BlackHat 2010 Recap
aaron posted in Uncategorized on August 4th, 2010

Here are some of the interesting things that I encountered this year at BlackHat. These are mostly talks that I went to, but there are a few things that I just happened to run across in the course of the conference. Overall it was a good conference and similar to last year. One improvement was that we were able to get our Defcon badges at BlackHat after waiting in a huge line instead of a really really huge line at Defcon.
- I had seen a talk and other information about BitBlaze before, but I mainly went to this talk to see security rockstar Charlie Miller. It ended up being a pretty interesting talk, and covered some of the ways that BitBlaze can help automate binary analysis. Among a lot of other things it has some neat features that allow you to do taint tracking and determine which registers are tainted from controlled input. There was also a white-paper released that has lots of details and examples.
- I saw an interesting talk about a new routing protocol infrastructure attack tool called Loki. It’s written in python (yea), and covers many packet generation and attack modules for Layer 3 protocols, including BGP, LDP, OSPF, VRRP and quite a few others. It takes some previously released tools, adds some new functionality and wraps it in a nice GUI. It has some functional similarities to yersinia, but covers some protocols
that it doesn’t. The live demos were pretty convincing. - javasnoop is an neat looking new tool for tampering and interacting with the internals of java applications, including function hooking/tracing, debugging and instruction overwriting, etc. He made a good point in his talk that Java is easy to decompile (jad), but if you need to interact with the software after that, re-building the software is often prohibitive.
- rejava — This came up in the course of the above presentation, and it looks pretty neat as well. It’s another Java decompiler, but this one allows you to interact directly with the byte code, rather than just getting static code dumps.
- psudp — I didn’t see this talk, but the tool sounds interesting. It is a tool for passive network-wide covert communication and covert file exfiltration. The basic gist, it seems, is that it encodes data into unused DNS fields. Source and slides are available.
- Taviso Ormandy and Julien Tinnes talk on kernel exploits was pretty mind-blowing. They walked through several very technical kernel exploits that they’ve worked on in recent history. It’s amazing that these guys have such a firm grasp on kernels in multiple operating systems.
- virt-ice — This was an interesting talk about a virtualization based malware analysis tool. I was slightly more interested before I found out that the tool wasn’t going to be released any time soon though.
- libscizzle — Library for quickly detecting shellcode in a large binary stream.
I was originally going to create just one BlackHat/Defcon post, but it took longer than expected, so I’ll be breaking it into two posts with the Defcon content tomorrow (maybe).




August 9th, 2010 at 1:54 am
[...] BlackHat 2010 Recap – midnightresearch.com Overall it was a good conference and similar to last year. [...]
April 27th, 2012 at 9:53 pm
Needed to create you the bit of note to help thank you so much as before on your wonderful suggestions you’ve shared in this case. It was really surprisingly open-handed of people like you giving openly all a lot of folks could have sold for an ebook to make some profit for their own end, especially since you could possibly have tried it if you ever wanted. The points as well served to become easy way to understand that the rest have the identical fervor like my personal own to see a good deal more when it comes to this issue. I’m certain there are numerous more pleasant moments in the future for those who look into your blog.
September 16th, 2012 at 3:58 am
Psychological focal point, training, likability, aspect, calm but rely on. Even so these are some of the items Tang Soo Use, your current Mandarin chinese style created by self defense, can show we and additionally instilling inside your soul the power not only to fight you and your family about the craft the quite initial hazards signs in conflict altogether. Bodybuilding Tipps und Ernährung helfen beim Masseaufbau, Energie aufzubauen, Körpermuskulatur zu stärken. Bodybuilding Ernährung stärkt Ihre Körpermuskulatur, wie Bauchmuskeln, Rückenmuskeln, Brustmuskeln, Beinmuskeln und alle weiteren. Innovative Nahrungsergänzung, Phaseolin, Diät Produkte, Fettblocker zur Unterstützung einer bewußten Ernährung – und kostenlose Bodybuilding Trainingspläne. Bodybuilding-Sportnahrung.com bietet ein umfassendes Sortiment an Fitness und Bodybuilding Produkten zur Unterstützung von Muskelaufbau und Diät. Durch gezieltes Bodybuilding bzw.Muskelaufbau kann die Fitness jedoch wieder hergestellt werden.
Muskelaufbau Ernährung Eine Zusätzliche Muskelaufbau Ernährung ist für den wettbewerbsorientierten Bodybuilder nicht nur praktisch, sondern auch notwenig. für den professionellen Bodybuilder ist das keine reine Geschmacksfürage, denn durch eine günstige Muskelaufbau Ernährung soll Zusätzliches Körperfett vermieden werden. Arginin, wie Glutamin, Lysin oder Ornithin um bei Bodybuilder den Muskelaufbau zu unterstützen. BCAA sind essentielle Aminosäuren die den Muskel bei Anstrengung schützen und maßgeblich bei dem Muskelaufbau unterstützen. Besonders für den Hardgainer ist der Cytosport Cytogainer geeignet, da dieser viele und hochwertige Kalorien für den Muskelaufbau zuführen muss.
Bodybuilding nimmt sich Muskelaufbau zum Ziel. Bodybuilding-Sportnahrung.com bietet ein umfassendes Sortiment an Fitness und Bodybuilding Produkten zur Unterstützung von Muskelaufbau und Diät. Durch gezieltes Bodybuilding bzw.Muskelaufbau kann die Fitness jedoch wieder hergestellt werden. Powerstar Kreasteron ist die erste All-in-One Kreatin Muskelaufbau Formel für Bodybuilding und Fitness. Gerade Bodybuilding Anfänger sind oft überfordert, wenn es um die richtige Trainingsplanung geht, um schnell Muskelaufbau zu erreichen .
Das kann daran liegen, dass sich der Muskeln an die immer gleiche Belastung gewöhnt haben. Die Muskeln werden nach dem Krafttraining schnellstmöglich regeneriert. Die Muskeln werden dank EFX Kre Alkalyn hart plus intensiver. Protein ist der Bestandteil im Körper für Muskeln und Gewebe. Denn diese Muskelaufbau übungen sprechen gleichzeitig mehrere Muskeln an und sorgen damit für eine höhere Ausschättung an Wachstumshormonen als Isolationsübungen. Bodybuilding Training Ernährung Bodybuilding Muskelaufbau Trainingsplan
September 18th, 2012 at 2:13 am
היי הידעתם? ריהוט משרדי הינו כולל כסא משרדי וכסא מחשב וכסאות משרדיים
November 9th, 2012 at 9:17 am
Hello, i think that i saw you visited my blog thus i came to ?return the favor?.I am trying to find things to enhance my website!I suppose its ok to use a few of your ideas!!
December 18th, 2012 at 5:33 am
I’ve read a few good stuff here. Definitely price bookmarking for revisiting. I wonder how so much effort you place to create the sort of fantastic informative site.
February 4th, 2013 at 9:52 pm
Very nice article. I certainly appreciate this website. Keep it up!
April 13th, 2013 at 6:29 pm
This is a great resource to learn about Charlie Harper prints.
April 18th, 2013 at 3:11 am
I have been absent for some time, but now I remember why I used to love this web site. Thanks, I’ll try and check back more often. How frequently you update your site?