Vulnerabilities / Threats
6/25/2013
02:19 PM
Connect Directly
RSS
E-Mail
50%
50%

Black Hat USA: T-Minus One Month And Counting

This highlighted trio of Briefings range widely in topic, yet they all sport that certain cool factor

Black Hat is well-regarded for the depth and breadth of its content, as well as the "cool s#!%" factor of its Briefings. Today's trio of highlighted Briefings are a fine example of both of these traits, ranging widely in topic yet all sporting that certain cool factor that'll keep you engaged even as you're poring over the finer points of electronic esoterica.

Click here for more of Dark Reading's Black Hat articles.

If popular heist films are anything to go by (and let's be honest, they're not), then security cameras seem pretty easily fooled. Surprisingly, this is one detail Hollywood actually gets mostly right because, sure enough, today's popular surveillance cameras sport a range of striking vulnerabilities, which Craig Heffner will blast through in "Exploiting Network Surveillance Cameras Like a Hollywood Hacker." Cameras from D-Link, Trendnet, Cisco, IQInvision, Alinking, and 3SVision are all vulnerable. Come join Heffner for not only a proof-of-concept of a Hollywood-style freeze-and-modify attack, but also the debut of multiple 0-day exploits.

RFID is everywhere these days, from door locks to the badge you'll wear at Black Hat. Video game and movie producers should catch this talk, too: "RFID Hacking: Live Free or RFID Hard" should be your first stop for practical info on how RFID proximity badge systems actually work. You'll learn how to build your own RFID physical pen-test toolkit, how to weaponize commercial badge readers, and how to defend yourself from others' RFID-hacking efforts. The Briefing will be packed with demos, and 100 lucky attendees will receive a PCB that can make almost any commercial RFID reader steal badge info from up to three feet away.

Detecting mobile malware poses unique problems because the typical antivirus paradigm used in larger systems becomes impractical when saddled with the battery and CPU realities of typical handsets. Firmware OTA patches, cloud-based screening, and hardware security support all have notable drawbacks. In "Mobile Malware: Why the traditional AV paradigm is doomed, and how to use physics to detect undesirable routines," Markus Jakobsson will delve into the nitty-gritty of software-based attestation, which relies on the physics of the device (its bus speed, for example) to detect undesirable routines. It, too, has some drawbacks, but it may just be the best approach for mobile device anti-malware.

Another good use of physics, incidentally, is to carry airplanes through the air, such as when Black Hat attendees travel to Las Vegas. We're just about one month out now, so be sure all the numbers on your travel reservations add up to July 27-Aug. 1. Speaking of travel, the room block at Caesars is sold out, but Black Hat has negotiated additional blocks of discount rooms at Bellagio and Flamingo -- hotel details can be found here.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
Partner Perspectives
What's This?
In a digital world inundated with advanced security threats, Intel Security seeks to transform how we live and work to keep our information secure. Through hardware and software development, Intel Security delivers robust solutions that integrate security into every layer of every digital device. In combining the security expertise of McAfee with the innovation, performance, and trust of Intel, this vision becomes a reality.

As we rely on technology to enhance our everyday and business life, we must too consider the security of the intellectual property and confidential data that is housed on these devices. As we increase the number of devices we use, we increase the number of gateways and opportunity for security threats. Intel Security takes the “security connected” approach to ensure that every device is secure, and that all security solutions are seamlessly integrated.
Featured Writers
White Papers
Cartoon
Current Issue
Dark Reading's October Tech Digest
Fast data analysis can stymie attacks and strengthen enterprise security. Does your team have the data smarts?
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-4594
Published: 2014-10-25
The Payment for Webform module 7.x-1.x before 7.x-1.5 for Drupal does not restrict access by anonymous users, which allows remote anonymous users to use the payment of other anonymous users when submitting a form that requires payment.

CVE-2014-0476
Published: 2014-10-25
The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.

CVE-2014-1927
Published: 2014-10-25
The shell_quote function in python-gnupg 0.3.5 does not properly quote strings, which allows context-dependent attackers to execute arbitrary code via shell metacharacters in unspecified vectors, as demonstrated using "$(" command-substitution sequences, a different vulnerability than CVE-2014-1928....

CVE-2014-1928
Published: 2014-10-25
The shell_quote function in python-gnupg 0.3.5 does not properly escape characters, which allows context-dependent attackers to execute arbitrary code via shell metacharacters in unspecified vectors, as demonstrated using "\" (backslash) characters to form multi-command sequences, a different vulner...

CVE-2014-1929
Published: 2014-10-25
python-gnupg 0.3.5 and 0.3.6 allows context-dependent attackers to have an unspecified impact via vectors related to "option injection through positional arguments." NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-7323.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Follow Dark Reading editors into the field as they talk with noted experts from the security world.