erfolgreichen Round Table Sessions der TROOPERS freuen wir uns Ihnen heute mit dem Active Directory Insight Summit 2017 eine weitere Veranstaltung in einer Reihe zu Trend-Themen im Bereich der IT-Sicherheit vorzustellen.&lt;br&gt;&#xA;Die Veranstaltung beginnt am Morgen mit einer Hinführung zum Thema Active Directory Sicherheit gefolgt von Fallstudien und Vorträgen durch interne und externe Referenten aus Wirtschaft und Industrie. Im Anschluss werden alle Teilnehmer in zwei Gruppen aufgeteilt, die nacheinander an beiden Round Table Sessions teilnehmen (jeder Teilnehmer kann an beiden Sessions teilnehmen). In den Round Table Sessions werden unter Expertenmoderation typische Problemstellungen und Lösungsansätze diskutiert.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TR17 Training: Crypto attacks and defenses</title>
      <link>https://insinuator.net/2017/01/tr17-training-crypto-attacks-and-defenses/</link>
      <pubDate>Tue, 03 Jan 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/01/tr17-training-crypto-attacks-and-defenses/</guid>
      <description>&lt;p&gt;This is a guest blog written by &lt;a href=&#34;https://www.troopers.de/events/speaker/557_jean-philippe_aumasson/&#34;&gt;Jean-Philippe Aumasson&lt;/a&gt; &amp;amp; &lt;a href=&#34;https://www.troopers.de/events/speaker/978_philipp__jovanovic/&#34;&gt;Philipp Jovanovic&lt;/a&gt; about their upcoming TROOPERS17 training: &lt;a href=&#34;https://www.troopers.de/events/troopers17/725_crypto_attacks_and_defenses/&#34;&gt;Crypto attacks and defenses. &lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;The &lt;a href=&#34;https://www.troopers.de/events/troopers16/578_crypto_for_developers/&#34;&gt;1-day training from last TROOPERS&lt;/a&gt; has become a 2-day training, featuring even more real-world attacks and defenses as well as new hands-on sessions! We’ll teach you, step by step, how to spot and exploit crypto vulnerabilities, how to use the strongest forms of state-of-the-art cryptography to secure modern systems (like IoT or mobile applications), and bring you up to speed on the latest and greatest developments in the world of cryptography, such as TLS 1.3, blockchains, and post-quantum crypto.&lt;/p&gt;</description>
    </item>
    <item>
      <title>3rd Round of TROOPERS17 Talks</title>
      <link>https://insinuator.net/2016/12/3rd-round-of-troopers17-talks/</link>
      <pubDate>Tue, 20 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/3rd-round-of-troopers17-talks/</guid>
      <description>&lt;p&gt;We had to make some tough choices regarding our &lt;a href=&#34;http://troopers.de&#34;&gt;TROOPERS17&lt;/a&gt; Main Conference Agenda. Thank you again to everyone for submitting! The full agenda will be published later this week, but for now here are the next round of talks!&lt;/p&gt;&#xA;&lt;p&gt;Ivan Pepelnjak: &lt;em&gt;Securing Network Automation&lt;/em&gt;&lt;br&gt;&#xA;If you have operational experience in running large networks then you’re probably yearning to replace the traditional way of managing individual network devices via SSH with something better and more reliable. Software Defined Networking (SDN) was touted as the all-encompassing solution, but what we got instead is a heap of academic ideas, several platforms that require as much investment as an SAP deployment, and a bunch of proprietary products focused more on increasing lock-in and vendor revenue than solving operational problems.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TR17 Training: Fuzzing with American Fuzzy Lop, Address Sanitizer and LibFuzzer</title>
      <link>https://insinuator.net/2016/12/tr17-training-fuzzing-with-american-fuzzy-lop-address-sanitizer-and-libfuzzer/</link>
      <pubDate>Thu, 15 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/tr17-training-fuzzing-with-american-fuzzy-lop-address-sanitizer-and-libfuzzer/</guid>
      <description>&lt;p&gt;This is a guest blog written by &lt;a href=&#34;https://hboeck.de/&#34;&gt;Hanno Böck&lt;/a&gt; who will be running the &lt;a href=&#34;https://www.troopers.de/events/troopers17/737_fuzzing_with_american_fuzzy_lop_address_sanitizer_and_libfuzzer/&#34;&gt;Fuzzing with American Fuzzy Lop, Address Sanitizer and LibFuzzer&lt;/a&gt; at TROOPERS17.&lt;/p&gt;&#xA;&lt;p&gt;Fuzzing is a very old technique to find bugs and vulnerabilities in software. However it has seen a new push in recent years due to vastly improved tools. The compilers gcc and clang have received Sanitizer tools that allow finding a lot of bugs like use after free errors and out of bounds reads that are otherwise very hard to find.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2nd Rounds of TROOPERS17 Talks!</title>
      <link>https://insinuator.net/2016/12/2nd-rounds-of-troopers17-talks/</link>
      <pubDate>Wed, 14 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/2nd-rounds-of-troopers17-talks/</guid>
