Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 34 guests and 1 member online
You are here:
Home
EH-Net
Calendar Of Events
Black Hat USA 2007
EH-Net
May 21, 2013, 10:54:59 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
EH-Net
>
Calendar Of Events
(Moderator:
don
) >
Black Hat USA 2007
Linked Events
Black Hat USA 2007
: August 01, 2007 - August 02, 2007
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: Black Hat USA 2007 (Read 13210 times)
0 Members and 1 Guest are viewing this topic.
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4165
Editor-In-Chief
Black Hat USA 2007
«
on:
February 13, 2007, 11:07:26 PM »
Black Hat USA 2007 Briefings and Training
Caesars Palace, Las Vegas • July 28-August 2, 2007
Training: July 28-29 (Weekend) & July 30-31 (Weekday)
Briefings: August 1-2
Black Hat USA 2007 Briefings Schedule. There will be 10 different tracks, over 2 days comprised of over 90 renown information and computer security professionals. Topic titles, abstracts and speaker bios may be found here.
Caesars Palace, Las Vegas, NV, USA
Address: 3570 Las Vegas Blvd South, Las Vegas, NV 89109
Telephone: +1 702 731 7110
For more info:
http://www.blackhat.com/html/bh-usa-07/bh-usa-07-index.html
Although much more commercial than it used to be, this has become the premier event for hackers. Anyone attend in the past or plan on going this year, let us know. Keep in mind, this hsow and DEFCON (Aug 3 - 5) are purposely scheduled together in Vegas. As mentioned on their site:
Quote
Paid delegates of the Black Hat Briefings USA will receive free admission to DEFCON 15.
2 for the price of 1!
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4165
Editor-In-Chief
Re: Black Hat USA 2007
«
Reply #1 on:
March 20, 2007, 12:47:43 AM »
Black Hat USA 2007 has become the second of many events that EH-Net will be sponsoring. Needless to say, we are very happy that we are going to be a part of the largest and most well known hacker event in the world.
Among other items like logo placement at the event, literature placement, press coverage, etc. Black Hat has also agreed to sponsor the Free Monthly Giveaway for June. The prize? How about a passport ticket to the briefings worth $1595. Although this is not the highest monetary value prize we have offered, I'm confident it will be one of the most coveted.
So start participating in the forums now! All participation from now until the end of June will be watched carefully to pick just the right representative from EH-Net.
Hope you're as excited as we are,
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
oleDB
Recruiters
Full Member
Offline
Posts: 236
Re: Black Hat USA 2007
«
Reply #2 on:
March 20, 2007, 08:00:58 AM »
Thats friggin awesome man!! I've never been to either conference, because something always seems to come up. I need to start pressuring my boss today so I can go this year
Logged
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4165
Editor-In-Chief
Re: Black Hat USA 2007
«
Reply #3 on:
July 30, 2007, 10:34:19 PM »
Well, I'm off to BH tomorrow. Should be a blast. I'm very tired as I designed a full page, full color handout for ChicagoCon and new business cards for The Digital Construction Company. The people at Black Hat were nice enough to allow us to place the handouts on the literature tables at their event. And with the BeerCall, I figured that I might as well attempt to look professional with new stuff.
Let us know if you're going to Black Hat, even if you can't make the BeerCall with us and LSO on Thursday night. PM me and I'll let you know where we'll be.
Congratulations again for the free ticket, Kev. See you there!!
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
Kev
Guest
Re: Black Hat USA 2007
«
Reply #4 on:
July 31, 2007, 12:25:59 AM »
Looking forward to meeting every one and thanks again for the ticket. Don, we are planning on hacking the casino slot machines while we are there right? Ha Ha, just kidding, I don’t plan on getting any where near those things.
Logged
LSOChris
Guest
Re: Black Hat USA 2007
«
Reply #5 on:
July 31, 2007, 08:46:25 AM »
play blackjack instead
Logged
slimjim100
EH-Net Columnist
Sr. Member
Offline
Posts: 385
Re: Black Hat USA 2007
«
Reply #6 on:
July 31, 2007, 03:05:40 PM »
I am in town now..
Logged
CISSP, CCSE, CCNA, CCAI, Network+, Security+, JNCIA, & MCP
LSOChris
Guest
Re: Black Hat USA 2007
«
Reply #7 on:
July 31, 2007, 03:08:07 PM »
i'll be there tomorrow. whoo hoo
Logged
oleDB
Recruiters
Full Member
Offline
Posts: 236
Re: Black Hat USA 2007
«
Reply #8 on:
August 03, 2007, 12:22:45 PM »
Lucky bastards ... How was it?
Logged
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4165
Editor-In-Chief
Re: Black Hat USA 2007
«
Reply #9 on:
August 03, 2007, 09:34:59 PM »
I'll be posting some thoughts soon on both Black hat Days 1 and 2 as well as DefCon.
Suffice it to say that we are having a blast, and it's awesome to meet a lot of the people face-to-face that I converse with often through electronic means.
