<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>TROOPERS on Insinuator.net - Bold Statements</title>
    <link>https://insinuator.net/tags/troopers/</link>
    <description>Recent content in TROOPERS on Insinuator.net - Bold Statements</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 11 Aug 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://insinuator.net/tags/troopers/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>#TROOPERS26 AD &amp; Entra ID Security Track</title>
      <link>https://insinuator.net/2026/08/troopers26-ad-entra-id-security-track/</link>
      <pubDate>Tue, 11 Aug 2026 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2026/08/troopers26-ad-entra-id-security-track/</guid>
      <description>&lt;p&gt;The #TROOPERS26 ‘AD &amp;amp; Entra ID Security’ track delivered an incredible experience – much like the entire conference! We were thrilled to host some of the brightest minds in identity research alongside a highly engaged audience who brought valuable insights to the roundtable discussions. While the presentation slides have already been published on the TROOPERS website, several speakers have shared complementary tools, in-depth blog posts, and active social media threads. To make things easy, we’ve compiled a comprehensive list of all these fantastic resources from the track below.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS26: Integrating Incident Analysis and Digital Forensics Tooling for Automated Compromise Detection</title>
      <link>https://insinuator.net/2026/06/troopers26-integrating-incident-analysis-and-digital-forensics-tooling-for-automated-compromise-detection/</link>
      <pubDate>Mon, 29 Jun 2026 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2026/06/troopers26-integrating-incident-analysis-and-digital-forensics-tooling-for-automated-compromise-detection/</guid>
      <description>&lt;p&gt;Last week I gave a talk at #TROOPERS26: &lt;a href=&#34;https://troopers.de/troopers26/talks/m7qtn7/&#34;&gt;Integrating Incident Analysis and Digital Forensics Tooling for Automated Compromise Detection&lt;/a&gt;. I discussed the challenges of incident analysis, such as increasing storage capacities and the lack of integration between tools. I presented a modular framework that integrates established forensic and analysis tools using a decision-tree-based control mechanism. A workflow was designed to control the execution of 14 integrated analysis tools in order to reproduce the manual analysis process usually performed by analysts. Moreover, the framework is capable of identifying whether a system has been compromised and compiles a analyst-oriented report. Together with the audience we took a look at the report in a live demonstration. The evaluation results of the framework were promising as it was able to identify all compromised systems. However, a significant number of false positive classifications were also observed. To improve the framework possible future extensions include functionality such as recovering already deleted files to detect missed Indicators of Compromise. Additionally, our team want to integrate artificial intelligence in the workflow to help in data processing and make more decisions automatically. The slides will be published next week on the conference website. I will add the link in this blog post when they become available. A more detailed description of the content of the talk can be found in the following sections. Looking forward to #TROOPERS27!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Heads-up: TROOPERS Roundtable – Supply Chain Security</title>
      <link>https://insinuator.net/2026/06/heads-up-troopers-roundtable-supply-chain-security/</link>
      <pubDate>Mon, 22 Jun 2026 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2026/06/heads-up-troopers-roundtable-supply-chain-security/</guid>
      <description>&lt;h2 id=&#34;how-to-strengthen-supply-chain-security-practical-exchange-and-roadmap&#34;&gt;How to strengthen Supply Chain Security: Practical Exchange and Roadmap&lt;/h2&gt;&#xA;&lt;p&gt;Join an open, practitioner-focused roundtable for direct exchange on supply chain security. This session offers a concise overview of core concepts, e.g. SBOM, CSAF, and VEX and digs into the processes behind them: how to obtain, process and apply information to improve security across the supply chain.&lt;/p&gt;&#xA;&lt;p&gt;We will examine:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;How SBOM, CSAF and VEX relate and why version-level detail matters.&lt;/li&gt;&#xA;&lt;li&gt;The practical value of an SBOM and why it’s increasingly required by law and IT procurement.&lt;/li&gt;&#xA;&lt;li&gt;How to create and consume SBOMs?&lt;/li&gt;&#xA;&lt;li&gt;Methods to identify dependencies in the context of vulnerabilities.&lt;/li&gt;&#xA;&lt;li&gt;Approaches to triage: not all vulnerabilities affect every stakeholder equally.&lt;/li&gt;&#xA;&lt;li&gt;Techniques to analyze vulnerabilities and identify affected products and product families.&lt;/li&gt;&#xA;&lt;li&gt;Sources of vulnerability information and how to map data unambiguously to products and specific software versions.&lt;/li&gt;&#xA;&lt;li&gt;Reporting obligations: where and how to disclose vulnerabilities.&lt;/li&gt;&#xA;&lt;li&gt;Tools and automation that help manage information volume and complexity.&lt;/li&gt;&#xA;&lt;li&gt;Technical, organizational and personnel challenges to achieving end-to-end supply chain security.&lt;/li&gt;&#xA;&lt;li&gt;The role of AI in supply chain security.&lt;/li&gt;&#xA;&lt;li&gt;How do we protect ourselves from malicious actors / infected dependencies?&lt;/li&gt;&#xA;&lt;li&gt;The Cyber Resilience Act (CRA): implications for companies, products and consumers, the CRA roadmap, and concrete deadlines and actions.&lt;/li&gt;&#xA;&lt;li&gt;We will show a live demonstration of the whole process, e.g. covering the consumption of SBOMs, vulnerability identification and assessment, creation of VEX documents.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;This roundtable is designed for security practitioners, product owners, compliance officers and decision-makers who want actionable guidance and peer discussion. Expect candid conversation, real-world examples and next steps you can take to strengthen resilience across your supply chains.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TROOPERS25 AD &amp; Entra ID Security Track</title>
      <link>https://insinuator.net/2025/08/troopers25-ad-entra-id-security-track/</link>
      <pubDate>Thu, 14 Aug 2025 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2025/08/troopers25-ad-entra-id-security-track/</guid>
      <description>&lt;p&gt;The #TROOPERS25 ‘AD &amp;amp; Entra ID Security’ track was a blast – as was the whole&#xA;conference 😉 –  bringing together some of the smartest researchers in the field&#xA;and a great audience of practitioners willing to share their experiences during&#xA;the &lt;a href=&#34;https://troopers.de/roundtables/&#34;&gt;roundtable&lt;/a&gt;. The slides of the talks have&#xA;been released in the interim on the &lt;a href=&#34;https://troopers.de&#34;&gt;TROOPERS website&lt;/a&gt;, but&#xA;since many speakers published additional blogposts or released tools, we provide&#xA;a compilation of resources from the track in the following.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Security Advisory: Airoha-based Bluetooth Headphones and Earbuds</title>
      <link>https://insinuator.net/2025/06/security-advisory-airoha-based-bluetooth-headphones-and-earbuds/</link>
      <pubDate>Thu, 26 Jun 2025 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2025/06/security-advisory-airoha-based-bluetooth-headphones-and-earbuds/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Important note:&lt;/strong&gt; Some media coverage on this topic falsely or inaccurately&#xA;depicts the attack conditions. To be clear: Any vulnerable device can be&#xA;compromised if the attacker is in Bluetooth range. That is the only&#xA;precondition.&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt;During our research on Bluetooth headphones and earbuds, we identified several&#xA;vulnerabilities in devices that incorporate Airoha Systems on a Chip (SoCs). In&#xA;this blog post, we briefly want to describe the vulnerabilities, point out their&#xA;impact and provide some context to currently running patch delivery processes as&#xA;described at this year’s&#xA;&lt;a href=&#34;https://troopers.de/troopers25/talks/fbnb8y/&#34;&gt;TROOPERS Conference&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Windows Hello for Business – Past and Present Attacks</title>
      <link>https://insinuator.net/2025/06/windows-hello-for-business-past-and-present-attacks/</link>
      <pubDate>Fri, 20 Jun 2025 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2025/06/windows-hello-for-business-past-and-present-attacks/</guid>
      <description>&lt;p&gt;Windows Hello for Business is a key component of Microsoft’s passwordless&#xA;authentication strategy. It enables user authentication not only during system&#xA;sign-in but also in conjunction with new and advanced features such as Personal&#xA;Data Encryption, Administrator Protection, and Recall. Rather than depending on&#xA;traditional passwords, Windows Hello leverages a PIN or biometric methods – such&#xA;as fingerprint or facial recognition – to unlock cryptographic keys protected by&#xA;the Trusted Platform Module (TPM).&lt;/p&gt;</description>
    </item>
    <item>
      <title>BMBF UNCOVER – Monitoring von Sicherheitsvorfällen in Fahrzeugen</title>
      <link>https://insinuator.net/2024/06/bmbf-uncover-monitoring-von-sicherheitsvorf%C3%A4llen-in-fahrzeugen/</link>
      <pubDate>Fri, 21 Jun 2024 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2024/06/bmbf-uncover-monitoring-von-sicherheitsvorf%C3%A4llen-in-fahrzeugen/</guid>
      <description>&lt;h4 id=&#34;english-abstract&#34;&gt;English Abstract&lt;/h4&gt;&#xA;&lt;p&gt;For the realization and introduction of autonomous vehicles, the safe interaction of functions, systems and services as well as their monitoring over the entire product life cycle is essential. An exclusive security-by-design approach is no longer sufficient and must be continuously supported by feedback obtained from in-the-wild operation. This is where the recently successfully completed joint project BMBF UNCOVER comes into play, which targets the requirements of the standards &lt;em&gt;ISO/SAE 21434 (Road vehicles – Cybersecurity engineering)&lt;/em&gt; and &lt;em&gt;ISO 21448 (Road vehicles – Safety of the intended functionality (SOTIF))&lt;/em&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS24 Agenda Preview: Active Directory &amp; Entra ID Security Track</title>
      <link>https://insinuator.net/2024/06/troopers24-agenda-preview-active-directory-entra-id-security-track/</link>
      <pubDate>Fri, 14 Jun 2024 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2024/06/troopers24-agenda-preview-active-directory-entra-id-security-track/</guid>
      <description>&lt;p&gt;Hi,&lt;/p&gt;&#xA;&lt;p&gt;are you curious about the agenda of the Active Directory- &amp;amp; Entra ID security track at TROOPERS24? Here’s a sneak peak of the already published tracks:&lt;/p&gt;&#xA;&lt;h3 id=&#34;wednesday-2024-06-26&#34;&gt;Wednesday, 2024-06-26:&lt;/h3&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/vxs8wy&#34;&gt;A Decade of Active Directory Attacks: What We’ve Learned &amp;amp; What’s Next&lt;/a&gt; – Sean Metcalf&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/uepkle&#34;&gt;ADillesHeel: Making the Impossible Possible in AD Attack Path Analysis&lt;/a&gt; – SHANG-DE JIANG&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/jt97ha&#34;&gt;So You Performed A Forest Recovery. How Do You Reconnect Your AD Again With Azure AD?&lt;/a&gt; – Jorge de Almeida Pinto&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/8ekvxr&#34;&gt;Decrypting the Directory: A Journey into a static analysis of the Active Directory NTDS to identify misconfigurations and vulnerabilities&lt;/a&gt; – Bastien Cacace (XMCO company)&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/a8zf7h&#34;&gt;Say Hello to your new cache flow!&lt;/a&gt; – Geoffrey Bertoli, Rémi Jullian&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/kzymd8&#34;&gt;Analyzing and Executing ADCS Attack Paths with BloodHound&lt;/a&gt; – by Andy Robbins, Jonas Bülow Knudsen&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h3 id=&#34;thursday-2024-06-27&#34;&gt;Thursday, 2024-06-27:&lt;/h3&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/kynuwx&#34;&gt;The (almost) complete LDAP guide&lt;/a&gt; – Sapir Federovsky&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/z3dexp&#34;&gt;Exploiting Token-Based Authentication: Attacking and Defending Identities in the 2020s&lt;/a&gt; – Dr Nestori Syynimaa&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/3vlccy&#34;&gt;Attacking Primary Refresh Tokens using their MacOS implementation&lt;/a&gt; – Olaf Hartong, Dirk-jan Mollema&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/nvp3zs&#34;&gt;Misconfiguration Manager: Overlooked and Overprivileged&lt;/a&gt; – Duane Michael, Chris Thompson&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://troopers.de/troopers24/talks/jlaupj&#34;&gt;The Registry Rundown&lt;/a&gt; – Cedric Van Bockhaven, Max Grim&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The full conference agenda including timeslots will be published soon at &lt;a href=&#34;https://troopers.de/troopers24/conference/&#34;&gt;TROOPERS24&lt;/a&gt;. The trainings are already sold out, but &lt;a href=&#34;https://troopers.de/tickets/&#34;&gt;a handful of tickets is currently left&lt;/a&gt;.  Stay tuned &amp;amp; make the world a safer place!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Lua-Resty-JWT Authentication Bypass</title>
      <link>https://insinuator.net/2023/10/lua-resty-jwt-authentication-bypass/</link>
      <pubDate>Tue, 10 Oct 2023 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2023/10/lua-resty-jwt-authentication-bypass/</guid>
      <description>&lt;p&gt;I was writing some challenges for PacketWars at&#xA;&lt;a href=&#34;https://troopers.de/&#34;&gt;TROOPERS22&lt;/a&gt;. One was intended to be a JWT key confusion&#xA;challenge where the public key from an RSA JWT should be recovered and used to&#xA;sign a symmetric JWT. For that, I was searching for a library vulnerable to JWT&#xA;key confusion by default and found &lt;em&gt;lua-resty-jwt&lt;/em&gt;. The original repository by&#xA;&lt;em&gt;SkyLothar&lt;/em&gt; is not maintained and different from the library that is installed&#xA;with the LuaRocks package manager. The investigated library is a&#xA;&lt;a href=&#34;https://github.com/cdbattags/lua-resty-jwt&#34;&gt;fork&lt;/a&gt; of the original repository,&#xA;maintained by &lt;em&gt;cdbattags&lt;/em&gt; in version 0.2.3 and was downloaded more than&#xA;&lt;a href=&#34;https://luarocks.org/modules/cdbattags/lua-resty-jwt&#34;&gt;4.8 million times&lt;/a&gt;&#xA;according to LuaRocks.&lt;/p&gt;</description>
    </item>
    <item>
      <title>All your parcel are belong to us – Talk at Troopers 2023</title>
      <link>https://insinuator.net/2023/07/all-your-parcel-are-belong-to-us-talk-at-troopers-2023/</link>
      <pubDate>Tue, 11 Jul 2023 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2023/07/all-your-parcel-are-belong-to-us-talk-at-troopers-2023/</guid>
      <description>&lt;p&gt;At Troopers 2023, we gave a talk on how to attack DHL parcel tracking&#xA;information based on OSINT. Since we previously had an exemplary disclosure&#xA;process about this attack with DHL, Mr. Kiehne (from DHL) joined us to provide&#xA;interesting background information and insights on how they addressed our&#xA;findings.&lt;/p&gt;&#xA;&lt;p&gt;We want to thank DHL and especially Mr. Kiehne for sharing those insights with&#xA;us at Troopers 2023. It is the ideal case, but still not common that&#xA;organizations talk openly about their actions and views on a disclosure process.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Summary of &#39;Software-Defined Radio applied to security assessments&#39; at Troopers21</title>
      <link>https://insinuator.net/2021/04/summary-of-software-defined-radio-applied-to-security-assessments-at-troopers21/</link>
      <pubDate>Tue, 20 Apr 2021 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2021/04/summary-of-software-defined-radio-applied-to-security-assessments-at-troopers21/</guid>
      <description>&lt;p&gt;The training&#xA;&lt;a href=&#34;https://troopers.de/troopers21/trainings/cmxfqk/&#34;&gt;Software-Defined Radio applied to security assessments&lt;/a&gt;&#xA;was held by Sébastien Dudek at Troopers21 and was remotely organized – like most&#xA;other events – due to Covid-19. Once we were all caffeinated, we had an exciting&#xA;journey through basically all things radio.&lt;/p&gt;&#xA;&lt;p&gt;We started with the technical and physical basics in radio technology, such as&#xA;various sorts of antennas, analog to digital coding (and backward), encoding&#xA;schemes, and general risks and possible vulnerabilities of using radio devices.&#xA;Commonly found vulnerabilities include the following:&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 Training Teaser: Attack And Defence In AWS: Chaining Vulnerabilities To Go Beyond The OWASP Top 10</title>
      <link>https://insinuator.net/2020/02/troopers20-training-teaser-attack-and-defence-in-aws-chaining-vulnerabilities-to-go-beyond-the-owasp-top-10/</link>
      <pubDate>Thu, 27 Feb 2020 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2020/02/troopers20-training-teaser-attack-and-defence-in-aws-chaining-vulnerabilities-to-go-beyond-the-owasp-top-10/</guid>
      <description>&lt;p&gt;Attackers are everywhere. They are now on the cloud too! Attacking the most popular cloud provider – AWS, requires the knowledge of how different services are setup, what defences do we need to bypass, what service attributes can be abused, where can information be leaked, how do I escalate privileges, what about monitoring solutions that may be present in the environment and so on! We try to answer these questions in our intense, hands-on scenario driven training on attacking and subsequently defending against the attacks on AWS.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 Training Teaser: Hacking Node.js &amp; Electron apps, shells, injections and fun!</title>
      <link>https://insinuator.net/2020/02/troopers20-training-teaser-hacking-node.js-electron-apps-shells-injections-and-fun/</link>
      <pubDate>Thu, 06 Feb 2020 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2020/02/troopers20-training-teaser-hacking-node.js-electron-apps-shells-injections-and-fun/</guid>
      <description>&lt;p&gt;Did you know that in the ever evolving field of Web and Desktop apps, it turns out these can all now be powered with JavaScript? You read that right: JavaScript is now used to power both web apps (Node.js) as well as Desktop apps (Electron). What could possibly go wrong?&lt;/p&gt;&#xA;&lt;p&gt;So, the burning question is: how does this affect Web and Desktop app security? If you want to find out, come to our training and you will experience this in a 100% hands-on fashion! 🙂&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 Training Teaser: TLS in the Enterprise – Post Quantum Security</title>
      <link>https://insinuator.net/2019/12/troopers20-training-teaser-tls-in-the-enterprise-post-quantum-security/</link>
      <pubDate>Mon, 09 Dec 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/12/troopers20-training-teaser-tls-in-the-enterprise-post-quantum-security/</guid>
      <description>&lt;p&gt;Our workshop “TLS in the enterprise” was held for the first time at Troopers 2018 and was our special contribution to the IT Security world to increase the usage of TLS and point out the pitfalls, when switching to TLS.&lt;/p&gt;&#xA;&lt;p&gt;But time is changing and TLS is a kind of standard nowadays, at least when looking at HTTPS, but there are still a lot of things to do regarding other protocols like&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 Training Teaser: Swim with the whales – Docker, DevOps &amp;amp; Security in Enterprise Environments</title>
      <link>https://insinuator.net/2019/12/troopers20-training-teaser-swim-with-the-whales-docker-devops-amp-security-in-enterprise-environments/</link>
      <pubDate>Mon, 02 Dec 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/12/troopers20-training-teaser-swim-with-the-whales-docker-devops-amp-security-in-enterprise-environments/</guid>
      <description>&lt;p&gt;Containerization dominates the market nowadays. Fancy buzzwords like continuous integration/deployment/delivery, microservices, containers, DevOps are floating around, but what do they mean? What benefits do they offer compared to the old dogmas? You’re gonna find out in our training!&lt;/p&gt;&#xA;&lt;p&gt;We are going to start with the basics of Docker, Containers and DevOps, but soon you’ll end up with your own applications running inside containers with the images residing in your own registry. Of course, following the microservices approach, and the second day hasn’t even started.After the fundamental topics of containerization are understood, you’re going to create and operate your own Kubernetes cluster. A lot of fun and challenging exercises lie ahead, to give you hands-on experience with all the technologies.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 teaser: Hacking mobile apps</title>
      <link>https://insinuator.net/2019/11/troopers20-teaser-hacking-mobile-apps/</link>
      <pubDate>Thu, 28 Nov 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/11/troopers20-teaser-hacking-mobile-apps/</guid>
      <description>&lt;p&gt;“If it’s a thing, then there’s an app for it!”…We trust mobile apps to process our bank transactions, handle our private data and set us up on romantic dates. However, few of us care to wonder,”How (in)secure can these apps be?” Well… at Troopers 20, you can learn how to answer this question yourself!&lt;/p&gt;&#xA;&lt;p&gt;In our 2 day long “Hacking mobile apps” workshop, we teach how to find security vulnerabilities in mobile apps, exploit them and defend against them. We start from scratch, therefore no prior experience in hacking or developing mobile apps is required. Whether you want to learn how to pentest mobile apps, you are an app developer that fancies to secure his/her apps, or just curios, our workshop is a jumpstart to your goal.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 Training Teaser: Insight Into Windows Internals</title>
      <link>https://insinuator.net/2019/11/troopers20-training-teaser-insight-into-windows-internals/</link>
      <pubDate>Mon, 25 Nov 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/11/troopers20-training-teaser-insight-into-windows-internals/</guid>
      <description>&lt;p&gt;Windows 10 is one of the most commonly deployed operating systems at this time. Knowledge about its components and internal working principles is highly beneficial. Among other things, such a knowledge enables:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;in-depth studies of undocumented, or poorly documented, system functionalities;&lt;/li&gt;&#xA;&lt;li&gt;development of performant and compatible software to monitor or extend the activities of the operating system itself; and&lt;/li&gt;&#xA;&lt;li&gt;analysis of security-related issues, such as persistent malware.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The “Insight into Windows Internals” training offered at TROOPERS20 delivers knowledge on the core components and inner working principles of Windows 10. For example, the training provides knowledge on how Windows 10 uses virtualization to isolate security-critical functionalities from attackers that have managed to compromise the system. The training includes a variety of practical exercises allowing attendees to observe first-hand the operation of Windows 10.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 Training Teaser: Hacking 101</title>
      <link>https://insinuator.net/2019/11/troopers20-training-teaser-hacking-101/</link>
      <pubDate>Thu, 07 Nov 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/11/troopers20-training-teaser-hacking-101/</guid>
      <description>&lt;p&gt;Hi there,&lt;br&gt;&#xA;like in recent years the popular &lt;a href=&#34;https://www.troopers.de/troopers20/trainings/3crqx8/&#34;&gt;Hacking 101 workshop&lt;/a&gt; will take place on TROOPERS20, too! The workshop will give you an insight into the &lt;strong&gt;hacking techniques&lt;/strong&gt; required for &lt;strong&gt;penetration testing&lt;/strong&gt;. These techniques will cover various topics:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Information gathering&lt;/li&gt;&#xA;&lt;li&gt;Network scanning&lt;/li&gt;&#xA;&lt;li&gt;Web application hacking&lt;/li&gt;&#xA;&lt;li&gt;Low-level exploitation&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;…and more!&lt;/p&gt;&#xA;&lt;p&gt;During this workshop &lt;strong&gt;you will learn&lt;/strong&gt;, step by step, a &lt;strong&gt;testing methodology&lt;/strong&gt; that applies to the majority of scenarios. So imagine you have to &lt;strong&gt;assess&lt;/strong&gt; the &lt;strong&gt;security of a system&lt;/strong&gt; running on the Internet. How would you start? First, you need a good understanding of the target, including running services or related systems. Just &lt;strong&gt;scanning&lt;/strong&gt; the target’s IP address will most likely not reveal all relevant information you can get. In the information gathering step, you will learn where you could find more relevant information than just a list of open ports. A brief understanding of the target and it’s related systems/services/applications will make scanning and &lt;strong&gt;identifying vulnerabilities&lt;/strong&gt; a lot easier and more effective. Then, the last step will be the &lt;strong&gt;exploitation&lt;/strong&gt; of the identified vulnerabilities, with the ultimate aim to &lt;strong&gt;get access to the target system&lt;/strong&gt; and pivot to other, probably internal, systems and resources.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS20 Training Teaser: Windows &amp; Linux Binary Exploitation</title>
      <link>https://insinuator.net/2019/11/troopers20-training-teaser-windows-linux-binary-exploitation/</link>
      <pubDate>Mon, 04 Nov 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/11/troopers20-training-teaser-windows-linux-binary-exploitation/</guid>
      <description>&lt;p&gt;We are happy to announce that TROOPERS20 will feature the 5th anniversary of the popular Windows &amp;amp; Linux Binary Exploitation workshop!&lt;/p&gt;&#xA;&lt;p&gt;In this workshop, attendees will learn how to exploit those nasty stack-based buffer overflow vulnerabilities by applying the theoretical methods taught in this course to hands-on exercises. Exercises will be performed for real world (32-bit) software such as the Foxit Reader Plugin for Firefox, Wireshark, and nginx.&lt;/p&gt;&#xA;&lt;p&gt;Each exercise will start with an initially uncontrolled overwrite of the instruction pointer register by a stack-based buffer overflow vulnerability. From there on, we will work our way through many obstacles to finally gain remote code execution. Obstacles that will be encountered during the exercises include modern stack-based buffer overflow defense mechanisms such as stack cookies, data execution prevention (DEP), and address space layout randomization (ASLR). For all of these defense mechanisms, attendees will learn and apply certain methods to bypass the protection.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2020 CFP is open</title>
      <link>https://insinuator.net/2019/09/telcosecday-2020-cfp-is-open/</link>
      <pubDate>Mon, 23 Sep 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/09/telcosecday-2020-cfp-is-open/</guid>
      <description>&lt;p&gt;We are back again with another &lt;a href=&#34;https://troopers.de/troopers20/telco-sec-day/&#34;&gt;TelcoSecDay 2020&lt;/a&gt; (TSD20) which is going to happen on March 16th, 2020 as an additional event to &lt;a href=&#34;https://troopers.de/&#34;&gt;TROOPERS&lt;/a&gt;. This year, it is going to be on &lt;strong&gt;Monday&lt;/strong&gt; of the TROOPERS week. We are delighted to inform that the event is happening for the 9th year in a row. The &lt;a href=&#34;https://cfp.ernw-insight.de/tsd20/cfp&#34;&gt;CFP&lt;/a&gt; is open now. If you have an interesting topic related to the field of Telco Security, please make a submission. The deadline is &lt;strong&gt;November 17, 2019.&lt;/strong&gt; The final notification for TSD submission is December 20, 2019.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 19 – Badge Hardware</title>
      <link>https://insinuator.net/2019/07/troopers-19-badge-hardware/</link>
      <pubDate>Thu, 18 Jul 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/07/troopers-19-badge-hardware/</guid>
      <description>&lt;p&gt;This post by Jeff (@jeffmakes) was delayed due to interferences with other projects but nevertheless, enjoy!&lt;/p&gt;&#xA;&lt;p&gt;This year, it was my great honour to design the hardware for the Troopers19 badge.&lt;/p&gt;&#xA;&lt;p&gt;We wanted to make a wifi-connected MicroPython-powered badge; something that would be fun to take home and hack on. It was a nice opportunity to use a microcontroller platform that I hadn’t tried before. I also used the project as a chance to finally migrate my PCB workflow from Eagle to Kicad. Inevitably it was a painful transition, which resulted in quite some delay to the project as I floundered around in the new tool, but it does mean the design files are in an open format which I hope will benefit the community of Troopers attendees and future badge designers!&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR19 Next Generation Internet (NGI) Summaries</title>
      <link>https://insinuator.net/2019/05/%23tr19-next-generation-internet-ngi-summaries/</link>
      <pubDate>Thu, 02 May 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/05/%23tr19-next-generation-internet-ngi-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://troopers.de/troopers19/&#34;&gt;TROOPERS19&lt;/a&gt; Active Directory Security Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;microsoft-it-secure-journey-to-ipv6-only&#34;&gt;Microsoft IT (Secure) Journey to IPv6-Only&lt;/h1&gt;&#xA;&lt;p&gt;Veronika McKillop, Network Architect, Cloud and Connectivity Engineering (CCE)&lt;/p&gt;&#xA;&lt;p&gt;The speaker, Veronika McKillop, working at Microsofts network infrastructure services, has given a talk about the process of switching a company network from IPv4 to IPv6-only.&lt;/p&gt;&#xA;&lt;p&gt;Within the talk the following topics were introduced: Dual Stack, Drivers for IPv6, Status of IPv6 in Networks and Security in IPv6 Networks. The talk covers the reasons why a company would like to switch from IPv4 to IPv6. Technics like NAT64 and DNS64 are introduced. The requirements to software and especially drivers to work in IPv6 environments are described. Also the problems to switch from IPv4 to IPv6-only in heterogeneous networks are addressed.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR19 Active Directory Security Summaries</title>
