Presentation is loading. Please wait.

Presentation is loading. Please wait.

PREVIOUS GNEWS All images scavenged without permission.

Similar presentations


Presentation on theme: "PREVIOUS GNEWS All images scavenged without permission."— Presentation transcript:

1 PREVIOUS GNEWS All images scavenged without permission

2 Patch Tuesday May 2017 - 243 CVEs Advisories Malware Protection Engine
Deprecating Sha-1 IE / Edge .NET Privilege Escalation Update Client Failure Windows 10 and Windows Server 2016 (including Microsoft Edge) / Remote Code Windows 8.1 and Windows Server 2012 R2 / Remote Code Windows Server 2012 / Remote Code Windows RT 8.1 / Remote Code Windows 7 and Windows Server 2008 R2 / Remote Code Windows Server 2008 / Remote Code Internet Explorer / Remote Code Adobe Flash Player / Remote Code Microsoft Office, Office Services, Office Web Apps, and other Office-related software / Remote Code .NET Framework / Security Bypass Sources: MS malware protection engine MS kills SHA-1 in ie edge Last Update Mar 2017 No longer working

3 Holes / Patches Oracle Adobe Android VMWare Intel AMT MS WifiSense
300 security fixes 8 Java / 40 MySQL Patches vuln with struts Adobe APSB17-14 ColdFusion ( 2 CVE) APSB17-15 Flash Player ( 7 CVE) APSB17-16 Experienace Manager Forms ( 1 CVE) Android Coming soon VMWare VMSA ( 1 CVE) vCenter Server VMSA ( 7 CVE) Unified Access Gateway, Horizon View, Workstation Intel AMT ver 6.x – 11.6 MS WifiSense now disabled by default Sources: ## Oracle Patches ##Adobe Patches ##Apple patches ##Cisco patches ## VMWare ## Android AMT Vuln oracle MS finally disables wifisense by default

4 Hacking bad fingerprint reader iot white-worm hajime domain fronting
data pollution tools are they worth it SS7 EG PassFreely Oarcle Auth Bypass USAF Bug Bounty CIA tool ''scribbles' Apple revokes cert OSX/Dok keyless entry bypass Google Doc Phish True Health Patient Portal Hacking Sources: bad fingerprint reader iot whiteworm hajime domain fronting data polution tools are they worth it SS7 EG PassFreely Oarcle Auth Bypass USAF Bug Bounty CIA tool ''scribbles' Apple revokes cert OSX/Dok keyless entry bypass Google Doc Phish True Health Patient Portal

5 finger your card MS phone sign-on, cause compromise never happens due to a stolen phone cylance samples?? FB password SDK intercontinental popped again how not to startup chipotle popped holiday inn (IHG) popped tinder popped Albertsons too buy wholefoods? petsmart buys chewy sabre popped hipchat popped ALliance direct lending popped IBM pops Storwize cusomters Reconyc on usbdrives Sources: finger your card MS phone sign-on, cause compromise never happens due to a stolen phone cylance samples?? FB password SDK intercontinental popped again how not to startup chipotle popped holiday inn (IHG) popped tinder popped Albertsons too buy wholefoods? petsmart buys chewy sabre popped hipchat popped ALliance direct lending popped IBM pops Storwize cusomters Reconyc on usbdrives Corp

6 Govt guns end of net neutrality? new copyright censors qwith china
Social Security luanches 2FA Sources: guns end of net neutrality? new copyright censors qwith china Social Security luanches 2FA Govt

7 Papers Car hacking archive Verizon DBIR ultrasonic beacons
Verizon DBIR ultrasonic beacons Papers Sources: Car hacking archive Verizon DBIR ultrasonic beacons Privacy Threats through Ultrasonic Side Channels on Mobile Devices

8 WTF Bill would require hardware mods and porrn tax
internet archives, apps in browser USA today FBI Facebook Canadian parking app WTF Sources: Bill would require hardware mods and porrn tax internet archives, apps in browser USA today FBI Facebook Canadian parking app

9 https://github.com/olacabs/jackhammer
Shodan malware hunter PA LabyREnth CTF 2017 donkeydocker ctf billu box vulnwebapp jackhammer Tools Sources: Shodan malware hunter PA LabyREnth CTF 2017 donkeydocker ctf billu box vulnwebapp jackhammer Raytheon competition

10 Past Cons BSides Nashville 22 Apr BSides Austin 4-5 May
Thotcon Chicago 4-5 May Past Cons Sources: cansecwest pwn2own

11 Circle City Con Indy 9-11 Jun
HackMiami May NolaCon May Circle City Con Indy 9-11 Jun ANYCon Albany Jun BlackHat Jul BSidesLV Jul DefCon Jul Future Cons Sources:

12 Where DHA @Dallas_Hackers TX2600 @dallas2600 The Lab.MS @TheLab_ms
( 1st Wednesday / Family Karaoke, Dallas ) TX2600 @dallas2600 ( 1st Fri / Wild Turkey 35&WalnutHill, Dallas ) The Lab.MS @TheLab_ms ( 2nd Saturday + random events / TheLab.ms, Plano ) ISSA Fort Worth @ISSAFortWorth ( 2nd Tuesday / location varies ) Fort Worth Crypto Party ( 2nd Tuesday ? / The Maker Spot, N. Richland Hills ) Hack Ft Worth @Hack_FtW ( 3rd-ish Tuesday / Buffalo West, Fort Worth) OWASP Dallas @OWASPDallas ( 3rd Tuesday / location varies ) Crypto Party DFW @CryptoPartyDFW ( 3rd Thursday / TheLab.ms, Plano ) North Texas Cyber Security Group @ntxcsg ( Last Thursday, Jakes, Frisco ) Dallas MakerSpace @dallasmakers ( Random events / Carrollton ) Lock Pick DFW @LockPickDFW ( Last Monday/ Sherlocks Arlington ) Sources: Where

13 Sources: All images scavenged without permission


Download ppt "PREVIOUS GNEWS All images scavenged without permission."

Similar presentations


Ads by Google