      <description>&lt;p&gt;It is the end of the year and we are hoping it is not too hectic of a time for you all! But if it is, hopefully the announcement of our next round of &lt;a href=&#34;http://troopers.de&#34;&gt;TROOPERS17&lt;/a&gt; talks is enough to get you in the TROOPERS (if not the holiday) spirit 🙂&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt;Francis Alexander &amp;amp; Bharadwaj Machiraju: &lt;em&gt;How we hacked Distributed Configuration Management Systems&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;With increase in necessity of distributed applications, coordination and configuration management tools for these classes of applications have popped up. These systems might pop-up occasionally during penetration tests. The major focus of this research was to find ways to abuse these systems as well as use them for getting deeper access to other systems.&lt;/p&gt;</description>
    </item>
    <item>
      <title>CCS’16 – Day 2 – 25th October 2016</title>
      <link>https://insinuator.net/2016/11/ccs16-day-2-25th-october-2016/</link>
      <pubDate>Wed, 23 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/11/ccs16-day-2-25th-october-2016/</guid>
      <description>&lt;p&gt;Hello again.&lt;/p&gt;&#xA;&lt;p&gt;Andrei Costin (at &lt;a href=&#34;http://firmware.re/&#34;&gt;http://firmware.re&lt;/a&gt; project) is here, and this is the second post from a series of guest postings courtesy of ERNW (thanks Niki and Enno!).&lt;/p&gt;&#xA;&lt;p&gt;Few days ago, the first CCS’16 summarization post went online: &lt;a href=&#34;https://insinuator.net/2016/11/introduction-ccs16-day-1-24th-october-2016/&#34;&gt;https://insinuator.net/2016/11/introduction-ccs16-day-1-24th-october-2016/&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;It summarized five presentations of the 6th Annual Workshop on Security and Privacy in Smartphones (SPSM’16). In short, it contained presentations on: over-the-top and phone number abuse, smartphone fingerprinting, apps privacy increase and protection/security, and apps privacy ranking.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Introduction &amp; CCS’16 – Day 1 – 24th October 2016</title>
      <link>https://insinuator.net/2016/11/introduction-ccs16-day-1-24th-october-2016/</link>
      <pubDate>Mon, 21 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/11/introduction-ccs16-day-1-24th-october-2016/</guid>
      <description>&lt;p&gt; I am Andrei Costin (at &lt;a href=&#34;http://firmware.re/&#34;&gt;http://firmware.re&lt;/a&gt; project), and this is the first post from a series of guest postings courtesy of ERNW.&lt;/p&gt;&#xA;&lt;p&gt;Between 24th and 28th October, I had the pleasure and the great opportunity to attend ACM CCS 2016 in Vienna, Austria, where I also presented at the TrustED’16 workshop my paper titled “&lt;a href=&#34;http://dl.acm.org/citation.cfm?id=2995290&#34;&gt;Security of CCTV and Video Surveillance Systems: Threats, Vulnerabilities, Attacks, and Mitigations&lt;/a&gt;”.&lt;/p&gt;&#xA;&lt;p&gt;My attendance throughout the entire ACM CCS 2016 week and my presentation at TrustED was possible thanks to generous support from Enno Rey and ERNW, and I thank them again for this opportunity!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Announcing the first 5 talks of TROOPERS17!!!!</title>
      <link>https://insinuator.net/2016/11/announcing-the-first-5-talks-of-troopers17/</link>
      <pubDate>Fri, 04 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/11/announcing-the-first-5-talks-of-troopers17/</guid>
      <description>&lt;h2&gt;&lt;/h2&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;TROOPERS16&lt;/a&gt; was packed with epic talks from around the world, an unknown evil twin brother appearing, hands-on trainings, and a legendary year for our TROOPERS Charity efforts! If you were there you might be wondering to yourself how could they possibly top it? Well, I am going to let you in on a little secret: Next year is the 10th edition of &lt;a href=&#34;https://www.troopers.de/troopers17/&#34;&gt;TROOPERS&lt;/a&gt;. One DECADE of TROOPERS, and we are pulling out all the stops! Starting with the announcement of the first 5 talks!&lt;/p&gt;</description>
    </item>
    <item>
      <title>IoT Insight Summit November 15, 2016</title>
      <link>https://insinuator.net/2016/10/iot-insight-summit-november-15-2016/</link>
      <pubDate>Wed, 26 Oct 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/10/iot-insight-summit-november-15-2016/</guid>
      <description>&lt;p&gt;The newest addition to ERNW, ERNW Insight which now hosts &lt;a href=&#34;https://www.troopers.de/troopers17/&#34;&gt;TROOPERS&lt;/a&gt;, is launching a new concept this year. Based on the successful TROOPERS Roundtable sessions, ERNW Insight will host a series events every year covering current and relevant topics in the field of IT Security. While the style of the events may vary the in-depth knowledge sharing that you have come to know from TROOPERS will not!&lt;/p&gt;&#xA;&lt;p&gt;The inaugural event will be our&lt;a href=&#34;https://www.troopers.de/iot-insight-summit-2016/iot-insight-summit-2016-overview/&#34;&gt; IoT Insight Summit&lt;/a&gt;, taking place on November 15, 2016 at the &lt;a href=&#34;https://www.ihg.com/crowneplaza/hotels/us/en/heidelberg/hdbge/hoteldetail&#34;&gt;Crowne Plaza Heidelberg&lt;/a&gt;.  This 1-day event will begin with a keynote and case study from industry experts.  Afterwards, all participants will be divided into five groups of 10 persons each to participate in our “Break Out Sessions”. Every participant  will get the opportunity to attend all 5 Break Out Sessions, where our IT Security moderators will lead discussions on typical problems and solutions in IoT.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Defense &amp; Management Day 2</title>