      <link>https://insinuator.net/2019/04/%23tr19-active-directory-security-summaries/</link>
      <pubDate>Tue, 30 Apr 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/04/%23tr19-active-directory-security-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://troopers.de/troopers19/&#34;&gt;TROOPERS19&lt;/a&gt; Active Directory Security Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;from-workstation-to-domain-admin-why-secure-administration-isnt-secure-and-how-to-fix-it-by-sean-metcalf&#34;&gt;From Workstation to Domain Admin: Why Secure Administration Isn’t Secure and How to Fix It by Sean Metcalf&lt;/h1&gt;&#xA;&lt;p&gt;Active Directory is probably used in almost every corporation today to administer all kinds of Authorization, Authentication and Privileges. This means they are valuable targets for attackers, because once compromised they could do whatever they want. This would be the worst case scenario, right? Therefore securing AD is important and this year TROOPERS19 featured a whole track solely for AD Security.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR19 Attack &amp; Research Summaries</title>
      <link>https://insinuator.net/2019/04/%23tr19-attack-research-summaries/</link>
      <pubDate>Mon, 29 Apr 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/04/%23tr19-attack-research-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers19/&#34;&gt;TROOPERS19&lt;/a&gt; Attack &amp;amp; Research Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;vxlan-security-or-injection-and-protection&#34;&gt;VXLAN Security or Injection, and protection&lt;/h1&gt;&#xA;&lt;p&gt;The talk “VXLAN Security or Injection, and protection” was held by Henrik Lund Kramshøj, who is the owner of Zencurity ApS, a small security company located in Denmark.&lt;/p&gt;&#xA;&lt;p&gt;Henrik gives an overview about lesser known VXLAN insecurities, mostly packet spoofing.&lt;/p&gt;&#xA;&lt;p&gt;In the end he gives advice how to protect against this attacks.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers &amp;amp; Chill…</title>
      <link>https://insinuator.net/2019/04/troopers-amp-chill/</link>
      <pubDate>Fri, 26 Apr 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/04/troopers-amp-chill/</guid>
      <description>&lt;p&gt;As promised in my &lt;a href=&#34;https://insinuator.net/2019/03/the-mmm-in-community/&#34;&gt;previous post&lt;/a&gt;, I am back for an overview of the &lt;strong&gt;Troopers19 – Active Directory&lt;/strong&gt; related talks… Videos have been published and it’s popcorn time… So if you are into stories about Kingdoms and Crown Jewels, grab your loved one [or a drink…] and turn the lights down low, ’cause tonight it’s “Troopers &amp;amp; Chill…”&lt;/p&gt;&#xA;&lt;p&gt;Warning: Don’t watch it all in one go… or you will start to feel some anxiety and pain…&lt;br&gt;&#xA;and then the Flying Dutchman will move to the cloud… And at that point we are not insured anymore.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 19 – Hack your badge</title>
      <link>https://insinuator.net/2019/04/troopers-19-hack-your-badge/</link>
      <pubDate>Mon, 15 Apr 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/04/troopers-19-hack-your-badge/</guid>
      <description>&lt;p&gt;Sadly, TROOPERS 19 is already over. I had great fun meeting all of you, helping you with your badge problems and seeing others hacking on their badges for example to get custom images on there.&lt;/p&gt;&#xA;&lt;p&gt;With this year’s badge we wanted to give you something you can reuse after the conference, learn new things new build something on your own.&lt;/p&gt;&#xA;&lt;p&gt;As promised in our &lt;a href=&#34;https://www.youtube.com/watch?v=5ZJDIMuPRtY&#34;&gt;talk&lt;/a&gt; Jeff and I would like to give you a short introduction into the badge internals. Along with this post we will release the source code for the badge firmware, the provisioning server and the schematics for the PCB.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The “mmm…” in Community</title>
      <link>https://insinuator.net/2019/03/the-mmm-in-community/</link>
      <pubDate>Thu, 28 Mar 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/03/the-mmm-in-community/</guid>
      <description>&lt;p&gt;When I got home last weekend after an awesome week at &lt;a href=&#34;https://twitter.com/WEareTROOPERS&#34;&gt;WEareTROOPERS&lt;/a&gt;, my 5yr old asked me what actually happened in Heidelberg…&lt;br&gt;&#xA;I told him we were meeting with some people from all over the world to talk about computer security, and he asked me if it was “to stop the bad guys, like super-heroes?”. So I told him “yes, kind of…”, and he decided he would take his new Troopers T-Shirt to school on Monday to show his classmates. Kids are truly amazing… [&amp;lt;3 &amp;lt;3 &amp;lt;3]&lt;/p&gt;</description>
    </item>
    <item>
      <title>Binaries, shellcoding, bug hunting, ROP gadgets and more at Blackhoodie@TR19</title>
      <link>https://insinuator.net/2019/03/binaries-shellcoding-bug-hunting-rop-gadgets-and-more-at-blackhoodie@tr19/</link>
      <pubDate>Fri, 01 Mar 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/03/binaries-shellcoding-bug-hunting-rop-gadgets-and-more-at-blackhoodie@tr19/</guid>
      <description>&lt;p&gt;We have the most amazing trainers this year lined up for Blackhoodie at Troopers 2019. We have &lt;a href=&#34;https://twitter.com/barbieauglend&#34;&gt;Thais&lt;/a&gt;, &lt;a href=&#34;https://twitter.com/SilviaValiSV&#34;&gt;Silvia&lt;/a&gt;, &lt;a href=&#34;https://twitter.com/chiliz16&#34;&gt;Lisa&lt;/a&gt; and &lt;a href=&#34;https://twitter.com/__noutoff__&#34;&gt;Ninon&lt;/a&gt; going to give workshops on various interesting topics! Below are some of the workshop contents:&lt;/p&gt;&#xA;&lt;h3 id=&#34;64-bit-shellcoding-and-introduction-to-buffer-overflow-exploitation-on-linux-by-silvia-väli&#34;&gt;64-bit shellcoding and introduction to buffer overflow exploitation on Linux by &lt;a href=&#34;https://twitter.com/SilviaValiSV&#34;&gt;Silvia Väli&lt;/a&gt;&lt;/h3&gt;&#xA;&lt;p&gt;64-bit shellcoding and introduction to buffer overflow exploitation on Linux is a 3 hour workshop which is essentially divided into 3 parts:&lt;/p&gt;&#xA;&lt;ol&gt;&#xA;&lt;li&gt;Introduction to 64-bit architecture in order to get familiar with registers, stack, calling conventions described in the Intel 64 (x86-64) architecture manual and the most common assembly instructions and syscalls which we will later use to write our shellcodes.&lt;/li&gt;&#xA;&lt;li&gt;Shellcoding where we try different techniques to write the shellcode and of course you gonna get to greet the shellcoding world with your own Hello World shellcode in addition to reverse shell which we will use later on in part 3&lt;/li&gt;&#xA;&lt;li&gt;Introduction to buffer overflows, so you can put your newly received know-how about stack into practise right away. Shellcode without being used is a wasted shellcode! Part 3 ends with a buffer overflow challenge where your goal is to use your reverse shellcode to get a connection back to your machine.&lt;/li&gt;&#xA;&lt;/ol&gt;&#xA;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>IPv6 Address Management / The “External” Flag</title>
      <link>https://insinuator.net/2019/02/ipv6-address-management-/-the-external-flag/</link>
      <pubDate>Fri, 22 Feb 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/02/ipv6-address-management-/-the-external-flag/</guid>
      <description>&lt;p&gt;We’re regularly asked to review IPv6 address plans from different organizations and I’d like to share some reflections from such a process currently happening. I’ve discussed a few aspects of IPv6 address planning before; those readers interested please see &lt;a href=&#34;https://insinuator.net/2019/01/ipv6-talks-publications/&#34;&gt;this post&lt;/a&gt; which contains some references.&lt;/p&gt;&#xA;&lt;p&gt;The organization in question is headquartered in Germany, has ~60K employees and a number of subsidiaries in European countries. They belong to a “traditional industry sector” (so they’re not an “Internet company”, even though they – as the majority of large organizations right now – strive to be one in a few years ;-).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Some Notes on the IPv6 Properties of the Wireless Network @ Cisco Live Europe</title>
      <link>https://insinuator.net/2019/02/some-notes-on-the-ipv6-properties-of-the-wireless-network-@-cisco-live-europe/</link>
      <pubDate>Sun, 03 Feb 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/02/some-notes-on-the-ipv6-properties-of-the-wireless-network-@-cisco-live-europe/</guid>
      <description>&lt;p&gt;Some years ago &lt;a href=&#34;https://twitter.com/bcp38&#34;&gt;Christopher&lt;/a&gt; wrote two posts (&lt;a href=&#34;https://insinuator.net/2016/02/observations-from-the-cisco-live-europe-2016-wifi-infrastructure/&#34;&gt;2016&lt;/a&gt;, &lt;a href=&#34;https://insinuator.net/2015/01/observations-from-the-cisco-live-europe-wifi-infrastructure/&#34;&gt;2015&lt;/a&gt;) about the  IPv6-related characteristics of the WiFi network at Cisco Live Europe. To somewhat continue this tradition and for mere technical interest I had a look at some properties of this year’s setting.&lt;/p&gt;&#xA;&lt;p&gt;There were two SSIDs of interest: a dual-stacked one (“CiscoLive2019”) and one with v6-only plus NAT64 (“CL-NAT64”). For some background on the underlying infrastructure components you might look at this &lt;a href=&#34;https://twitter.com/DarchisNicolas/status/1089095382171299840&#34;&gt;thread&lt;/a&gt; by &lt;a href=&#34;https://twitter.com/DarchisNicolas&#34;&gt;Nicolas Darchis&lt;/a&gt; from the NOC or at &lt;a href=&#34;https://twitter.com/networkautobahn/status/1089827410541977600&#34;&gt;this tweet&lt;/a&gt; from &lt;a href=&#34;https://twitter.com/networkautobahn&#34;&gt;Dominik Pickhardt&lt;/a&gt;. Some stats on IPv6 usage at CLEUR can be found &lt;a href=&#34;https://twitter.com/SNMPguy/status/1091018632593895425&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2019 – First talks preview</title>
      <link>https://insinuator.net/2019/01/telcosecday-2019-first-talks-preview/</link>
      <pubDate>Tue, 29 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/telcosecday-2019-first-talks-preview/</guid>
      <description>&lt;p&gt;This year we had some excellent submissions for TelcoSecDay.  Here are the first four confirmed speakers who are going to talk about the below mentioned topics:&lt;/p&gt;&#xA;&lt;h4 id=&#34;1-telecom-protocols-revisited--not-just-a-signalling-problem--by-fredrik-söderlund&#34;&gt;&lt;strong&gt;1. Telecom protocols revisited – Not just a signalling problem – by Fredrik Söderlund&lt;/strong&gt;&lt;/h4&gt;&#xA;&lt;p&gt;A look at the design of the currently deployed signalling protocols for core networks, both SS7 and Diameter (legacy and LTE). Peculiar quirks and how the design has lead to the industry sometimes failing to adhere to its own standards.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR19 Active Directory Security Track</title>
      <link>https://insinuator.net/2019/01/%23tr19-active-directory-security-track/</link>
      <pubDate>Wed, 23 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/%23tr19-active-directory-security-track/</guid>
      <description>&lt;p&gt;As some of you might recall we’ve introduced a dedicated “Active Directory Security Track” at last year’s &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers&lt;/a&gt;. For Troopers19 we’ve expanded it to two days (as the SAP Security Track was discontinued), and in the following I’ll provide a list of talks in the track.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Vincent Le Toux: You “try” to detect mimikatz&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Abstract: This is 2019 and you still “try” to detect mimikatz. “Try”, because after many years, this post exploitation tool continues to be successful.&lt;br&gt;&#xA;As a contributor to mimikatz and also a blue team guy, I’m asking myself why antivirus vendors are unable to catch it after many years.&lt;br&gt;&#xA;How can a tool be blocked if nobody does not know what this tool is doing? Because surprisingly, it is known only for credential collection but mimikatz is a lot more.&lt;br&gt;&#xA;To mitigate the lack of antivirus vendor, should we buy new fancy EDR tool or try a technical approach? Apply a Framework? Rely on Compliance? Use a SIEM to collect logs and apply correlation? In sumarry, can we detect mimikatz?&lt;br&gt;&#xA;In this presentation we will try to understand why mimikatz has such power and especially some weakness related to credential gathering and active directory will be exposed.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS19 Training Teaser: Hacking mobile applications</title>
      <link>https://insinuator.net/2019/01/troopers19-training-teaser-hacking-mobile-applications/</link>
      <pubDate>Wed, 16 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/troopers19-training-teaser-hacking-mobile-applications/</guid>
      <description>&lt;p&gt;“If it’s a thing, then there’s an app for it!”…We trust mobile apps to process our bank transactions, handle our private data and set us up on romantic dates. However, few of us care to wonder,”How (in)secure can these apps be?” Well… at Troopers 19, you can learn how to answer this question yourself!&lt;/p&gt;&#xA;&lt;p&gt;In our 2 day long “Hacking mobile applications” workshop, we teach how to find security vulnerabilities in mobile apps, exploit them and defend against them. We start from scratch, therefore no prior experience in hacking or developing mobile apps is required. Whether you want to learn how to pentest mobile apps, you are an app developer that fancies to secure his/her apps, or just curios, our workshop is a jumpstart to your goal.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS19 Training Teaser: Insight Into Windows Internals</title>
      <link>https://insinuator.net/2019/01/troopers19-training-teaser-insight-into-windows-internals/</link>
      <pubDate>Tue, 15 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/troopers19-training-teaser-insight-into-windows-internals/</guid>
      <description>&lt;p&gt;Windows 10 is one of the most commonly deployed operating systems at this time. Knowledge about its components and internal working principles is highly beneficial. Among other things, such a knowledge enables:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;in-depth studies of undocumented, or poorly documented, system functionalities;&lt;/li&gt;&#xA;&lt;li&gt;development of performant and compatible software to monitor or extend the activities of the operating system itself; and&lt;/li&gt;&#xA;&lt;li&gt;analysis of security-related issues, such as persistent malware.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The “Insight into Windows Internals” training offered at TROOPERS’19 delivers knowledge on the core components and inner working principles of Windows 10. For example, the training provides knowledge on how Windows 10 uses virtualization to isolate security-critical functionalities from attackers that have managed to compromise the system. The training includes a variety of practical exercises allowing attendees to observe first-hand the operation of Windows 10.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS19 Training Teaser: Hacking 101</title>
      <link>https://insinuator.net/2019/01/troopers19-training-teaser-hacking-101/</link>
      <pubDate>Mon, 14 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/troopers19-training-teaser-hacking-101/</guid>
      <description>&lt;p&gt;Hi there,&lt;br&gt;&#xA;like in recent years the popular &lt;a href=&#34;https://www.troopers.de/troopers19/trainings/beheul/&#34;&gt;Hacking 101 workshop&lt;/a&gt; will take place on TROOPERS19, too! The workshop will give you an insight into the &lt;strong&gt;hacking techniques&lt;/strong&gt; required for &lt;strong&gt;penetration testing&lt;/strong&gt;. These techniques will cover various topics:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Information gathering&lt;/li&gt;&#xA;&lt;li&gt;Network scanning&lt;/li&gt;&#xA;&lt;li&gt;Web application hacking&lt;/li&gt;&#xA;&lt;li&gt;Low-level exploitation&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;…and more!&lt;/p&gt;&#xA;&lt;p&gt;During this workshop &lt;strong&gt;you will learn&lt;/strong&gt;, step by step, a &lt;strong&gt;testing methodology&lt;/strong&gt; that applies to the majority of scenarios. So imagine you have to &lt;strong&gt;assess&lt;/strong&gt; the &lt;strong&gt;security of a system&lt;/strong&gt; running on the Internet. How would you start? First, you need a good understanding of the target, including running services or related systems. Just &lt;strong&gt;scanning&lt;/strong&gt; the target’s IP address will most likely not reveal all relevant information you can get. In the information gathering step, you will learn where you could find more relevant information than just a list of open ports. A brief understanding of the target and it’s related systems/services/applications will make scanning and &lt;strong&gt;identifying vulnerabilities&lt;/strong&gt; a lot easier and more effective. Then, the last step will be the &lt;strong&gt;exploitation&lt;/strong&gt; of the identified vulnerabilities, with the ultimate aim to &lt;strong&gt;get access to the target system&lt;/strong&gt; and pivot to other, probably internal, systems and resources.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS19 Training Teaser: Windows &amp;amp; Linux Binary Exploitation</title>
      <link>https://insinuator.net/2019/01/troopers19-training-teaser-windows-amp-linux-binary-exploitation/</link>
      <pubDate>Mon, 14 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/troopers19-training-teaser-windows-amp-linux-binary-exploitation/</guid>
      <description>&lt;p&gt;Once again Troopers will have its Windows &amp;amp; Linux Binary Exploitation workshop. Its main focus are the ever-present stack-based buffer overflows still found in software today (e.g. CVE-2018-5002, CVE-2018-1459, and CVE-2018-12897) and their differences with regard to exploitation on Windows and Linux systems. If you ever wanted to know the details of the exploit development process for these systems then this workshop is for you.&lt;/p&gt;&#xA;&lt;p&gt;After initial exercises involving the exploitation of classic stack-based buffer overflows, modern defense mechanism such as Stack Cookies, DEP, and ASLR are presented and analyzed for weaknesses. The participants will learn how these defense mechanisms can be bypassed and will develop exploits targeting real world applications such as the Foxit Reader Plugin for Firefox, Wireshark, and nginx.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS19 Training Teaser: Hardening Microsoft Environments</title>
      <link>https://insinuator.net/2019/01/troopers19-training-teaser-hardening-microsoft-environments/</link>
      <pubDate>Fri, 11 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/troopers19-training-teaser-hardening-microsoft-environments/</guid>
      <description>&lt;p&gt;“Credential Theft” or “Credential Reuse” attack techniques are the biggest known threats to Active Directory environments. This can be attributed to significant advances in and broad distribution of attack and reconnaissance tools such as mimikatz or Bloodhound. This means that after the first system in an environment is compromised it often takes less than 48 hours for a complete compromise of an Active Directory but unfortunately typically 8 to 9 months until the attack is discovered.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Secure CI/CD Pipelines @Troopers ’19</title>
      <link>https://insinuator.net/2019/01/secure-ci/cd-pipelines-@troopers-19/</link>
      <pubDate>Thu, 10 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/secure-ci/cd-pipelines-@troopers-19/</guid>
      <description>&lt;p&gt;In the last couple of months we participated in an increasing count of customer projects following current trends of agile software development approaches and corresponding toolstacks. Especially the terms &lt;em&gt;Continuous Integration&lt;/em&gt; and &lt;em&gt;Continuous Delivery&lt;/em&gt; kept (and still keep) popping up on every corner. The frameworks and processes behind those two hypes aid developing software at higher quality in shorter release cycles. This is especially relevant since end consumers nowadays expect fast releases including the newest features. If companies neglect this demand, competitors might take advantage of their better time-to-market which might result in increased market share and -dominance. A lot of changes are happening in the space of CI/CD. Existing tools become more mature, gaining increased attention, and new ones are appearing every month including better ways of integrating them into existing or new processes. Companies benefit from more choices, increased flexibility, and faster integration into existing company policies.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blackhoodie at TROOPERS19</title>
      <link>https://insinuator.net/2019/01/blackhoodie-at-troopers19/</link>
      <pubDate>Fri, 04 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/blackhoodie-at-troopers19/</guid>
      <description>&lt;p&gt;We are going to have a &lt;a href=&#34;https://insinuator.net/tag/blackhoodie/&#34;&gt;Blackhoodie event&lt;/a&gt; at &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers 2019&lt;/a&gt; on March 18th and 19th in Heidelberg. With a very exciting event last year, we have decided to roll it once again during Troopers.&lt;/p&gt;&#xA;&lt;p&gt;As always, one of the main motivation for &lt;a href=&#34;https://www.blackhoodie.re/about/&#34;&gt;Blackhoodie&lt;/a&gt; is bringing more women into reversing and other core security topics. So we would like to see more women apply to the training slots. However, if you are not a women and still feel really excited about Blackhoodie, you are welcome to apply. We do have a very limited number of seats at this training site. So we apologize in advance if we can’t accommodate everyone, even though we wish we could! Please apply before &lt;strong&gt;“February 10th”&lt;/strong&gt; and we will contact you regarding next steps.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Catching fire with Docker, DevOps &amp;amp; Security in Enterprise Environments</title>
      <link>https://insinuator.net/2019/01/catching-fire-with-docker-devops-amp-security-in-enterprise-environments/</link>
      <pubDate>Fri, 04 Jan 2019 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2019/01/catching-fire-with-docker-devops-amp-security-in-enterprise-environments/</guid>
      <description>&lt;p&gt;Docker has become the go-to technology in enterprise- and DevOps contexts. Yet, before mastering a skill, there is the thumb rule: one must learn the basics to have solid fundament before building a house on top.&lt;/p&gt;&#xA;&lt;p&gt;Simon and I start from the very beginning. We introduce you to the fundamental concepts of containers starting at process isolation and extending our tour to the whole ecosystem of Docker and further associated technologies. We will cover Docker, microservices, containers, DevOps, continuous integration/deployment/delivery – all those fancy buzzwords that can be read in the context of modern software development methodologies.&lt;/p&gt;</description>
    </item>
    <item>
      <title>And Five Talks More Were Accepted at TROOPERS19!</title>
      <link>https://insinuator.net/2018/12/and-five-talks-more-were-accepted-at-troopers19/</link>
      <pubDate>Mon, 10 Dec 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/12/and-five-talks-more-were-accepted-at-troopers19/</guid>
      <description>&lt;p&gt;And five talks more were chosen for TROOPERS19! It sounds like it is going to be the best year ever again…&lt;/p&gt;&#xA;&lt;p&gt;Follow us on Twitter (&lt;a href=&#34;https://twitter.com/WEareTROOPERS&#34;&gt;@WEareTROOPERS&lt;/a&gt;) for more information and do not hesitate to use our hashtag #TR19 when you have questions or remarks about TROOPERS19!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;——————————–&lt;/p&gt;&#xA;&lt;h1 id=&#34;not-a-security-boundary-breaking-forest-trusts-by-will-schroeder-lee-christensen&#34;&gt;Not A Security Boundary: Breaking Forest Trusts by Will Schroeder, Lee Christensen&lt;/h1&gt;&#xA;&lt;p&gt;Presenting at the Active Directory Security Track&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Abstract:&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>First Talks of TROOPERS19 Accepted!</title>
      <link>https://insinuator.net/2018/11/first-talks-of-troopers19-accepted/</link>
      <pubDate>Thu, 29 Nov 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/11/first-talks-of-troopers19-accepted/</guid>
      <description>&lt;p&gt;TROOPERS18 was the best year ever (did you check our &lt;a href=&#34;https://troopers.de/archives/&#34;&gt;archives&lt;/a&gt;?) and it will be challenging to do better… However, we accept the challenge!&lt;/p&gt;&#xA;&lt;p&gt;The trainings and talks were from high quality and choices were difficult to make… We hope you will enjoy reading these little teasers!&lt;/p&gt;&#xA;&lt;p&gt;Follow us on Twitter (&lt;a href=&#34;https://twitter.com/WEareTROOPERS&#34;&gt;@WEareTROOPERS&lt;/a&gt;) for more information and do not hesitate to use our hashtag #TR19 when you have questions or remarks about TROOPERS19!&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS18 Photos online!</title>
      <link>https://insinuator.net/2018/05/troopers18-photos-online/</link>
      <pubDate>Thu, 03 May 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/05/troopers18-photos-online/</guid>
      <description>&lt;p&gt;We are very excited to publish some (more to come!) of our photos from &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt;! Based on feedback from #TR18 we would also like to take a moment for our official TROOPERS photographer to introduce himself and tell you a little about what inspires him.&lt;/p&gt;&#xA;&lt;p&gt;Peter Walter is a 37 year old photographer based in Germany near Stuttgart. For many years now he is the official TROOPERS photographer and very proud to be part of the Troopers family.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Attack &amp; Research Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-attack-research-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-attack-research-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; Attack &amp;amp; Research Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;reverse-engineering-blackbox-systems-with-greatfet--facedancer-by-kate-temkin-and-dominic-spill&#34;&gt;Reverse Engineering Blackbox Systems with GreatFET &amp;amp; Facedancer by Kate Temkin and Dominic Spill&lt;/h1&gt;&#xA;&lt;p&gt;USB is everywhere, your phone, gaming consoles, IoT waffle irons, you name it. Due to its’ widespread use in everyday life it is typically trusted by the user. And even if one wanted to find out what’s happening behind the scenes, surely digging into USB communication is too much of a chore to be worth the hassle, right? This talk by Kate Temkin and Dominic Spill are about to prove that very wrong with an impressive display of their tools &lt;a href=&#34;https://greatscottgadgets.com/greatfet/&#34;&gt;GreatFET&lt;/a&gt; and &lt;a href=&#34;https://github.com/ktemkin/Facedancer&#34;&gt;Facedancer&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Defense &amp; Management Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-defense-management-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-defense-management-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; Defense &amp;amp; Management Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;all-your-cloud-are-belong-to-us&#34;&gt;All Your Cloud Are Belong to Us&lt;/h1&gt;&#xA;&lt;p&gt;The talk “All Your Cloud Belong Are Belong to Us” was held by &lt;a href=&#34;https://twitter.com/dk_effect&#34;&gt;Nate Warfield&lt;/a&gt;, who is a Senior Security Program Manager for the Microsoft Security Response Center (MSRC).&lt;br&gt;&#xA;Before Microsoft he worked as a network engineer about 18 years and 10 of this for a large amount of cell phone companies.&lt;br&gt;&#xA;Nate gives an overview about the state of the cloud solution provided by Microsoft, Azure, and how he hunts vulnerabilities in this environment.&lt;br&gt;&#xA;Finally he concludes that the giving up your infrastructure to the cloud doesn’t mean that you give up your responsibility.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Next Generation Internet (NGI) Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-next-generation-internet-ngi-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-next-generation-internet-ngi-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; Next Generation Internet Event.&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;h1 id=&#34;ngi-keynote-by-graeme-neilson&#34;&gt;NGI Keynote by &lt;a href=&#34;https://www.troopers.de/events/speaker/7_graeme_neilson/&#34;&gt;Graeme Neilson&lt;/a&gt;&lt;/h1&gt;&#xA;&lt;p&gt;Before his infosec career Graeme was a street performer, then security researcher, now he calls himself a defender. The talk was built around the following sentence: “The infosec industry and community have completely failed to create meaningful change in the behavior of people”.&lt;/p&gt;&#xA;&lt;p&gt;The following example is a resume of how hacking worked from 1988 to 2017:&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 SAP Security Summaries</title>
      <link>https://insinuator.net/2018/03/%23tr18-sap-security-summaries/</link>
      <pubDate>Fri, 23 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-sap-security-summaries/</guid>
      <description>&lt;p&gt;This blogpost contains summaries of talks from this year’s &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;TROOPERS18&lt;/a&gt; SAP Security Track.&lt;/p&gt;&#xA;&lt;h1 id=&#34;sap-igs--the-vulnerable-forgotten-component-by-yvan-genuer&#34;&gt;SAP IGS : The ‘vulnerable’ forgotten component by Yvan Genuer&lt;/h1&gt;&#xA;&lt;p&gt;The Internet Graphics Server (IGS) is used to generate Web Based graphics from the SAP Web AS. Yvan Genuer looked at the security of an ancient component with very few public vulnerabilities available so far. In his talk he gave us insights on the structure of the IGS, its services, and problems he had when looking for documentation of the IGS and its components.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Active Directory Security Track, Part 1</title>
      <link>https://insinuator.net/2018/03/%23tr18-active-directory-security-track-part-1/</link>
      <pubDate>Thu, 22 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/%23tr18-active-directory-security-track-part-1/</guid>
