<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Recognize-Security &#187; Presentations</title>
	<atom:link href="http://www.rec-sec.com/category/presentations/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.rec-sec.com</link>
	<description>a non-profit information security web site authored by Moshe Ben Abu (Trancer), focusing on vulnerability research, exploit development (mainly for the Metasploit Framework), web application security, information security and hacking news from around the world.</description>
	<lastBuildDate>Sun, 14 Mar 2010 17:44:35 +0000</lastBuildDate>
	<generator>http://www.rec-sec.com</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<cloud domain='www.rec-sec.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com" />
	<atom:link rel="hub" href="http://superfeedr.com/hubbub" />
			<item>
		<title>Client-Side Vulnerabilities and Penetration Testing</title>
		<link>http://www.rec-sec.com/2009/03/17/client-side-pen-test/</link>
		<comments>http://www.rec-sec.com/2009/03/17/client-side-pen-test/#comments</comments>
		<pubDate>Tue, 17 Mar 2009 19:06:05 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Presentations]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=223</guid>
		<description><![CDATA[In today&#8217;s world the Internet is not what it used to be. Back in the days hacking was pretty easy &#8211; an attacker who wants to penetrate a company network just had to do a little reconnaissance &#8211; host discovery, port scanning, OS and services detection to find a vulnerable service, fire up an exploit [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="Code Obfuscation" width="300" height="150" class="left" src="images/code-obfuscation.png" />In today&#8217;s world the Internet is not what it used to be. Back in the days hacking was pretty easy &#8211; an attacker who wants to penetrate a company network just had to do a little reconnaissance &#8211; host discovery, port scanning, <abbr title="Operating System">OS</abbr> and services detection to find a vulnerable service, fire up an exploit and that&#8217;s all there is to it.<br />
Scenarios of such are almost impossible these days. The vast majority of companies have heavily protected internal networks from outside threats. Thanks to firewalls, <abbr title="Intrusion Detection System">IDS</abbr>/<abbr title="Intrusion Prevention System">IPS</abbr>&#8217;s, content/web filtering appliances, anti-virus/spyware software, <abbr title="Security Information Management">SIM</abbr>/<abbr title="Security Operations Center">SOC</abbr> products and etc&#8217;, penetrating a company internal network is a really hard job. Therefore, the easiest way for an attacker to penetrate a company internal network is to attack her weakest link &#8211; Users.<br />
Anyone in the <abbr title="Information Technology">IT</abbr>/information security field who&#8217;s aware of attacks and exploitation trends for the past few years knows the statistics &#8211; attackers are now attacking users, or in other words, exploiting client-side vulnerabilities. A quick look at the exploits posted daily on <a href="http://www.milw0rm.com/" title="milw0rm.com">milw0rm</a> proves this fact. Or, reading the statistics of the Mass <abbr title="Structured Query Language">SQL</abbr> Injection attacks and how it got so damn popular in the last couple of years. Exploiting client-side vulnerabilities actually works quite efficiently, and that&#8217;s what attackers exploit.<br />
In the attackers arsenal you&#8217;ll find tons of exploits targeting users desktops. It starts with web browser exploits and ActiveX exploits (various <abbr title="Internet Explorer">IE</abbr> toolbars and other), through 3rd party applications exploits (Adobe Reader, Adobe Flash, Apple QuickTime, RealPlayer and more) and various fileformat exploits, targeting Microsoft Office and other office suites, media players, image viewers and what not. Attackers are able to exploit users desktops in so many ways and so easily that most of the time attacks will be successful.</p>
<p>The following presentation is about this subject, and demonstrating it well using the <a href="http://www.metasploit.com/" title="The Metasploit Project">Metasploit Framework</a>. It&#8217;s called <strong>Attacking Layer 8: Client-Side Penetration Testing</strong>, presented at SOURCE Boston 2009 by the guys of <a href="http://carnal0wnage.blogspot.com/" title="Carnal0wnage Blog">Full Scope Security</a> and they doing a great job explaining how client-side vulnerabilities risk companies more then any other threat these days.</p>
<p><object width="600" height="300" type="application/x-shockwave-flash" data="http://vimeo.com/moogaloop.swf?clip_id=3665163&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="movie" value="http://vimeo.com/moogaloop.swf?clip_id=3665163&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1" /></object></p>
<p>Or you can watch it on their web site &#8211; <a href="http://carnal0wnage.blogspot.com/2009/03/attacking-layer-8-client-side.html" title="carnal0wnage blog - Attacking Layer 8: Client-Side Penetration Testing SOURCE Boston Edition">Attacking Layer 8: Client-Side Penetration Testing</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/03/17/client-side-pen-test/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Nmap 4.76 released</title>
		<link>http://www.rec-sec.com/2008/09/15/nmap-476-released/</link>
		<comments>http://www.rec-sec.com/2008/09/15/nmap-476-released/#comments</comments>
		<pubDate>Mon, 15 Sep 2008 00:20:54 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Presentations]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=39</guid>
		<description><![CDATA[Fyodor released a new version of the world best network mapper \ port scanner &#8211;  Nmap 4.76.
Some of the new version cool features was presented by Fyodor at the latest DefCon.

