This post by Jeff (@jeffmakes) was delayed due to interferences with other
projects but nevertheless, enjoy!
This year, it was my great honour to design the hardware for the Troopers19
badge.
We wanted to make a wifi-connected MicroPython-powered badge; something that
would be fun to take home and hack on. It was a nice opportunity to use a
microcontroller platform that I hadn’t tried before. I also used the project as
a chance to finally migrate my PCB workflow from Eagle to Kicad. Inevitably it
was a painful transition, which resulted in quite some delay to the project as I
floundered around in the new tool, but it does mean the design files are in an
open format which I hope will benefit the community of Troopers attendees and
future badge designers!
This blogpost contains summaries of talks from this year’s
TROOPERS19 Active Directory Security Track.
Microsoft IT (Secure) Journey to IPv6-Only
Veronika McKillop, Network Architect, Cloud and Connectivity Engineering (CCE)
The speaker, Veronika McKillop, working at Microsofts network infrastructure
services, has given a talk about the process of switching a company network from
IPv4 to IPv6-only.
Within the talk the following topics were introduced: Dual Stack, Drivers for
IPv6, Status of IPv6 in Networks and Security in IPv6 Networks. The talk covers
the reasons why a company would like to switch from IPv4 to IPv6. Technics like
NAT64 and DNS64 are introduced. The requirements to software and especially
drivers to work in IPv6 environments are described. Also the problems to switch
from IPv4 to IPv6-only in heterogeneous networks are addressed.
This blogpost contains summaries of talks from this year’s
TROOPERS19 Active Directory Security Track.
From Workstation to Domain Admin: Why Secure Administration Isn’t Secure and How to Fix It by Sean Metcalf
Active Directory is probably used in almost every corporation today to
administer all kinds of Authorization, Authentication and Privileges. This means
they are valuable targets for attackers, because once compromised they could do
whatever they want. This would be the worst case scenario, right? Therefore
securing AD is important and this year TROOPERS19 featured a whole track solely
for AD Security.
This blogpost contains summaries of talks from this year’s
TROOPERS19 Attack & Research Track.
VXLAN Security or Injection, and protection
The talk “VXLAN Security or Injection, and protection” was held by Henrik Lund
Kramshøj, who is the owner of Zencurity ApS, a small security company located in
Denmark.
Henrik gives an overview about lesser known VXLAN insecurities, mostly packet
spoofing.
In the end he gives advice how to protect against this attacks.
As promised in my
previous post, I am back
for an overview of the Troopers19 – Active Directory related talks… Videos
have been published and it’s popcorn time… So if you are into stories about
Kingdoms and Crown Jewels, grab your loved one [or a drink…] and turn the
lights down low, ’cause tonight it’s “Troopers & Chill…”
Warning: Don’t watch it all in one go… or you will start to feel some anxiety
and pain…
and then the Flying Dutchman will move to the cloud… And at that point we are
not insured anymore.
Sadly, TROOPERS 19 is already over. I had great fun meeting all of you, helping
you with your badge problems and seeing others hacking on their badges for
example to get custom images on there.
With this year’s badge we wanted to give you something you can reuse after the
conference, learn new things new build something on your own.
As promised in our talk Jeff and
I would like to give you a short introduction into the badge internals. Along
with this post we will release the source code for the badge firmware, the
provisioning server and the schematics for the PCB.
When I got home last weekend after an awesome week at
WEareTROOPERS, my 5yr old asked me what
actually happened in Heidelberg…
I told him we were meeting with some people from all over the world to talk
about computer security, and he asked me if it was “to stop the bad guys, like
super-heroes?”. So I told him “yes, kind of…”, and he decided he would take his
new Troopers T-Shirt to school on Monday to show his classmates. Kids are truly
amazing… [<3 <3 <3]
We have the most amazing trainers this year lined up for Blackhoodie at
Troopers 2019. We have Thais,
Silvia, Lisa
and Ninon going to give workshops on various
interesting topics! Below are some of the workshop contents:
64-bit shellcoding and introduction to buffer overflow exploitation on Linux by Silvia Väli
64-bit shellcoding and introduction to buffer overflow exploitation on Linux is
a 3 hour workshop which is essentially divided into 3 parts:
Introduction to 64-bit architecture in order to get familiar with registers,
stack, calling conventions described in the Intel 64 (x86-64) architecture
manual and the most common assembly instructions and syscalls which we will
later use to write our shellcodes.
Shellcoding where we try different techniques to write the shellcode and of
course you gonna get to greet the shellcoding world with your own Hello
World shellcode in addition to reverse shell which we will use later on in
part 3
Introduction to buffer overflows, so you can put your newly received
know-how about stack into practise right away. Shellcode without being used
is a wasted shellcode! Part 3 ends with a buffer overflow challenge where
your goal is to use your reverse shellcode to get a connection back to your
machine.
We’re regularly asked to review IPv6 address plans from different organizations
and I’d like to share some reflections from such a process currently happening.
I’ve discussed a few aspects of IPv6 address planning before; those readers
interested please see
this post which
contains some references.
The organization in question is headquartered in Germany, has ~60K employees and
a number of subsidiaries in European countries. They belong to a “traditional
industry sector” (so they’re not an “Internet company”, even though they – as
the majority of large organizations right now – strive to be one in a few years
;-).
Some years ago Christopher wrote two posts
(2016,
2015)
about the IPv6-related characteristics of the WiFi network at Cisco Live
Europe. To somewhat continue this tradition and for mere technical interest I
had a look at some properties of this year’s setting.
There were two SSIDs of interest: a dual-stacked one (“CiscoLive2019”) and one
with v6-only plus NAT64 (“CL-NAT64”). For some background on the underlying
infrastructure components you might look at this
thread
by Nicolas Darchis from the NOC or
at this tweet
from Dominik Pickhardt. Some stats on
IPv6 usage at CLEUR can be
found here.