      <description>&lt;p&gt;This is the first post discussing talks of the &lt;em&gt;Active Directory Security Track&lt;/em&gt; of &lt;a href=&#34;https://www.troopers.de/troopers18/&#34;&gt;this year’s Troopers&lt;/a&gt; which took place last week in Heidelberg (like in the last nine years ;-). It featured, amongst others, a new track focused on Microsoft AD and its security properties &amp;amp; implications. &lt;a href=&#34;https://www.troopers.de/troopers18/agenda/#agenda-day--2018-03-15&#34;&gt;This&lt;/a&gt; was the agenda.&lt;/p&gt;&#xA;&lt;p&gt;The idea for this special track was born out of two considerations:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;we had noted there’s a lot of stuff going on in the space, both on the offense and on the defense side. And in pretty much every incident analysis &amp;amp; response project we were brought in recently Active Directory played a huge role…&lt;/li&gt;&#xA;&lt;li&gt;already in the early phase of the CfP several interesting submissions came in (maybe due to the fact that some big guns of the field had voiced &lt;a href=&#34;https://twitter.com/mattifestation/status/906180147203645440&#34;&gt;very&lt;/a&gt; &lt;a href=&#34;https://twitter.com/christruncer/status/845321214788849666&#34;&gt;kind&lt;/a&gt; &lt;a href=&#34;https://twitter.com/harmj0y/status/710229755795144704&#34;&gt;words&lt;/a&gt; &lt;a href=&#34;https://twitter.com/subTee/status/972191912277901312&#34;&gt;in&lt;/a&gt; &lt;a href=&#34;https://twitter.com/Cneelis/status/845321978089295872&#34;&gt;the&lt;/a&gt; &lt;a href=&#34;https://twitter.com/PyroTek3/status/918214609273868288&#34;&gt;past&lt;/a&gt;)… and creating an extra track simply relieved us from the burden to make a tough choice between those.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;As this was the first Troopers since its creation where I didn’t have any official roles and out of personal interest (in a very distant past I happened to be the co-author of the first German book on &lt;a href=&#34;https://www.amazon.de/Security-unter-Windows-NT-4/dp/3778526707/&#34;&gt;Windows NT4 Security&lt;/a&gt;)  I decided to spend the majority of conference day 2 in the AD track. In hindsight I’m tempted to say that the track was a huge success: brilliant talks, pretty much always a packed room, and quite good discussions after the talks. (yes, of course I’m biased, what makes you think that?).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Squirrelmail Full Disclosure – TROOPERS18</title>
      <link>https://insinuator.net/2018/03/squirrelmail-full-disclosure-troopers18/</link>
      <pubDate>Thu, 15 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/squirrelmail-full-disclosure-troopers18/</guid>
      <description>&lt;p&gt;Birk an me basically fully disclosed a 0day in &lt;a href=&#34;http://squirrelmail.org/&#34;&gt;Squirrelmail&lt;/a&gt; yesterday. This is a short Q&amp;amp;A to answer the most common questions about the issue to calm you all down a little bit. 😉&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;What is the punchline, what do I need to know?&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;An attacker able to exploit this vulnerability can extract files of the server the application is running on. This may include configuration files, log files and additionally all files that are readable for all users on the system. This issue is post-authentication. That means an attacker would need valid credentials for the application to log in or needs to exploit an additional vulnerability of which we are not aware of at this point of time.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The Hackers‘ Sanctuary City</title>
      <link>https://insinuator.net/2018/03/the-hackers-sanctuary-city/</link>
      <pubDate>Wed, 14 Mar 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/03/the-hackers-sanctuary-city/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://youtu.be/wCMwTUS3k4c&#34;&gt;https://youtu.be/wCMwTUS3k4c&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://troopers.de&#34;&gt;&lt;strong&gt;TROOPERS&lt;/strong&gt;&lt;/a&gt; has a long history of theming the conference every year. Usually we pick a surreal topic, a fun story which we think is worth to pick up on. Some of it starts as a crazy thought, others have been the result of long discussions. Most of them are online, only our master piece from 2016 is securely stored in the company’s vaults.&lt;/p&gt;&#xA;&lt;p&gt;&lt;img src=&#34;fake_news.png&#34; alt=&#34;&#34;&gt;&lt;/p&gt;&#xA;&lt;p&gt;However, this year was different. Traveling across the globe, speaking at and attending other conferences, connecting with our peers and the community, we felt that 2017 was a particularly tough year for many of us, both professionally and personally. There was this doom and gloom baseline to it.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2018 – Talks Part2</title>
      <link>https://insinuator.net/2018/02/telcosecday-2018-talks-part2/</link>
      <pubDate>Mon, 26 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/telcosecday-2018-talks-part2/</guid>
      <description>&lt;p&gt;We have the next set of selected talks being announced here. I am super excited about the variety of applications we had this year. Here are some of the talks we will have.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Title: From LoRa technology to deployment within Orange affiliates&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;em&gt;Speakers: Franck L’Hereec and  Albert Nguyen&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;Just deployed, the LoRa technology has already passed into the hands of hackers who have analyzed the LoRaWAN protocol as well as the objects and gateways that implement it. At Orange, Orange Labs’ security experts have therefore looked into those issues, first to understand it better, and also ensure the network’s deployment in optimal security conditions. Demonstration via the example of the treatment of the security of an innovation project by Orange. During the presentation we will present :&lt;/p&gt;</description>
    </item>
    <item>
      <title>TLS in the Enterprise: Is Heartbleed still a Problem?</title>
      <link>https://insinuator.net/2018/02/tls-in-the-enterprise-is-heartbleed-still-a-problem/</link>
      <pubDate>Fri, 16 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/tls-in-the-enterprise-is-heartbleed-still-a-problem/</guid>
      <description>&lt;p&gt;Our new workshop about &lt;a href=&#34;https://troopers.de/troopers18/trainings/9afapk/&#34;&gt;TLS/SSL in the enterprise&lt;/a&gt; will be held for the 1st time at Troopers 2018. So I would like to take the opportunity and post a short teaser about stuff we will cover in this workshop.&lt;/p&gt;&#xA;&lt;p&gt;TLS/SSL is a complicated topic especially in enterprise environments due to the fact, that&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;encrypted traffic should be inspected e.g. for malware&lt;/li&gt;&#xA;&lt;li&gt;customers/users must be able to use important applications&lt;/li&gt;&#xA;&lt;li&gt;crypto attacks are complex and sometimes considered to be only a problem in theory&lt;/li&gt;&#xA;&lt;li&gt;the internal CERT wants to have every issue fixed, if feasible or not 😉&lt;/li&gt;&#xA;&lt;li&gt;impact of configuration changes can not be foreseen&lt;/li&gt;&#xA;&lt;li&gt;Software inventory is incomplete (do you want to make a bet that Heartbleed is fixed completely in your environment ;-)? )&lt;/li&gt;&#xA;&lt;li&gt;… and so forth&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;In the workshop we will cover all these points, discuss them and share our experience regarding feasibility and useful mitigating controls. We will explain the most common SSL vulnerabilities/attacks, demonstrate tools to test (and sometimes to exploit) them, point out pitfalls and recommend what to do. Let us have a look at one example, Heartbleed:&lt;/p&gt;</description>
    </item>
    <item>
      <title>Extracting data from an EMV (Chip-And-Pin) Card with NFC technology</title>
      <link>https://insinuator.net/2018/02/extracting-data-from-an-emv-chip-and-pin-card-with-nfc-technology/</link>
      <pubDate>Thu, 15 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/extracting-data-from-an-emv-chip-and-pin-card-with-nfc-technology/</guid>
      <description>&lt;p&gt;&lt;em&gt;This is a guest blog post by Salvador Mendoza.&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;During years, many different researches and attacks against digital and physical payment methods have been discussed. New security techniques and methodologies such as tokenization process attempts to reduce or prevent fraudulent transactions.&lt;/p&gt;&#xA;&lt;p&gt;Extracting or capturing data from a transaction have been studied in different ways, and some of the most common techniques are skimming, wireless skimming, &lt;a href=&#34;https://media.defcon.org/DEF%20CON%2025/DEF%20CON%2025%20presentations/DEFCON-25-Haoqi-Shan-and-Jian-Yuan-Man-in-the-NFC.pdf&#34;&gt;relay attacks&lt;/a&gt;, traffic sniffing or &lt;a href=&#34;https://www.cl.cam.ac.uk/research/security/banking/relay/&#34;&gt;modifying a PoS(Point of Sale)&lt;/a&gt; system. In our talk, “&lt;a href=&#34;https://www.troopers.de/troopers18/agenda/tr18-nfc-payments/&#34;&gt;NFC Payments: The Art of Relay &amp;amp; Replay Attacks&lt;/a&gt;” at &lt;a href=&#34;https://www.troopers.de/&#34;&gt;TROOPERS18&lt;/a&gt;, we will discuss a new technique and methodology that malicious individuals could implement to extract data.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Get your hands dirty playing with RFID/NFC</title>
      <link>https://insinuator.net/2018/02/get-your-hands-dirty-playing-with-rfid/nfc/</link>
      <pubDate>Wed, 14 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/get-your-hands-dirty-playing-with-rfid/nfc/</guid>
      <description>&lt;p&gt;&lt;em&gt;This is a guest blog post by Nahuel Grisolia.&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;The first time I’ve heard about RFID was at high school, back in 2002, when I was studying Electronics. Back in that time, this technology was like some sort of black magic to me. A few years later in 2011, our government in Argentina decided to implement a “new technology” called NFC, designed as the new and only way of payment for the use of public transport. So, I decided to understand it better, play with it, and try some hacks I heard from the cool people of the CCC.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blackhoodie at TROOPERS18</title>
      <link>https://insinuator.net/2018/02/blackhoodie-at-troopers18/</link>
      <pubDate>Fri, 02 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/blackhoodie-at-troopers18/</guid>
      <description>&lt;p&gt;We are thrilled to announce the &lt;a href=&#34;https://insinuator.net/tag/blackhoodie/&#34;&gt;Blackhoodie event&lt;/a&gt; at &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers 2018&lt;/a&gt; on March 12th and 13th in Heidelberg. This time it is going to be a 2 day workshop with various interesting topics related to reverse engineering. We will make sure that you get some hands on experience with reversing and more.&lt;/p&gt;&#xA;&lt;p&gt;As always, one of the main motivation for &lt;a href=&#34;https://www.blackhoodie.re/about/&#34;&gt;Blackhoodie&lt;/a&gt; is bringing more women into reversing.&lt;br&gt;&#xA;So we would like to see more women apply to the training slots. However, we are open to everyone who would like to apply. We do have a very limited number of seats at this training site. So we apologize in advance if we can’t accommodate everyone, even though we wish we could! Please apply before &lt;strong&gt;“February 20th”&lt;/strong&gt; and we will contact you regarding next steps.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Virtualized Training Environment with Ansible</title>
      <link>https://insinuator.net/2018/02/virtualized-training-environment-with-ansible/</link>
      <pubDate>Fri, 02 Feb 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/02/virtualized-training-environment-with-ansible/</guid>
      <description>&lt;p&gt;As Kai and I will be holding a &lt;a href=&#34;https://troopers.de/troopers18/trainings/tr18-automation-with-ansible/&#34;&gt;TROOPERS workshop on automation with ansible&lt;/a&gt;, we needed a setup for the attendees to use &lt;a href=&#34;https://www.ansible.com/&#34;&gt;ansible&lt;/a&gt; against virtual machines we set up with the necessary environment. The idea was, that every attendee has their own VMs to run ansible against, ideally including one to run ansible from, as we want to avoid setup or version incompatibilities if they set up their own ansible environment on their laptop.  Also they should only be able to talk to their own machines, thus avoiding conflicts because of accidental usage of wrong IPs or host names but also simplify the setup for the users.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR18 Active Directory Security Track</title>
      <link>https://insinuator.net/2018/01/%23tr18-active-directory-security-track/</link>
      <pubDate>Fri, 05 Jan 2018 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2018/01/%23tr18-active-directory-security-track/</guid>
      <description>&lt;p&gt;A happy new year to everybody!&lt;/p&gt;&#xA;&lt;p&gt;At &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers18&lt;/a&gt; there will be a new special track on Microsoft Active Directory and its security aspects, similar to the SAP security track which we established some years ago. The AD security track will feature, amongst others, the following talks.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Sean Metcalf: Active Directory Security. The Journey&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Abstract&lt;/strong&gt;: This talk is a journey into the challenges most organizations encounter while trying to secure their ‘castle’. The attacker has to be right only once, right? Not exactly. We will walk through effective security strategies that will stymie and frustrate attackers and better protect the Active Directory environment.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Announcing the first 5 talks of TROOPERS18!!!!</title>
      <link>https://insinuator.net/2017/11/announcing-the-first-5-talks-of-troopers18/</link>
      <pubDate>Wed, 29 Nov 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/11/announcing-the-first-5-talks-of-troopers18/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/troopers17/&#34;&gt;TROOPERS17&lt;/a&gt; was unlike any TROOPERS we had known before. Everything just seemed bolder, better, and beyond our expectations. From surprise speakers like &lt;a href=&#34;https://twitter.com/thegrugq&#34;&gt;the grugq&lt;/a&gt; (do you have a follow-up talk for #TR18 by the way?) to new speakers who are now TROOPERS family, TROOPERS17 is one for the history books!&lt;/p&gt;&#xA;&lt;p&gt;If you were there you might be wondering to yourself, how could they possibly top it (and if you were not there check out this &lt;a href=&#34;https://www.youtube.com/watch?v=pfA63LGkf0w&#34;&gt;video from TR17&lt;/a&gt;)? Well, I am not going to lie, it will be a challenge. However, the high quality of talk and training submissions for this year have us feeling pretty positive about making #TR18 the “best year ever”!&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS for Students!</title>
      <link>https://insinuator.net/2017/10/troopers-for-students/</link>
      <pubDate>Thu, 12 Oct 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/10/troopers-for-students/</guid>
      <description>&lt;p&gt;We are super excited for &lt;a href=&#34;https://www.troopers.de/&#34;&gt;TROOPERS18&lt;/a&gt; (March 12-16th, 2018) as are many of you! We even have this great saying that “&lt;em&gt;after&lt;/em&gt; TROOPERS is &lt;em&gt;before&lt;/em&gt; TROOPERS”, which means we spend a lot of time looking through feedback from attendees, speakers/trainers, and our own Crew for ways to not only top what we’ve done in the years before, but also how to simply make it &lt;strong&gt;better&lt;/strong&gt; for everyone involved.  Looking around at our Crew we realized how many have either attended TROOPERS or other conferences as students. We heard from them, as well as other students, how life changing it was to be able, as a student, to attend an IT-Security conference. How they got to meet a speaker whose work they’d read about in class. How people felt even more a part of the community they were studying hard to belong to. &lt;/p&gt;</description>
    </item>
    <item>
      <title>Some Quick Tips for Submitting a Talk to Black Hat or TROOPERS</title>
      <link>https://insinuator.net/2017/04/some-quick-tips-for-submitting-a-talk-to-black-hat-or-troopers/</link>
      <pubDate>Sat, 01 Apr 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/04/some-quick-tips-for-submitting-a-talk-to-black-hat-or-troopers/</guid>
      <description>&lt;p&gt;Given the &lt;a href=&#34;https://www.blackhat.com/us-17/call-for-papers.html&#34;&gt;CfP for Black Hat US&lt;/a&gt; in Vegas ends in a few days – and as apparently &lt;a href=&#34;https://twitter.com/HashtagCyber/status/846093463120678913&#34;&gt;some&lt;/a&gt; &lt;a href=&#34;https://twitter.com/christruncer/status/845213468269662209&#34;&gt;people&lt;/a&gt; have already started to think about their TR18 submissions – I’ll quickly provide some loose recommendations on how to write a submission here. There’s quite some reasonable advice out there already (the BH CfP site lists &lt;a href=&#34;https://www.helpnetsecurity.com/2016/03/30/how-to-get-your-talk-accepted-at-black-hat/&#34;&gt;this&lt;/a&gt; and &lt;a href=&#34;http://hexsec.blogspot.de/2012/12/create-good-security-cfp-responses.html&#34;&gt;this&lt;/a&gt; which you should both read as well) but some of you might find it useful to get (yet) another perspective.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers17 GSM Network – How about your own SMPP Service?</title>
      <link>https://insinuator.net/2017/03/troopers17-gsm-network-how-about-your-own-smpp-service/</link>
      <pubDate>Wed, 01 Mar 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/03/troopers17-gsm-network-how-about-your-own-smpp-service/</guid>
      <description>&lt;p&gt;The event of the events is getting closer and again, we are very optimistic to have a lot of awesome &lt;a href=&#34;https://www.troopers.de/&#34;&gt;trainings, talks, evening events&lt;/a&gt;, and discussions. But we again will also have some “features” and gimmicks for those of you who would like to play with new, old, or just interesting technologies. As you might remember, since some years one of these features is and again will be our own GSM Network. As we are improving &lt;a href=&#34;https://insinuator.net/2016/03/troopers16-gsm-network-2/&#34;&gt;our setup&lt;/a&gt; from year to year, this time we’d like to give you the chance to actively participate with ideas and your own services.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TR17 Training: Hacking 101</title>
      <link>https://insinuator.net/2017/01/tr17-training-hacking-101/</link>
      <pubDate>Thu, 26 Jan 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/01/tr17-training-hacking-101/</guid>
      <description>&lt;p&gt;Hi there,&lt;br&gt;&#xA;Like in recent years the popular &lt;a href=&#34;https://www.troopers.de/events/troopers17/735_hacking_101/&#34;&gt;Hacking 101 workshop&lt;/a&gt; will take place on TROOPERS17, too! The workshop will give attendees an insight into the &lt;strong&gt;hacking techniques&lt;/strong&gt; required for &lt;strong&gt;penetration testing&lt;/strong&gt;. These techniques will cover various topics:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;information gathering&lt;/li&gt;&#xA;&lt;li&gt;network scanning&lt;/li&gt;&#xA;&lt;li&gt;web application hacking&lt;/li&gt;&#xA;&lt;li&gt;low-level exploitation&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;…and more!&lt;/p&gt;&#xA;&lt;p&gt;During this workshop &lt;strong&gt;you will learn&lt;/strong&gt;, step by step, a &lt;strong&gt;testing methodology&lt;/strong&gt; that is applicable to the majority of scenarios. So imagine you have to &lt;strong&gt;assess&lt;/strong&gt; the &lt;strong&gt;security of a system&lt;/strong&gt; running on the Internet. How would you start? First, you need a good understanding about the target, including running services or related systems. Just &lt;strong&gt;scanning&lt;/strong&gt; an IP will most likely not reveal a lot of information about the system. The gathered information may help you to identify communication relations of services that could include vulnerabilities. A brief understanding of the target and it’s related systems/services/applications will make scanning and &lt;strong&gt;identifying vulnerabilities&lt;/strong&gt; a lot easier and more effective. Then, the last step will be the &lt;strong&gt;exploitation&lt;/strong&gt; of the identified vulnerabilities, with the ultimate aim to &lt;strong&gt;get access to the target system&lt;/strong&gt; and pivot to other, probably internal, systems and resources.&lt;/p&gt;</description>
    </item>
    <item>
      <title>First dedicated Forensic Computing Training at TR17</title>
      <link>https://insinuator.net/2017/01/first-dedicated-forensic-computing-training-at-tr17/</link>
      <pubDate>Wed, 11 Jan 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/01/first-dedicated-forensic-computing-training-at-tr17/</guid>
      <description>&lt;p&gt;I am looking forward to our newly introduced dedicated Forensic Computing Training at TR17!&lt;br&gt;&#xA;We will start the first day with a detailed background briefing about Forensic Computing as a Forensic Science, Digital Evidence, and the Chain of Custody. The rest of the workshop we will follow the Order of Volatility starting with the analysis of persistent storage using file system internals and carving, as well as RAID reassembly with lots of hands-on case studies using open source tools. As a next step, we will smell the smoking gun in live forensics exercises. Depending on your preferences we will then dig a bit into memory forensics and network forensics.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2017 – 2nd Round of Talks</title>
      <link>https://insinuator.net/2017/01/telcosecday-2017-2nd-round-of-talks/</link>
      <pubDate>Tue, 03 Jan 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/01/telcosecday-2017-2nd-round-of-talks/</guid>
      <description>&lt;p&gt;Hello and a Happy new Year!&lt;/p&gt;&#xA;&lt;p&gt;There are only two and a half months left, so I’d like to publish the next two talks for &lt;a href=&#34;https://www.troopers.de/troopers17/telcosec-day/&#34;&gt;TelcoSecDay 2017&lt;/a&gt;, taking place at 21st of March in Heidelberg. Both talks are about the security of an upcoming technology which importance will raise in near future: 5G Networks.&lt;/p&gt;&#xA;&lt;p&gt;One of the talks will be from an attacker’s point of view, highlighting weaknesses of 2G/3G/4G networks and what we have to fix in 5G, and the other one will give us insights into current developments of the 3GPP standardization group.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TR17 Training: Crypto attacks and defenses</title>
      <link>https://insinuator.net/2017/01/tr17-training-crypto-attacks-and-defenses/</link>
      <pubDate>Tue, 03 Jan 2017 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2017/01/tr17-training-crypto-attacks-and-defenses/</guid>
      <description>&lt;p&gt;This is a guest blog written by &lt;a href=&#34;https://www.troopers.de/events/speaker/557_jean-philippe_aumasson/&#34;&gt;Jean-Philippe Aumasson&lt;/a&gt; &amp;amp; &lt;a href=&#34;https://www.troopers.de/events/speaker/978_philipp__jovanovic/&#34;&gt;Philipp Jovanovic&lt;/a&gt; about their upcoming TROOPERS17 training: &lt;a href=&#34;https://www.troopers.de/events/troopers17/725_crypto_attacks_and_defenses/&#34;&gt;Crypto attacks and defenses. &lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;The &lt;a href=&#34;https://www.troopers.de/events/troopers16/578_crypto_for_developers/&#34;&gt;1-day training from last TROOPERS&lt;/a&gt; has become a 2-day training, featuring even more real-world attacks and defenses as well as new hands-on sessions! We’ll teach you, step by step, how to spot and exploit crypto vulnerabilities, how to use the strongest forms of state-of-the-art cryptography to secure modern systems (like IoT or mobile applications), and bring you up to speed on the latest and greatest developments in the world of cryptography, such as TLS 1.3, blockchains, and post-quantum crypto.&lt;/p&gt;</description>
    </item>
    <item>
      <title>3rd Round of TROOPERS17 Talks</title>
      <link>https://insinuator.net/2016/12/3rd-round-of-troopers17-talks/</link>
      <pubDate>Tue, 20 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/3rd-round-of-troopers17-talks/</guid>
      <description>&lt;p&gt;We had to make some tough choices regarding our &lt;a href=&#34;http://troopers.de&#34;&gt;TROOPERS17&lt;/a&gt; Main Conference Agenda. Thank you again to everyone for submitting! The full agenda will be published later this week, but for now here are the next round of talks!&lt;/p&gt;&#xA;&lt;p&gt;Ivan Pepelnjak: &lt;em&gt;Securing Network Automation&lt;/em&gt;&lt;br&gt;&#xA;If you have operational experience in running large networks then you’re probably yearning to replace the traditional way of managing individual network devices via SSH with something better and more reliable. Software Defined Networking (SDN) was touted as the all-encompassing solution, but what we got instead is a heap of academic ideas, several platforms that require as much investment as an SAP deployment, and a bunch of proprietary products focused more on increasing lock-in and vendor revenue than solving operational problems.&lt;/p&gt;</description>
    </item>
    <item>
      <title>PoC Con Seoul 2016</title>
      <link>https://insinuator.net/2016/12/poc-con-seoul-2016/</link>
      <pubDate>Thu, 15 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/poc-con-seoul-2016/</guid>
      <description>&lt;p&gt;Recently I had the pleasure to join the &lt;a href=&#34;http://www.powerofcommunity.net/&#34;&gt;PowerOfCommunity&lt;/a&gt; conference in Seoul. Florian and Felix attended the conference in the past and enjoyed it a lot, so I took the opportunity to join this year. From what I had heard the conference is highly technical, offensive security and community focused (surprise 😉 ). Boy did they deliver!&lt;br&gt;&#xA;Located in a hotel next to a nice park and close to the famous Gangnam district in Seoul we came together to feel the power of community. The conference was planned for two days and offered two tracks per day. Several key talks were presented for everyone.&lt;br&gt;&#xA;I really liked the topics a lot. Some contributions I found particularly interesting were:&lt;br&gt;&#xA;Petr Švenda with “The Million-Key Question – How RSA Public Key Leaks Its Origin”, where he presented his research of fingerprinting RSA public keys. By analyzing the RSA keys from smartcards and software sources he was able to find similarities between them, which allowed fingerprinting the generating source for some cases. With this information it could be possible gather some potentially important details from simple keys. He is currently expanding his work, please send him an E-Mail if you have RSA keys from an exotic resource. 😉&lt;/p&gt;</description>
    </item>
    <item>
      <title>TR17 Training: Fuzzing with American Fuzzy Lop, Address Sanitizer and LibFuzzer</title>
      <link>https://insinuator.net/2016/12/tr17-training-fuzzing-with-american-fuzzy-lop-address-sanitizer-and-libfuzzer/</link>
      <pubDate>Thu, 15 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/tr17-training-fuzzing-with-american-fuzzy-lop-address-sanitizer-and-libfuzzer/</guid>
      <description>&lt;p&gt;This is a guest blog written by &lt;a href=&#34;https://hboeck.de/&#34;&gt;Hanno Böck&lt;/a&gt; who will be running the &lt;a href=&#34;https://www.troopers.de/events/troopers17/737_fuzzing_with_american_fuzzy_lop_address_sanitizer_and_libfuzzer/&#34;&gt;Fuzzing with American Fuzzy Lop, Address Sanitizer and LibFuzzer&lt;/a&gt; at TROOPERS17.&lt;/p&gt;&#xA;&lt;p&gt;Fuzzing is a very old technique to find bugs and vulnerabilities in software. However it has seen a new push in recent years due to vastly improved tools. The compilers gcc and clang have received Sanitizer tools that allow finding a lot of bugs like use after free errors and out of bounds reads that are otherwise very hard to find.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2nd Rounds of TROOPERS17 Talks!</title>
      <link>https://insinuator.net/2016/12/2nd-rounds-of-troopers17-talks/</link>
      <pubDate>Wed, 14 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/2nd-rounds-of-troopers17-talks/</guid>
      <description>&lt;p&gt;It is the end of the year and we are hoping it is not too hectic of a time for you all! But if it is, hopefully the announcement of our next round of &lt;a href=&#34;http://troopers.de&#34;&gt;TROOPERS17&lt;/a&gt; talks is enough to get you in the TROOPERS (if not the holiday) spirit 🙂&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt;Francis Alexander &amp;amp; Bharadwaj Machiraju: &lt;em&gt;How we hacked Distributed Configuration Management Systems&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;With increase in necessity of distributed applications, coordination and configuration management tools for these classes of applications have popped up. These systems might pop-up occasionally during penetration tests. The major focus of this research was to find ways to abuse these systems as well as use them for getting deeper access to other systems.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2017 – First Talks Published</title>
      <link>https://insinuator.net/2016/12/telcosecday-2017-first-talks-published/</link>
      <pubDate>Thu, 08 Dec 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/12/telcosecday-2017-first-talks-published/</guid>
      <description>&lt;p&gt;Even if the CFP for TelcoSecDay 2017 is officially closed, I am still getting mails in. First of all: thank you for all your great feedback! As the TelcoSecDay is a complimentary and non-public event with highly specialized topics, it only works by sharing knowledge with each other. But please keep in mind that the speaker-slots are limited and I have to make a decision at some point of time.&lt;br&gt;&#xA;Anyhow, I am looking forward for a great event and I am proud to publish the first accepted talks:&lt;/p&gt;</description>
    </item>
    <item>
      <title>Announcing the first 5 talks of TROOPERS17!!!!</title>
      <link>https://insinuator.net/2016/11/announcing-the-first-5-talks-of-troopers17/</link>
      <pubDate>Fri, 04 Nov 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/11/announcing-the-first-5-talks-of-troopers17/</guid>