      <link>https://insinuator.net/2016/04/defense-management-day-2/</link>
      <pubDate>Fri, 15 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/defense-management-day-2/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;TROOPERS16&lt;/a&gt; offered many different speakers from around the globe. Below are three different talks from the afternoon of Day 2’s Defense and Management Track. &lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;The TROOPERS16 talk “&lt;a href=&#34;https://www.troopers.de/events/troopers16/629_attacking__protecting_big_data_environments/&#34;&gt;Attacking &amp;amp; Protecting Big Data Environments&lt;/a&gt;” presented the research of Birk Kauer and Matthias Luft, (&lt;a href=&#34;http://ernw.de&#34;&gt;ERNW&lt;/a&gt;) in which they showed how enterprise-grade “big data” environments, based on e.g. HortonWorks or Cloudera, comprising of components such as HDFS, Yarn, Hue, Flume, Hive, Spark, Sentry/Ranger could be attacked. These environments typically process huge amounts of data. The data is either stored in a cluster file system or streamed into clusters. The processing of these datasets are done by jobs, and these jobs can be arbitrary code execution.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Building a secure and reliable IPv6 Guest Wi-Fi Network by Christopher Werny</title>
      <link>https://insinuator.net/2016/04/building-a-secure-and-reliable-ipv6-guest-wi-fi-network-by-christopher-werny/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/building-a-secure-and-reliable-ipv6-guest-wi-fi-network-by-christopher-werny/</guid>
      <description>&lt;p&gt;Christopher Werny leads the network security team for ERNW and since 2005 he is involved in numerous IPv6 projects where he is responsible for planning, implementation and troubleshooting existing projects.&lt;/p&gt;&#xA;&lt;p&gt;The first topic he approached was “How to build a conference WLAN Network in General”. The very first suggestion was to put it to the 5GHz channel because there could be a lot of interferences in the 2.4 GHz channel. The basic idea here is to disable 802.11b completely if it´s possible in your environment and no-one is using it anyway. Further you should also consider nearby Wi-Fi signals and on which channels they reside. His next recommendation was about setting the inactivity timer to short intervals, this will avoid unnecessary resource spending from the APs when they try to track down moved or shut down devices. His last general recommendation from him was regarding a central DHCP Server. This will enable the roaming from mobile devices without getting a new IP-Address when bridged mode is enabled for the APs.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Caring for file formats</title>
      <link>https://insinuator.net/2016/04/caring-for-file-formats/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/caring-for-file-formats/</guid>
      <description>&lt;p&gt;Ange Albertini is a reverse engineer and author of Corkami.&lt;/p&gt;&#xA;&lt;p&gt;First and foremost he explained what a polyglot file is. A polyglot is a special file that has more than one type in the same file. For example, Ange Albertini demonstrated a polyglot which is a pdf, a pdf reader, a java executable and an html file inside of one file. The second polyglot he demonstrated was a file which had the characteristics that when you encrypted it with AES you get a PNG image and if it´s encrypted with another key you will get a flash video and when you encrypted it with DES you get a PDF document. He pointed out that a file format is not just a sequence of byte it´s rather a computer dialect to communicate between communities. He also highlighted that people don’t really care about what is behind the file format they only what to use it and communicate with other people.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The road to secure Smart Cars: ENISA approach</title>
      <link>https://insinuator.net/2016/04/the-road-to-secure-smart-cars-enisa-approach/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/the-road-to-secure-smart-cars-enisa-approach/</guid>
      <description>&lt;p&gt;At TROOPERS16, Dr. Cédric LÉVY-BENCHETON an expert in cyber security at ENISA, the European Union Agency for Network and Information Security. Dr. Cédric LÉVY-BENCHETON  holds a presentation about cyber security of IoT (Internet of Things) and smart cars he presents the current threats in IoT and Smart cars. ENISA is an agency of the European Union. ENISA assists the Commission, the Member States and, the business community in meeting the requirements of network and information security.&lt;/p&gt;</description>
