Black Hat USA
August 4-9, 2018
Las Vegas, NV, USA
Black Hat Trainings
October 22-23, 2018
Chicago, IL USA
Black Hat Europe
December 3-6, 2018
London UK
6/4/2018
11:00 AM
Black Hat Staff
Black Hat Staff
Event Updates
50%
50%

Black Hat Trainings, October 22-23 at the Sheraton Grand in Chicago

2-day Black Hat Trainings offered at the Sheraton Grand in Chicago, October 22-23

Often designed exclusively for Black Hat, Trainings offer attendees the unique opportunity to develop in-demand security skills in hands-on courses taught by highly-regarded industry experts.

Black Hat Trainings has learning options for beginner and advanced practitioners. Check out the Trainings Lineup below for details on each offered course. Space in Trainings is limited. Register early to ensure your space & save on your pass price:

●      A Guide to Threat Hunting Utilizing the ELK Stack and Machine Learning

●      AWS & Azure Exploitation: Making the Cloud Rain Shells! *Sold Out at Black Hat USA*

●      Advanced Infrastructure Hacking - 2018 Edition

●      Applied Hardware Attacks: Embedded And Iot Systems

●      Dark Side Ops - Custom Penetration Testing

●      Joe Grand's Hands-on Hardware Hacking Training

●      Physical Penetration Testing

●      Web Hacking - Black Belt Edition

●      Windows Enterprise Incident Response

Black Hat Trainings will take place at the Sheraton Grand Hotel in Chicago, October 22-23.  Directly following, INsecurity: A Dark Reading Conference will begin in the same venue. Learn strategies to protect critical enterprise data on a day-to-day basis over the course of two days, October 24-25. Black Hat Trainings attendees can add an INsecurity pass for the discounted rate of $499. Learn More Here>>

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Microsoft Fixes 11 Critical, 39 Important Vulns
Kelly Sheridan, Staff Editor, Dark Reading,  6/12/2018
Why CISOs Need a Security Reality Check
Joel Fulton, Chief Information Security Officer for Splunk,  6/13/2018
Cisco Talos Summit: Network Defenders Not Serious Enough About Attacks
Curtis Franklin Jr., Senior Editor at Dark Reading,  6/13/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-12580
PUBLISHED: 2018-06-19
library/DBTech/Security/Action/Sessions.php in DragonByte vBSecurity 3.x through 3.3.0 for vBulletin 3 and vBulletin 4 allows self-XSS via $session['user_agent'] in the "Login Sessions" feature.
CVE-2018-12578
PUBLISHED: 2018-06-19
There is a heap-based buffer overflow in bmp_compress1_row in appliers.cpp in sam2p 0.49.4 that leads to a denial of service or possibly unspecified other impact.
CVE-2018-1061
PUBLISHED: 2018-06-19
python before versions 2.7.15, 3.4.9, 3.5.6 and 3.7.0 is vulnerable to catastrophic backtracking in the difflib.IS_LINE_JUNK method. An attacker could use this flaw to cause denial of service.
CVE-2018-1073
PUBLISHED: 2018-06-19
The web console login form in ovirt-engine before version 4.2.3 returned different errors for non-existent users and invalid passwords, allowing an attacker to discover the names of valid user accounts.
CVE-2018-12557
PUBLISHED: 2018-06-19
An issue was discovered in Zuul 3.x before 3.1.0. If nodes become offline during the build, the no_log attribute of a task is ignored. If the unreachable error occurred in a task used with a loop variable (e.g., with_items), the contents of the loop items would be printed in the console. This could ...