      <description>&lt;h2&gt;&lt;/h2&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;TROOPERS16&lt;/a&gt; was packed with epic talks from around the world, an unknown evil twin brother appearing, hands-on trainings, and a legendary year for our TROOPERS Charity efforts! If you were there you might be wondering to yourself how could they possibly top it? Well, I am going to let you in on a little secret: Next year is the 10th edition of &lt;a href=&#34;https://www.troopers.de/troopers17/&#34;&gt;TROOPERS&lt;/a&gt;. One DECADE of TROOPERS, and we are pulling out all the stops! Starting with the announcement of the first 5 talks!&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2017 – CFP Opens</title>
      <link>https://insinuator.net/2016/10/telcosecday-2017-cfp-opens/</link>
      <pubDate>Sat, 29 Oct 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/10/telcosecday-2017-cfp-opens/</guid>
      <description>&lt;p&gt;For the 6th year in a row, the next TelcoSecDay will take place in 2017 on March 21th. Again, it will be held one day before &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers IT-Security Conference&lt;/a&gt; as an invitation-only event. For those of you who don’t know the TSD, it is organized by ERNW and is aimed at bringing researchers and people from the telecommunication industry together to discuss about current security weaknesses, challenges and strategies. To do so, various topics will be presented during the talks and there will surely be enough time to follow-up in extensive discussions.&lt;br&gt;&#xA;To give you an idea, here’s the &lt;a href=&#34;https://insinuator.net/2016/03/telcosecday-2016-final-agenda-and-more/&#34;&gt;TSD 2016 agenda&lt;/a&gt;, and here’s &lt;a href=&#34;https://insinuator.net/2015/03/final-agenda-of-troopers15-telcosecday/&#34;&gt;the one of 2015&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Because of Cyber – A Recap</title>
      <link>https://insinuator.net/2016/05/because-of-cyber-a-recap/</link>
      <pubDate>Wed, 11 May 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/05/because-of-cyber-a-recap/</guid>
      <description>&lt;p&gt;Troopers16 has been over for quite a while now, but because sharing is caring, we would like to give you some more insight and share some gems that happened over the 2 days of us running a small/medium sized enterprise in mid-west Russia as part of the well received FishBowl side story.&lt;/p&gt;&#xA;&lt;p&gt;Technology wise the whole infrastructure of FishBowl, as well as the Cyber Emergency Response Team, was hosted on one FreeBSD machine with exception of the challenge scoreboard which was on site only, hence conference network only.&lt;br&gt;&#xA;The C.E.R.T. web site was static web site using the &lt;a href=&#34;jekyllrb.com&#34;&gt;jekyll&lt;/a&gt; engine. FishBowl on the other hand required some dynamic web magic which is why we choose to use the &lt;a href=&#34;http://flask.pocoo.org/&#34;&gt;flask framework&lt;/a&gt;. For the FishBowl web design we simply helped ourselves with the styles of the &lt;a href=&#34;https://www.troopers.de&#34;&gt;Troopers web site&lt;/a&gt;, who of you noticed? 😉&lt;br&gt;&#xA;All web related stuff was reverse proxied by an &lt;a href=&#34;http://nginx.org/&#34;&gt;nginx&lt;/a&gt; to provide a common layer of technology even though every venture was segregated into its own FreeBSD jail environment.&lt;br&gt;&#xA;For mail a simple postfix setup was set up. Having a proper mail server for such »shenanigans« turned out to be very enjoyable, but more on that later.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SAP Security @ Troopers16</title>
      <link>https://insinuator.net/2016/04/sap-security-@-troopers16/</link>
      <pubDate>Mon, 25 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/sap-security-@-troopers16/</guid>
      <description>&lt;p&gt;When it comes to SAP, Troopers has two events that are about Security in SAP Systems in particular. On the first day of the Troopers16 Trainings the BIZEC workshop takes place. The second event is a dedicated SAP track during the conference. Apart from these events there were of course a lot of nice folks to talk to (about SAP) 🙂 This post is a short overview about SAP security &lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;@ TROOPERS16.&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Defense &amp; Management Day 2</title>
      <link>https://insinuator.net/2016/04/defense-management-day-2/</link>
      <pubDate>Fri, 15 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/defense-management-day-2/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;TROOPERS16&lt;/a&gt; offered many different speakers from around the globe. Below are three different talks from the afternoon of Day 2’s Defense and Management Track. &lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;The TROOPERS16 talk “&lt;a href=&#34;https://www.troopers.de/events/troopers16/629_attacking__protecting_big_data_environments/&#34;&gt;Attacking &amp;amp; Protecting Big Data Environments&lt;/a&gt;” presented the research of Birk Kauer and Matthias Luft, (&lt;a href=&#34;http://ernw.de&#34;&gt;ERNW&lt;/a&gt;) in which they showed how enterprise-grade “big data” environments, based on e.g. HortonWorks or Cloudera, comprising of components such as HDFS, Yarn, Hue, Flume, Hive, Spark, Sentry/Ranger could be attacked. These environments typically process huge amounts of data. The data is either stored in a cluster file system or streamed into clusters. The processing of these datasets are done by jobs, and these jobs can be arbitrary code execution.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TSD 2016 – Follow Up</title>
      <link>https://insinuator.net/2016/04/tsd-2016-follow-up/</link>
      <pubDate>Thu, 07 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/tsd-2016-follow-up/</guid>
      <description>&lt;p&gt;Thanks again for all the great talks and fruitful discussions &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;@TSD 2016&lt;/a&gt;! I hope everybody had a safe trip home and enjoyed Troopers as we did. In the meantime I contacted all speakers to talk about publication of their slidesets. Some of them agreed (or already published them on their own) so I’d like to share these with you:&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_Assaulting_diameter_IPX_network.pdf&#34;&gt;&lt;strong&gt;Alexandre De Oliveira&lt;/strong&gt; – &lt;em&gt;Assaulting IPX Diameter roaming network&lt;/em&gt;&lt;/a&gt;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_Known_Unknowns_of_SS7.pdf&#34;&gt;&lt;br&gt;&#xA;&lt;strong&gt;Siddharth Rao&lt;/strong&gt; – &lt;em&gt;The known unknowns of SS7 and beyond.&lt;/em&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_rucki_zucki.pdf&#34;&gt;&lt;strong&gt;Joao Collier de Mendonca&lt;/strong&gt; – &lt;em&gt;“rucki zucki” scanning tool&lt;/em&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;http://git.gnumonks.org/index.html/laforge-slides/plain/2016/telcosecday/foss-gsm.html&#34;&gt;&lt;strong&gt;Harald Welte&lt;/strong&gt; – &lt;em&gt;Open Source Network Elements for Security Analysis of Mobile Networks&lt;/em&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;https://www.ernw.de/download/TSD2016_Ravi-Altaf.pdf&#34;&gt;&lt;strong&gt;Ravi &amp;amp; Altaf Shaik&lt;/strong&gt; – &lt;em&gt;Don’t connect to my 4G base station: investigating info leaks in 4G basebands&lt;/em&gt;&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Unpatchable – Living with a vulnerable implanted device</title>
      <link>https://insinuator.net/2016/04/unpatchable-living-with-a-vulnerable-implanted-device/</link>
      <pubDate>Thu, 07 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/unpatchable-living-with-a-vulnerable-implanted-device/</guid>
      <description>&lt;p&gt;TL;DR: Marie Moe talked about security issues of medical devices, especially implantable devices like pacemakers, but not in overwhelming technological depth. She wanted to point out the necessity of intensified security research in the field of medical devices as vendors and medical personnel seem to be lacking necessary awareness of security of devices, interfaces, services, and even data privacy.”Get involved, &lt;a href=&#34;https://www.iamthecavalry.org/&#34;&gt;join the cavalry&lt;/a&gt;” was her core message.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Lub-Dub-Lub-Dub-Lub-Dub&lt;/strong&gt;&lt;br&gt;&#xA;Marie started her talk with the sound of a repeating heartbeat. First she introduced how she came up with the topic of her talk: Marie relies on a pacemaker herself andsince she got it implanted she was curious how secure this little device might be. A minimum education of the auditorium followed including an explanation how a human heart works and what a pacemaker does.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Security Assessment of Microsoft DirectAccess</title>
      <link>https://insinuator.net/2016/04/security-assessment-of-microsoft-directaccess/</link>
      <pubDate>Wed, 06 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/security-assessment-of-microsoft-directaccess/</guid>
      <description>&lt;p&gt;A &lt;a href=&#34;https://www.troopers.de/events/ipv6-security-summit-2016/698_security_assessment_of_microsoft_directaccess/&#34;&gt;talk&lt;/a&gt; about DirectAccess (an IPv6-only VPN solution) was given by our colleague Ali Hardudi during IPv6 summit. Ali has recently finished his master thesis on this topic.&lt;/p&gt;&#xA;&lt;p&gt;The DirectAccess VPN technology was introduced by Microsoft starting from Windows server 2008. It allows users remotely, seamlessly and securely connect to their internal network resources without a need to provide user credentials, which is done using different technologies such as Windows domain group policies.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Anonymization IPv6 in PCAPs – Challenges and Wins</title>
      <link>https://insinuator.net/2016/04/anonymization-ipv6-in-pcaps-challenges-and-wins/</link>
      <pubDate>Tue, 05 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/anonymization-ipv6-in-pcaps-challenges-and-wins/</guid>
      <description>&lt;p&gt;Jasper Bongertz is a Senior Technical Consultant at Airbus Defence and Space CyberSecurity. He is focusing on IT security, Incident Response and Network Forensics.&lt;br&gt;&#xA;During the IPv6 summit on Troopers16 he had given a &lt;a href=&#34;https://www.troopers.de/events/ipv6-security-summit-2016/693_anonymization_ipv6_in_pcaps_-_challenges_and_wins/&#34;&gt;talk&lt;/a&gt; on anonymization IPv6 in PCAPs and presented his new tool.&lt;/p&gt;&#xA;&lt;p&gt;Sometimes you need to share your packet capture files (PCAPs), but distributing them involves a risk of exposing the confidential information. To avoid this, you must sanitize your PCAPs. The goal of sanitization is to remove the critical details but keep enough information for the PCAP to still be useful. The original-to-sanitized ratio is based on your goals.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Passive Intelligence Gathering and Analytics – It’s all Just Metadata!</title>
      <link>https://insinuator.net/2016/04/passive-intelligence-gathering-and-analytics-its-all-just-metadata/</link>
      <pubDate>Tue, 05 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/passive-intelligence-gathering-and-analytics-its-all-just-metadata/</guid>
      <description>&lt;p&gt;The first talk after the keynote on day 2 of TROOPERS was from Christopher Truncer about passive intelligence gathering and the analytics of that. Christopher Truncer (@ChrisTruncer) is a red teamer with Mandiant. He is a co-founder and current developer of the Veil-Framework, a project aimed to bridge the gap between advanced red team and penetration testing toolsets.&lt;/p&gt;&#xA;&lt;p&gt;His talk is mainly about defending a network from different threats by collecting and analyzing metadata from different sources.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The Kings in your Castle</title>
      <link>https://insinuator.net/2016/04/the-kings-in-your-castle/</link>
      <pubDate>Tue, 05 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/the-kings-in-your-castle/</guid>
      <description>&lt;p&gt;At the second day of the TROOPERS16 conference an interesting talk about Advanced Persistent Threats took place from Marion Marschalek and Raphaël Vinot. Marion Marschalek is a Security Researcher, focusing on the analysis of emerging threats and exploring novel methods of threat detection. Marion started her career within the anti-virus industry and also worked on advanced threat protection systems where she built a thorough understanding of how threats and protection systems work and how both occasionally fail.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Advanced IPv6 Network Reconnaissance</title>
      <link>https://insinuator.net/2016/04/advanced-ipv6-network-reconnaissance/</link>
      <pubDate>Sun, 03 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/advanced-ipv6-network-reconnaissance/</guid>
      <description>&lt;p&gt;Fernando Gont, who is specializing in the field of communications protocols security, gave a &lt;a href=&#34;https://www.troopers.de/events/ipv6-security-summit-2016/594_advanced_ipv6_network_reconnaissance/&#34;&gt;talk&lt;/a&gt; during this year’s Troopers IPv6 summit. He spoke about network reconnaissance techniques in IPv6 area and presented a brand new set of tools for this purpose.&lt;/p&gt;&#xA;&lt;p&gt;Comparing with methods for IPv4, reconnaissance techniques for IPv6 should be different. It offers much larger address space, so such attacks as brute force address scanning are not feasible anymore, because it would take too much time to send one packet to each and every possible address. Fernando has also noted that in general network reconnaissance support in security tools has traditionally been poor. Together these facts prompt that it’s time for something new, and recently a new &lt;a href=&#34;https://tools.ietf.org/html/rfc7707&#34;&gt;IETF RFC 7707&lt;/a&gt; was published.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Patch Me If You Can</title>
      <link>https://insinuator.net/2016/04/patch-me-if-you-can/</link>
      <pubDate>Sat, 02 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/patch-me-if-you-can/</guid>
      <description>&lt;p&gt;Right after the Opening Keynote of TROOPERS16, an informative and interesting talk took place at the SAP Security track. This talk was given by three speakers; Damian Poddebniak who is currently a master student at the University of Applied Sciences of Münster, Sebastian Schinzel who works as an IT security Professor at the University of Applied Sciences of Münster and he is also the founder of CycleSEC GmbH and finally the sixth-time speaker at Troopers “Andreas Wiegenstein” who is the CTO of Virtual Forge GmbH and a professional SAP security consultant since 2003.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Tools for Troubleshooting and Monitoring IPv6 Networks</title>
      <link>https://insinuator.net/2016/04/tools-for-troubleshooting-and-monitoring-ipv6-networks/</link>
      <pubDate>Sat, 02 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/tools-for-troubleshooting-and-monitoring-ipv6-networks/</guid>
      <description>&lt;p&gt;Yet another interesting 180-minute workshop in IPv6 Security Summit of TROOPERS16, which aimed to introduce the IPv6 troubleshooting and monitoring tools, which are essentially needed by users in order to know how to deal with IPv6 in any IPv6-enabled network.&lt;/p&gt;&#xA;&lt;p&gt;Before we dive into this post, let me introduce you in few words “Gabriel Müller” the speaker and the instructor of this workshop. Gabriel works as a senior consultant at AWK Group by mainly assisting clients in the public and private sectors as a project manager and an expert in the network area.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Caring for file formats</title>
      <link>https://insinuator.net/2016/04/caring-for-file-formats/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/caring-for-file-formats/</guid>
      <description>&lt;p&gt;Ange Albertini is a reverse engineer and author of Corkami.&lt;/p&gt;&#xA;&lt;p&gt;First and foremost he explained what a polyglot file is. A polyglot is a special file that has more than one type in the same file. For example, Ange Albertini demonstrated a polyglot which is a pdf, a pdf reader, a java executable and an html file inside of one file. The second polyglot he demonstrated was a file which had the characteristics that when you encrypted it with AES you get a PNG image and if it´s encrypted with another key you will get a flash video and when you encrypted it with DES you get a PDF document. He pointed out that a file format is not just a sequence of byte it´s rather a computer dialect to communicate between communities. He also highlighted that people don’t really care about what is behind the file format they only what to use it and communicate with other people.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Imma Chargin Mah Lazer-How to protect against (D)DoS attacks</title>
      <link>https://insinuator.net/2016/04/imma-chargin-mah-lazer-how-to-protect-against-ddos-attacks/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/imma-chargin-mah-lazer-how-to-protect-against-ddos-attacks/</guid>
      <description>&lt;p&gt;Denial of Service (DoS) attacks aim to make services and systems unavailable to legitimate users . If these attacks are performed by multiple sources at the same time and for the same target, they are called Distributed Denial of Service (DDoS) attacks. This talk “Imma Chargin Mah Lazer” describes different types of (D)DoS attacks that are out in the wild and are seen on a daily basis by different corporations. Furthermore,  a multi-layered strategy to mitigate such kinds of attacks has been presented within the talk. The speaker is Dr. Oliver Matula, an IT security researcher at ERNW who holds a PHD degree in physics. He presented the topic in a simple way which eases the delivery of information to audience of different technical levels and backgrounds.&lt;/p&gt;</description>
    </item>
    <item>
      <title>QNX: 99 Problems but a Microkernel ain’t one!</title>
      <link>https://insinuator.net/2016/04/qnx-99-problems-but-a-microkernel-aint-one/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/qnx-99-problems-but-a-microkernel-aint-one/</guid>
      <description>&lt;p&gt;The talk “QNX: 99 Problems but a Microkernel ain’t one!” was part of the Troopers conference in Heidelberg, 16 March 2016. The talk was done by the researchers Alex Plaskett and Georgi Geshev from the MWR Labs. The MWR Labs is the research department of the cyber security consultancy MWR InfoSecurity located in the UK.&lt;br&gt;&#xA; &lt;br&gt;&#xA;The talk provided an overview of the research on the architecture and security systems of the QNX kernel with focus on the Blackberry 10 operating system. The talk was divided into two parts. First Alex Plaskett gave an introduction regarding the general structure of the QNX operation system and introduced the main subsystems. Second Georgi Geshev presented tools and approaches to abuse vulnerabilities in the QNX system.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The road to secure Smart Cars: ENISA approach</title>
      <link>https://insinuator.net/2016/04/the-road-to-secure-smart-cars-enisa-approach/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/the-road-to-secure-smart-cars-enisa-approach/</guid>
      <description>&lt;p&gt;At TROOPERS16, Dr. Cédric LÉVY-BENCHETON an expert in cyber security at ENISA, the European Union Agency for Network and Information Security. Dr. Cédric LÉVY-BENCHETON  holds a presentation about cyber security of IoT (Internet of Things) and smart cars he presents the current threats in IoT and Smart cars. ENISA is an agency of the European Union. ENISA assists the Commission, the Member States and, the business community in meeting the requirements of network and information security.&lt;/p&gt;</description>
    </item>
    <item>
      <title>unrubby: reversing without reversing</title>
      <link>https://insinuator.net/2016/04/unrubby-reversing-without-reversing/</link>
      <pubDate>Fri, 01 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/04/unrubby-reversing-without-reversing/</guid>
      <description>&lt;p&gt;The talk “unrubby: reversing without reversing” was part of the Troopers conference in Heidelberg, 16 March 2016. The talk was done by Richo Healey, who is currently working on the security engineering team at the Irish payment company Stripe. Richo Healey is an experienced conference speaker. Amongst other he has spoken at Kiwicon, DEF CON and 44con.&lt;br&gt;&#xA; &lt;br&gt;&#xA;In his talk Richo Healey spoke about reverse engineering of Ruby software. First he talked about existing tools and techniques to regenerate source code from Ruby bytecode. Then he presented a new concept, which is implemented in his tool “unrubby”.&lt;/p&gt;</description>
    </item>
    <item>
      <title>BMC BladeLogic: CVE-2016-1542 and CVE-2016-1543</title>
      <link>https://insinuator.net/2016/03/bmc-bladelogic-cve-2016-1542-and-cve-2016-1543/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/bmc-bladelogic-cve-2016-1542-and-cve-2016-1543/</guid>
      <description>&lt;p&gt;Hi everyone,&lt;/p&gt;&#xA;&lt;p&gt;Hope those of you who attended Troopers16 enjoyed it as much as we did! In this post I want to summarize my &lt;a href=&#34;https://www.troopers.de/events/troopers16/648_one_tool_to_rule_them_all_-_and_what_can_it_lead_to/&#34;&gt;Troopers16 talk&lt;/a&gt; and provide you with some details about freshly assigned CVE-2016-1542 and CVE-2016-1543 related to BMC BladeLogic software.&lt;/p&gt;&#xA;&lt;p&gt;To start with, BMC Software Inc. is an American company specializing in business service management software; they develop software used for multiple functions, including IT service management, data center automation, performance management, virtualization lifecycle management and cloud computing management. Among other products they have developed a BladeLogic suite that includes Database Automation, Middleware Automation, Server Automation, and Network Automation tools. The one under our focus was BladeLogic Server Automation (BSA).&lt;/p&gt;</description>
    </item>
    <item>
      <title>How easy to grow robust botnet with low hanging fruits (IoT) – for free</title>
      <link>https://insinuator.net/2016/03/how-easy-to-grow-robust-botnet-with-low-hanging-fruits-iot-for-free/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/how-easy-to-grow-robust-botnet-with-low-hanging-fruits-iot-for-free/</guid>
      <description>&lt;p&gt;Attila Marosi works as a Senior Threat Research at Sophos Labs in Hungary. His talk focused on vulnerable IoT devices that are exposed to the internet. His approach was to look for vulnerable devices with low cost tools and publicly available data.&lt;/p&gt;&#xA;&lt;p&gt;He started his talk with the spoiler that he is not going to reveal any new attacks nor new techniques. But newer data are more adequate and we can see the current state of vulnerable devices connected to the internet. This means his approach was to test the state of IoT devices like Routers, NAS and so on with publicly available data.&lt;/p&gt;</description>
    </item>
    <item>
      <title>I Have the Power(View): Offensive Active Directory with PowerShell</title>
      <link>https://insinuator.net/2016/03/i-have-the-powerview-offensive-active-directory-with-powershell/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/i-have-the-powerview-offensive-active-directory-with-powershell/</guid>
      <description>&lt;p&gt;In his talk &lt;a href=&#34;https://www.troopers.de/events/troopers16/604_i_have_the_powerview_offensive_active_directory_with_powershell/&#34;&gt;I have the Power(View): Offensive Active Directory with PowerShell&lt;/a&gt; Will Schroeder, a researcher and Red teamer in Veris Group´s Adaptive Thread Division, presented offensive Active Directory information gathering technics using his Tool PowerView.&lt;/p&gt;&#xA;&lt;p&gt;PowerView does not use the built in AD cmdlets to be independent from the Remote Server Administration Tools (RSAT)-AD PowerShell Module which is only compatible with PowerShell 3.0+ and by default only installed on servers that have Active Directory services roles. PowerView, however, is compatible with PowerShell 2.0 and has no outer dependencies. Furthermore, it does not require any installation process.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Keynote #1 Troopers 2016</title>
      <link>https://insinuator.net/2016/03/keynote-%231-troopers-2016/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/keynote-%231-troopers-2016/</guid>
      <description>&lt;p&gt;The first Keynote directly after the Opening by Enno Rey was held by Ben Zevenbergen. At the beginning he pointed out that he is not a very technical guy rather he specialized in Information Law and a policy advisor to the European Parliament. Before he started to dive into his Keynote he talked about some rant story’s which happened to him while trying to make his point clear on previous conferences and that he came in peace to Troopers ;).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Mind The Gap – Exploit Free Whitelisting Evasion Tactics</title>
      <link>https://insinuator.net/2016/03/mind-the-gap-exploit-free-whitelisting-evasion-tactics/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/mind-the-gap-exploit-free-whitelisting-evasion-tactics/</guid>
      <description>&lt;p&gt;At the Troopers 16 Casey Smith has given a talk about the gap in Application Whitelisting.&lt;/p&gt;&#xA;&lt;p&gt;Application Whitelisting is a technique that should prevent malware and unauthorized applications from running. Broadly speaking this is implemented by deciding if an application is trusted or not before executing it. Casey’s talk gave an understanding where this whitelisiting fails down.&lt;/p&gt;&#xA;&lt;p&gt;In his introduction about the architecture he reminded us: There is no perfect defense. It is important to understand how the defenses work and where they fail. In the difference to exploits, which can be patched, there is no possibility to patch architecture flaws.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Reverse Engineering a Digital Two-Way Radio</title>
      <link>https://insinuator.net/2016/03/reverse-engineering-a-digital-two-way-radio/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/reverse-engineering-a-digital-two-way-radio/</guid>
      <description>&lt;p&gt;In their talk “&lt;a href=&#34;https://www.troopers.de/events/troopers16/620_reverse_engineering_a_digital_two-way_radio/&#34;&gt;Reverse Engineering a Digital Two Way Radio&lt;/a&gt;” Travis Goodspeed and Christiane Ruetten presented the challenges they faced and overcame while reverse engineering “Tytera MD380”, a handheld transceiver for the Digital Mobile Radio (DMR) protocol.&lt;/p&gt;&#xA;&lt;p&gt;“Tytera MD380” is based around two chips: STM32F405 CPU with an ARM Cortex M4F core and Readout Device Protection and a HRC5000 baseband processor which implements the actual digital radio. While STM32F405 is fully documented, there is no documentation for HRC5000 publicly available but with the help of the Chinese community they were able to obtain the Chinese documentation.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Towards a LangSec-aware SDLC</title>
      <link>https://insinuator.net/2016/03/towards-a-langsec-aware-sdlc/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/towards-a-langsec-aware-sdlc/</guid>
      <description>&lt;p&gt;At the TROOPERS’15 Jacob l. Torrey held a track about LangSec-Aware Software Development Lifecycle. He talked about programming conventions and what tools can be used for enforcing the compliance. There is a lack of metrics to understand what make software more secure or less secure. His main goals was to show that LangSec has far-reaching impacts into software security and to give the audience a framework to transform the theory into practice. A SLDC should help to find bugs sooner in the development process and reduce defect rate in production thereby. A lower defect rate in production does not only improve security it also reduces costs.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers Netmon</title>
      <link>https://insinuator.net/2016/03/troopers-netmon/</link>
      <pubDate>Thu, 31 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/troopers-netmon/</guid>
      <description>&lt;p&gt;Hi everybody,&lt;/p&gt;&#xA;&lt;p&gt;Christopher talked already about our WiFi Network during the &lt;a href=&#34;https://www.troopers.de/events/ipv6-security-summit-2016/672_building_a_reliable_and_secure_ipv6_wifi_network/&#34;&gt;IPv6 Security Summit&lt;/a&gt; and mentioned our monitoring system (we like to call “netmon”). As there were quite some people interested in the detailed setup and configuration, we would like to share the details with you. This year we used a widely known frontend called Grafana and as backend components InfluxDB and collectd. During Troopers the monitoring system was public reachable over IPv6 and provided statistics about Uplink Bandwidth, IP Protocol Distribution, Clients and Wireless Bands.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Medical Device Security: Hack or Hype</title>
      <link>https://insinuator.net/2016/03/medical-device-security-hack-or-hype/</link>
      <pubDate>Wed, 30 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/medical-device-security-hack-or-hype/</guid>
      <description>&lt;p&gt;Kevin Fu is an Associate Professor at the University of Michigan where he directs the Archimedes Center for Medical Device Security and cofounded Virta Labs. At Troopers 16 he held a talk in the field of his research: &lt;a href=&#34;https://www.troopers.de/events/troopers16/697_medical_device_security_hack_or_hype/&#34;&gt;medical device security&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;He started his talk with a brief introduction how he got started with medical device security and how it has changed since he started. Round about ten years ago he started dumpster diving for medical devices to investigate how they are protected and maintained. In 2006 he held his first talk about medical device security at the FDA. In 2008 he presented a wireless replay attack against a pacemaker. In 2013 concerns about medical device security became more and more mainstream when the television series homeland featured an episode where the pacemaker of the American vice president was attacked resulting in his death. Now, instead of dumpster diving for medical devices, he works together with clinicians and has a lab for testing devices. The communication with clinicians is very important for his work, so he visits hospitals with his student so that they can learn how the process works on the inside.&lt;/p&gt;</description>
    </item>
    <item>
      <title>IPv6 Security Summit – Track 2</title>
      <link>https://insinuator.net/2016/03/ipv6-security-summit-track-2/</link>
      <pubDate>Tue, 29 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/ipv6-security-summit-track-2/</guid>