    </item>
    <item>
      <title>How easy to grow robust botnet with low hanging fruits (IoT) – for free</title>
      <link>https://insinuator.net/2016/03/how-easy-to-grow-robust-botnet-with-low-hanging-fruits-iot-for-free/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/how-easy-to-grow-robust-botnet-with-low-hanging-fruits-iot-for-free/</guid>
      <description>&lt;p&gt;Attila Marosi works as a Senior Threat Research at Sophos Labs in Hungary. His talk focused on vulnerable IoT devices that are exposed to the internet. His approach was to look for vulnerable devices with low cost tools and publicly available data.&lt;/p&gt;&#xA;&lt;p&gt;He started his talk with the spoiler that he is not going to reveal any new attacks nor new techniques. But newer data are more adequate and we can see the current state of vulnerable devices connected to the internet. This means his approach was to test the state of IoT devices like Routers, NAS and so on with publicly available data.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Medical Device Security: Hack or Hype</title>
      <link>https://insinuator.net/2016/03/medical-device-security-hack-or-hype/</link>
      <pubDate>Wed, 30 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/medical-device-security-hack-or-hype/</guid>
      <description>&lt;p&gt;Kevin Fu is an Associate Professor at the University of Michigan where he directs the Archimedes Center for Medical Device Security and cofounded Virta Labs. At Troopers 16 he held a talk in the field of his research: &lt;a href=&#34;https://www.troopers.de/events/troopers16/697_medical_device_security_hack_or_hype/&#34;&gt;medical device security&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;He started his talk with a brief introduction how he got started with medical device security and how it has changed since he started. Round about ten years ago he started dumpster diving for medical devices to investigate how they are protected and maintained. In 2006 he held his first talk about medical device security at the FDA. In 2008 he presented a wireless replay attack against a pacemaker. In 2013 concerns about medical device security became more and more mainstream when the television series homeland featured an episode where the pacemaker of the American vice president was attacked resulting in his death. Now, instead of dumpster diving for medical devices, he works together with clinicians and has a lab for testing devices. The communication with clinicians is very important for his work, so he visits hospitals with his student so that they can learn how the process works on the inside.&lt;/p&gt;</description>
    </item>
    <item>
      <title>IPv6 Security Summit – Track 2</title>
      <link>https://insinuator.net/2016/03/ipv6-security-summit-track-2/</link>
      <pubDate>Tue, 29 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/ipv6-security-summit-track-2/</guid>
      <description>&lt;p&gt;The Troopers experience will never be the same without the “&lt;a href=&#34;https://www.troopers.de/ipv6-security-summit/&#34;&gt;IPv6 summit&lt;/a&gt;”. It is one of kind of two-day special event where different security experts gather to discuss IPv6 current challenges. It addresses different topics ranging from a broad introduction of the IPv6 to how secure the protocol  is and what  the latest standards are.&lt;/p&gt;&#xA;&lt;p&gt;The summit is divided into 2 different tracks that run simultaneously. For the first day on the second track, &lt;em&gt;Christopher Werny&lt;/em&gt; and &lt;em&gt;Rafael Schaefer&lt;/em&gt; have carried out the first three sessions.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SDR and non-SDR tools for reverse engineering wireless systems</title>
      <link>https://insinuator.net/2016/03/sdr-and-non-sdr-tools-for-reverse-engineering-wireless-systems/</link>
      <pubDate>Mon, 28 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/sdr-and-non-sdr-tools-for-reverse-engineering-wireless-systems/</guid>
      <description>&lt;p&gt;Hey there!&lt;br&gt;&#xA;The God of frequencies Michael Ossmann visited us again this year at the &lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;TROOPERS16&lt;/a&gt; and showed us how to break another device using a specific setup.&lt;/p&gt;&#xA;&lt;p&gt;Last time he introduced the HackRF One to us (Read here:&lt;a href=&#34;https://www.insinuator.net/2014/08/hackrf-one-the-story-continues/&#34;&gt;https://www.insinuator.net/2014/08/hackrf-one-the-story-continues/&lt;/a&gt;), but this post is a short summary of his talk about “Rapid Radio Reversing”, he is a wireless security researcher, who makes hardware for hackers. Best known for the HackRF, Ubertooth, and Daisho projects, he founded Great Scott Gadgets in an effort to put exciting, new tools into the hands of innovative people.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The Joy of Sandbox Mitigations</title>
