.:[ packet storm ]:.
                               
plan for the worst
plan for the worst

 Section:  .. / hitb08  /

Talks and presentations given at Hack In The Box 2008 in Dubai.

Page 1 of 1
<< 1 >> Files 1 - 21 of 21
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: D2T2_-_Benjamin_Hagen_and_Walter_Go..>
Description:
Real World Attacks Against 3G Networks Using Subscriber Devices - Cellular networks, like any other data network, requires careful attention to network design such as proper segmentation of subscriber generated traffic from network management and signaling traffic. This presentation discusses an attack penetration method using only standard subscriber equipment to compromise an operator network.
Author:Walter Goulet, Benjamin Hagen
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:385026
Last Modified:Apr 21 19:48:10 2008
MD5 Checksum:0754f579735e10e3a81025c89d98d37a

 ///  File Name: D2T1_-_Daniel_Ingevaldson_-_Virtual..>
Description:
Virtualization != Security - Virtualization has emerged as the most disruptive datacenter technology of the last decade. Mr. Ingevaldson from IBM Internet Security Systems will discuss the emergence of virtualization as well as the many ways that it changes traditional security architecture as well as the ways it does not. Virtualization will influence the security business much like it is reshaping IT. Mr. Ingevaldson will review the brief history of security in virtualization as well as comment on the next-generation security technologies for the virtualized datacenter.
Author:Daniel S. Ingevaldson
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:10618309
Last Modified:Apr 21 10:06:17 2008
MD5 Checksum:663280076d02324d03403c20625363e4

 ///  File Name: D1T2_-_Marc_Weber_Tobias_-_How_We_C..>
Description:
How We Cracked Their Codes - A Case Study in Compromising the Most Popular High Security Lock in America.
Author:Marc Weber Tobias
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:4231478
Last Modified:Apr 21 08:48:05 2008
MD5 Checksum:41bc2ff42a9074db0b57f4558dcd592a

 ///  File Name: D1T1_-_Jim_Geovedi_-_Hijacking_VSAT..>
Description:
Presentation discussing the hijacking of VSAT connections.
Author:Jim Geovedi
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:1864109
Last Modified:Apr 21 07:44:59 2008
MD5 Checksum:38a04e78cb5dd3a3eec73e78bb271b12

 ///  File Name: D2T1_-_Adrian_Pastor_-_Cracking_Int..>
Description:
Cracking into Embedded Devices and Beyond - The presentation covers cracking into embedded devices by exploiting vulnerabilities present on default software running on the target device.
Author:pagvac
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:40115669
Last Modified:Apr 20 20:17:59 2008
MD5 Checksum:f919ddceb26ea5d330ed640c854c67f7

 ///  File Name: D1T2_-_Skyper_-_Cracking_the_GSM_A5..>
Description:
Cracking the GSM A5/1 Encryption in Seconds - Presentation explaining the security, technology and protocols of a GSM network. Further discusses building a GSM scanner for 900 USD. The second part of the talk reveals a practical solution to crack the GSM encryption A5/1.
Author:Skyper
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:3156799
Last Modified:Apr 20 20:13:06 2008
MD5 Checksum:1e6504bb315da884d7ba9db5d8d04989

 ///  File Name: D1T2_-_Alessio_Penasilico_-_VoIP_IN..>
Description:
VoIP (in)Security: Italians Do It Better - This presentation will explain in detail how a small group of annoyed Italian VoIP hackers used the Chaos Computer Club phone network during the 2007 Hacker camp for fun and profit.
Author:Alessio L.R. Pennasilico
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:12885395
Last Modified:Apr 20 20:10:30 2008
MD5 Checksum:96f53db40ad65372bf9d175be7e5a7cb

 ///  File Name: D1T1_-_Michael_Thumann_-_Hacking_Se..>
Description:
Hacking Second Life - A presentation that covers the basic architecture of SecondLife and points out the possible attack vectors against SecondLife itself, but will also demonstrate hacks from the inside of SecondLife against real-life systems in the internet.
Author:Michael Thumann
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:106715688
Last Modified:Apr 20 20:10:02 2008
MD5 Checksum:371c2ed7ccf48a067108d018855855df

 ///  File Name: D1T1_-_Ero_Carrera_-_Malware_Behavi..>
Description:
Malware: Behavior, Tools, Scripting and Advanced Analysis - Presentation discussing a new tool taht is an extension to Bochs, a popular open-source CPU emulator. This extension will provide with advanced debugging and scripting functionality enabling the easy creation of a wide range of tools. The scripting interface of this tool provides a full Python environment to control the whole CPU, memory, devices, etc. Among the examples that will be presented, time allowing, will be generic unpacking techniques, monitoring of malware behavior or low-level system access to kernel/administrative objects. The tool was created to assist the process of automated malware analysis but its flexibility make it a good candidate to also assist in vulnerability discovery.
Author:Ero Carrera
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:2291875
Last Modified:Apr 20 20:08:56 2008
MD5 Checksum:6d9784a86f9f585bf4cd58a68e60686e

 ///  File Name: D1T1_-_Shreeraj_Shah_-_Securing_Nex..>
Description:
Securing Next Generation Applications - Scan, Detect, and Mitigate.
Author:Shreeraj Shah
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:408843
Last Modified:Apr 20 20:08:52 2008
MD5 Checksum:d33ecb297559b364f42e296fb209ecbb