      <description>&lt;p&gt;The Troopers experience will never be the same without the “&lt;a href=&#34;https://www.troopers.de/ipv6-security-summit/&#34;&gt;IPv6 summit&lt;/a&gt;”. It is one of kind of two-day special event where different security experts gather to discuss IPv6 current challenges. It addresses different topics ranging from a broad introduction of the IPv6 to how secure the protocol  is and what  the latest standards are.&lt;/p&gt;&#xA;&lt;p&gt;The summit is divided into 2 different tracks that run simultaneously. For the first day on the second track, &lt;em&gt;Christopher Werny&lt;/em&gt; and &lt;em&gt;Rafael Schaefer&lt;/em&gt; have carried out the first three sessions.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 16 USB Condom</title>
      <link>https://insinuator.net/2016/03/troopers-16-usb-condom/</link>
      <pubDate>Tue, 29 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/troopers-16-usb-condom/</guid>
      <description>&lt;p&gt;At times with many many digitally transmittable diseases, protection might be more important than ever. When connecting your smartphone to a rogue charger, or a foreign smartphone to your own laptop, you never now what will happen. You never know what data crosses the lines. But there is help: A USB condom!&lt;/p&gt;&#xA;&lt;p&gt;As the &lt;a href=&#34;https://www.insinuator.net/2016/03/troopers-16-taking-the-badge-to-yet-another-level/&#34;&gt;Troopers 16 Badge&lt;/a&gt; was a neat integrated device, we had the challenge to identify something to be soldered for our attendees. The past has shown, that soldering rocks and all of our attendees, &lt;em&gt;all of you&lt;/em&gt;, really enjoy it! After some looking around and roaming the Internet, we decided to go for a simple device, which would protect you and your devices in a hostile world. A slim PCB, which will protect your phone when having to connect it to some unknown charger or for situations when “a mate” just wants to connect his/her phone to your laptop for “charging purposes”.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 16: Wireshark in IP version 6</title>
      <link>https://insinuator.net/2016/03/troopers-16-wireshark-in-ip-version-6/</link>
      <pubDate>Tue, 29 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/troopers-16-wireshark-in-ip-version-6/</guid>
      <description>&lt;p&gt;Wireshark in IP version 6 workshop was a part of IPv6 summit sessions of Troopers 16. It was held by Jeffery Carrell on the second day of IPv6 summit on Tuesday, the 15th of March.  The workshop was generally divided into two sections: a short introduction to IPv6 and analyzing some IPv6 packets on Wireshark.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Introduction to IPv6&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;IPv6 protocol was defined at the end of 1990’s, mainly to provide a huge address pool after realizing that the world would run out of IPv4 addresses quickly. The work on IPv6 started before the introduction of NAT and Private addressing to IPv4, which are considered temporary solutions of IPv4 address shortage problem. IPv6 address consists of 128 bits, divided into 8 groups called &lt;em&gt;nibbles&lt;/em&gt;, &lt;em&gt;quibbles&lt;/em&gt; or &lt;em&gt;hextets&lt;/em&gt; separated by colons. Each nibble consists of four hexadecimal digits. The 128 bits address length provides 340 trillion trillion trillion addresses. An IPv6 address is divided into two parts: the left part is the network identifier while the right one is the host identifier. The default prefix is /64 which divided the IP address into two halves. An IPv6 address looks as follows: 2001:0db8:1010:61ab:f005:ba11:00da:11a5/64&lt;/p&gt;</description>
    </item>
    <item>
      <title>Attacking Next-Generation Firewalls</title>
      <link>https://insinuator.net/2016/03/attacking-next-generation-firewalls/</link>
      <pubDate>Mon, 28 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/attacking-next-generation-firewalls/</guid>
      <description>&lt;p&gt;Felix Wilhelm presented in his talk various ways to attack his new target – The PA-500 which is produced by Palo Alto Networks.&lt;/p&gt;&#xA;&lt;p&gt;He discovered vulnerabilities in 3 different exposed aspects of the device. The first vulnerability occurred inside of an unauthenticated API from the Management-Website which could only be accessed within the Admin Network. This vulnerability was a typical off-by-one Command Injection, which could be abused by reaching out to the API with a special client=wget Request.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SDR and non-SDR tools for reverse engineering wireless systems</title>
      <link>https://insinuator.net/2016/03/sdr-and-non-sdr-tools-for-reverse-engineering-wireless-systems/</link>
      <pubDate>Mon, 28 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/sdr-and-non-sdr-tools-for-reverse-engineering-wireless-systems/</guid>
      <description>&lt;p&gt;Hey there!&lt;br&gt;&#xA;The God of frequencies Michael Ossmann visited us again this year at the &lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;TROOPERS16&lt;/a&gt; and showed us how to break another device using a specific setup.&lt;/p&gt;&#xA;&lt;p&gt;Last time he introduced the HackRF One to us (Read here:&lt;a href=&#34;https://www.insinuator.net/2014/08/hackrf-one-the-story-continues/&#34;&gt;https://www.insinuator.net/2014/08/hackrf-one-the-story-continues/&lt;/a&gt;), but this post is a short summary of his talk about “Rapid Radio Reversing”, he is a wireless security researcher, who makes hardware for hackers. Best known for the HackRF, Ubertooth, and Daisho projects, he founded Great Scott Gadgets in an effort to put exciting, new tools into the hands of innovative people.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Security Evaluation of Dual-Stack Systems [Troopers 2016 recap] (Part 1)</title>
      <link>https://insinuator.net/2016/03/security-evaluation-of-dual-stack-systems-troopers-2016-recap-part-1/</link>
      <pubDate>Mon, 28 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/security-evaluation-of-dual-stack-systems-troopers-2016-recap-part-1/</guid>
      <description>&lt;p&gt;Dear Readers of Insinuator,&lt;/p&gt;&#xA;&lt;p&gt;**tldr;**This blogpost presents a measurement study of a current security state regarding to open ports on a direct comparison of IPv4 and IPv6. The study analyses almost 58,000 dual-stacked domains in order to find discrepancies in applied security policies. We further discuss the potential reasons and, more importantly, the implications of the identified differences. &lt;strong&gt;\tldr;&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;For those of you who couldn’t participate at Troopers Conference 2016 in Heidelberg or watch my talk at the IPv6 Security Summit, I want to recap some of the most important parts of my research in this blogpost.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The Joy of Sandbox Mitigations</title>
      <link>https://insinuator.net/2016/03/the-joy-of-sandbox-mitigations/</link>
      <pubDate>Mon, 28 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/the-joy-of-sandbox-mitigations/</guid>
      <description>&lt;p&gt;This year at TROOPERS16 in Heidelberg we welcomed James Forshaw for his talk about “&lt;a href=&#34;https://www.troopers.de/events/troopers16/644_the_joy_of_sandbox_mitigations/&#34;&gt;The Joy of Sandbox Mitigations&lt;/a&gt;“.&lt;/p&gt;&#xA;&lt;p&gt;He is a security researcher in Google’s Project Zero. He has been involved with computer hardware and software security for over 10 years looking at a range of different platforms and applications. With a great interest in logical vulnerabilities he has numerous disclosures in a wide range of products from web browsers to virtual machine breakouts as well as being a Pwn2Own and Microsoft Mitigation Bypass bounty winner. He has spoken at a number of security conferences including Black Hat USA, CanSecWest, Bluehat, HITB, and Infiltrate.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Reflections on the IPv6-only WiFi Experience during Troopers</title>
      <link>https://insinuator.net/2016/03/reflections-on-the-ipv6-only-wifi-experience-during-troopers/</link>
      <pubDate>Fri, 25 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/reflections-on-the-ipv6-only-wifi-experience-during-troopers/</guid>
      <description>&lt;p&gt;Hello,&lt;/p&gt;&#xA;&lt;p&gt;Troopers is (unfortunately) over. It was a blast (but I may be biased ;-))! After things have settled, I want to take the opportunity to reflect my thoughts and impressions on the IPv6-only WiFi we had deployed during the conference. To make sure that everybody is on the same page let’s start at the beginning.&lt;/p&gt;&#xA;&lt;p&gt;In the last couple of years we had provided Dual-Stack connectivity on the main “Troopers” SSID but also had an additional IPv6-only SSID. This year we decided to spice things up and made the “Troopers“ SSID IPv6-only (with NAT64) while providing Dual-Stack connectivity on the “Legacy“ SSID. We wanted to get a feeling how many clients and applications can work properly in an IPv6-only environment. We intentionally didn’t announce it vastly beforehand, hoping that attendees would just connect to the main SSID without noticing anything. We were aware that some applications might expose issues but, as I said , we wanted to get a feeling to which degree problems actually occured.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 16 – Taking the Badge to yet Another Level!</title>
      <link>https://insinuator.net/2016/03/troopers-16-taking-the-badge-to-yet-another-level/</link>
      <pubDate>Sun, 20 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/troopers-16-taking-the-badge-to-yet-another-level/</guid>
      <description>&lt;p&gt;Real men used to wear pink pagers, but that’s the past and recently it was time for Troopers 16. Meaning: Real Troopers wear awesome Badges! And, from the feedback we got, they did!&lt;br&gt;&#xA;Troopers might be over, but the era of the TR16 Badge is seemingly just beginning. As such, here’s a quick insight into the badge!&lt;/p&gt;&#xA;&lt;p&gt;To start, this is the first of (at least) three blogposts covering the badge. As we’re currently in the middle of stripping and cleaning our source code repository, this post now will not cover the firmware. The stripping is not about hiding something, but as we used an Open Source &lt;a href=&#34;https://en.wikipedia.org/wiki/Real-time_operating_system&#34;&gt;RTOS&lt;/a&gt; our repo currently contains modules, which are for completely other architectures.&lt;br&gt;&#xA;In addition we needed a few workarounds while getting the badge up and running for the conference, following our own hacking sessions, there will be a dedicated post concerned with hardware modifications and hacks which can be performed.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers16 – GSM Network</title>
      <link>https://insinuator.net/2016/03/troopers16-gsm-network/</link>
      <pubDate>Wed, 16 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/troopers16-gsm-network/</guid>
      <description>&lt;p&gt;Hello Troopers!&lt;/p&gt;&#xA;&lt;p&gt;only a few seconds left! As a short reminder, there is a GSM network running on Troopers 2016. It should be available in the whole building. To attend the network you need to&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Get a SIM Card @Troopers_Desk&lt;/li&gt;&#xA;&lt;li&gt;Put it in your phone&lt;/li&gt;&#xA;&lt;li&gt;Start the phone&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;That’s it!&lt;/p&gt;&#xA;&lt;p&gt;You can always dial &lt;strong&gt;*#100#&lt;/strong&gt; to get your phone number. All further information (and a phonebook) you’ll find on gsm.troopers.de, but here again a brief summary:&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2016 – Final Agenda and more</title>
      <link>https://insinuator.net/2016/03/telcosecday-2016-final-agenda-and-more/</link>
      <pubDate>Thu, 10 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/telcosecday-2016-final-agenda-and-more/</guid>
      <description>&lt;p&gt;Only a few days left until Troopers! I’d like to use this chance to publish the final agenda of &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;TelcoSecDay 2016&lt;/a&gt;. We will start around 8:30am and will finish at about 6:15pm. After this, we will have a shared dinner in the historic center of Heidelberg. The exact location will be announced during the TSD.&lt;/p&gt;&#xA;&lt;p&gt;8:30: Opening Remarks&lt;br&gt;&#xA;9:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/606_telcosecday_new_age_phreacking_magic_tricks_for_wholesale_fraud/&#34;&gt;David Batanero – New Age Phreaking: Magic tricks for wholesale fraud&lt;/a&gt;&lt;br&gt;&#xA;9:45: &lt;a href=&#34;https://www.troopers.de/events/troopers16/657_towards_carrier_based_imsi_catcher_detection/&#34;&gt;Adrian Dabrowski – Towards Carrier Based IMSI Catcher Detection&lt;/a&gt;&lt;br&gt;&#xA;10:30: Break&lt;br&gt;&#xA;11:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/653_assaulting_ipx_diameter_roaming_network/&#34;&gt;Alexandre De Oliveira – Assaulting IPX Diameter roaming networks&lt;/a&gt;&lt;br&gt;&#xA;11:45: &lt;a href=&#34;https://www.troopers.de/events/troopers16/654_the_known_unknowns_of_ss7_and_beyond/&#34;&gt;Rao Siddharth – The known and unknowns of SS7 and beyond&lt;/a&gt;&lt;br&gt;&#xA;12:30: &lt;a href=&#34;https://www.troopers.de/events/troopers16/652_rucki_zucki_scanning_tool/&#34;&gt;Joao Collier de Mendonca – “rucki zucki” scanning tool&lt;/a&gt;&lt;br&gt;&#xA;13:00: Lunch&lt;br&gt;&#xA;14:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/658_open_source_network_elements_for_security_analysis_of_mobile_networks/&#34;&gt;Harald Welte – Open Source Network Elements for Security Analysis of Mobile Networks&lt;/a&gt;&lt;br&gt;&#xA;14:45: &lt;a href=&#34;https://www.troopers.de/events/troopers16/659_advance_apt_attribution_for_researchers/&#34;&gt;Rahul Sasi – Advance APT Attribution for researchers&lt;/a&gt;&lt;br&gt;&#xA;15:30: Break&lt;br&gt;&#xA;16:00: &lt;a href=&#34;https://www.troopers.de/events/troopers16/660_dont_connect_to_my_4g_base_station_investigating_info_leaks_in_4g_basebands/&#34;&gt;Ravi and Altaf Shaik – Don’t connect to my 4G base station: investigating info leaks in 4G basebands&lt;/a&gt;&lt;br&gt;&#xA;16:45: Talk from some guy with interest in telco sec&lt;br&gt;&#xA;17:15: Break&lt;br&gt;&#xA;17:30: &lt;a href=&#34;https://www.troopers.de/events/troopers16/662_observations_on_mobile_communication_platforms/&#34;&gt;Dieter Spaar – Observations on mobile communication platforms&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Multicast Based IPv6 Neighbor Spoofing / Response Behavior on Cisco Devices</title>
      <link>https://insinuator.net/2016/03/multicast-based-ipv6-neighbor-spoofing-/-response-behavior-on-cisco-devices/</link>
      <pubDate>Tue, 01 Mar 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/03/multicast-based-ipv6-neighbor-spoofing-/-response-behavior-on-cisco-devices/</guid>
      <description>&lt;p&gt;Dear readers,&lt;/p&gt;&#xA;&lt;p&gt;today we want to examine the behavior of Cisco devices when they receive spoofed IPv6 Neighbor Advertisement packets from an untrusted system pretending to be the default router for the local segment. We start with a quick refresher how Cisco devices behave in the legacy (IPv4) world when they receive a spoofed broadcast ARP packet containing the IP address of the device but with a different MAC address, followed by a discussion of the corresponding behavior in the IPv6 world.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR16 IPv6 Security Summit Teaser: Basic IPv6 Attacks &amp; Defenses Workshop</title>
      <link>https://insinuator.net/2016/02/%23tr16-ipv6-security-summit-teaser-basic-ipv6-attacks-defenses-workshop/</link>
      <pubDate>Sat, 13 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/%23tr16-ipv6-security-summit-teaser-basic-ipv6-attacks-defenses-workshop/</guid>
      <description>&lt;p&gt;Dear Readers,&lt;/p&gt;&#xA;&lt;p&gt;It’s me again with another teaser for an upcoming workshop at the &lt;a href=&#34;https://www.troopers.de/ipv6-security-summit/&#34;&gt;IPv6 Security Summit&lt;/a&gt;. This one is a classic! If you happen to deploy IPv6 in your environment in the near future, but didn’t had the time to think about the security implications, this &lt;a href=&#34;https://www.troopers.de/events/ipv6-security-summit-2016/614_basic_ipv6_attacks__defenses_hands-on_workshop/&#34;&gt;workshop&lt;/a&gt; is the right place to start.&lt;/p&gt;&#xA;&lt;p&gt;We will start the workshop with a quick refresher of the core behavior of IPv6 to make sure that every attendee is on the same page. Before we start discussing and demonstrating various IPv6 attacks, we dive into (a little more abstract) topic of why IPv6 security actually isn’t that easy to implement. We will continue with IPv6 attacks targeted at the local link. Rafael and I will introduce commonly used IPv6 attack tools as well as performing various attacks in a dedicated lab environment. Every attendee is encouraged to participate in these exercises.  We will provide you with the necessary tools; you just have to bring a laptop with (ideally) Linux installed. We will prepare some virtual machines including VMware Player in case your corporate laptop runs Windows.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Multiple Address Family OSPFv3</title>
      <link>https://insinuator.net/2016/02/multiple-address-family-ospfv3/</link>
      <pubDate>Wed, 10 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/multiple-address-family-ospfv3/</guid>
      <description>&lt;p&gt;Dear Readers,&lt;/p&gt;&#xA;&lt;p&gt;today I want to talk about OSPFv3. I won’t cover the glory details of &lt;a href=&#34;http://tools.ietf.org/html/rfc5340&#34;&gt;OSPFv3&lt;/a&gt;, there are smarter guys than me out there who did that &lt;a href=&#34;http://packetlife.net/blog/2010/mar/2/ospfv2-versus-ospfv3/&#34;&gt;already&lt;/a&gt; 😉 and there are great resources to familiarize yourself with the protocol. However, it should be noted that OSPFv3 is not only OSPF for IPv6, OSPFv3 brought some major enhancements compared to OSPFv2. Wouldn’t it be cool to benefit from the enhancements in the IPv4 world as well?&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR16 IPv6 Security Summit Teaser: First-Hop-Security on HP Network Devices</title>
      <link>https://insinuator.net/2016/02/%23tr16-ipv6-security-summit-teaser-first-hop-security-on-hp-network-devices/</link>
      <pubDate>Tue, 09 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/%23tr16-ipv6-security-summit-teaser-first-hop-security-on-hp-network-devices/</guid>
      <description>&lt;p&gt;Hello Everybody,&lt;/p&gt;&#xA;&lt;p&gt;Today I want to give you a little teaser about my upcoming talk at the &lt;a href=&#34;https://www.troopers.de/ipv6-security-summit/&#34;&gt;IPv6 Security Summit&lt;/a&gt; about &lt;em&gt;First-Hop-Security&lt;/em&gt; on HP devices. In the past I presented on about First-Hop-Security in the &lt;a href=&#34;https://www.troopers.de/events/troopers13/363_securing_ipv6_in_the_cisco_space/&#34;&gt;Cisco&lt;/a&gt; realm and in &lt;a href=&#34;https://www.troopers.de/events/troopers15/482_ipv6_first_hop_security_in_virtualized_environments/&#34;&gt;virtualized e&lt;/a&gt;nvironments. Until recently, Cisco was mostly the only vendor who had a sufficient implementation of various IPv6 security features on their access-layer switches, but HP closed the gap considerably and it’s time to have an in-depth look at their implementation of those features.&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR16 IPv6 Security Summit Teaser: Building a Reliable and Secure IPv6 WiFi Network</title>
      <link>https://insinuator.net/2016/02/%23tr16-ipv6-security-summit-teaser-building-a-reliable-and-secure-ipv6-wifi-network/</link>
      <pubDate>Mon, 08 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/%23tr16-ipv6-security-summit-teaser-building-a-reliable-and-secure-ipv6-wifi-network/</guid>
      <description>&lt;p&gt;Hi everyone,&lt;/p&gt;&#xA;&lt;p&gt;some of you may have seen my last &lt;a href=&#34;https://www.insinuator.net/2016/02/dhcpv6-option-52-on-cisco-dhcpv6-server/&#34;&gt;blog post&lt;/a&gt; about the preparation of the Troopers network. Today I want to give you a little teaser on what to expect for the &lt;a href=&#34;https://www.troopers.de/events/ipv6-security-summit-2016/672_case_study_building_a_secure_ipv6_guest_wifi_network/&#34;&gt;talk&lt;/a&gt; I will present during the IPv6 Security Summit. As the title implies, it’s not only about building a secure IPv6 WiFi, but also a reliable one. One might think that there aren’t many differences in comparison to IPv4, but the heavy reliance on multicast of IPv6 does have implications for Wi-Fi networks in general.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay 2016 – Second Round of Talks</title>
      <link>https://insinuator.net/2016/02/telcosecday-2016-second-round-of-talks/</link>
      <pubDate>Wed, 03 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/telcosecday-2016-second-round-of-talks/</guid>
      <description>&lt;p&gt;I am very happy to announce the second round of talks for the &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;TelcoSecDay 2016&lt;/a&gt;. As mentioned in my &lt;a href=&#34;https://www.insinuator.net/2016/01/telcosecday-first-round-of-talks/&#34;&gt;previous post&lt;/a&gt; it will take place on March 15th. All invitations should be out by now; if you think you can contribute to the group and you are willing to join us – please let me know (&lt;a href=&#34;mailto:hschmidt@ernw.de&#34;&gt;hschmidt@ernw.de&lt;/a&gt;).&lt;/p&gt;&#xA;&lt;p&gt;Still, not all talks are confirmed but the newly published talks will provide an idea about TSD 2016 and its discussions.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Pentesting with Metasploit #TR16 Training</title>
      <link>https://insinuator.net/2016/02/pentesting-with-metasploit-%23tr16-training/</link>
      <pubDate>Tue, 02 Feb 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/02/pentesting-with-metasploit-%23tr16-training/</guid>
      <description>&lt;p&gt;In this year’s MSF training we will guide you through the typical steps of the pentest cycle: information gathering, attacking and looting your targets. For each step, demos and exercises will help you deepen and test your newly acquired knowledge. In addition to the typical penetration-test scenarios you will also learn several advanced aspects of the framework such as: how writing your own metasploit modules works, how to export payloads and make them undetected. With a final exercise each day you can finally challenge yourself and apply what you have learned!&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS16 Training Teaser: Dos and Don’ts of Secure Active Directory Administration</title>
      <link>https://insinuator.net/2016/01/troopers16-training-teaser-dos-and-donts-of-secure-active-directory-administration/</link>
      <pubDate>Wed, 27 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/troopers16-training-teaser-dos-and-donts-of-secure-active-directory-administration/</guid>
      <description>&lt;p&gt;In the last few years, attack techniques which fall in the categories of “Credential Theft” or “Credential Reuse” have grown into one of the biggest threats to Microsoft Windows environments. Microsoft has stated more than one time, that nearly almost all of their customers that run Active Directory have experienced “Pass-the-Hash” (PtH) attacks recently.&lt;a href=&#34;#_ftn1&#34;&gt;[1]&lt;/a&gt; Once an attacker gains an initial foothold on a single system in the environment it takes often less than 48 hours until the entire Active Directory infrastructure is compromised. To defend against this kind of attacks, a well-planned approach is required as part of a comprehensive security architecture and operations program. As breach has to be assumed&lt;a href=&#34;#_ftn2&#34;&gt;[2]&lt;/a&gt;, this includes a preventative mitigating control strategy, where technical and organizational controls are implemented, as well as preparations against insider attacks. This is mainly achieved by partitioning the credential flow in order to firstly limit their exposure and secondly limit their usefulness if an attacker was able to get them. Although we spoke last year at Troopers 15 about “How to Efficiently Protect Active Directory from Credential Theft &amp;amp; Large Scale Compromise”&lt;a href=&#34;#_ftn3&#34;&gt;[3]&lt;/a&gt;, we would like to summarize exemplary later in this post Active Directory pentest findings that we classified in four categories in order to better understand what goes typically wrong and thus has to be addressed. For a better understanding of the overall security goals, we classified the findings as to belonging as a security best practice violation of the following categories:&lt;/p&gt;</description>
    </item>
    <item>
      <title>Web Hacking Special Ops Workshop @ TR16</title>
      <link>https://insinuator.net/2016/01/web-hacking-special-ops-workshop-@-tr16/</link>
      <pubDate>Tue, 26 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/web-hacking-special-ops-workshop-@-tr16/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Trooper!&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;You passed Hacking 1on1 with flying colors?&lt;/p&gt;&#xA;&lt;p&gt;You evade web application firewalls as they would be opened doors?&lt;/p&gt;&#xA;&lt;p&gt;You have successfully exploitated CVE-2015-8769?&lt;/p&gt;&#xA;&lt;p&gt;Then it’s time for the next challenge! Follow us down the rabbit hole to the not so well known attacks against modern web applications.&lt;/p&gt;&#xA;&lt;p&gt;At Troopers16 we will be presenting the second iteration of our WebHackingSpecialOps workshop in which more advanced techniques to break current web application technologies will be explained. On the first day there will be an introduction that gives a quick overview on the well-known attacks like SQLi, XSS and XSRF. Then attacks will be shown that build upon these “old” vectors including blind/clientside SQLi, NoSQLi and some specialties on NodeJS, the javascript based server-side runtime. Next to these technical topics several formal subjects like 3rd library handling and a guideline on how to deploy TLS in a secure way will be given. Especially the 3rd party library chapter since they have become more and more relevant, as in the near past several major vulnerabilities in such libraries were found which gave attackers the chance to break web applications that were based on these. This shows that even though developers do a great job and developer companies get familiar with secure development lifecycles, there are still problems depending on the used technologies that cannot be addressed easily. One example of such a vulnerability is the object deserialization flaw in the Apache Commons Collections library, which was discovered at the beginning of 2015 and got attention in November, when two researchers presented their &lt;a href=&#34;http://frohoff.github.io/appseccali-marshalling-pickles/&#34;&gt;talk on AppSecCali2015&lt;/a&gt; and showed how easy remote code execution can be done through this kind of flaw. The details of all kind of object deserialization (as almost all current scripting/high level programming languages support this feature) will be part of our course. Next to these topics a deep-dive into current crypto algorithms, their usecases concerning webapplications and their flaws will be given. Within every part of this course several demos and hands-on exercises will be done, so every attendee will be able to apply new knowledge directly. Don’t miss this chance to improve, Trooper!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hacking 101 Training at TROOPERS16</title>
      <link>https://insinuator.net/2016/01/hacking-101-training-at-troopers16/</link>
      <pubDate>Mon, 25 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/hacking-101-training-at-troopers16/</guid>
      <description>&lt;p&gt;This year’s &lt;a href=&#34;https://www.troopers.de/events/troopers16/572_hacking_101/&#34;&gt;Hacking 101&lt;/a&gt; workshop at TROOPERS16 will give attendees an insight into the hacking techniques required for penetration testing. These techniques will cover various topics like information gathering, network mapping, vulnerability scanning, web application hacking, low-level exploitation and more.&lt;/p&gt;&#xA;&lt;p&gt;During this workshop you will learn, step by step, a testing methodology that is applicable to the majority of scenarios. So imagine you have to assess the security of a system running on the Internet. How would you start? First, you need a good understanding about the target, including running services or related systems. Just scanning an IP will most likely not reveal a lot of information about the system. The gathered information may help you to identify communication relations of services that could include vulnerabilities. A brief understanding of the target and it’s related systems/services/applications will make scanning and identifying vulnerabilities a lot easier and more effective. Then, the last step will be the exploitation of the identified vulnerabilities, with the ultimate aim to get access to the target system and pivot to other, probably internal, systems and resources.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TelcoSecDay – First Round of Talks</title>
      <link>https://insinuator.net/2016/01/telcosecday-first-round-of-talks/</link>
      <pubDate>Sat, 16 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/telcosecday-first-round-of-talks/</guid>
      <description>&lt;p&gt;Dear all,&lt;br&gt;&#xA;This year the &lt;a href=&#34;https://www.troopers.de/events/troopers16/580_telcosecday_2016_invitation_only/&#34;&gt;TelcoSecDay&lt;/a&gt; will take place on March 15th. For those of you who does not know about: the TelcoSecDay it is a sub-event of &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt; bringing together researchers, vendors and practitioners from the telecommunication / mobile security field.&lt;/p&gt;&#xA;&lt;p&gt;The event is celebrating its 5th anniversary now, that’s why I’d like to say “thank you” to everybody taking part at this very great discussion round in the last few years. We always had a lot of very good feedback and interesting discussions and the increasing participation list of operators from year to year says (almost) everything!&lt;/p&gt;</description>
    </item>
    <item>
      <title>5th Round of TROOPERS16 Talks Accepted</title>
      <link>https://insinuator.net/2016/01/5th-round-of-troopers16-talks-accepted/</link>
      <pubDate>Thu, 14 Jan 2016 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2016/01/5th-round-of-troopers16-talks-accepted/</guid>