      <link>https://insinuator.net/2016/03/the-joy-of-sandbox-mitigations/</link>
      <pubDate>Mon, 28 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/the-joy-of-sandbox-mitigations/</guid>
      <description>&lt;p&gt;This year at TROOPERS16 in Heidelberg we welcomed James Forshaw for his talk about “&lt;a href=&#34;https://www.troopers.de/events/troopers16/644_the_joy_of_sandbox_mitigations/&#34;&gt;The Joy of Sandbox Mitigations&lt;/a&gt;“.&lt;/p&gt;&#xA;&lt;p&gt;He is a security researcher in Google’s Project Zero. He has been involved with computer hardware and software security for over 10 years looking at a range of different platforms and applications. With a great interest in logical vulnerabilities he has numerous disclosures in a wide range of products from web browsers to virtual machine breakouts as well as being a Pwn2Own and Microsoft Mitigation Bypass bounty winner. He has spoken at a number of security conferences including Black Hat USA, CanSecWest, Bluehat, HITB, and Infiltrate.&lt;/p&gt;</description>
    </item>
    <item>
      <title>How to crack a white-box without much effort</title>
      <link>https://insinuator.net/2016/03/how-to-crack-a-white-box-without-much-effort/</link>
      <pubDate>Wed, 02 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/how-to-crack-a-white-box-without-much-effort/</guid>
      <description>&lt;p&gt;&lt;strong&gt;By: Philippe Teuwen (&lt;a href=&#34;http://twitter.com/doegox&#34;&gt;@doegox&lt;/a&gt;)&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;White-box cryptography is a relatively new field that aims at enabling safely cryptographic operations in hostile situations.&lt;br&gt;&#xA;A typical example is its use in digital-right management (DRM) schemes, but nowadays you also find white-box implementations in mobile applications such as Host Card Emulation (HCE) and the protection of credentials to the cloud.&lt;br&gt;&#xA;In all these use-cases the software implementation uses the secret key of a third-party which should remain secret from the owner of the device which is running this executable.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Pentesting with Metasploit #TR16 Training</title>
      <link>https://insinuator.net/2016/02/pentesting-with-metasploit-%23tr16-training/</link>
      <pubDate>Tue, 02 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/pentesting-with-metasploit-%23tr16-training/</guid>
      <description>&lt;p&gt;In this year’s MSF training we will guide you through the typical steps of the pentest cycle: information gathering, attacking and looting your targets. For each step, demos and exercises will help you deepen and test your newly acquired knowledge. In addition to the typical penetration-test scenarios you will also learn several advanced aspects of the framework such as: how writing your own metasploit modules works, how to export payloads and make them undetected. With a final exercise each day you can finally challenge yourself and apply what you have learned!&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS16 Training Teaser: Dos and Don’ts of Secure Active Directory Administration</title>
      <link>https://insinuator.net/2016/01/troopers16-training-teaser-dos-and-donts-of-secure-active-directory-administration/</link>
      <pubDate>Wed, 27 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/troopers16-training-teaser-dos-and-donts-of-secure-active-directory-administration/</guid>
      <description>&lt;p&gt;In the last few years, attack techniques which fall in the categories of “Credential Theft” or “Credential Reuse” have grown into one of the biggest threats to Microsoft Windows environments. Microsoft has stated more than one time, that nearly almost all of their customers that run Active Directory have experienced “Pass-the-Hash” (PtH) attacks recently.&lt;a href=&#34;#_ftn1&#34;&gt;[1]&lt;/a&gt; Once an attacker gains an initial foothold on a single system in the environment it takes often less than 48 hours until the entire Active Directory infrastructure is compromised. To defend against this kind of attacks, a well-planned approach is required as part of a comprehensive security architecture and operations program. As breach has to be assumed&lt;a href=&#34;#_ftn2&#34;&gt;[2]&lt;/a&gt;, this includes a preventative mitigating control strategy, where technical and organizational controls are implemented, as well as preparations against insider attacks. This is mainly achieved by partitioning the credential flow in order to firstly limit their exposure and secondly limit their usefulness if an attacker was able to get them. Although we spoke last year at Troopers 15 about “How to Efficiently Protect Active Directory from Credential Theft &amp;amp; Large Scale Compromise”&lt;a href=&#34;#_ftn3&#34;&gt;[3]&lt;/a&gt;, we would like to summarize exemplary later in this post Active Directory pentest findings that we classified in four categories in order to better understand what goes typically wrong and thus has to be addressed. For a better understanding of the overall security goals, we classified the findings as to belonging as a security best practice violation of the following categories:&lt;/p&gt;</description>