 ///  File Name: DAY_2_-_KEYNOTE_-_Jeremiah_Grossman..>
Description:
Hacks Happen - Conservative estimates put the total annual IT security spending in the US at $50 billion and e-crime losses at $100 billion. We are losing two dollars for every dollar spent. Those numbers are said to be worse on a global scale. Newly passed laws, industry regulation, and press coverage have certainly raised the profile of the problem, but where have these actions really gotten us?
Author:Jeremiah Grossman
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:5593420
Last Modified:Apr 20 20:06:14 2008
MD5 Checksum:0e10bdd5567fa153569ccf5461be1989

 ///  File Name: D2T2_-_Rodrigo_Rubira_Branco_-_Hack..>
Description:
Hacking The Cell Architecture - This presentation intends to cover security aspects related to a new architecture, widely deployed and used called Cell. The architecture itself will be deeply explained, focusing on the security concerns that appear in this kind of asymmetric multi-core systems. While Cell architecture is used in the new playstation 3 it is also used in big blade machines.
Author:Rodrigo Rubira Branco
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:1497696
Last Modified:Apr 20 20:06:06 2008
MD5 Checksum:9e2563c5bf685236ca07288792d6e09a

 ///  File Name: D2T2_-_Raoul_Chiesa_and_Alessio_Pen..>
Description:
Penetration Testing SCADA and National Critical Infrastructure - Real-Life Experiences and Case Studies.
Author:Raoul Chiesa and Alessio Pennasillico
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:7688497
Last Modified:Apr 20 20:06:03 2008
MD5 Checksum:83a938dc93c69839a21c3ffa2fd30302

 ///  File Name: D2T2_-_Domingo_Montanaro_-_In-depth..>
Description:
In-depth Anti-Forensics - Challenges of Steganography and Discovering Hidden Data.
Author:Domingo Montanaro
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:1471676
Last Modified:Apr 20 20:05:57 2008
MD5 Checksum:6edb0e476392b6413b6174f8321c4638

 ///  File Name: D2T2_-_Alexander_Kornbrust_-_Practi..>
Description:
Practical Oracle Forensics - Oracle forensics is a new discipline without special tools/scripts. Most presentations about Oracle forensics are still very basic. The typical approach in these presentations is to show what tools/(log)files are available to do forensics. In the real world with huge databases (many GB, sometimes TB) it is normally not helpful. This presentation is using a different approach. Based on the different type of attackers (leaving employee, nosy DBA/employee, external hacker etc.) we have different traces in Oracle and we show in different scenarios how to find evidence. We provide a free toolset to do a (basic) forensic analysis without having deep Oracle knowledge.
Author:Alexander Kornbrust
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:1318220
Last Modified:Apr 20 20:05:53 2008
MD5 Checksum:129a331ab4dceca1f3a724bcc9488140

 ///  File Name: D2T1_-_Petko_Petkov_-_For_My_Next_T..>
Description:
For My Next Trick: Client-Side Hacking - This paper describes numerous techniques for attacking Clients-side technologies. The content of the paper is based the research that has been conducted over past year by the GNUCITIZEN Ethical Hacker Outfit.
Author:Petko Petkov
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:7504565
Last Modified:Apr 20 20:05:50 2008
MD5 Checksum:c1e8230e4b125bea7215868557d033cd

 ///  File Name: D2T1_-_Dino_Covotsos_-_Hacking_the_..>
Description:
Hacking the Bluetooth Stack for Fun, Fame and Mayhem - As the use of bluetooth technology becomes more commonly used, the room for exploitation increases. From cell phones to gaming devices. Dino demonstrates various methods of exploiting this technology in real life situations.
Author:Dino Covotsos
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:60613481
Last Modified:Apr 20 20:05:44 2008
MD5 Checksum:aa1a08ae5db45025c9a2c3699e38d5e6

 ///  File Name: D2T1_-_Cesar_Cerrudo_-_Token_Kidnap..>
Description:
Token Kidnapping - This presentation is about a new technique for elevating privileges on Windows mostly from services, this technique exploits design weaknesses in Microsoft Windows XP, 2003, Vista and even Windows 2008. While in Windows Vista and 2008 many new security protections have been added, because of other weaknesses some of the new protection mechanisms are almost useless.
Author:Cesar Cerrudo
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:174793
Last Modified:Apr 20 20:05:31 2008
MD5 Checksum:c6b3d60974ac3f57fd6280046e499b17

 ///  File Name: D1T2_-_Jamie_Butler_-_Computer_Fore..>
Description:
Computer Forensics and Incident Response.
Author:Jamie Butler
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:172796
Last Modified:Apr 20 20:05:11 2008
MD5 Checksum:453246841337d6ba799f8835c9963a68

 ///  File Name: D1T2_-_Meling_Mudin_and_Lee_Chin_Sh..>
Description:
Defensive Network Security: Practical Methodologies - Emerging computer and network security threats have greatly changed the landscape of the security security scene. These new, advanced and unknown threats and attack methodologies have rendered traditional perimeter security devices such as firewall and IDS/IPS useless. However, the concept of Network Security Monitoring (NSM) has not make these devices obsolete - instead IDS/IPS and firewall device have become one of the essential parts of NSM.
Author:Meling Mudin, Lee Chin Shing
Homepage:http://conference.hitb.org/hitbsecconf2008dubai/
File Size:1009306
Last Modified:Apr 18 01:28:22 2008
MD5 Checksum:16dd8d8ec9e9630d68003e4f873f667c

 ///  File Name: hitb08.jpg
Description:
Hack In The Box 08 Graphic.
File Size:66856
Last Modified:Sep 27 23:42:14 2007
MD5 Checksum:435841bf78a799914a81ef151ff720d0