      <description>&lt;p&gt;Happy 2016 everyone! We are &lt;strong&gt;exactly&lt;/strong&gt; 2 months away from the start of TROOPERS16!! Speakers and Trainers across the globe are polishing (or in some cases creating) their PowerPoints to use while delivering their highly technical and entertaining talks. While we here at TR HQ are busy tweaking orders, creating challenges to boggle the mind and test your skills, and of course working on some top secret fun. 😉&lt;/p&gt;&#xA;&lt;p&gt;#BestWeekEver&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;</description>
    </item>
    <item>
      <title>#TR16 IPv6 Security Summit – New Talks Added</title>
      <link>https://insinuator.net/2015/12/%23tr16-ipv6-security-summit-new-talks-added/</link>
      <pubDate>Wed, 23 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/%23tr16-ipv6-security-summit-new-talks-added/</guid>
      <description>&lt;p&gt;In the interim we’ve worked on the agenda of next year’s &lt;em&gt;&lt;a href=&#34;https://www.troopers.de/ipv6-security-summit/&#34;&gt;IPv6 Security Summit&lt;/a&gt;&lt;/em&gt; (for those not familiar with the event, &lt;a href=&#34;https://www.troopers.de/events/troopers15/322_ipv6_security_summit/&#34;&gt;here’s the 2015 edition&lt;/a&gt; and &lt;a href=&#34;https://www.troopers.de/events/troopers14/372_ipv6_security_summit/&#34;&gt;here the one of 2014&lt;/a&gt;), and some new talks have been added.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Rafael Schaefer: Advanced IPv6 Attacks Using Chiron. Hands-On Workshop&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Outline: During the IPv6 Security Summit at Troopers 14, &lt;a href=&#34;http://www.secfu.net/tools-scripts/&#34;&gt;Chiron&lt;/a&gt;, an all-in-one IPv6 penetration testing framework was released publicly for first time. Since then, the advanced features of Chiron were used to discover some 0-day evasion techniques against high-end commercial and open-source Intrusion Detection / Prevention Systems. Moreover, for Troopers 15 it was enhanced with new features, like advanced MLD support and a fake DHCPv6 server, which can be combined with its other features, like the use of arbitrary Extension Headers and fragmentation to leverage really advanced attacks.&lt;br&gt;&#xA;In this workshop, after a quick refreshing to the basic capabilities of Chiron, we will focus on the advanced IPv6 functionalities that the framework offers. We will not only show how to reproduce the latest published IPv6 attacks, but moreover, how you can create your own arbitrary IPv6 attacking scenarios for your own security assessments or penetration testing purposes. A lab will be set up in order not only to reproduce the presented techniques, but to also try your skills and – why not – to discover your own 0-day techniques :).&lt;/p&gt;</description>
    </item>
    <item>
      <title>4th Round of TROOPERS16 Talks Accepted</title>
      <link>https://insinuator.net/2015/12/4th-round-of-troopers16-talks-accepted/</link>
      <pubDate>Tue, 22 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/4th-round-of-troopers16-talks-accepted/</guid>
      <description>&lt;p&gt;As we come to the end of the year we can’t help but take a moment to thank all of your who made TROOPERS15 special! It just makes us all the more pumped to kick it up a notch for TROOPERS16!! #BestWeekEver&lt;/p&gt;&#xA;&lt;p&gt;Happy Holiday and much Joy to you in the New Year!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;Aaron Zauner: &lt;a href=&#34;https://www.troopers.de/events/troopers16/609_bettercrypto_three_years_in/&#34;&gt;BetterCrypto: three years in&lt;/a&gt;&lt;br&gt;&#xA;&lt;strong&gt;FIRST TIME TROOPERS SPEAKER&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;The BetterCrypto Project started out in the fall of 2013 as a collaborative community effort by systems engineers, security engineers, developers and cryptographers to build up a sound set of recommendations for strong cryptography and privacy enhancing technologies catered towards the operations community in the face of overarching wiretapping and data-mining by nation-state actors. The project has since evolved with a lot of positive feedback from the open source and operations community in general with input from various browser vendors, linux distribution security teams and researchers.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Teaser on the TROOPERS16 Incident Analysis Workshop: Analyzing the current Spam Flood</title>
      <link>https://insinuator.net/2015/12/teaser-on-the-troopers16-incident-analysis-workshop-analyzing-the-current-spam-flood/</link>
      <pubDate>Fri, 18 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/teaser-on-the-troopers16-incident-analysis-workshop-analyzing-the-current-spam-flood/</guid>
      <description>&lt;p&gt;As we are giving another round of our Incident &lt;a href=&#34;https://www.troopers.de/events/troopers16/566_incident_analysis/&#34;&gt;Analysis workshop&lt;/a&gt; at &lt;a href=&#34;https://www.troopers.de/troopers16/&#34;&gt;Troopers16&lt;/a&gt;, we wanted to give a little sample taste what you can expect.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Table of Contents&lt;/strong&gt;&lt;br&gt;&#xA;&lt;a href=&#34;#extraction&#34;&gt;&lt;strong&gt;Extracting Mail Attachments&lt;/strong&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;#word&#34;&gt;&lt;strong&gt;Word Document Analysis&lt;/strong&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;#static&#34;&gt;&lt;strong&gt;Static JavaScript Analysis&lt;/strong&gt;&lt;/a&gt;&lt;br&gt;&#xA;&lt;a href=&#34;#dynamic&#34;&gt;&lt;strong&gt;Dynamic JavaScript Analysis&lt;/strong&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Before we dive into the analysis, I wanted to mention that if you are going to analyze anything unknown/potentially malicious, do it in a safe environment (VM with no internet connection, in the best case on a separate physical analysis device, or at least strip all unnecessary functionality from that VM (CVE-2015-3456 is an example to answer the “why”)). Even things like looking at content with a text editor or extracting zip files should be done in the safe environment, as those tools could contain vulnerabilities.&lt;/p&gt;</description>
    </item>
    <item>
      <title>3rd Round of TROOPERS16 Talks Accepted</title>
      <link>https://insinuator.net/2015/12/3rd-round-of-troopers16-talks-accepted/</link>
      <pubDate>Thu, 17 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/3rd-round-of-troopers16-talks-accepted/</guid>
      <description>&lt;p&gt;Here at TROOPERS HQ we are well into the Holiday (read TROOPERS) Spirit so we thought we would publish another round of talks! The current agenda can be found &lt;a href=&#34;https://www.troopers.de/troopers16/agenda/&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;Happy Holidays!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;2nd Day Keynote&lt;br&gt;&#xA;&lt;strong&gt;FIRST TIME TROOPERS SPEAKER&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Bio:&lt;/strong&gt; Ben Zevenbergen joined the Oxford Internet Institute to pursue a DPhil on the intersection of privacy law, technology, social science, and the Internet. He runs a side project that aims to establish ethics guidelines for Internet research, as well as working in multidisciplinary teams such as the EU funded Network of Excellence in Internet Science. He has worked on legal, political and policy aspects of the information society for several years. Most recently he was a policy advisor to an MEP in the European Parliament, working on Europe’s Digital Agenda. Previously Ben worked as an ICT/IP lawyer and policy consultant in the Netherlands. Bendert holds a degree in law, specialising in Information Law.&lt;/p&gt;</description>
    </item>
    <item>
      <title>2nd Rounds of TROOPERS16 Talks</title>
      <link>https://insinuator.net/2015/12/2nd-rounds-of-troopers16-talks/</link>
      <pubDate>Fri, 11 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/2nd-rounds-of-troopers16-talks/</guid>
      <description>&lt;p&gt;Here’s the second round of TROOPERS16 talks. For more information  check out our website: &lt;a href=&#34;https://www.troopers.de/&#34;&gt;TROOPERS&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Happy Holidays and all the best for 2016 to everybody!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;Ivan Pepelnjak: Real-life Software-Defined Security&lt;/p&gt;&#xA;&lt;p&gt;Vendors, pundits, and industry media love to talk about Software-Defined Everything, but nothing ever changes in the enterprise world, right? Wrong. Some engineers are already solving security problems with a software-defined approach to networking and security, be it microsegmentation in NSX or OpenStack environment, building scale-out IDS clusters, or respond to DoS or intrusion events in real-time… and we’ll cover all these ideas in this fast-paced presentation&lt;/p&gt;</description>
    </item>
    <item>
      <title>First Talks of TROOPERS 2016 Accepted!</title>
      <link>https://insinuator.net/2015/12/first-talks-of-troopers-2016-accepted/</link>
      <pubDate>Wed, 09 Dec 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/12/first-talks-of-troopers-2016-accepted/</guid>
      <description>&lt;p&gt;Here’s the first round of TROOPERS16 talks. For more information  check out our website: &lt;a href=&#34;https://www.troopers.de&#34;&gt;TROOPERS&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Happy Holidays and all the best for 2016 to everybody!&lt;/p&gt;&#xA;&lt;p&gt;Your TROOPERS Team&lt;/p&gt;&#xA;&lt;p&gt;===&lt;br&gt;&#xA;Mike Ossmann: Rapid Radio Reversing&lt;/p&gt;&#xA;&lt;p&gt;Wireless security researchers have an unprecedented array of tools at their disposal today. Although Software Defined Radio (SDR) is the single most valuable tool for reverse engineering wireless signals, it is sometimes faster and easier to use other tools for portions of the reverse engineering process. I’ll discuss how beneficial a hybrid SDR/non-SDR approach has been to security researchers, and I’ll walk through an example of the process.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 5: Beyond the Thunderdome: &lt;BR /&gt; A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/06/blog-5-beyond-the-thunderdome-br-/-a-review-of-troopers15/</link>
      <pubDate>Wed, 03 Jun 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/06/blog-5-beyond-the-thunderdome-br-/-a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Troopers13_101.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Troopers13_101-200x300.jpg&#34; alt=&#34;Troopers13_101&#34;&gt;&lt;/a&gt;     The final blog in our series “Beyond the Thunderdome: A Review of TROOPERS15” focuses Exploitation &amp;amp; Attacking. With the last of this series we hope we you are already fired up and inspired for what lays a head during our upcoming &lt;strong&gt;&lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16&lt;/a&gt;&lt;/strong&gt; (March 14-18, 2016)! Can’t wait to see you there!&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“The old is new, again. CVE20112461 is back” talk created and given by Luca Carettoni and Mauro Gentile&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 4: Beyond the Thunderdome: &lt;BR/&gt;A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/06/blog-4-beyond-the-thunderdome-br/a-review-of-troopers15/</link>
      <pubDate>Mon, 01 Jun 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/06/blog-4-beyond-the-thunderdome-br/a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Blog4.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/06/Blog4-300x134.jpg&#34; alt=&#34;Blog4&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;We hope you are enjoying the ride as we continue our journey through IPv6. Below we have a great mix of talks, slides, and videos in this area posted below. We look forward to hosting more IPv6 (March 14^(th) &amp;amp; 15^(th)) talks next year at &lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16&lt;/a&gt;!&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“New Features of the SI6 Networks’IPv6 Toolkit” talk created and given by Fernando Gont&lt;/p&gt;&#xA;&lt;p&gt;The IPV6 Toolkit was originally developed for UK CPNI in an effort to enhance and be able to test the current state of IPv6 security. The toolkit itself was mainly developed for security analysis and trouble shooting of IPv6 networks and implementations. It is running on a wide range of *nix based systems (this probably is considered painful to support given that low level implementation of network functions) and release under the GPL. You can directly check it out here: &lt;a href=&#34;https://github.com/fgont/ipv6toolkit.&#34;&gt;https://github.com/fgont/ipv6toolkit.&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 3: Beyond the Thunderdome: A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/05/blog-3-beyond-the-thunderdome-a-review-of-troopers15/</link>
      <pubDate>Fri, 29 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/blog-3-beyond-the-thunderdome-a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog3.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog3-300x163.jpg&#34; alt=&#34;Blog3&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Welcome to the third edition of “Beyond the Thunderdome: A Review of&#xA;TROOPERS15”. The focus today is on IPv6 and Data Center Networks, so kick back&#xA;and enjoy the following talks and videos. And as always, check out our website&#xA;&lt;strong&gt;&lt;a href=&#34;http://www.troopers.de&#34;&gt;www.troopers.de&lt;/a&gt;&lt;/strong&gt; for details on TROOPERS16 March&#xA;14-18, 2016.&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“Enabling and Securing IPv6 in Service Provider Networks” talk created and given by Tarko Titan&lt;/p&gt;&#xA;&lt;p&gt;Telekom.ee had no IPv6, 8 moths ago. They deployed IPv6 in about 4 weeks and by now about 6% of all transported traffic is IPv6 traffic. Actually the 4 weeks timeframe is a bit too optimistic but more on that later. Tarko first explains the biggest problems in the network migration, which were the access network and the Customer -Provider Edge (CPE). Also Telekom Estonia doesn’t want to make a tradeoff at security in the IPv6 deployment.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Blog 2: Beyond the Thunderdome:&lt;BR /&gt;A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/05/blog-2-beyond-the-thunderdomebr-/a-review-of-troopers15/</link>
      <pubDate>Wed, 27 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/blog-2-beyond-the-thunderdomebr-/a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog2.cropped.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/Blog2.cropped-300x137.jpg&#34; alt=&#34;Blog2.cropped&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Today’s focus in our blog series will cover large-scale environments: Cryptography in Cloud environments and Network Automation. Since these topics will only become more important over time stay tuned for our &lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16’s&lt;/a&gt; developing agenda to see what new talks will be available (or submit your own talk during our Call for Papers starting in August via our new CFP Submission tool!)&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;“Crypto in the Cloud” talk created and given by Frederik Armknecht&lt;/p&gt;</description>
    </item>
    <item>
      <title>Beyond the Thunderdome:&lt;BR /&gt;A Review of TROOPERS15</title>
      <link>https://insinuator.net/2015/05/beyond-the-thunderdomebr-/a-review-of-troopers15/</link>
      <pubDate>Mon, 25 May 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/05/beyond-the-thunderdomebr-/a-review-of-troopers15/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/beyondthunderdome.jpg&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2015/05/beyondthunderdome.jpg&#34; alt=&#34;beyondthunderdome&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Here in Heidelberg we are already gearing up for TROOPERS16 (&lt;strong&gt;taking place from 14th to 18th March 2016&lt;/strong&gt;!). While you are preparing for our Call for Papers or waiting eagerly to sign up for your spot in one of our legendary trainings take a look at our newest blog series “Beyond the Thunderdome: A Review of TROOPERS15”. It may offer some inspiration, help you kill time while waiting for next year’s TROOPERS,  or for those that are new to our conference,  give you a taste for what TROOPERS is all about. See you soon at &lt;a href=&#34;http://www.troopers.de&#34;&gt;TROOPERS16&lt;/a&gt;!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers PacketWars 2015 – Write Up</title>
      <link>https://insinuator.net/2015/04/troopers-packetwars-2015-write-up/</link>
      <pubDate>Tue, 21 Apr 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/04/troopers-packetwars-2015-write-up/</guid>
      <description>&lt;h1 id=&#34;hello-hackers&#34;&gt;Hello Hackers!&lt;/h1&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;This year’s &lt;a href=&#34;http://www.packetwars.com&#34;&gt;PacketWars&lt;/a&gt; contest at Troopers was a blast! Under the topic of “Connected Car” the teams faced several different challenges, which we will describe (as a debriefing) here.&lt;/p&gt;&#xA;&lt;h1 id=&#34;story&#34;&gt;Story&lt;/h1&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;From the &lt;a href=&#34;https://twitter.com/bryanfite&#34;&gt;Packetmaster’s&lt;/a&gt; Battle Briefing:&lt;/p&gt;&#xA;&lt;p&gt;You and your krew are “freelancers” hired to identify and neutralize an unknown threat agent who has created weaponized software and delivered it to civilian Connected Cars via compromised EV (Electrical Vehicle) charing stations. To make matters worse there are indications that new strains of the malware are appearing as the “worm” spreads from car to car. The mobile mesh network created by the Connect Car is highly resilient, allowing the malware to spread exponentially. Time is of the essence.&lt;br&gt;&#xA;Malware analysis suggests that besides a botnet module, there is an active CANBus injection capability. There appears to be other modules but they haven’t been properly reversed and analyzed yet.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SI6 Networks’ IPv6 Toolkit v2.0 (Guille) released at the Troopers IPv6 Security Summit</title>
      <link>https://insinuator.net/2015/04/si6-networks-ipv6-toolkit-v2.0-guille-released-at-the-troopers-ipv6-security-summit/</link>
      <pubDate>Sun, 05 Apr 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/04/si6-networks-ipv6-toolkit-v2.0-guille-released-at-the-troopers-ipv6-security-summit/</guid>
      <description>&lt;p&gt;This is a guest post from &lt;a href=&#34;https://twitter.com/FernandoGont&#34;&gt;Fernando Gont&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;On March 16^(th), 2015, at the Troopers &lt;a href=&#34;https://www.troopers.de/events/troopers15/322_ipv6_security_summit/&#34;&gt;IPv6 Security Summit&lt;/a&gt;, we finally released the SI6 Networks’ IPv6 Toolkit v2.0 (Guille). The aforementioned release is now available at the &lt;a href=&#34;http://www.si6networks.com/tools/ipv6toolkit&#34;&gt;SI6 IPv6 Toolkit homepage&lt;/a&gt;. It is the result of over a year of work, and includes improvements in the following areas:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Increased portability&lt;/li&gt;&#xA;&lt;li&gt;Bug fixes&lt;/li&gt;&#xA;&lt;li&gt;Additional features in existing tools&lt;/li&gt;&#xA;&lt;li&gt;Brand-new tools&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Increased Portability&lt;/p&gt;&#xA;&lt;p&gt;One of the goals that the SI6 Toolkit had since its inception is that of portability. The SI6 Toolkit has supported all major BSD-derived OSes, Linux, and Mac OS for a number of years now. And this new release supports yet another new platform: OpenSolaris. We believe that besides supporting a greater user base, increased portability ultimately results in improved code quality.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 15 Badge</title>
      <link>https://insinuator.net/2015/03/troopers-15-badge/</link>
      <pubDate>Tue, 31 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/troopers-15-badge/</guid>
      <description>&lt;p&gt;As TROOPERS15 has come to an end, I’ve finally got the time and energy to give you a deeper insight into the TR15 badge. As most of you have probably heard during the conference, this year’s badge was based on the &lt;a href=&#34;http://www.openpcd.org/OpenPCD_2_RFID_Reader_for_13.56MHz&#34;&gt;OpenPCD2&lt;/a&gt;. The OpenPCD 2 is a 13.56MHz NFC Reader, Writer and Emulator under the GNU GPL v2. As NFC is, yet again, on an uprise, a badge with NFC simply gives you the chance to fiddle around and hack stacks of stuff in the real world. Adding some TROOPERS spirit and a few little secrets we hope we’ve designed a pretty nice badge!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers15 Videos Online</title>
      <link>https://insinuator.net/2015/03/troopers15-videos-online/</link>
      <pubDate>Sat, 28 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/troopers15-videos-online/</guid>
      <description>&lt;p&gt;We’ve just published the videos from TROOPERS15. The playlist can be found &lt;a href=&#34;https://www.youtube.com/playlist?list=PL1eoQr97VfJkfckz9nZFR7tZoBkjij23f&#34;&gt;here&lt;/a&gt;.&lt;br&gt;&#xA;Thanks! again to everybody for joining us in Heidelberg. We had a great time with you 😉&lt;/p&gt;&#xA;&lt;p&gt;Have a good weekend,&lt;/p&gt;&#xA;&lt;p&gt;Enno&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;</description>
    </item>
    <item>
      <title>GSM@Troopers</title>
      <link>https://insinuator.net/2015/03/gsm@troopers/</link>
      <pubDate>Wed, 18 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/gsm@troopers/</guid>
      <description>&lt;p&gt;Additionally to Wifi, Troopers is also offering a GSM network.&lt;br&gt;&#xA;If you want to use it, simply ask your phone to scan for available mobile networks. There you should see the usual T-Mobile D, Vodafone.de, E-Plus, O2-de operators, but also the unusual D 23 or 262 23. Just select this one, and your are done. You also can use the Troopers SIMs which you get on the welcome desk on the ground floor.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Final Agenda of Troopers15 TelcoSecDay</title>
      <link>https://insinuator.net/2015/03/final-agenda-of-troopers15-telcosecday/</link>
      <pubDate>Tue, 10 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/final-agenda-of-troopers15-telcosecday/</guid>
      <description>&lt;p&gt;Admitted, we’re a bit late this time, but here we go with the agenda of this year’s TelcoSecDay.&lt;/p&gt;&#xA;&lt;p&gt;Given the high number of quality contributions overall there’s more talks than in the previous years and we’ll hence start more early (and finish later 🙂 ), so please plan accordingly.&lt;br&gt;&#xA;This is the agenda, details for the invididual talks can be found in the respective links:&lt;/p&gt;&#xA;&lt;p&gt;8:30-9:00 Opening &amp;amp; Intro&lt;br&gt;&#xA;9:00-9:45 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-15-telcosecday-first-talks/&#34;&gt;Luca Bruno: Through the Looking-Glass, and What Eve Found There&lt;/a&gt;&lt;br&gt;&#xA;9:45-10:30 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks/&#34;&gt;Dieter Spaar: How to Assess M2M Communication from an Attacker’s Perspective&lt;/a&gt;&lt;br&gt;&#xA;Break&lt;br&gt;&#xA;11:00-11:45 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-15-telcosecday-first-talks/&#34;&gt;Tobias Engel: Securing the SS7 Interconnect&lt;/a&gt;&lt;br&gt;&#xA;11:45-12:30 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks/&#34;&gt;Ravishankar Borgaonkar: TelcoSecurity Mirage: 1G to 5G&lt;/a&gt;&lt;br&gt;&#xA;12:30-13:00 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks-ii/&#34;&gt;Hendrik Schmidt: Security Aspects of VoLTE&lt;/a&gt;&lt;br&gt;&#xA;Lunch&lt;br&gt;&#xA;14:00-14:45 &lt;a href=&#34;http://www.insinuator.net/2015/02/another-talk-added-to-troopers15-telcosecday/&#34;&gt;Rob Kuiters: On her majesty’s secret service – GRX and a Spy Agency&lt;/a&gt;&lt;br&gt;&#xA;14:45-15:30 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks-ii/&#34;&gt;“Watching the Watchers”&lt;/a&gt;&lt;br&gt;&#xA;Break&lt;br&gt;&#xA;16:00-16:45 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-15-telcosecday-first-talks/&#34;&gt;Markus Vervier: Borrowing Mobile Network Identities – Just Because We Can&lt;/a&gt;&lt;br&gt;&#xA;16:45-17:15 &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks-ii/&#34;&gt;Shahar Tal: I hunt TR-069 admins – CWMP Insecurity&lt;/a&gt;&lt;br&gt;&#xA;Refreshment&lt;br&gt;&#xA;17:30-18:00 Sébastien Roche (Orange): tba&lt;/p&gt;</description>
    </item>
    <item>
      <title>Practical IPv6 Troubleshooting while Setting up the Troopers Network</title>
      <link>https://insinuator.net/2015/03/practical-ipv6-troubleshooting-while-setting-up-the-troopers-network/</link>
      <pubDate>Mon, 09 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/practical-ipv6-troubleshooting-while-setting-up-the-troopers-network/</guid>
      <description>&lt;p&gt;Hello Everyone,&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/troopers/&#34;&gt;Troopers&lt;/a&gt; is right around the corner and as I am responsible for the whole conference network I wanted to make sure that everything is working as expected. I went to the venue on Friday because of two things I wanted/needed to setup. Compared to last year’s setup we had a couple of changes in regards to the provider connection (resulting in some changes for our network setup). First, we now have a rather big pipe for the uplink and more importantly (well that depends on the point of view ;)) there is a native IPv6 connection. Before that I had to tunnel all IPv6 traffic from the venue to one of our gateways and to forward it out (as native IPv6) from there. As this step isn’t necessary anymore, and the staff on the venue isn’t that experienced with IPv6, I had in mind to setup and verify that IPv6 is working as desired. The router used over there is a &lt;a href=&#34;http://routerboard.com/CCR1036-12G-4S&#34;&gt;Mikrotek Routerboard&lt;/a&gt;. As I haven’t worked with these devices before, I was curious whether everything works as it should ;).&lt;/p&gt;</description>
    </item>
    <item>
      <title>A Chiron Workshop at the IPv6 Security Summit of Troopers 15</title>
      <link>https://insinuator.net/2015/03/a-chiron-workshop-at-the-ipv6-security-summit-of-troopers-15/</link>
      <pubDate>Wed, 04 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/a-chiron-workshop-at-the-ipv6-security-summit-of-troopers-15/</guid>
      <description>&lt;p&gt;This is a guest post from &lt;a href=&#34;https://twitter.com/AntoniosAtlasis&#34;&gt;Antonios Atlasis&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/2014/02/a-short-teaser-on-my-new-ipv6-testing-framework/&#34;&gt;Last year&lt;/a&gt;, during the &lt;a href=&#34;https://www.troopers.de/events/troopers14/372_ipv6_security_summit/&#34;&gt;IPv6 Security Summit&lt;/a&gt; of &lt;a href=&#34;https://www.troopers.de/archives/troopers14/&#34;&gt;Troopers 14&lt;/a&gt; I had the pleasure to present publicly, for first time, my IPv6 Penetration Testing / Security Assessment framework called &lt;a href=&#34;http://www.secfu.net/tools-scripts/&#34;&gt;&lt;em&gt;Chiron&lt;/em&gt;&lt;/a&gt;&lt;em&gt;,&lt;/em&gt; while later, it was also presented at &lt;a href=&#34;http://2014.brucon.org/index.php/&#34;&gt;Brucon 14&lt;/a&gt; as part of the 5×5 project. This year, I am returning back to the place where it all started, to the beautiful city of Heidelberg to give another workshop about &lt;em&gt;Chiron&lt;/em&gt; at the &lt;a href=&#34;https://www.troopers.de/events/troopers15/322_ipv6_security_summit/&#34;&gt;IPv6 Security Summit&lt;/a&gt; of &lt;a href=&#34;https://www.troopers.de/troopers/&#34;&gt;Troopers 15&lt;/a&gt;. But, is it just another workshop with the known Chiron features or has something changed?&lt;br&gt;&#xA;I would say a lot :). The most significant enhancements are described below.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Bug Hunting for the Man on the Street</title>
      <link>https://insinuator.net/2015/03/bug-hunting-for-the-man-on-the-street/</link>
      <pubDate>Tue, 03 Mar 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/03/bug-hunting-for-the-man-on-the-street/</guid>
      <description>&lt;p&gt;This is a guest post from Vladimir Wolstencroft, to provide some details of his upcoming &lt;a href=&#34;https://www.troopers.de/events/troopers15/499_bug_hunting_for_the_man_on_the_street/&#34;&gt;#TR15 talk&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;What do you get when you combine a security appliance vendor, a bug bounty program, readily available virtualised machines, a lack of understanding of best security practices and broken crypto?&lt;br&gt;&#xA;Ownage, a good story and maybe even that bounty…&lt;/p&gt;&#xA;&lt;p&gt;Focusing on Barracuda’s numerous security appliances, this talk will detail bug hunting methods and the principles used to examine these machines:&lt;br&gt;&#xA;Starting with a black box test and the challenges that this approach poses, to decrypting the firmware, getting system root, bricking the box, fighting the (de)activation methods, getting system root again, DOS’ing the VM host and finally using Barracuda’s own source code to find those vulnerabilities that otherwise would be invisible or impossible to find! There were also some unexpected outcomes that followed…&lt;/p&gt;</description>
    </item>
    <item>
      <title>Another Talk Added to Troopers15 TelcoSecDay</title>
      <link>https://insinuator.net/2015/02/another-talk-added-to-troopers15-telcosecday/</link>
      <pubDate>Sat, 14 Feb 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/02/another-talk-added-to-troopers15-telcosecday/</guid>
      <description>&lt;p&gt;We have pretty much finalized the agenda for the &lt;a href=&#34;https://www.troopers.de/troopers/&#34;&gt;Troopers&lt;/a&gt; TelcoSecDay and here’s another cool talk (the others can be found &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-15-telcosecday-first-talks/&#34;&gt;here&lt;/a&gt;, &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks/&#34;&gt;here&lt;/a&gt; and &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks-ii/&#34;&gt;here&lt;/a&gt;):&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Rob Kuiters: On her majesty’s secret service – GRX and a Spy Agency&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: In 2013 the GPRS Roaming eXchange (GRX) was in mainstream media as part of the high profile Edward Snowden revelations. The leaked documents indicated that the UK government’s intelligence organisation, Government Communications Headquarters’ (GCHQ) hacked the Belgian GRX provider, Belgacom International Carrier Services (BICS). They did this by targeting the GRX provider’s employees with the ultimate aim of gaining access to Belgacom’s Core GRX routers. Allegedly, GCHQ hacked the GRX routers in order to carry out man-in-the middle “traffic sniffing” attacks against mobile users who are roaming with smartphones or other devices capable of handling data.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers TelcoSecDay – Next Talks (II)</title>