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
Kev
Guest
Re: Black Hat USA 2007
«
Reply #10 on:
August 04, 2007, 03:42:25 PM »
I will write a review of my impressions of the event were. It was great meeting up with Don, Brian and Chris as well as a number of others. Thanks again guys and I look forward to hooking up with you all again in the future.
Logged
Kev
Guest
Re: Black Hat USA 2007
«
Reply #11 on:
August 05, 2007, 09:05:01 PM »
Black Hat was an interesting event and I enjoyed a lot. It differs from Defcon in a number of ways. Mostly by the people attending and awesome food they made available.
As far as I could tell, most people attending seemed like a little more seasoned and professional than the mix you get at Defcon. Defcon has a huge range from teenage script kiddies to high level hackers and everything in between. Other than that, I couldn’t say as far as speakers go, one is tremendously better than the other and Black Hat is the kind of convention you should attend if you have someone else paying for it. I didn’t attend Defon this time and I am making those statements based on past experiences.
The convention began with a lecture from Richard Clarke, former advisor to the US National Security Council and it seemed to play well to the audience. His lecture was a mix of government bashing along with hopes for great strides in technology that might take place in the future.
My first briefing was “Understanding the heap by breaking it” by Justin Ferguson. He spent a lot of time on Double Free ( ) limitations and possibilities and the advantages of fast bin chunks over normal chunks. Perhaps a bit too much time and it was unfortunate he was unable to show any code, which he did apologize for.
Next briefing was “Database Forensics” by David Litchfield. His lecture was centered on Oracle and he did a good job showing the difficulty in analyzing that database when breached. He mentioned that there are no data specific forensic tools available on the market Most everything he displayed was in hex and he said he hoped to soon have a tool written to help eliminate so much manual forensic inspection which can be very tedious. He did a SQL injection attack and then did a forensic on the database.
Certainly one of the most popular briefings was “Tactical Exploitation” by H.D. Moore of Metasploit fame. He did a nice walk through of compromising an organization without the use of normal exploit code. A number of tools are not available yet but should be soon as new modules for Metasploit.
For me the most interesting lecture was “Simple solutions to complex problems from the lazy hackers handbook” by David Maynor and Robert Graham. Robert Graham gave his Web 2.0 hijacking presentation to a packed audience . The audience erupted with applause and laughter when Graham used his tools to hijack someone’s Gmail account during an unscripted demo. The victim in this case was using a typical unprotected Wi-Fi Hotspot and his Gmail account just popped on the large projection screen for the audience to see. I was wondering if he had just committed a felony by opening up the unsuspecting victim’s email account, lol? First he captures the Wi-Fi signals using his laptop and a tool called Ferret which he wrote earlier this year. The tool grabs Cookies and Session IDs from your Web Browser session sent over the air and stores it. Then, Graham fires up his new tool called Hamster which will process those Session IDs and Cookies so that they’re ready to clone. Once the identity is cloned, the attacker is able to jump on to online services like Gmail masquerading as the victim with full access to read and send email on behalf of the victim. Also, the attacker can go to maps.google.com and find the victim’s personal information like home address if it’s saved in to Google Maps. Since the session key doesn’t expire in email accounts like yahoo or hotmail, it doesn’t matter if the victim changes his password. Graham claims he can still log in, even for years later.
In reality the highlight was meeting up EH-net members Don, Brian and Chris. Also, Don and I had a great lunch with the people from Backtrack-Offensive Security, Muts and Ziplock. 2 great guys and they are working on getting Backtrack 3 out as soon as they can.
«
Last Edit: August 06, 2007, 01:50:40 PM by Kev
»
Logged
Ashu
Guest
Re: Black Hat USA 2007
«
Reply #12 on:
August 05, 2007, 09:21:36 PM »
black hat event?r u all black hat or white hat???coz i saw the community name is ethical hacker...so pls tell me...
Logged
Kev
Guest
Re: Black Hat USA 2007
«
Reply #13 on:
August 05, 2007, 10:02:26 PM »
I think they call it Black Hat for marketing reasons because its really for security professionals involved in protecting networks,etc... I would be surprised if there were too many real "Black Hats" there.
Logged
Ashu
Guest
Re: Black Hat USA 2007
«
Reply #14 on:
August 06, 2007, 03:36:58 AM »
oh okei....
Logged
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
Programming
: Finished Python Course in Codecademy now what?
(14) by
3xban
Network Pen Testing
: Ruby on Rails Vulnerabilities/Attacks in BackTrack 5 r3
(0) by
SUdoctstudent
Network Pen Testing
: De-ICE 1.140 released!
(2) by
superkojiman
Network Pen Testing
: AIX Vulnerability Assessments
(1) by
3xban
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
Tutorials
: Need guidance
(8) by
r0ckm4n
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
Other
: BSides Boston
(0) by
3xban
Career Central
: InfoSec in Central, FL
(2) by
tturner
Web Applications
: Web vulnerability scanner
(4) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.