Media Summary: "In this talk we will explore vulnerabilities in Amazon Web Services (AWS) products which allowed us to gain access to Home surveillance technology is a modern convenience that has been made accessible to the masses through the rise of IoT ... Yes, anyone can hack IoT devices and I'll show you how! It doesn't matter if you're an experienced pen tester in other fields, ...

Def Con 32 Exploiting Cloud - Detailed Analysis & Overview

"In this talk we will explore vulnerabilities in Amazon Web Services (AWS) products which allowed us to gain access to Home surveillance technology is a modern convenience that has been made accessible to the masses through the rise of IoT ... Yes, anyone can hack IoT devices and I'll show you how! It doesn't matter if you're an experienced pen tester in other fields, ... Have you ever wondered how those little boxes that you tap your card to open doors work? What are they reading on the card? Many organisations are moving to Zero Trust Network Access (ZTNA) and Secure Access Service Edge (SASE) solutions in ... This is not a talk in which I will demonstrate

Delve into the clandestine world of the LockBit ransomware gang! In this revealing presentation, I will recount my two-year journey ... This article reassesses complex cyberattack tactics, focusing specifically on existing security measures and emerging ... Join us as we unravel another story of public resources from AWS, digging in 3.1 million AMIs for secrets. Beyond the findings ... This talk explores the hidden risks in apps leveraging modern AI systems—especially those using large language models (LLMs) ... Bug bounty is an intricate game between the bug hunter, the clients, and the intermediary. Like any game, it can be hacked. When we consider the conventional approaches to vulnerability discovery, be it in software or websites, we tend to confine ...

Photo Gallery

DEF CON 32 -  Exploiting Cloud Provider Vulnerabilities for Initial Access - Nick Frichette
DEF CON 32 - What To Expect When You’re Exploiting: 0Days Baby Monitors & Wi-Fi Cams - Mager, Forte
DEF CON 32 - Anyone can hack IoT- Beginner’s Guide to Hacking Your First IoT Device - Andrew Bellini
DEF CON 32 -Your Smartcard is Dumb A Brief History of Hacking Access Control Systems - Chad Shortman
DEF CON 33  - Breaking into thousands of cloud based VPNs with 1 bug -David Cash, Rich Warren
DEF CON 32 - The hack, the crash and two smoking barrels.  - Thomas Sermpinis
DEF CON 32 - Exploiting the Unexploitable Insights from the Kibana Bug Bounty -  Mikhail Shcherbakov
DEF CON 32 - Behind Enemy Lines: Going undercover to breach LockBit Ransomware Op- Jon DiMaggio
DEF CON 32 - DriverJack Turning NTFS and Emulated ROFs  into an Infection - Alessandro Magnosi
DEF CON 32 - AWS CloudQuarry: Digging for secrets in public AMIs - Eduard Agavriloae, Matei Josephs
DEF CON 33 - Exploiting Shadow Data from AI Models and Embeddings - Patrick Walsh
DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix
View Detailed Profile
DEF CON 32 -  Exploiting Cloud Provider Vulnerabilities for Initial Access - Nick Frichette

DEF CON 32 - Exploiting Cloud Provider Vulnerabilities for Initial Access - Nick Frichette

"In this talk we will explore vulnerabilities in Amazon Web Services (AWS) products which allowed us to gain access to

DEF CON 32 - What To Expect When You’re Exploiting: 0Days Baby Monitors & Wi-Fi Cams - Mager, Forte

DEF CON 32 - What To Expect When You’re Exploiting: 0Days Baby Monitors & Wi-Fi Cams - Mager, Forte

Home surveillance technology is a modern convenience that has been made accessible to the masses through the rise of IoT ...

DEF CON 32 - Anyone can hack IoT- Beginner’s Guide to Hacking Your First IoT Device - Andrew Bellini

DEF CON 32 - Anyone can hack IoT- Beginner’s Guide to Hacking Your First IoT Device - Andrew Bellini

Yes, anyone can hack IoT devices and I'll show you how! It doesn't matter if you're an experienced pen tester in other fields, ...

DEF CON 32 -Your Smartcard is Dumb A Brief History of Hacking Access Control Systems - Chad Shortman

DEF CON 32 -Your Smartcard is Dumb A Brief History of Hacking Access Control Systems - Chad Shortman

Have you ever wondered how those little boxes that you tap your card to open doors work? What are they reading on the card?

DEF CON 33  - Breaking into thousands of cloud based VPNs with 1 bug -David Cash, Rich Warren

DEF CON 33 - Breaking into thousands of cloud based VPNs with 1 bug -David Cash, Rich Warren

Many organisations are moving to Zero Trust Network Access (ZTNA) and Secure Access Service Edge (SASE) solutions in ...

DEF CON 32 - The hack, the crash and two smoking barrels.  - Thomas Sermpinis

DEF CON 32 - The hack, the crash and two smoking barrels. - Thomas Sermpinis

This is not a talk in which I will demonstrate

DEF CON 32 - Exploiting the Unexploitable Insights from the Kibana Bug Bounty -  Mikhail Shcherbakov

DEF CON 32 - Exploiting the Unexploitable Insights from the Kibana Bug Bounty - Mikhail Shcherbakov

We explore case studies of

DEF CON 32 - Behind Enemy Lines: Going undercover to breach LockBit Ransomware Op- Jon DiMaggio

DEF CON 32 - Behind Enemy Lines: Going undercover to breach LockBit Ransomware Op- Jon DiMaggio

Delve into the clandestine world of the LockBit ransomware gang! In this revealing presentation, I will recount my two-year journey ...

DEF CON 32 - DriverJack Turning NTFS and Emulated ROFs  into an Infection - Alessandro Magnosi

DEF CON 32 - DriverJack Turning NTFS and Emulated ROFs into an Infection - Alessandro Magnosi

This article reassesses complex cyberattack tactics, focusing specifically on existing security measures and emerging ...

DEF CON 32 - AWS CloudQuarry: Digging for secrets in public AMIs - Eduard Agavriloae, Matei Josephs

DEF CON 32 - AWS CloudQuarry: Digging for secrets in public AMIs - Eduard Agavriloae, Matei Josephs

Join us as we unravel another story of public resources from AWS, digging in 3.1 million AMIs for secrets. Beyond the findings ...

DEF CON 33 - Exploiting Shadow Data from AI Models and Embeddings - Patrick Walsh

DEF CON 33 - Exploiting Shadow Data from AI Models and Embeddings - Patrick Walsh

This talk explores the hidden risks in apps leveraging modern AI systems—especially those using large language models (LLMs) ...

DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix

DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix

Bug bounty is an intricate game between the bug hunter, the clients, and the intermediary. Like any game, it can be hacked.

DEF CON 32 - Secrets & Shadows: Leveraging Big Data for Vulnerability Discovery - Bill Demirkapi

DEF CON 32 - Secrets & Shadows: Leveraging Big Data for Vulnerability Discovery - Bill Demirkapi

When we consider the conventional approaches to vulnerability discovery, be it in software or websites, we tend to confine ...