      <link>https://insinuator.net/2015/02/troopers-telcosecday-next-talks-ii/</link>
      <pubDate>Thu, 12 Feb 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/02/troopers-telcosecday-next-talks-ii/</guid>
      <description>&lt;p&gt;Hi,&lt;/p&gt;&#xA;&lt;p&gt;in addition to those &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-15-telcosecday-first-talks/&#34;&gt;recently announced&lt;/a&gt; and &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-telcosecday-next-talks/&#34;&gt;these&lt;/a&gt;, we’ve identified three more suitable talks for the TelcoSecDay &lt;img src=&#34;http://www.insinuator.net/wp-includes/images/smilies/icon_wink.gif&#34; alt=&#34;;-)&#34;&gt;.&lt;/p&gt;&#xA;&lt;p&gt;These are:&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Hendrik Schmidt: Security Aspects of VoLTE&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: VoLTE is on its rise in mobile telecommunications. The service is provided by the IP Multimedia Subsystem (IMS) which consists of a couple of components. All those components offer new and, from an attacker’s perspective, interesting interfaces. This talk evaluates the most interesting interfaces and demonstrates attack vectors an attacker could abuse. This covers attacks from customer access, Internet VoIP services and roaming exchange.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers TelcoSecDay – Next Talks</title>
      <link>https://insinuator.net/2015/02/troopers-telcosecday-next-talks/</link>
      <pubDate>Tue, 10 Feb 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/02/troopers-telcosecday-next-talks/</guid>
      <description>&lt;p&gt;Hi,&lt;/p&gt;&#xA;&lt;p&gt;in addition to those &lt;a href=&#34;http://www.insinuator.net/2015/02/troopers-15-telcosecday-first-talks/&#34;&gt;recently announced&lt;/a&gt; we’ve identified two more suitable talks for the TelcoSecDay 😉&lt;br&gt;&#xA;These are&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Ravishankar Borgaonkar – TelcoSecurity Mirage: 1G to 5G&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: The evolution of the mobile networking technology from 1G to 5G is driving the needs of our modern Digital Society. In this talk, we visit the security pillars of these technologies and discuss if 5G can strengthen them or not from an end-users perspective. In particular, we try to fill up security requirements for 5G networks based on the ongoing design direction.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 15 TelcoSecDay – First Talks</title>
      <link>https://insinuator.net/2015/02/troopers-15-telcosecday-first-talks/</link>
      <pubDate>Sat, 07 Feb 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/02/troopers-15-telcosecday-first-talks/</guid>
      <description>&lt;p&gt;At &lt;a href=&#34;https://www.troopers.de/troopers/&#34;&gt;Troopers15&lt;/a&gt; there will be another TelcoSecDay, like in the years before (&lt;a href=&#34;https://www.troopers.de/events/troopers14/395_telcosec_day_2014_invitation_only/&#34;&gt;2014&lt;/a&gt;, &lt;a href=&#34;https://www.troopers.de/events/troopers13/406_telcosec_day_2013_invitation_only/&#34;&gt;2013&lt;/a&gt;, &lt;a href=&#34;https://www.troopers.de/events/troopers12/427_telcosec_day/&#34;&gt;2012&lt;/a&gt;). Here’s the first three talks (of overall 5-6):&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Luca Bruno: Through the Looking-Glass, and What Eve Found There&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: Traditionally, network operators have provided some kind of public read-only access to their current view of the BGP routing table, by the means of a “looking glass”.&lt;br&gt;&#xA;In this talk we inspect looking glass instances from a security point of view, showing many shortcomings and flaws which could let a malicious entity take control of critical devices connected to them. In particular, we will highlight how easy it is for a low-skilled attacker to gain access to core routers within multiple ISP infrastructures.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers15 IPv6 Security Summit</title>
      <link>https://insinuator.net/2015/01/troopers15-ipv6-security-summit/</link>
      <pubDate>Tue, 20 Jan 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/01/troopers15-ipv6-security-summit/</guid>
      <description>&lt;p&gt;We’ve finalized the agenda for this year’s IPv6 Security Summit. Here’s an overview of the event:&lt;/p&gt;&#xA;&lt;p&gt;The “IPv6 Security Summit” is a special two-day convention in the context of the &lt;a href=&#34;https://www.troopers.de/troopers/&#34;&gt;Troopers security conference&lt;/a&gt;. It will be run in two tracks of both half-day workshops and 90 minute presentations on specific topics. The goal is to foster the discussion of IPv6 security aspects &amp;amp; issues and to provide practical advice for security officers, network planners and practitioners in the IPv6 security field.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers15 – 5th Round of Talks Selected</title>
      <link>https://insinuator.net/2015/01/troopers15-5th-round-of-talks-selected/</link>
      <pubDate>Sat, 03 Jan 2015 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2015/01/troopers15-5th-round-of-talks-selected/</guid>
      <description>&lt;p&gt;Happy new year and all the best for 2015 to everybody!&lt;br&gt;&#xA;Here’s the next round of Troopers15 talks (all the others can be found &lt;a href=&#34;http://www.insinuator.net/tag/TR15/&#34;&gt;here&lt;/a&gt;):&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;Marion Marschalek &amp;amp; Moti Joseph: The Wallstreet of Windows Binaries        &lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Synopsis&lt;/strong&gt;: Nowadays common ways to find exploitable vulnerabilities include but are not limited to fuzzing, static and dynamic analysis and patch reversing. All common approaches have advantages and limits. Fuzzers tend to only find a limited number of bugs, depending on the sophistication of the fuzzer which is indirectly dependent on the development time invested. Reverse engineering a binary for finding bugs, regardless whether statically or with a debugger, is tedious and requires a lot of time and expertise.&lt;br&gt;&#xA;As we are lazy bastards, we refuse to do all the work by hand and brain. And, as we are greedy bastards, we want a maximum scope of vulnerabilities we can cover and not be limited to what we see from a fuzzers perspective.&lt;br&gt;&#xA;So as you know – in general the lazy greedy bastards have the better ideas. We present you with our idea, which is built after the model of the Wallstreet. We built a tool which weighs the value of a function in a Windows binary as the Wallstreet values a stock; the value telling us the likability of a function to be exploitable.&lt;br&gt;&#xA;The Wallstreet technique works with two different evaluation methods, for once the likability that a function is vulnerable and also the likability that it is exploitable.&lt;br&gt;&#xA;We collect indicators, which help us evaluate that a specific function is potentially vulnerable. Such could be a present memory allocation or conversion function, a lacking sanitization check or a suspicious pattern in the functionname such as ‘create’, ‘convert’ or ‘set’. A combination of these and a handful more indicators lets us calculate what we call the speculation value.&lt;br&gt;&#xA;For the validation of the exploitability we traverse the call tree of a suspicious candidate, to verify its accessibility in an automated way. Only functions which we can influence as an attacker are interesting for us; thus we rate these accessible functions with a price-to-earnings value. Finally putting speculation value and price-to-earnings value in context, we evaluate a function with either ‘buy’ if we believe it comes with an exploitable vulnerability, or with ‘sell’ when we are certain it is not interesting to us. No worries, the presentation will not contain advanced mathematical equations.&lt;br&gt;&#xA;Our tool parses binaries and persists all the gathered information to a database, from where we can retrieve highly suspicious functions in an automated way. Without getting our hands dirty, that is. And because we are lazy bastards who like colors, a lot, we use visuals to make evaluation even easier. The tool is dubbed Wallstreet, free after the most famous stock market on the planet. It is based on Python, C and SQLite and will be released under the WTFPL license (&lt;a href=&#34;http://www.wtfpl.net/)&#34;&gt;http://www.wtfpl.net/)&lt;/a&gt;. Also, there will be demos 😀&lt;br&gt;&#xA;Wrapping it up, this presentation shows an easy to use approach which makes the complicated topic of binary exploitation more accessible. Wallstreet of Windows Binaries provides beginners with better understanding of the challenges and practitioners with a hands-on tool.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers15 – Fourth Round of Talks Selected</title>
      <link>https://insinuator.net/2014/12/troopers15-fourth-round-of-talks-selected/</link>
      <pubDate>Mon, 29 Dec 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/12/troopers15-fourth-round-of-talks-selected/</guid>
      <description>&lt;p&gt;As we promised some days ago here’s the fourth round of Troopers15 talks (the first three can be found &lt;a href=&#34;http://www.insinuator.net/tag/tr15/&#34;&gt;here&lt;/a&gt;). We really can’t wait for the con ourselves 😉 !&lt;/p&gt;&#xA;&lt;p&gt;Arrigo Triulzi: Pneumonia, Shardan, Antibiotics and Nasty MOV: a Dead Hand’s Tale&lt;br&gt;&#xA;&lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: Starting in the 80’s we will discuss the influence of nuclear weapons on the design of an ITsec “Dead Hand” system for a security practitioner, how it merged with research into firmware backdoors and microcode modification and finally triggered when instead of enjoying Summer pneumonia struck unannounced, or rather, announced by the Dead Hand via Twitter.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers15 – Third Round of Talks Selected</title>
      <link>https://insinuator.net/2014/12/troopers15-third-round-of-talks-selected/</link>
      <pubDate>Sat, 20 Dec 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/12/troopers15-third-round-of-talks-selected/</guid>
      <description>&lt;p&gt;As we promised some days ago here’s the third round of Troopers15 speakers (first one &lt;a href=&#34;http://www.insinuator.net/2014/11/troopers15-first-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;, second &lt;a href=&#34;http://www.insinuator.net/2014/12/troopers15-second-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;). It’s going to be awesome!&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://3vildata.tumblr.com/&#34;&gt;Andreas Lindh&lt;/a&gt;: Defender Economics         &lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: There are a lot of preconceptions about defense, the most prevalent one probably the “defenders dilemma” in which it is stated that an attacker only needs to find one weakness to compromise a network while a defender needs to defend all of them. While this may be true in a technical sense, things become a lot more complicated once you apply real world considerations. Preconceptions like this are often the foundation on which risk management and ultimately defense strategies are based, something that has led to a number of false but generally accepted assumptions about attackers and their capabilities, and how to defend against them.&lt;br&gt;&#xA;This talk will discuss the capabilities, and more importantly the limitations, of different types of attackers. Using the ancient wisdom of the Teenage Mutant Ninja Turtles, the speaker will explain how knowledge of an attacker’s limitations can be leveraged to raise the cost of attack, something that will tip the scale in the defenders favor. The speaker will also explain how different defensive measures will affect different types of attackers, how they are likely to react to them, and in the end how to get them to hopefully move on to another target.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers15 – Second Round of Talks Selected</title>
      <link>https://insinuator.net/2014/12/troopers15-second-round-of-talks-selected/</link>
      <pubDate>Fri, 05 Dec 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/12/troopers15-second-round-of-talks-selected/</guid>
      <description>&lt;p&gt;As we promised some days ago when we &lt;a href=&#34;http://www.insinuator.net/2014/11/troopers15-first-round-of-talks-selected/&#34;&gt;published the first round&lt;/a&gt;, here we go with the second:&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://twitter.com/michaelossmann&#34;&gt;Mike Ossmann&lt;/a&gt;: RF Retroreflectors, Emission Security and SDR&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: The leaked pages from the NSA ANT catalog provided a glimpse into the modern world of emission security. Extending beyond passive monitoring of unintentional emissions, today’s spooks employ active attacks with tools such as RF retroreflectors. I’ll report on my experiments to reproduce such techniques with open source hardware and software, primarily using SDR.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers15 – First Round of Talks Selected</title>
      <link>https://insinuator.net/2014/11/troopers15-first-round-of-talks-selected/</link>
      <pubDate>Sat, 22 Nov 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/11/troopers15-first-round-of-talks-selected/</guid>
      <description>&lt;p&gt;We’re delighted to provide the first announcement of talks of next year’s &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers&lt;/a&gt; edition. Looks like it’s going to be a great event again &lt;img src=&#34;http://www.insinuator.net/wp-includes/images/smilies/icon_wink.gif&#34; alt=&#34;;-)&#34;&gt;.&lt;br&gt;&#xA;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;Jacob Torrey – The foundation is rotting and the basement is flooding: A deeper look at the implicit trust relationships in your organization        &lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: In this session, a new hardware-level attack on PCIe is presented as an example for the implicit trust your organization places in 3rd parties. These implicit trust relationships that are typically overlooked will be closely examined under the lens of “InfoSec debt” and providing guidance to InfoSec decision makers on the ROI or risks of adding additional IT services/appliances to an organization’s network.&lt;br&gt;&#xA;The “InfoSec debt” metric can then be tracked over time and provides an intuitive way to explain the cost/benefits of IT security to other organizational stakeholders.&lt;/p&gt;</description>
    </item>
    <item>
      <title>A TROOPER’s Keyboard, part2</title>
      <link>https://insinuator.net/2014/04/a-troopers-keyboard-part2/</link>
      <pubDate>Wed, 09 Apr 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/04/a-troopers-keyboard-part2/</guid>
      <description>&lt;p&gt;Greetings fellow TROOPERs,&lt;/p&gt;&#xA;&lt;p&gt;TROOPERS14 has come to an end, and it’s finally time to let you have a go at the Badge’s source code. As promised, it was slightly modified and extended, to show you the full potential of your new gadget. I’ve added some nice payloads from Nikhil Mittal and a few own ones. Above that, for those who took their parts for soldering home, I’ve also added a few quick instructions on how to do the soldering.&lt;/p&gt;</description>
    </item>
    <item>
      <title>A TROOPER’s Keyboard</title>
      <link>https://insinuator.net/2014/03/a-troopers-keyboard/</link>
      <pubDate>Wed, 19 Mar 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/03/a-troopers-keyboard/</guid>
      <description>&lt;p&gt;Greetings from the Print Media Academy in Heidelberg. Just in time for TROOPERS14, I’ve got the great honor to present this years badge!&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://www.insinuator.net/wp-content/uploads/2014/03/badge.png.png&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2014/03/badge.png-1024x997.png&#34; alt=&#34;badge.png&#34;&gt;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;Being a TROOPER is tough: You need to know loads of information, learn even more and be able to work fast.&lt;/p&gt;&#xA;&lt;p&gt;This year we decided to increase your efficiency and speed when collecting data from computer systems and, let’s say, hacking them! Your newest gadget is based on a plain &lt;a href=&#34;Arduino%20Leonardo&#34; title=&#34;http://arduino.cc/de/Main/ArduinoBoardLeonardo&#34;&gt;Arduino Leonardo&lt;/a&gt;, modded with one of our famous shields. After adding a few LEDs and buttons, it will power up to full functionality.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The Three Billion Dollar App – Some Notes on My Upcoming Troopers Talk</title>
      <link>https://insinuator.net/2014/02/the-three-billion-dollar-app-some-notes-on-my-upcoming-troopers-talk/</link>
      <pubDate>Tue, 25 Feb 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/02/the-three-billion-dollar-app-some-notes-on-my-upcoming-troopers-talk/</guid>
      <description>&lt;p&gt;This is a guest post from Vladimir Wolstencroft from our friends of &lt;a href=&#34;http://www.aurainfosec.com/&#34;&gt;aura information security&lt;br&gt;&#xA;=&lt;/a&gt;=================================================================&lt;/p&gt;&#xA;&lt;p&gt;Mobile messaging applications have been occupying people’s attention and it seems to be all the latest news. Perhaps I should have called my presentation the 19 Billion dollar app but at the time of writing and research I thought the proposed 3 Billion dollar amount for SnapChat was a little ludicrous, who could have known that would have been just a drop in the ocean.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Preliminary Agenda for Troopers 2014 Telco Sec Day</title>
      <link>https://insinuator.net/2014/02/preliminary-agenda-for-troopers-2014-telco-sec-day/</link>
      <pubDate>Tue, 04 Feb 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/02/preliminary-agenda-for-troopers-2014-telco-sec-day/</guid>
      <description>&lt;p&gt;Given we’ve received a number of inquiries as for the agenda of this year’s TelcoSecDay here’s a first preliminary agenda. To get an idea of the event’s character you might have a look at the agenda of the &lt;a href=&#34;https://www.troopers.de/archives/troopers12/agenda12/troopers12-telcosec-day/index.html&#34;&gt;2012 edition&lt;/a&gt; or the &lt;a href=&#34;https://www.troopers.de/archives/troopers13/agenda13/troopers13-telcosec-day-2013/index.html&#34;&gt;2013 edition&lt;/a&gt;. Pls note that there might be changes/additions to the following outline as we’re currently discussing potential contributions with two European operators. Here we go, for today:&lt;/p&gt;&#xA;&lt;p&gt;9:00: Opening Remarks &amp;amp; Introduction&lt;br&gt;&#xA;9:15: Ravi Borgaonkor – Evolution of SIM Card Security&lt;br&gt;&#xA;10:15: Break&lt;br&gt;&#xA;10:45: Adrian Dabrowski&lt;br&gt;&#xA;11:45: Collin Mulliner – PatchDroid – Third Party Security Patches for Android&lt;br&gt;&#xA;12:30: Lunch&lt;br&gt;&#xA;13:45: Philippe Langlois&lt;br&gt;&#xA;14:45: Break&lt;br&gt;&#xA;15:15: Haya Shulman – The Illusion of Challenge-Response Authentication&lt;br&gt;&#xA;16:00: Christian Sielaff &amp;amp; Daniel Hauenstein – Breaking Network Monitoring Tools Used in Telco Space&lt;br&gt;&#xA;16:30: Closing Remarks&lt;br&gt;&#xA;19:00: Joint dinner (hosted by ERNW) in Heidelberg Altstadt for those interested and/or staying for the main conference&lt;/p&gt;</description>
    </item>
    <item>
      <title>More Troopers Talks Selected</title>
      <link>https://insinuator.net/2014/01/more-troopers-talks-selected/</link>
      <pubDate>Sat, 18 Jan 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/01/more-troopers-talks-selected/</guid>
      <description>&lt;p&gt;Today we have to pleasure to announce another round of &lt;a href=&#34;https://www.troopers.de/&#34;&gt;Troopers&lt;/a&gt; talks.&lt;br&gt;&#xA;Here we go:&lt;/p&gt;&#xA;&lt;p&gt; &lt;br&gt;&#xA;Noam Liram: Vulnerability Classification in the SaaS Era      &lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Abstract: In this talk we will thoroughly analyze two major SaaS vulnerabilities that were found by Adallom (one of which is still in responsible disclosure stages at the time of writing). By demonstrating this new class of exploits which we have nick-named “Ice Dagger” attacks, we aim to change the current industry-wide criteria for vulnerability classifications, which were developed in the Desktop/Server world, are inadequate when classifying SaaS vulnerabilities. We will specifically discuss the details of MS13-104.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2014 – Third Round of Talks Selected</title>
      <link>https://insinuator.net/2014/01/troopers-2014-third-round-of-talks-selected/</link>
      <pubDate>Fri, 03 Jan 2014 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2014/01/troopers-2014-third-round-of-talks-selected/</guid>
      <description>&lt;p&gt;At first a very happy new year to all our readers!&lt;/p&gt;&#xA;&lt;p&gt;Today we announce the third round of Troopers 2014 talks (first round &lt;a href=&#34;http://www.insinuator.net/2013/11/troopers-2014-first-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;, second &lt;a href=&#34;http://www.insinuator.net/2013/12/troopers-2014-second-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;).&lt;/p&gt;&#xA;&lt;p&gt;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;===&lt;/p&gt;&#xA;&lt;p&gt;Daniel Mende: Implementing an USB Host Driver Fuzzer         &lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Abstract: The Universal Serial Bus (USB) can be found everywhere these days, may it be to connect a mouse or keyboard to the computer, transfer data on a flash drive connected via USB or to attach some additional hardware like a Digital Video Broadcast receiver. Some of these devices use a standardized device class which are served by an operating system default driver while other, special purpose devices, do not fit into any of those classes, so vendors ship their own drivers. As every vendor specific USB driver installed on a system adds additional attack surface, there needs to be some method to evaluate the stability and the security of those vendor proprietary drivers. The simplest way to perform a stability analysis of closed source products is the fuzzing approach. As there have been no publicly available tools for performing USB host driver fuzzing, I decided to develop one ;-), building on Sergey’s and Travis’ legendary &lt;a href=&#34;https://www.troopers.de/wp-content/uploads/2012/12/TROOPERS13-You_wouldnt_share_a_syringe_Would_you_share_a_USB_port-Sergey_Bratus+Travis_Goodspeed.pdf&#34;&gt;Troopers13 talk&lt;/a&gt;. Be prepared to learn a lot about USB specifics, and to see quite a number of blue screens and stack traces on major server operating systems…&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2014 – Second Round of Talks Selected</title>
      <link>https://insinuator.net/2013/12/troopers-2014-second-round-of-talks-selected/</link>
      <pubDate>Wed, 18 Dec 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/12/troopers-2014-second-round-of-talks-selected/</guid>
      <description>&lt;p&gt;We’re very happy to announce the second round of Troopers 2014 talks today (first round &lt;a href=&#34;http://www.insinuator.net/2013/11/troopers-2014-first-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;).&lt;br&gt;&#xA;Some (well, actually most 😉 ) of these talks haven’t been presented before, at any other occasion, so this is exciting fresh material which was/is prepared especially for &lt;a href=&#34;https://www.troopers.de&#34;&gt;Troopers&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Andreas Wiegenstein &amp;amp; Xu Jia: Risks in Hosted SAP Environments.&lt;/strong&gt; &lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;**Synopsis: **Many SAP customers have outsourced the operation of their SAP systems in order to save cost. In doing so, they entrust their most critical data to a hosting provider, potentially sharing the same SAP server with a number of companies and organizations unknown to them. These companies and organizations virtually sit in the same boat, without knowing each other and without trusting each other. They all trust in the ability of their hosting provider to run their operating environment in a secure way, though.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2014 – First Round of Talks Selected</title>
      <link>https://insinuator.net/2013/11/troopers-2014-first-round-of-talks-selected/</link>
      <pubDate>Sat, 16 Nov 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/11/troopers-2014-first-round-of-talks-selected/</guid>
      <description>&lt;p&gt;We’re delighted to provide the first announcement of talks of next year’s &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt; edition. Looks like it’s going to be a great event again 😉&lt;br&gt;&#xA;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;Toby Kohlenberg: Granular Trust – Making it Work&lt;/p&gt;&#xA;&lt;p&gt;Over the last 5 years the concept of using dynamic or granular trust models to control access to systems, networks and applications has become well known and is now seeing partial adoption in many places. The challenge is how granular and dynamic can you get and the question is whether it is worth it. As the architect of Intel’s trust model Toby can speak to the entire journey from initial idea through current implementation and the likely road ahead. This talk will include the good, bad and ugly parts of designing a trust model and then implementing it in a Fortune 50 company’s production environment. You will learn from his mistakes so you can make different ones.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Pre-Weekend Goody: TROOPERS13 Video</title>
      <link>https://insinuator.net/2013/07/pre-weekend-goody-troopers13-video/</link>
      <pubDate>Thu, 11 Jul 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/07/pre-weekend-goody-troopers13-video/</guid>
      <description>&lt;p&gt;Enjoy! After seeing this I personally feel like signing up for the &lt;a href=&#34;https://www.troopers.de/index.html&#34;&gt;TROOPERS14 Enthusiast Package&lt;/a&gt; 😉&lt;/p&gt;&#xA;&lt;p&gt;Carry on&lt;br&gt;&#xA;Florian &amp;amp; Team&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS14 Registration Open &#43; TROOPERS13 Photos Online</title>
      <link>https://insinuator.net/2013/06/troopers14-registration-open--troopers13-photos-online/</link>
      <pubDate>Sun, 30 Jun 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/06/troopers14-registration-open--troopers13-photos-online/</guid>
      <description>&lt;p&gt;**Dear blog followers, TROOPERS speakers &amp;amp; attendees,&lt;br&gt;&#xA;**we hope you’re doing fine! Today we have a couple of great things to share with you:&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;TROOPERS14&lt;/strong&gt;&lt;br&gt;&#xA;Let’s start with a date. Get your calendar and mark &lt;strong&gt;March 17th – 21st 2014&lt;/strong&gt;. It’s your TROOPERS14 holidays. One week full of high-end education, workshops, talks, reconnecting with friends, action, delicious food and one or the other party. You know the drill – more details further down.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers13 Videos Online</title>
      <link>https://insinuator.net/2013/06/troopers13-videos-online/</link>
      <pubDate>Sat, 01 Jun 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/06/troopers13-videos-online/</guid>
      <description>&lt;p&gt;Hi,&lt;/p&gt;&#xA;&lt;p&gt;as we’ve received quite some requests re: the videos from &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt; 2013: the YouTube playlist can be found &lt;a href=&#34;https://www.youtube.com/playlist?list=PL1eoQr97VfJl1LdMzyQPz71uR6bwiUGog&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;Have fun (and learn something ;-)) watching, cu next year&lt;/p&gt;&#xA;&lt;p&gt;Enno&lt;/p&gt;</description>
    </item>
    <item>
      <title>IPv6 Attacks &amp; Pentesting Workshops</title>
      <link>https://insinuator.net/2013/05/ipv6-attacks-pentesting-workshops/</link>
      <pubDate>Tue, 14 May 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/05/ipv6-attacks-pentesting-workshops/</guid>
      <description>&lt;p&gt;Due to “popular demand” and given &lt;a href=&#34;http://www.mh-sec.de/&#34;&gt;Marc&lt;/a&gt; couldn’t join us at the &lt;a href=&#34;https://www.troopers.de/archives/troopers13/agenda13/troopers13-ipv6-security-summit-2013/index.html&#34;&gt;IPv6 Security Summit&lt;/a&gt; (as flights into FRA were canceled that day due to snow) we decided to invite him and &lt;a href=&#34;https://www.troopers.de/archives/troopers13/agenda13/troopers13-ipv6-security-summit-2013/troopers13-ipv6-security-summit-2013-presentations/index.html#extension_headers&#34;&gt;Antonios Atlasis&lt;/a&gt; another time, to present their knowledge, skills &amp;amp; voodoo in two workshops held in Heidelberg, in late June. More details can be found &lt;a href=&#34;https://www.ernw.de/newsfeed/ipv6-attacks-pentesting-workshops/index.html&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;See you all potentially at the Heise IPv6 Kongress, take care&lt;/p&gt;&#xA;&lt;p&gt;Enno&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;</description>
    </item>
    <item>
      <title>Presentations from TR13 TelcoSecDay Online</title>
      <link>https://insinuator.net/2013/04/presentations-from-tr13-telcosecday-online/</link>
      <pubDate>Sun, 28 Apr 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/04/presentations-from-tr13-telcosecday-online/</guid>
      <description>&lt;p&gt;Hi,&lt;/p&gt;&#xA;&lt;p&gt;just to let you know that all presentations from this year’s &lt;a href=&#34;https://www.troopers.de/archives/troopers13/agenda13/troopers13-telcosec-day-2013/index.html&#34;&gt;TelcoSecDay&lt;/a&gt; are published in the interim. (Harald [Welte] couldn’t participate as in the morning of that day FRA airport was closed on short notice).&lt;/p&gt;&#xA;&lt;p&gt;Next year’s TSD will happen on 03/18/2014.&lt;/p&gt;&#xA;&lt;p&gt;Take care,&lt;/p&gt;&#xA;&lt;p&gt;Enno&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS13 – The Badge Code</title>
      <link>https://insinuator.net/2013/03/troopers13-the-badge-code/</link>
      <pubDate>Fri, 15 Mar 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/03/troopers13-the-badge-code/</guid>
      <description>&lt;p&gt;As a lot of people were asking for, here comes the code of your badge. All You need to customize your badge, is a micro controller programmer, like the &lt;a href=&#34;http://www.microchip.com/pickit3&#34;&gt;Pickit&lt;/a&gt; (its around 30 to 40 euros) and the build environment, &lt;a href=&#34;http://www.microchip.com/mplabx/&#34;&gt;MPLAB&lt;/a&gt; which you can get for free. Then just &lt;a href=&#34;https://www.ernw.de/download/tr13_badge.tar.bz2&#34;&gt;download the code&lt;/a&gt; and implement your own super cool features. Let us know what you did, the best hacks will get into the TROOPERS hall of fame (-;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers13 IPv6 Security Summit – First Presentations Available</title>