Or watch it on his site &#8211; insecure.org.
]]></description>
			<content:encoded><![CDATA[<p><img alt="Nmap" width="121" height="82" class="left" src="images/nmap-logo.png" />Fyodor released a new version of the world best network mapper \ port scanner &#8211;  <a href="http://nmap.org/" title="Nmap - Free Security Scanner For Network Exploration &#038; Security Audits.">Nmap 4.76</a>.</p>
<p>Some of the new version cool features was presented by Fyodor at the latest DefCon.<br />
<object width="600" height="300" type="application/x-shockwave-flash" data="http://vimeo.com/moogaloop.swf?clip_id=1701091&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="movie" value="http://vimeo.com/moogaloop.swf?clip_id=1701091&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1" /></object></p>
<p>Or watch it on his site &#8211; <a href="http://insecure.org/presentations/BHDC08/" title="Fyodor's Nmap Presentation Video, Audio, and Slides for Black Hat and Defcon 2008">insecure.org</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/09/15/nmap-476-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DefCon 15 &#8211; Tactical Exploitation presentation</title>
		<link>http://www.rec-sec.com/2008/09/02/defcon-15-tactical-exploitation-presentation/</link>
		<comments>http://www.rec-sec.com/2008/09/02/defcon-15-tactical-exploitation-presentation/#comments</comments>
		<pubDate>Tue, 02 Sep 2008 15:46:24 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Presentations]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=59</guid>
		<description><![CDATA[Tactical Exploitation presentation (or &#8220;the other way to pen-test&#8221;) by H D Moore and Valsmith.

Penetration testing often focuses on individual vulnerabilities and services. This talk introduces a tactical approach that does not rely on exploiting known vulnerabilities. Using combination of new tools and obscure techniques, I will walk through the process of compromising an organization [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="DefCon" width="100" height="100" class="right" src="images/defcon_logo.png" />Tactical Exploitation presentation (or &#8220;the other way to pen-test&#8221;) by <a href="http://www.metasploit.com/" title="The Metasploit Project">H D Moore</a> and <a href="http://www.attackresearch.com/" title="Attack Research">Valsmith</a>.</p>
<blockquote><p>
Penetration testing often focuses on individual vulnerabilities and services. This talk introduces a tactical approach that does not rely on exploiting known vulnerabilities. Using combination of new tools and obscure techniques, I will walk through the process of compromising an organization without the use of normal exploit code. Many of the tools will be made available as new modules for the Metasploit Framework.
</p></blockquote>
<p><object width="400" height="326" type="application/x-shockwave-flash" data="http://video.google.com/googleplayer.swf?docId=8220256903673801959" ><param name="wmode" value="transparent" /></object></p>
<p>Grab the <a href="http://www.metasploit.com/data/confs/blackhat2007/tactical_blackhat2007.pdf" title="Tactical Exploitation presentation">presentation</a> and the <a href="http://blog.attackresearch.com/publications/hdmoore_valsmith_tactical_paper.pdf" title="Tactical Exploitation paper">paper</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/09/02/defcon-15-tactical-exploitation-presentation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DefCon 15 &#8211; No-Tech Hacking presentation</title>
		<link>http://www.rec-sec.com/2008/09/02/defcon-15-no-tech-hacking-presentation/</link>
		<comments>http://www.rec-sec.com/2008/09/02/defcon-15-no-tech-hacking-presentation/#comments</comments>
		<pubDate>Tue, 02 Sep 2008 15:40:18 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Presentations]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=57</guid>
		<description><![CDATA[No-Tech Hacking presentation from DefCon 15 by Johnny Long.

]]></description>
			<content:encoded><![CDATA[<p><img alt="DefCon" width="100" height="100" class="right" src="images/defcon_logo.png" />No-Tech Hacking presentation from DefCon 15 by <a href="http://johnny.ihackstuff.com/" title="Johnny I Hack Stuff">Johnny Long</a>.<br />
<object width="400" height="326" type="application/x-shockwave-flash" data="http://video.google.com/googleplayer.swf?docId=-2160824376898701015" ><param name="wmode" value="transparent" /></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/09/02/defcon-15-no-tech-hacking-presentation/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>The Pwnie Awards 2008 Video</title>
		<link>http://www.rec-sec.com/2008/08/22/pwnie-awards-2008-video/</link>
		<comments>http://www.rec-sec.com/2008/08/22/pwnie-awards-2008-video/#comments</comments>
		<pubDate>Fri, 22 Aug 2008 18:49:51 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Presentations]]></category>

		<guid isPermaLink="false">http://www.rec-sec.co.il/?p=18</guid>
		<description><![CDATA[The Pwnie Awards 2008 ceremony video has released.

In my opinion, Mark Dowd should have won the best client-side bug for his Leveraging the ActionScript Virtual Machine paper, owning Adobe Flash players.
Have fun :-)
]]></description>
			<content:encoded><![CDATA[<p>The <a href="http://pwnie-awards.org/2008/index.html" title="The Pwnie Awards 2008">Pwnie Awards 2008</a> ceremony video has released.</p>
<p><object type="application/x-shockwave-flash" width="425" height="350" data="http://video.google.com/googleplayer.swf?docid=-3572945997101058278&#038;hl=en&#038;fs=true"><param name="movie" value="http://video.google.com/googleplayer.swf?docid=-3572945997101058278&#038;hl=en&#038;fs=true" /></object></p>
<p>In my opinion, Mark Dowd should have won the best client-side bug for his <a href="http://documents.iss.net/whitepapers/IBM_X-Force_WP_final.pdf" title="Application-Specific Attacks: Leveraging the ActionScript Virtual Machine">Leveraging the ActionScript Virtual Machine</a> paper, owning Adobe Flash players.</p>
<p>Have fun :-)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/08/22/pwnie-awards-2008-video/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