    </item>
    <item>
      <title>5th Round of TROOPERS16 Talks Accepted</title>
      <link>https://insinuator.net/2016/01/5th-round-of-troopers16-talks-accepted/</link>
      <pubDate>Thu, 14 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/5th-round-of-troopers16-talks-accepted/</guid>
      <description>&lt;p&gt;Happy 2016 everyone! We are &lt;strong&gt;exactly&lt;/strong&gt; 2 months away from the start of TROOPERS16!! Speakers and Trainers across the globe are polishing (or in some cases creating) their PowerPoints to use while delivering their highly technical and entertaining talks. While we here at TR HQ are busy tweaking orders, creating challenges to boggle the mind and test your skills, and of course working on some top secret fun. 😉&lt;/p&gt;&#xA;&lt;p&gt;#BestWeekEver&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;</description>
    </item>
    <item>
      <title>Another Perspective in Vulnerability Disclosure</title>
      <link>https://insinuator.net/2016/01/another-perspective-in-vulnerability-disclosure/</link>
      <pubDate>Thu, 07 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/another-perspective-in-vulnerability-disclosure/</guid>
      <description>&lt;p&gt;As you know we (as in &lt;a href=&#34;https://www.ernw.de/&#34;&gt;ERNW&lt;/a&gt;) are quite involved when it comes to vulnerability disclosure and we’ve tried to contribute to a discussion at several occasions, such as &lt;a href=&#34;https://www.insinuator.net/2015/07/reflections-on-vulnerability-disclosure/&#34;&gt;Reflections on Vulnerability Disclosure&lt;/a&gt; and &lt;a href=&#34;https://www.ernw.de/download/ERNW_Newsletter_50_Vulnerability_Disclosure_Reflections_CaseStudy.pdf&#34;&gt;ERNW Newsletter 50 Vulnerability Disclosure Reflections Case Study&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;In this post I want to add (yet) another perspective, motivated by a disclosure procedure which just happened recently.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://twitter.com/todb&#34;&gt;todb’s&lt;/a&gt;  article, &lt;a href=&#34;https://community.rapid7.com/community/infosec/blog/2016/01/05/r7-2015-23-comcast-xfinity-home-security-system-insecure-fail-open&#34;&gt;R7-2015-23: Comcast XFINITY Home Security System Insecure Fail Open&lt;/a&gt; is a well planned public forum vulnerability disclosure. The article itself is very well done: It gives credit to the researcher who discovered the vulnerability and it shows a vulnerability disclosure timeline where Rapid7 reached out to Comcast (the vendor). They even go a step further and publish the link showing the process for discovered vulnerabilities in a Rapid7 product as well as how Rapid7 handles disclosing those vulnerabilities they find in external products. For their internal disclosure process, they make sure to release a patch &lt;em&gt;before&lt;/em&gt; “publicly announcing the vulnerability in the release notes of the update”(&lt;a href=&#34;http://www.rapid7.com/disclosure.jsp&#34;&gt;rapid7 disclosure&lt;/a&gt;).&lt;/p&gt;</description>
    </item>
    <item>
      <title>4th Round of TROOPERS16 Talks Accepted</title>
      <link>https://insinuator.net/2015/12/4th-round-of-troopers16-talks-accepted/</link>
      <pubDate>Tue, 22 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/4th-round-of-troopers16-talks-accepted/</guid>
      <description>&lt;p&gt;As we come to the end of the year we can’t help but take a moment to thank all of your who made TROOPERS15 special! It just makes us all the more pumped to kick it up a notch for TROOPERS16!! #BestWeekEver&lt;/p&gt;&#xA;&lt;p&gt;Happy Holiday and much Joy to you in the New Year!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;Aaron Zauner: &lt;a href=&#34;https://www.troopers.de/events/troopers16/609_bettercrypto_three_years_in/&#34;&gt;BetterCrypto: three years in&lt;/a&gt;&lt;br&gt;&#xA;&lt;strong&gt;FIRST TIME TROOPERS SPEAKER&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;The BetterCrypto Project started out in the fall of 2013 as a collaborative community effort by systems engineers, security engineers, developers and cryptographers to build up a sound set of recommendations for strong cryptography and privacy enhancing technologies catered towards the operations community in the face of overarching wiretapping and data-mining by nation-state actors. The project has since evolved with a lot of positive feedback from the open source and operations community in general with input from various browser vendors, linux distribution security teams and researchers.&lt;/p&gt;</description>
    </item>
    <item>
      <title>3rd Round of TROOPERS16 Talks Accepted</title>
      <link>https://insinuator.net/2015/12/3rd-round-of-troopers16-talks-accepted/</link>
