Presentation is loading. Please wait.

Presentation is loading. Please wait.

All images scavenged without permission

Similar presentations


Presentation on theme: "All images scavenged without permission"— Presentation transcript:

1 All images scavenged without permission

2 Patch Tuesday Aug 2017 – 51 vulnerabilities with 130 unique downloads
Internet Explorer / Microsoft Edge / Remote Code Microsoft Windows / Remote Code Microsoft SharePoint / Spoofing Adobe Flash Player / Remote Code Microsoft SQL Server / Info Disclosure Out of Band Outlook Patch EternalSynergy Exploit (SMB again) Sources: No longer working out-of-band outlook patch Microsoft plans to release security updates for the following versions of Outlook on July 18, 2017. stop with the SMB already

3 Holes / Patches Oracle Adobe Cisco FreeRadius gSOAP VMWare Apple
308 Fixes Adobe APSB17-23 Flash Player ( 2 CVE) APSB17-24 Acrobat / Reader ( 67 CVE) APSB17-26 Experience Manager ( 3 CVE) APSB17-27 Digital Editions ( 9 CVE) Cisco WebEx Extension FreeRadius 15 Vulns Identified gSOAP cameras VMWare VMSA ( 1 CVE) VCenter VMSA ( 4 CVE) VIX API Apple Wifi / Boot Camp 6.1 ( 1 CVE) tvOS ( 38 CVE) iTunes Windows ( 23 CVE) iCloud Windows ( 22 CVE) Safari ( 25 CVE) Security Update ( 37 CVE) iOS ( 47 CVE) watchOS ( 16 CVE) Sources: ## Oracle Patches Oracle 308 cve ##Adobe Patches ##Apple patches apple broadpwn ##Cisco patches Cisco Webex extension Freeradius gSOAP vuln (cameras) ## VMWare ## Android

4 Hacking Half-baked WP takeovers tor bounty open to all
Windows bounty announced safe cracking robot DEFCON - gun magnets BLACKHAT - cache attack DEFCON SMB 0-day docker as malware netflix api ddos Hacking Sources: Half-baked WP takeovers tor bounty open to all safe cracking robot DEFCON - gun magnets BLACKHAT - cache attack DEFCON SMB 0-day docker as malware netflix api ddos windows bounty program

5 Corp ARM buys Simulity Rapid7 buys Komand (orchestration)
Micheal Kors buys Jimmy Choo intel shutsdown wearables Adobe draws 2020 EOL line in sand intel discontinues arduino 101 foxxconn in wisconsin bitcoin split Mandiant analyst popped HotSpot Shield data Sources: ARM buys Simulity Rapid7 buys Komand (orchestration) Micheal Kors buys Jimmy Choo intel shutsdown wearables Adobe draws 2020 EOL line in sand intel discontinues arduino 101 foxxconn in wisconsin bitcoin split Mandiant analyst popped HotSpot Shield data Corp

6 Govt Dutch surveillence no cloud searches at the border
alphabay takedown (and Hansa) 5yrs for citadel coder civil asset forfieture EFF Guide on Birde crossing and device wipe jersy privacy OCR reporting tool Nevada privacy notice malwaretechblog arrested IOT Cybersecurity Improvement act of 2017 Texas SB4 Sources: Dutch surveillence no cloud searches at the border alphabay takedown (and Hansa) 5yrs for citadel coder civil asset forfieture EFF Guide on Birde crossing and device wipe jersy privacy OCR reporting tool Nevada privacy notice malwaretechblog arrested IOT Cybersecurity Improvement act of 2017 Texas SB4 Govt

7 Papers MS ebooks Car hacking workbench pt2 Car hacking workbench pt3
Car hacking workbench pt2 Car hacking workbench pt3 Papers Sources: MS ebooks Car hacking workbench pt2 Car hacking workbench pt3

8 employees OK with bio implants
Metal is Terror employees OK with bio implants WTF Sources: Metal is terror employees OK with bio implants

9 Tools siemonster pyREBox yython sandbox Blackhat arsenal
Luckystrike 2.0 evil macro generator fireEye FlareVM malware analysis anti-drone DefPloreX machine learning Tools Sources: pyREBox Blackhat arsenal Luckystrike 2.0 fireEye FlareVM (malware analysis) anti-drone DefPloreX

10 BH - Palo Alto IOT honeypot
BH - priveiw BH - top 20 BH - best of BH - Palo Alto IOT honeypot BH - Carwash smash DC - Queercon Badge DC - mr Robot Badge DC - badges DC - Tor Past Cons Sources: BH- priveiw BH - top 20 BH - best of DC - Queercon Badge DC mr Robot Badge DC badges DC Tor palo iot honeypot BH - Carwash smash

11 Future Cons SANS San Antonio 6-11 Aug ToorCon San Diego 28Aug – 3 Sep
DerbyCon Sep Rock Stars of Cybersecurity Technologies 26 Sep CactusCon Sep Future Cons Sources:

12 Where DHA @Dallas_Hackers TX2600 @dallas2600 The Lab.MS @TheLab_ms
( 1st Wednesday / Family Karaoke, Dallas ) TX2600 @dallas2600 ( 1st Fri / Wild Turkey 35&WalnutHill, Dallas ) The Lab.MS @TheLab_ms ( 2nd Saturday + random events / TheLab.ms, Plano ) ISSA Fort Worth @ISSAFortWorth ( 2nd Tuesday / location varies ) ?? Fort Worth Crypto Party ?? ( 2nd Tuesday ? / The Maker Spot, N. Richland Hills ) Hack Ft Worth @Hack_FtW ( 3rd-ish Tuesday / Buffalo West, Fort Worth) OWASP Dallas @OWASPDallas ( 3rd Tuesday / location varies ) Crypto Party DFW @CryptoPartyDFW ( 3rd Thursday / TheLab.ms, Plano ) North Texas Cyber Security Group @ntxcsg ( Last Thursday, Jakes, Frisco ) Dallas MakerSpace @dallasmakers ( Random events / Carrollton ) Sources: Where

13 Sources: All images scavenged without permission


Download ppt "All images scavenged without permission"

Similar presentations


Ads by Google