      <link>https://insinuator.net/2013/03/troopers13-ipv6-security-summit-first-presentations-available/</link>
      <pubDate>Mon, 11 Mar 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/03/troopers13-ipv6-security-summit-first-presentations-available/</guid>
      <description>&lt;p&gt;We had a great day today at the &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-ipv6-security-summit-2013/index.html&#34;&gt;Troopers IPv6 Security Summit&lt;/a&gt;. Good conversations, quite some technical discussion and a prevailing overall will to improve actual IPv6 network security.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.ernw.de/download/IPv6%20Extension%20Headers%20-%20New%20Features,%20and%20New%20Attack%20Vectors.pdf&#34;&gt;Here&lt;/a&gt; are the slides of Antonios Atlasis’ great talk on extension headers and &lt;a href=&#34;https://www.ernw.de/download/IPv6%20Extension%20Headers%20-%20New%20Features,%20and%20New%20Attack%20Vectors.py&#34;&gt;these&lt;/a&gt; are some of his accompanying Python/Scapy scripts. My own presentation on high secure IPv6 networks can be found &lt;a href=&#34;https://www.ernw.de/download/ERNW_TR13_High_Secure_Networks_v1_0web.pdf&#34;&gt;here&lt;/a&gt;. The slides of the &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-ipv6-security-summit-2013/troopers13-ipv6-security-summit-2013-workshop-overview-of-the-real-world-capabilities-of-major-commercial-security-products/index.html&#34;&gt;real-world capabilities workshop&lt;/a&gt; will not be published yet as we first have to discuss some stuff with a vendor.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Latest SAP threats, SAP Forensics &amp;amp; BIZEC @Troopers!</title>
      <link>https://insinuator.net/2013/02/latest-sap-threats-sap-forensics-amp-bizec-@troopers/</link>
      <pubDate>Wed, 27 Feb 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/02/latest-sap-threats-sap-forensics-amp-bizec-@troopers/</guid>
      <description>&lt;h3 id=&#34;this-is-a-guest-post-from-mariano-nunez-and-juan-perez-etchegoyen&#34;&gt;This is a guest post from &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-1-day-workshop-sap-security-protecting-your-sap-systems-against-hackers-and-industrial-espionage/index.html&#34;&gt;Mariano Nunez and Juan Perez-Etchegoyen&lt;/a&gt;&lt;/h3&gt;&#xA;&lt;p&gt;Juan Perez-Etchegoyen (&lt;a href=&#34;https://twitter.com/intent/user?screen_name=jp_pereze&#34;&gt;@jp_pereze&lt;/a&gt;) and Mariano Nunez (&lt;a href=&#34;https://twitter.com/intent/user?screen_name=marianonunezdc&#34;&gt;@marianonunezdc&lt;/a&gt;) from &lt;a href=&#34;http://www.onapsis.com/&#34;&gt;Onapsis&lt;/a&gt; here, thrilled to be &lt;a href=&#34;https://www.troopers.de&#34;&gt;troopers&lt;/a&gt; for the third time! In this post we want to share with you a glimpse of what you will see regarding SAP security at this amazing conference.&lt;/p&gt;&#xA;&lt;p&gt;Last week we released advisories regarding several vulnerabilities affecting SAP platforms. Some of these vulnerabilities are in fact very critical, and their exploitation could lead to a &lt;strong&gt;full-compromise&lt;/strong&gt; of the entire SAP implementation – even &lt;strong&gt;by completely anonymous attackers&lt;/strong&gt;. Following our responsible disclosure policy, SAP released the relevant SAP Security Notes (patches) for all these vulnerabilities a long time ago, so if you are an SAP customer make sure you have properly implemented them!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Bluevoxing</title>
      <link>https://insinuator.net/2013/02/bluevoxing/</link>
      <pubDate>Thu, 21 Feb 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/02/bluevoxing/</guid>
      <description>&lt;h3 id=&#34;this-is-a-guest-post-from-graeme-neilson&#34;&gt;This is a guest post from &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-2-day-workshop-reverse-engineering/index.html&#34;&gt;Graeme Neilson&lt;/a&gt;&lt;/h3&gt;&#xA;&lt;p&gt;Reverse engineering is generally thought of as using debuggers, disassemblers and hex editors. Much as I love hex editors, IDA and staring at opcodes for the last few years I have been focused on applying my reverse engineering methodology to larger, composed systems. At &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-telcosec-day-2013/index.html&#34;&gt;Troopers TelcoSec day&lt;/a&gt; this year I will be presenting &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-telcosec-day-2013/index.html#BlueVoxing&#34;&gt;Bluevoxing&lt;/a&gt; which demonstrates how this approach works. &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-telcosec-day-2013/index.html#BlueVoxing&#34;&gt;Bluevoxing&lt;/a&gt; is about reverse engineering how web based “audio one time password” systems work. Simply put audio one time password systems use a short audio file as an authentication token. When I discovered these systems I was intrigued as reversing them would involve a range of techniques and tools from web testing, audio tools, signal analysis, phreaking and cryptanalysis. The disassembler would be of no use instead I would have to employ audio tools such as audacity and ruby-processing.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS13: TelcoSecDay, IPv6 Security Summit and some more Updates</title>
      <link>https://insinuator.net/2013/02/troopers13-telcosecday-ipv6-security-summit-and-some-more-updates/</link>
      <pubDate>Sat, 02 Feb 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/02/troopers13-telcosecday-ipv6-security-summit-and-some-more-updates/</guid>
      <description>&lt;p&gt;Here’s a number of updates as for upcoming &lt;a href=&#34;https://www.troopers.de/&#34;&gt;TROOPERS13&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;The preliminary agenda for this year’s TelcoSecDay can be found &lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-telcosec-day-2013/index.html&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;https://www.troopers.de/agenda13/troopers13-ipv6-security-summit-2013/index.html&#34;&gt;Here&lt;/a&gt;‘s the (again: preliminary) agenda of the IPv6 Security Summit.&lt;/p&gt;&#xA;&lt;p&gt;Last, but not least we’ve included another four talks in the main conference:&lt;/p&gt;&#xA;&lt;p&gt;======&lt;/p&gt;&#xA;&lt;p&gt;Sergey Bratus &amp;amp; Travis Goodspeed: You wouldn’t share a syringe. Would you share a USB port?&lt;/p&gt;&#xA;&lt;p&gt;Synopsis: Previous work has shown that a USB port left unattended may be subject to pwnage via insertion of a device that types into your command shell (e.g. &lt;a href=&#34;http://www.social-engineer.org/framework/Computer_Based_Social_Engineering_Tools:_Social_Engineer_Toolkit_(SET)#Teensy_USB_HID_Attack_Vector&#34;&gt;here&lt;/a&gt;). Impressive attack payloads have been delivered over USB to &lt;a href=&#34;http://arstechnica.com/gaming/2010/08/the-ps3-jailbroken-usb-hack-allows-homebrew-copied-games/&#34;&gt;jailbreak PS3&lt;/a&gt; and a “&lt;a href=&#34;https://www.usenix.org/sites/default/files/conference/protected-files/michele_woot12_slides.pdf&#34;&gt;smart TV&lt;/a&gt;“. Not surprisingly, USB stacks started incorporating defenses such as device registration, USB firewalls, and other protective kits. But do these protective measures go far enough to let you safely plug in a strange thumb drive into your laptop’s USB port?&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2013 – Third Round of Talks Selected</title>
      <link>https://insinuator.net/2013/01/troopers-2013-third-round-of-talks-selected/</link>
      <pubDate>Thu, 17 Jan 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/01/troopers-2013-third-round-of-talks-selected/</guid>
      <description>&lt;p&gt;We’re very happy to announce the third round of Troopers 2013 talks today (first round &lt;a href=&#34;http://www.insinuator.net/2012/12/troopers-2013-first-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;, second &lt;a href=&#34;http://www.insinuator.net/2013/01/troopers-2013-second-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;).&lt;/p&gt;&#xA;&lt;p&gt;So much quality stuff… it seems to get (ever) better every year ;-).&lt;/p&gt;&#xA;&lt;p&gt;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Michael Ossmann &amp;amp; Dominic Spill: Introducing Daisho – monitoring multiple communication technologies at the physical layer.&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Synopsis:&lt;/strong&gt; Most communications media can be monitored and debugged at various levels of the stack, but we believe that it is most important to examine them at the physical layer. From there, the security of every level can be investigated and tested. The task of monitoring physical layer communications has become increasingly difficult as we try to squeeze more and more bandwidth out of our links. A passive tapping circuit can be used to monitor a 100BASE-TX connections, but no such circuit exists for 1000BASE-T networks.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2013 – Second Round of Talks Selected</title>
      <link>https://insinuator.net/2013/01/troopers-2013-second-round-of-talks-selected/</link>
      <pubDate>Thu, 10 Jan 2013 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2013/01/troopers-2013-second-round-of-talks-selected/</guid>
      <description>&lt;p&gt;We’re very happy to announce the second round of Troopers 2013 talks today (first round &lt;a href=&#34;http://www.insinuator.net/2012/12/troopers-2013-first-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;).&lt;br&gt;&#xA;Some (well, actually most ;-)) of these talks haven’t been presented before, at any other occasion, so this is exciting fresh material which was/is prepared especially for &lt;a href=&#34;https://www.troopers.de/agenda13/index.html&#34;&gt;Troopers&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Andreas Wiegenstein &amp;amp; Xu Jia: Ghost in the Shell.&lt;/strong&gt; &lt;strong&gt;FIRST TIME MATERIAL&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Synopsis:&lt;/strong&gt; Security conferences in the past years have made it clear, that common security vulnerabilities such as SQL Injection, XSS, CSRF, HTTP verb tampering and many others also exist in SAP software. This talk covers several vulnerabilities that are unique to SAP systems and shows how these can be used in order to bypass crucial security mechanisms and at the same time operate completely below the (forensic) Radar. We uncovered undocumented mechanisms in the SAP kernel, that allow launching attacks that cannot be traced back to the attacker by forensic means. These mechanisms allow to *actively* inject commands at any time into the running backend-session of an arbitrary logged on user, chosen by the attacker. We named this attack mechanism “Ghost in the Shell”. We will also demo how to use this attack vector to distribute malware to the attacked user’s client machine despite mechanisms in the SAP standard that are designed to prevent this.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2013 – First Round of Talks Selected</title>
      <link>https://insinuator.net/2012/12/troopers-2013-first-round-of-talks-selected/</link>
      <pubDate>Sun, 23 Dec 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/12/troopers-2013-first-round-of-talks-selected/</guid>
      <description>&lt;p&gt;We’re delighted to provide the first announcement of talks of next year’s Troopers edition. Looks like it’s going to be a great event again 😉&lt;br&gt;&#xA;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Peter Kieseberg: Malicious pixels – QR-codes as attack vectors.&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;**Synopsis: **QR-Codes, a version of two-dimensional barcodes that are able to store quite large amounts of information, started gaining huge popularity throughout the last few years, including all sorts of new applications for them. Originating from the area of logistics, they found their ways into marketing and since the rise of modern smartphones with their ability to scan them in the street; they can be found virtually everywhere, often linking to sites on the internet. Currently even standards for paying using QR-codes were proposed and standardized. In this talk we will highlight possible attack vectors arising from the use of QR-Codes. Furthermore we will outline an algorithm for calculating near-collisions in order to launch phishing attacks and we will demonstrate the practical utilization of this technique.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Slides from Troopers Telco Sec Day Online</title>
      <link>https://insinuator.net/2012/05/slides-from-troopers-telco-sec-day-online/</link>
      <pubDate>Mon, 14 May 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/05/slides-from-troopers-telco-sec-day-online/</guid>
      <description>&lt;p&gt;As I mentioned the Telco Sec Day in the last post… for those who missed Flo’s announcement: in the interim all slides of the Telco Sec Day are available online &lt;a href=&#34;http://www.troopers.de/archives/troopers12/downloads/&#34;&gt;here&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;Obviously, given I initiated the event, I’m biased 😉 but to me it provided great insight from both the talks and the networking with other guys from the telco security field, and it did actually what it was meant for: fostering the exchange between different players in that space, for the sake of sustainably improving its’ overall security posture.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers TelcoSecDay</title>
      <link>https://insinuator.net/2012/03/troopers-telcosecday/</link>
      <pubDate>Sat, 17 Mar 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/03/troopers-telcosecday/</guid>
      <description>&lt;p&gt;As there has been some public demand for that, here we go with the final agenda for the Troopers “&lt;a href=&#34;http://www.troopers.de/troopers12/agenda/telcosec-day/&#34;&gt;TelcoSecDay&lt;/a&gt;“. The workshop is meant to provide a platform for research exchange between operators, vendors and researchers. The slides of the talks will potentially be made available as well.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;8:30: Opening Remarks &amp;amp; Introduction&lt;/li&gt;&#xA;&lt;li&gt;9:00: Sebastian Schrittwieser (SBA Research): Guess Who’s Texting You? Evaluating the Security of Smartphone Messaging Applications.&lt;/li&gt;&#xA;&lt;li&gt;10:00: Peter Schneider (NSN): How to secure an LTE-Network: Just applying the 3GPP security standards and that’s it?&lt;/li&gt;&#xA;&lt;li&gt;10:45: Break&lt;/li&gt;&#xA;&lt;li&gt;11:00: Kevin Redon (T-Labs): Weaponizing Femtocells – The Effect of Rogue Devices on Mobile Telecommunications&lt;/li&gt;&#xA;&lt;li&gt;11:45: Christian Kagerhuber (Group IT Security, Deutsche Telekom AG): Security Compliance Audit Automation (SCA, TeleManagementForum TMF528)&lt;/li&gt;&#xA;&lt;li&gt;12:30: Lunch&lt;/li&gt;&#xA;&lt;li&gt;13:45: Philipp Langlois (P1 Security): Assault on the GRX (GPRS Roaming eXchange) from the Telecom Core Network perspective, from 2.5G to LTE Advanced.&lt;/li&gt;&#xA;&lt;li&gt;15:00: Break&lt;/li&gt;&#xA;&lt;li&gt;15:15: Harald Welte (sysmocom): Structural deficits in telecom security&lt;/li&gt;&#xA;&lt;li&gt;16:30: Closing Remarks&lt;/li&gt;&#xA;&lt;li&gt;17:00: End of workshop&lt;/li&gt;&#xA;&lt;li&gt;19:00: Joint dinner (hosted by ERNW) in Heidelberg Altstadt for those interested and/or staying for the main conference&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;====&lt;/p&gt;</description>
    </item>
    <item>
      <title>ERP Platforms Are Vulnerable</title>
      <link>https://insinuator.net/2012/03/erp-platforms-are-vulnerable/</link>
      <pubDate>Thu, 08 Mar 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/03/erp-platforms-are-vulnerable/</guid>
      <description>&lt;p&gt;&lt;em&gt;&lt;strong&gt;This is a guest post by the SAP security expert Juan Pablo Perez-Etchegoyen, CTO of  Onapsis. Enjoy reading:&lt;/strong&gt;&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;At &lt;a href=&#34;http://www.onapsis.com/&#34;&gt;Onapsis&lt;/a&gt; we are continuously researching in the ERP security field to identify the risks that ERP systems and business-critical applications are exposed to. This way we help customers and vendors to increase their security posture and mitigate threats that may be affecting their most important platform: the one that stores and manages their business’ crown jewels.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Diving Into Real-World Security Threats to SAP Systems</title>
      <link>https://insinuator.net/2012/02/diving-into-real-world-security-threats-to-sap-systems/</link>
      <pubDate>Wed, 01 Feb 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/02/diving-into-real-world-security-threats-to-sap-systems/</guid>
      <description>&lt;p&gt;&lt;em&gt;&lt;strong&gt;This is a guest post by the SAP security experts of BIZEC. Enjoy reading:&lt;/strong&gt;&lt;/em&gt;&lt;/p&gt;&#xA;&lt;p&gt;On March 20^(th), the first &lt;a href=&#34;http://www.bizec.org/&#34;&gt;BIZEC&lt;/a&gt; workshop will be held at the amazing Troopers conference in Heidelberg, Germany. For those still unfamiliar with BIZEC: the &lt;em&gt;business application security initiative&lt;/em&gt; is a non-profit organization focused on security threats affecting ERP systems and business-critical infrastructures.&lt;/p&gt;&#xA;&lt;p&gt;The main goals of BIZEC are:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Raise awareness, demonstrating that ERP security must be analyzed holistically.&lt;/li&gt;&#xA;&lt;li&gt;Analyze current and future threats affecting these systems.&lt;/li&gt;&#xA;&lt;li&gt;Serve as a unique central point of knowledge and reference in this subject.&lt;/li&gt;&#xA;&lt;li&gt;Provide experienced feedback to global organizations, helping them to increase the security of their business-critical information.&lt;/li&gt;&#xA;&lt;li&gt;Organize events with the community to share and exchange information.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The “&lt;a href=&#34;http://http://www.troopers.de/troopers12/agenda/bizec-workshop-sap-security-vulnerabilities-exploits-remediation/&#34;&gt;BIZEC workshop at Troopers 2012&lt;/a&gt;” will dive into the security of SAP platforms. Still to this day, a big part of the Auditing and Information Security industries believe that Segregation of Duties (SoD) controls are enough to protect these business-critical systems.&lt;br&gt;&#xA;By attending this session, InfoSec professionals and SAP security managers will be able to stop “flying blind” with regards to the security of their SAP systems. They will learn why SoD controls are not enough, which current threats exist that could be exploited by evil hackers, and how to protect their business-critical information from cyber-attacks.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2012 – Final round of talks selected</title>
      <link>https://insinuator.net/2012/01/troopers-2012-final-round-of-talks-selected/</link>
      <pubDate>Wed, 25 Jan 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/01/troopers-2012-final-round-of-talks-selected/</guid>
      <description>&lt;p&gt;It’s done. The exciting (and demanding) process of selecting talks for Troopers is complete (for the record: second round of talk selection was &lt;a href=&#34;http://www.insinuator.net/2012/01/troopers-2012-%E2%80%93-second-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;, the first &lt;a href=&#34;http://www.insinuator.net/2011/12/troopers-2012-%E2%80%93-first-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;).&lt;/p&gt;&#xA;&lt;p&gt;We’re quite happy and looking forward to the event 😉&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;Rodrigo Branco: Into the Darkness – Dissecting Targeted Attacks&lt;/p&gt;&#xA;&lt;p&gt;The current threat landscape around cyber attacks is complex and hard to understand even for IT pros. The media coverage on recent events increases the challenge by putting fundamentally different attacks into the same category, often labeled as advanced persistent threats (APTs). The resulting mix of attacks includes everything from broadly used, exploit-kit driven campaigns driven by cyber criminals, to targeted attacks that use 0-day vulnerabilities and are hard to fend off – blurring the threat landscape, causing confusion where clarity is most needed.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2012 – Second Round of Talks Selected</title>
      <link>https://insinuator.net/2012/01/troopers-2012-second-round-of-talks-selected/</link>
      <pubDate>Thu, 12 Jan 2012 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2012/01/troopers-2012-second-round-of-talks-selected/</guid>
      <description>&lt;p&gt;Hi everybody,&lt;/p&gt;&#xA;&lt;p&gt;after having announced the first round of &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt; speakers &lt;a href=&#34;http://www.insinuator.net/2011/12/troopers-2012-%E2%80%93-first-round-of-talks-selected/&#34;&gt;here&lt;/a&gt;, we’re happy to publish the second round today 😉&lt;/p&gt;&#xA;&lt;p&gt;Here we go:&lt;/p&gt;&#xA;&lt;p&gt; &lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;Dmitry Sklyarov – “Secure Password Managers” and “Military-Grade Encryption” on Smartphones: Oh Really?&lt;/p&gt;&#xA;&lt;p&gt;Abstract:  The task of providing privacy and data confidentiality with mobile applications becomes more and more important as the adoption of smartphones and tablets grows. As a result, there are a number of vendors and applications providing solutions to address those needs, such as password managers and file encryption utilities for mobile devices.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2012 – First round of talks selected</title>
      <link>https://insinuator.net/2011/12/troopers-2012-first-round-of-talks-selected/</link>
      <pubDate>Sun, 18 Dec 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/12/troopers-2012-first-round-of-talks-selected/</guid>
      <description>&lt;p&gt;We’re delighted to provide the first announcement of talks of next year’s &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt; edition. Looks like it’s going to be a great event again  😉&lt;/p&gt;&#xA;&lt;p&gt;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;Andreas Wiegenstein: Real SAP Backdoors&lt;/p&gt;&#xA;&lt;p&gt;Abstract: In the past year the number of lecture sessions with traumatizing headlines about hacking SAP systems has dramatically risen. Their content, however, is usually the same. Insecure implementations of algorithms, side effects in commands, flawed business logic and designs that brilliantly miss the point of security. In essence, security defects built into the SAP framework by mistake.&lt;/p&gt;</description>
    </item>
    <item>
      <title>A Wrap-up on MFD Security</title>
      <link>https://insinuator.net/2011/11/a-wrap-up-on-mfd-security/</link>
      <pubDate>Wed, 16 Nov 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/11/a-wrap-up-on-mfd-security/</guid>
      <description>&lt;p&gt;On last year’s &lt;a href=&#34;http://www.troopers.de/archives/troopers11/&#34;&gt;TROOPERS11&lt;/a&gt;, Matthias (mluft) and I gave a &lt;a href=&#34;http://www.troopers.de/wp-content/uploads/2011/04/TR11_Schaefer_Luft_Multifunction_devices.pdf&#34;&gt;talk&lt;/a&gt; on Multifunction Devices. Hardly surprising: It was related to the state of &lt;em&gt;secure&lt;/em&gt; operation of MFDs. It was heavily motivated by experiences we collected out in the wild. We faced a frightening low level of awareness concerning the role of MFDs for the overall security picture – in particular regarding the processing of sensitive data…&lt;/p&gt;&#xA;&lt;p&gt;However, instead of only showing and proving well-known weaknesses and vulnerabilities, we decided to adapt ERNW’s *&lt;a href=&#34;http://www.ernw.de/content/e7/e181/e1612/download1614/ERNW_LANline_VirtCloudSec_Keynote_ger.pdf&#34;&gt;Seven Sisters&lt;/a&gt; *model in order to match the needs of secure MFD operation and to develop some kind of guideline. As Matthias already lost some &lt;a href=&#34;http://www.insinuator.net/2011/04/sisters-act-of-mfd-security/&#34;&gt;words&lt;/a&gt; on this, I’m not gonna waste your valuable time by repeating, what has already been said. However I described our approach and our thoughts on that topic in a recently published &lt;a href=&#34;http://ernw.de/content/e15/e28/index_ger.html&#34;&gt;ERNW Newsletter&lt;/a&gt;. If for what ever reason you didn’t see our talk or even didn’t attend &lt;a href=&#34;http://www.troopers.de/archives/troopers11/&#34;&gt;TROOPERS11&lt;/a&gt; at all, have a look on Newsletter 37 and give us feedback on what you think about the whole topic…&lt;/p&gt;</description>
    </item>
    <item>
      <title>“What’s so special about Troopers?”</title>
      <link>https://insinuator.net/2011/11/whats-so-special-about-troopers/</link>
      <pubDate>Fri, 11 Nov 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/11/whats-so-special-about-troopers/</guid>
      <description>&lt;p&gt;This week I stayed some days in Zurich, to give a workshop and to meet both clients and fellow researchers (kudos again to C. for the awesome office tour @Google). In the course of one of those dinners somehow Troopers was mentioned and a guy asked: “I’ve heard of the conference. What’s so special about it?”&lt;/p&gt;&#xA;&lt;p&gt;Funnily enough I didn’t even have to respond myself as a &lt;a href=&#34;http://www.troopers.de/archives/troopers11/agenda/&#34;&gt;2011&lt;/a&gt; attendee coincidentally present at the table jumped in and started praising the event (“best con ever. great spirit, great talks”). Obviously this gave me a big grin… but it reminded as well me that some of you might ask themselves the very same question.&lt;/p&gt;</description>
    </item>
    <item>
      <title>A Sneak Peek into TROOPERS12</title>
      <link>https://insinuator.net/2011/11/a-sneak-peek-into-troopers12/</link>
      <pubDate>Thu, 10 Nov 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/11/a-sneak-peek-into-troopers12/</guid>
      <description>&lt;h2 id=&#34;troopers11-speaker-badgeshere-we-go-again-troopers12-is-scheduled-for-march-19th--23rd-2012-in-heidelberg-germany&#34;&gt;&lt;img src=&#34;http://www.insinuator.net/wp-content/uploads/2011/11/speaker_badges.jpg&#34; alt=&#34;TROOPERS11 Speaker badges&#34; title=&#34;TROOPERS11 Speaker badges&#34;&gt;Here we go again: &lt;strong&gt;TROOPERS12&lt;/strong&gt; is scheduled for March 19^(th) – 23^(rd) 2012 in Heidelberg, Germany.&lt;/h2&gt;&#xA;&lt;p&gt;Those who attended &lt;strong&gt;TROOPERS&lt;/strong&gt; before know for what we are up to. For all newcomers I’ll quickly outline what’s going to happen:&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;TROOPERS&lt;/strong&gt; is your premium IT security event in Europe. Think of your usual IT educational event without annoying sales pitching and outdated topics. Now add a superb conference location, an elite line-up of international researchers and practitioners as well as an &lt;a href=&#34;http://www.ernw.de&#34; title=&#34;ERNW GmbH&#34;&gt;organizing team&lt;/a&gt; not dedicated to make a living doing this, but to celebrate our craftsmanship together with like-minded people.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS11 – Slides available</title>
      <link>https://insinuator.net/2011/04/troopers11-slides-available/</link>
      <pubDate>Tue, 05 Apr 2011 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2011/04/troopers11-slides-available/</guid>
      <description>&lt;p&gt;&lt;strong&gt;TROOPERS11&lt;/strong&gt; slides are available now! Please find them here: &lt;a href=&#34;http://www.troopers.de/troopers11/downloads/&#34;&gt;http://www.troopers.de/troopers11/downloads/&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;TROOPERS11&lt;/strong&gt; was a blast! We received great feedback from all attendees and speakers. This really pushes ourselves towards the next goals and an even better security conference in 2012.&lt;/p&gt;&#xA;&lt;p&gt;We’re happy that everybody got home safely with new ideas and inspirations in mind. On a side note: The awesome &lt;strong&gt;TROOPERS&lt;/strong&gt; badge caused trouble for some of you with the airport security 😉 I really hope everybody could find a way to take it back home. It will hopefully find its way to an adequate place right next to your old memorabilia (cup of the first won soccer match, your college degree or photos from your first ballet show). Regard it as the proof of your latest achievement and tell everybody proud and loud: &lt;strong&gt;WE ARE TROOPERS.&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Troopers 2011 – First round of speakers selected</title>
      <link>https://insinuator.net/2010/12/troopers-2011-first-round-of-speakers-selected/</link>
      <pubDate>Tue, 07 Dec 2010 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2010/12/troopers-2011-first-round-of-speakers-selected/</guid>
      <description>&lt;p&gt;We’re delighted to announce the first speakers of next year’s &lt;a href=&#34;http://www.troopers.de&#34;&gt;Troopers&lt;/a&gt; edition. Looks like it’s going to be a great event again ;-).&lt;br&gt;&#xA;Here we go:&lt;/p&gt;&#xA;&lt;p&gt;==================&lt;/p&gt;&#xA;&lt;p&gt;Ravishankar Borgaonkar &amp;amp; Kevin Redon: Femtocell: Femtostep to the Holy Grail  (Attacks &amp;amp; Research Track)&lt;/p&gt;&#xA;&lt;p&gt;Abstract: Femtocells are now being rolled out across the world to enhance third generation (3G) coverage and to provide assurance of always best connectivity in the 3G telecommunication networks. It acts as an access point that securely connect standard mobile handset to the mobile network operator’s core network using an existing wired broadband connection.&lt;/p&gt;</description>
    </item>
    <item>
      <title>TROOPERS10 presentation materials finally online</title>
      <link>https://insinuator.net/2010/06/troopers10-presentation-materials-finally-online/</link>
      <pubDate>Mon, 21 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://insinuator.net/2010/06/troopers10-presentation-materials-finally-online/</guid>
      <description>&lt;p&gt;I’m happy to announce that the presentations and a majority of the videos from TROOPERS10 are finally available to you.&lt;/p&gt;&#xA;&lt;p&gt;You’ll find the slides at the conference’s website &lt;a href=&#34;http://www.troopers.de&#34;&gt;troopers.de&lt;/a&gt;, more precisely &lt;a href=&#34;http://troopers.de/content/e728/e897/index_eng.html&#34;&gt;here&lt;/a&gt;. Plenty of videos were uploaded and are now ready for streaming at &lt;a href=&#34;http://www.viddler.com/TROOPERS/&#34;&gt;viddler.com/TROOPERS&lt;/a&gt;. Enjoy!&lt;/p&gt;&#xA;&lt;p&gt;Please excuse the long waiting time – this is a big point on our ‘improvements for upcoming events’ list. Talking about improvements: If you have any suggestions, criticism or even praise for past or upcoming events – let us know in the comment section.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