      <pubDate>Thu, 17 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/3rd-round-of-troopers16-talks-accepted/</guid>
      <description>&lt;p&gt;Here at TROOPERS HQ we are well into the Holiday (read TROOPERS) Spirit so we thought we would publish another round of talks! The current agenda can be found &lt;a href=&#34;https://www.troopers.de/troopers16/agenda/&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;Happy Holidays!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;2nd Day Keynote&lt;br&gt;&#xA;&lt;strong&gt;FIRST TIME TROOPERS SPEAKER&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Bio:&lt;/strong&gt; Ben Zevenbergen joined the Oxford Internet Institute to pursue a DPhil on the intersection of privacy law, technology, social science, and the Internet. He runs a side project that aims to establish ethics guidelines for Internet research, as well as working in multidisciplinary teams such as the EU funded Network of Excellence in Internet Science. He has worked on legal, political and policy aspects of the information society for several years. Most recently he was a policy advisor to an MEP in the European Parliament, working on Europe’s Digital Agenda. Previously Ben worked as an ICT/IP lawyer and policy consultant in the Netherlands. Bendert holds a degree in law, specialising in Information Law.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2nd Rounds of TROOPERS16 Talks</title>
      <link>https://insinuator.net/2015/12/2nd-rounds-of-troopers16-talks/</link>
      <pubDate>Fri, 11 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/2nd-rounds-of-troopers16-talks/</guid>
      <description>&lt;p&gt;Here’s the second round of TROOPERS16 talks. For more information  check out our website: &lt;a href=&#34;https://www.troopers.de/&#34;&gt;TROOPERS&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Happy Holidays and all the best for 2016 to everybody!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;Ivan Pepelnjak: Real-life Software-Defined Security&lt;/p&gt;&#xA;&lt;p&gt;Vendors, pundits, and industry media love to talk about Software-Defined Everything, but nothing ever changes in the enterprise world, right? Wrong. Some engineers are already solving security problems with a software-defined approach to networking and security, be it microsegmentation in NSX or OpenStack environment, building scale-out IDS clusters, or respond to DoS or intrusion events in real-time… and we’ll cover all these ideas in this fast-paced presentation&lt;/p&gt;</description>
    </item>
    <item>
      <title>First Talks of TROOPERS 2016 Accepted!</title>
      <link>https://insinuator.net/2015/12/first-talks-of-troopers-2016-accepted/</link>
      <pubDate>Wed, 09 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/first-talks-of-troopers-2016-accepted/</guid>
      <description>&lt;p&gt;Here’s the first round of TROOPERS16 talks. For more information  check out our website: &lt;a href=&#34;https://www.troopers.de&#34;&gt;TROOPERS&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Happy Holidays and all the best for 2016 to everybody!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;br&gt;&#xA;Mike Ossmann: Rapid Radio Reversing&lt;/p&gt;&#xA;&lt;p&gt;Wireless security researchers have an unprecedented array of tools at their disposal today. Although Software Defined Radio (SDR) is the single most valuable tool for reverse engineering wireless signals, it is sometimes faster and easier to use other tools for portions of the reverse engineering process. I’ll discuss how beneficial a hybrid SDR/non-SDR approach has been to security researchers, and I’ll walk through an example of the process.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 5: Beyond the Thunderdome: &lt;BR /&gt; A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/06/blog-5-beyond-the-thunderdome-br-/-a-review-of-troopers15/</link>
      <pubDate>Wed, 03 Jun 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/06/blog-5-beyond-the-thunderdome-br-/-a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Troopers13_101.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Troopers13_101-200x300.jpg&#34; alt=&#34;Troopers13_101&#34;&gt;&lt;/a&gt;     The final blog in our series “Beyond the Thunderdome: A Review of TROOPERS15” focuses Exploitation &amp;amp; Attacking. With the last of this series we hope we you are already fired up and inspired for what lays a head during our upcoming &lt;strong&gt;&lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16&lt;/a&gt;&lt;/strong&gt; (March 14-18, 2016)! Can’t wait to see you there!&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“The old is new, again. CVE20112461 is back” talk created and given by Luca Carettoni and Mauro Gentile&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 4: Beyond the Thunderdome: &lt;BR/&gt;A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/06/blog-4-beyond-the-thunderdome-br/a-review-of-troopers15/</link>
