<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>DEF CON on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/def-con/</link>
    <description>Recent content in DEF CON on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Wed, 09 Aug 2017 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/def-con/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Black Hat 20 &amp; DEFCON 25</title>
      <link>https://insinuator.net/2017/08/black-hat-20-defcon-25/</link>
      <pubDate>Wed, 09 Aug 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/08/black-hat-20-defcon-25/</guid>
      <description>&lt;p&gt;Some of the ERNW Crew hit up Black Hat USA and DEFCON. Our own Omar Eissa even gave his first BH and DEFCON talks! See which talk we liked and what inspiration we took home.&lt;/p&gt;&#xA;&lt;p&gt;BlackHat US 20:&lt;/p&gt;&#xA;&lt;p&gt;ERNW´s Omar Eissa presented on Cisco Autonomic networks showing how&lt;br&gt;&#xA;slides: &lt;a href=&#34;https://www.blackhat.com/docs/us-17/wednesday/us-17-Eissa-Network-Automation-Isn&#39;t-Your-Safe-Haven-Protocol-Analysis-And-Vulnerabilities-Of-Autonomic-Network.pdf&#34;&gt;https://www.blackhat.com/docs/us-17/wednesday/us-17-Eissa-Network-Automation-Isn’t-Your-Safe-Haven-Protocol-Analysis-And-Vulnerabilities-Of-Autonomic-Network.pdf&lt;/a&gt;&lt;br&gt;&#xA;insinuator blogposts:&lt;br&gt;&#xA;&lt;a href=&#34;https://insinuator.net/2017/03/autonomic-network-overview/&#34;&gt;https://insinuator.net/2017/03/autonomic-network-overview/&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://insinuator.net/2017/03/autonomic-network-analysis/&#34;&gt;https://insinuator.net/2017/03/autonomic-network-analysis/&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://insinuator.net/2017/04/autonomic-network-vulnerabilities/&#34;&gt;https://insinuator.net/2017/04/autonomic-network-vulnerabilities/&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;BoradPWN&lt;br&gt;&#xA;– Speaker: Nitay Artenstein&lt;br&gt;&#xA;– Slides: &lt;a href=&#34;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets.pdf&#34;&gt;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets.pdf&lt;/a&gt;&lt;br&gt;&#xA;– Paper: &lt;a href=&#34;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets-wp.pdf&#34;&gt;https://www.blackhat.com/docs/us-17/thursday/us-17-Artenstein-Broadpwn-Remotely-Compromising-Android-And-iOS-Via-A-Bug-In-Broadcoms-Wifi-Chipsets-wp.pdf&lt;/a&gt;&lt;br&gt;&#xA;– Broadly covered in main stream Media –&amp;gt; Wired article, tons of write-ups…link: &lt;a href=&#34;https://www.wired.com/story/broadpwn-wi-fi-vulnerability-ios-android/&#34;&gt;https://www.wired.com/story/broadpwn-wi-fi-vulnerability-ios-android/&lt;/a&gt;&lt;br&gt;&#xA;– Initial Blog Post: &lt;a href=&#34;https://blog.exodusintel.com/2017/07/26/broadpwn/&#34;&gt;https://blog.exodusintel.com/2017/07/26/broadpwn/&lt;/a&gt;&lt;br&gt;&#xA;– He took a deep dive into the internals of the BCM4354, 4358 and 4359 Wi-Fi chipsets and found an issue that he exploited to an extent where he created the world´s first wifi worm.&lt;br&gt;&#xA;– This hits most of the mobiles users pretty hard. Affected devices are for example: Samsung Galaxy from S3 through S8, inclusive All Samsung Notes3. Nexus 5, 6, 6X and 6P, All iPhones after iPhone 5&lt;br&gt;&#xA;– An infected device can be used to infect other mobile devices.&lt;br&gt;&#xA;– Luckily currently there is no malware that is actively exploiting this issue.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Attacking BaseStations @Defcon24</title>
      <link>https://insinuator.net/2016/09/attacking-basestations-@defcon24/</link>
      <pubDate>Tue, 20 Sep 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/09/attacking-basestations-@defcon24/</guid>
      <description>&lt;p&gt;Hello Guys,&lt;br&gt;&#xA;back from my vacation I’d like to give you some impressions about Defcon 24 and our talk “Attacking BaseStations”. Defcon itself had a couple of great talks but was a very crowded location. Anyhow, we had a couple of great discussions with the people before and after our talk.&lt;/p&gt;&#xA;&lt;p&gt;The talk “Attacking BaseStations” focussed on attack vectors we simulated in &lt;a href=&#34;https://www.insinuator.net/2015/05/how-to-get-as-basestation/&#34;&gt;our lab&lt;/a&gt;. Besides attacking a BaseStation via Radio interface, in this talk we focussed on local and remote interfaces as introduced in &lt;a href=&#34;https://www.insinuator.net/2014/10/lte-vs-darwin-hackers-to-hackers-conference-11/&#34;&gt;“LTE vs. Darwin”&lt;/a&gt;. As target of evaluation one of our eNodeB’s came into play, which we purchased on the Internet. Anyhow, the talk covered the following attack scenarios:&lt;/p&gt;</description>
    </item>
    <item>
      <title>Reminiscing About Black Hat USA 2015</title>
      <link>https://insinuator.net/2015/09/reminiscing-about-black-hat-usa-2015/</link>
      <pubDate>Mon, 21 Sep 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/09/reminiscing-about-black-hat-usa-2015/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/09/IMG_0245.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/09/IMG_0245.jpg&#34; alt=&#34;The Strip&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;While searching for some photos for my last &lt;a href=&#34;https://www.insinuator.net/2015/09/miners-canary-revival-in-it-security/&#34;&gt;blog post on Thinkst Canary&lt;/a&gt; I found a couple more from our recent trip to &lt;a href=&#34;https://www.blackhat.com/us-15/&#34;&gt;Black Hat USA&lt;/a&gt; and &lt;a href=&#34;https://defcon.org/html/links/dc-archives/dc-23-archive.html&#34;&gt;DEF CON&lt;/a&gt;, which I consider worth sharing. Nothing too technical, just some visual impressions and comments from my side. Let’s get it on!&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/09/signup.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/09/signup.jpg&#34; alt=&#34;Sign Up&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;My colleague Patrik and myself arrived one day early before the briefings and headed right to Mandalay Bay to check out the Black Hat venue and get a feel for the city. The sheer size of just everything is mind-blowing.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Wrap-Up: A Memorable Week at Black Hat and DEFCON in Las Vegas</title>
      <link>https://insinuator.net/2014/08/wrap-up-a-memorable-week-at-black-hat-and-defcon-in-las-vegas/</link>
      <pubDate>Fri, 15 Aug 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/08/wrap-up-a-memorable-week-at-black-hat-and-defcon-in-las-vegas/</guid>
      <description>&lt;p&gt;Information security conferences are known to be attended because of several reasons. For some it’s the technical content, for others the networking potential and for some others simply meeting old friends. Pinpointing our motives is clearly a challenging task, but the following wrap-up ought to share our personal highlights of the week we spent visiting Black Hat USA 2014 and DEFCON 22 in Las Vegas.&lt;/p&gt;&#xA;&lt;p&gt;After somewhat 18 hours of flight, some sleep and with the beautiful scenery of perpetual clear skies above Las Vegas we began what was to be an incredible week.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
