ACTIVE CONTENT AD REMOVAL SPONSORED BY OWASP


 
  • HNN IS SPONSORED BY…

  • Archive for the ‘Charlie Miller’ tag

        

    Behind the Firewall – episode 013: CanSecWest 2011

    CanSecWest is in it’s 12th year now.  It started with the small, highly technical computer security conference in Vancouver and has since expanded to include a PacSec in Asia and EUSecWest in Europe, a 3 day dojo of training preceeding the conference, and for the last 4 years an event which has eclipsed the con itself – pwn2own.

    This year the talks were mostly focused on applications and bug hunting as might be expected along side the pwn2own competition.  As for pwn2own itself, some prizes were won and some not.  Charlie Miller took away an iPhone 4 this year via a mobile Safari exploit.  Stephen Fewer won a laptop by combining three different exploits to pwn IE8 on Windows 7-SP1.  The VUPEN team walked off with an iBook for popping OS X through Safari.  And Vincenzo Iozzo from Zynamics won big with the RIM’s BlackBerry Torch 9800.  Of course there ARE some odd rules and one of the favorites to take out some of the prizes left “standing” didn’t show.  It’s a jungle out there for Apple users but that shouldn’t leave Android, Chrome or Windows Phone 7 feeling invulnerable.  YOUR bugs will live a little longer.

    HNN was there in Vancouver, BC for the action.  We hope you enjoy the sights and sounds of CanSecWest, 2011.

    HNNCast.2011.03.04

    HNNCast for the first week of March, 2011
    Top Stories
    pwn2own a Week Away, Anonymous Ops Continue, Anonymous Fall-out Continues Too, It’s a Good Year NOT to be Greg Hoglund, Thanks OWASP

    News
    Androids Under Attack, Mac Malwares, Lion Seed, iTunes Struggle, It’s Unanimus – You’re Pwn3d

    T00l T1m3
    updates: Mobius, Wireshark, Nessus, Scapy, w3af, Armitage, FOCA, WATOBO, XSSer
    Nessus in the Cloud, Naked Password

    Quickies
    Celebrity Twits, Turing Target Met, Wack-a-Quack, Underground Carder War, Weev Free, Every Browser can Tatanga, Cry Me a Digital River, Crippling Autorun, Team Kuwait Strikes Israeli Sites, Zynamics Acquired by Google

    Con-Fu
    DerbyCon Speakers, WOOT CFP, Source Coast-to-Coast, BruCon CFP, Notacon Not-acomodations, B-Sides Wrap-Up, Can Sec West NEXT WEEK!

    Stack of Shame
    The Stack of Slightly Less Shame
    count: 92 (+38)

    PROGRAMMING NOTE: NO HNNCast NEXT WEEK – WE WILL BE @CSW BUT WILL RELEASE SHMOOCON BEHIND THE FIREWALL SO TUNE IN!

    HNNCast.2010.08.13

    HNNCast for the second week of August, 2010
    Top Stories
    RBS Coming to a Close, Phat Patch Tuesday, Kryogeniks R0x0r3d by defiant

    News
    the Disclosure Game, pr0n m0de Still Unsafe Sex, Wireless Tires, moar Wargames, VxWorks because Rockwell Rox Well

    Tool Time
    Grid Computing Hackers Kit, Acunetix WVS beta, winAUTOPWN, listener, wpbruteforcer, Debian Live Studio, PHP IDS, IP Tables, Forensic Tool Kit, Titan Mist, Malheur, DOMScan, DOMTracer, Sploitware CORRECTION.

    Quickies
    RIM’s Lies, the Cyber Mongoose, Shot Heard Round the Facebook, Dutch Durka Durkas, Don’t Get Media Playa’d, Verizon Crypto Challenge, Too Many Holes

    Con Phooey
    the Next HOPE, Confcon 2010, DerbyCon 2011, Toorcon XII, B-Sides Abound, Notacon

    Stack of Shame
    count: 157
    Birthdays:
    ZDI-CAN-543 – v. Microsoft
    Risk: 10 (High: AV:N/AC:L/Au:N/C:C/I:C/A:C)
    Discovered 2009-08-06 ( 370 days ago )
    by: Peter Vreugdenhil (http://vreugdenhilresearch.nl)


    HNNCast032610

    HNNCast for the fourth week of March, 2010
    Lead Stories

    • PWN20WN Roundup, TJX Case Progresses, FBI/FSB Partnership, China Google Book Closed?

    News

    • DOD v. CIA over Honeypot, BitDefender.shoot(foot), Gimme that Skipfish, Hacker Challenge Overly Challenging, French Hacker Croll Fried, Mariposa Vodiphone Update

    Quickies

    • Sophos is a SPAM Sphincter, Baidu sues Register.COM, Sweeden gets Turkey on deFace, Anonymous Back at It, Watch-ova-ya ATM cards, Medical Breach, PNC an Inside Job, Ausie Autistic Outage, Pizza with Anchovies and Identity Theft, EFF GSOC Mentorships, StopBadWare.ORG Internship, Weekly Con Call

    Stack of Shame
    count: 156
    Turning 1 this week:

    • ZDI-CAN-461 Apple High 2009-03-26, 365 days ago Discovered by: Anonymous  
    • ZDI-CAN-445 Novell Low 2009-03-26, 365 days ago Discovered by: 1c239c43f521145fa8385d64a9c32243



     

    Site last updated August 21, 2011 @ 10:00 pm