      <pubDate>Mon, 01 Jun 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/06/blog-4-beyond-the-thunderdome-br/a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Blog4.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Blog4-300x134.jpg&#34; alt=&#34;Blog4&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;We hope you are enjoying the ride as we continue our journey through IPv6. Below we have a great mix of talks, slides, and videos in this area posted below. We look forward to hosting more IPv6 (March 14^(th) &amp;amp; 15^(th)) talks next year at &lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16&lt;/a&gt;!&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“New Features of the SI6 Networks’IPv6 Toolkit” talk created and given by Fernando Gont&lt;/p&gt;&#xA;&lt;p&gt;The IPV6 Toolkit was originally developed for UK CPNI in an effort to enhance and be able to test the current state of IPv6 security. The toolkit itself was mainly developed for security analysis and trouble shooting of IPv6 networks and implementations. It is running on a wide range of *nix based systems (this probably is considered painful to support given that low level implementation of network functions) and release under the GPL. You can directly check it out here: &lt;a href=&#34;https://github.com/fgont/ipv6toolkit.&#34;&gt;https://github.com/fgont/ipv6toolkit.&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 3: Beyond the Thunderdome: A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/05/blog-3-beyond-the-thunderdome-a-review-of-troopers15/</link>
      <pubDate>Fri, 29 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/blog-3-beyond-the-thunderdome-a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog3.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog3-300x163.jpg&#34; alt=&#34;Blog3&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Welcome to the third edition of “Beyond the Thunderdome: A Review of&#xA;TROOPERS15”. The focus today is on IPv6 and Data Center Networks, so kick back&#xA;and enjoy the following talks and videos. And as always, check out our website&#xA;&lt;strong&gt;&lt;a href=&#34;http://www.troopers.de&#34;&gt;www.troopers.de&lt;/a&gt;&lt;/strong&gt; for details on TROOPERS16 March&#xA;14-18, 2016.&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“Enabling and Securing IPv6 in Service Provider Networks” talk created and given by Tarko Titan&lt;/p&gt;&#xA;&lt;p&gt;Telekom.ee had no IPv6, 8 moths ago. They deployed IPv6 in about 4 weeks and by now about 6% of all transported traffic is IPv6 traffic. Actually the 4 weeks timeframe is a bit too optimistic but more on that later. Tarko first explains the biggest problems in the network migration, which were the access network and the Customer -Provider Edge (CPE). Also Telekom Estonia doesn’t want to make a tradeoff at security in the IPv6 deployment.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 2: Beyond the Thunderdome:&lt;BR /&gt;A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/05/blog-2-beyond-the-thunderdomebr-/a-review-of-troopers15/</link>
      <pubDate>Wed, 27 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/blog-2-beyond-the-thunderdomebr-/a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog2.cropped.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog2.cropped-300x137.jpg&#34; alt=&#34;Blog2.cropped&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Today’s focus in our blog series will cover large-scale environments: Cryptography in Cloud environments and Network Automation. Since these topics will only become more important over time stay tuned for our &lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16’s&lt;/a&gt; developing agenda to see what new talks will be available (or submit your own talk during our Call for Papers starting in August via our new CFP Submission tool!)&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“Crypto in the Cloud” talk created and given by Frederik Armknecht&lt;/p&gt;</description>
    </item>
    <item>
      <title>Beyond the Thunderdome:&lt;BR /&gt;A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/05/beyond-the-thunderdomebr-/a-review-of-troopers15/</link>
      <pubDate>Mon, 25 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/beyond-the-thunderdomebr-/a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/beyondthunderdome.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/beyondthunderdome.jpg&#34; alt=&#34;beyondthunderdome&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Here in Heidelberg we are already gearing up for TROOPERS16 (&lt;strong&gt;taking place from 14th to 18th March 2016&lt;/strong&gt;!). While you are preparing for our Call for Papers or waiting eagerly to sign up for your spot in one of our legendary trainings take a look at our newest blog series “Beyond the Thunderdome: A Review of TROOPERS15”. It may offer some inspiration, help you kill time while waiting for next year’s TROOPERS,  or for those that are new to our conference,  give you a taste for what TROOPERS is all about. See you soon at &lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16&lt;/a&gt;!&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
