|
|
Angell_Keynote_Complexity_In_Computer_Systems
|
|
|
Bailey_Race_to_Bare_Metal
|
|
|
Beauchamp_Weston_RE_Trace
|
|
|
Ben-Cohen_No_More_0-Days
|
|
|
Benson_Electronic_Discovery
|
|
|
Bienfang_Quantum_Key_Distribution
|
|
|
Bratus_Fuzzing_SCADA_Protocols
|
|
|
Buetler_SmartCard_APDU_Analysis
|
|
|
Bulygin_Detection_of_Rootkits
|
|
|
Carlson_Stadmeyer_FLEX_AMF3_and_BlazeDS
|
|
|
Chawdhary_Uppal_Cisco_IOS_Shellcodes
|
|
|
Clark_SQL_Injection_for_Fun
|
|
|
Conti_Dean_Visual_Forensic_Analysis
|
|
|
D'Auganno_OS_X_Rootkits
|
|
|
DeMott_AppSec_A-Z
|
|
|
Dhanjani_Rios_Bad_Sushi
|
|
|
Eagle_Vidas_Collaborative_Reversing
|
|
|
Embleton_Sparks_SMM_Rookits
|
|
|
Filiol_Leakage_of_Non-Networked_Computers
|
|
|
Friedrichs_Threats_to_the_2008_Presidential_Election
|
|
|
Garfinkle_Taking_the_Hype_Out_of_Hypervisor
|
|
|
Goodspeed_Side-channel_Timing_Attacks
|
|
|
Grossman_Get_Rich_or_Die_Trying
|
|
|
Grunwald_Federal_Trojans
|
|
|
Guilfanov_Decompilers_and_Beyond
|
|
|
Gupta_Got_Citrix_Hack_It
|
|
|
Hawkes_Attacking_Vista_Heap
|
|
|
Hoff_Virtualization_Security_Apocalypse
|
|
|
Holyfield_Protecting_with_IIS7
|
|
|
Horovitz_Virtually_Secure
|
|
|
Hosmer_Polymorphic_Malware
|
|
|
Ionescu_Pointers_and_Handles
|
|
|
Kim_Vista_ActiveX_Controls
|
|
|
Kohno_Fu_Vulnerabilties_in_Wireless_Medical_Devices
|
|
|
Kotler_Rom_Jinx_Malware
|
|
|
Laspe_Raber_Deobfuscator
|
|
|
Lindell_Bluetooth_2_1
|
|
|
Lindner_Cisco_IOS_Forensics
|
|
|
McFeters_Carter_Heasman_Client-side_Exploitation
|
|
|
McGregor_Cold_Boot_Attacks
|
|
|
Meer_Through_the_Eye_of_a_Needle
|
|
|
Miller_Reverse_DNS_Tunneling_Shellcode
|
|
|
Moyer_Hamiel_Attacking_Social_Networks
|
|
|
Murakami_Hypervisor_IPS
|
|
|
Nohl_Mifare
|
|
|
Ossmann_Software_Radio
|
|
|
Pate_Virtual_Security_Rules
|
|
|
Petkov_Client-side_Security
|
|
BH_US_08_Petkov_Client-Side_Security_Slides.pdf
|
PDF
|
1.09 MB
|
|
|
BH_US_08_Petkov_Client-Side_Security_WP.pdf
|
PDF
|
763.91 KB
|
|
|
Extras
|
|
CITRIXRDP Command Fixation Attacks
|
|
|
Cross-site File Upload Attacks
|
|
|
DHCP Name Poisoning Attacks
|
|
|
Drive By Java
|
|
|
Firebug goes Evil
|
|
|
Firefox Cross-site Scripting conditions over jar URLs
|
|
|
IE pwns SecondLife
|
|
|
Pwning BT Home Hub
|
|
|
QuickTime pwns Firefox
|
|
|
The Flash UPnP Hack
|
|
|
The GMail Hijack Technique
|
|
|
The Java Runtime and JAR
|
|
|
Vulnerabilities in Skype
|
|
|
|
|
Potter_Network_Flow_Analysis
|
|
|
Quist_Ames_Temporal_Reverse_Engineering
|
|
|
Ristic_Shezaf_Defending_Web_0-Day_Attacks
|
|
|
Royal_Malware_Analyst's_Blue_Pill
|
|
|
Shacham_Return_Oriented_Programming
|
|
|
Shelhart_Meet_the_Owner
|
|
|
Smith_Ames_Meta-Post_Exploitation
|
|
|
Sotirov_Dowd_Bypassing_Memory_Protections
|
|
|
Squire_Fox_in_the_Hen_House
|
|
|
Stamos_Thiel_Osborne_RIA_World
|
|
|
Stender_Vidergar_Concurrency_Attacks
|
|
|
Stewart_Protocols_of_the_Storm
|
|
|
Stracener_Hansen_Xploiting_Google_Gadgets
|
|
|
Suiche_Windows_Hibernation_File
|
|
|
Sullivan_REST_for_the_Wicked
|
|
|
Tarnovsky_Momentary_Faults
|
|
|
Vaskovich_Nmap_Scanning_the_Internet
|
|
|
Wojtczuk_Subverting_the_Xen_Hypervisor
|
|
|
Zusman_Abusing_SSL_VPNs
|
|
|
olle_B_Mobitex_Network_Security
|
|
|
van_Beek_ePassports_Reloaded
|