Black Hat USA
August 4-9, 2018
Las Vegas, NV, USA
Black Hat Trainings
October 22-23, 2018
Chicago, IL USA
Black Hat Europe
December 3-6, 2018
London UK
12/13/2017
09:00 AM
Black Hat Staff
Black Hat Staff
Event Updates
50%
50%

Black Hat Asia 2018:
First Briefings Announced

Black Hat Asia returns to Singapore, March 20-23, 2018 with hands-on technical Trainings, cutting-edge Briefings, Arsenal open-source tool demonstrations, top-tier solutions and service providers in the Business Hall, and more.

As our Review Board members continue to work their way through a record number of submissions, we are releasing new selections in batches. Below are the first announced Black Hat Asia 2018 Briefings, with links to their abstracts.

Analyzing & Breaking Exploit Mitigations and PRNGs on QNX for Automotive, Industrial, Medical and other Embedded Systems
By Ali Abbasi & Jos Wetzels

Breaking State-of-the-Art Binary Code Obfuscation via Program Synthesis
By Moritz Contag & Tim Blazytko

Breaking the Attack Graph: How to Leverage Graphs to Strengthen Security in a Domain Environment
By Marina Simakov

Counter-Infiltration: Future-Proof Counter Attacks Against Exploit Kit Infrastructure
By Yin Minn Pa Pa

Cyber Comrades: Alliance-Building in Cyberspace
By Kenneth Geers

Documenting the Undocumented: The Rise and Fall of AMSI
By Tal Liberman

I Don't Want to Sleep Tonight: Subverting Intel TXT with S3 Sleep
By Jun-Hyeok Park & Seunghun Han

Invoke-DOSfuscation: Techniques FOR %F IN (-style) DO (S-level CMD Obfuscation)
By Daniel Bohannon

RustZone: Writing Trusted Applications in Rust
By Eric Evenchick

Black Hat will release new Briefings on a regular basis. Keep an eye out for more announcements and register today to lock in early rates and save.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
New Cold Boot Attack Gives Hackers the Keys to PCs, Macs
Kelly Sheridan, Staff Editor, Dark Reading,  9/13/2018
Yahoo Class-Action Suits Set for Settlement
Dark Reading Staff 9/17/2018
RDP Ports Prove Hot Commodities on the Dark Web
Kelly Sheridan, Staff Editor, Dark Reading,  9/17/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: In Russia, application hangs YOU!
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2017-3912
PUBLISHED: 2018-09-18
Bypassing password security vulnerability in McAfee Application and Change Control (MACC) 7.0.1 and 6.2.0 allows authenticated users to perform arbitrary command execution via a command-line utility.
CVE-2018-6690
PUBLISHED: 2018-09-18
Accessing, modifying, or executing executable files vulnerability in Microsoft Windows client in McAfee Application and Change Control (MACC) 8.0.0 Hotfix 4 and earlier allows authenticated users to execute arbitrary code via file transfer from external system.
CVE-2018-6693
PUBLISHED: 2018-09-18
An unprivileged user can delete arbitrary files on a Linux system running ENSLTP 10.5.1, 10.5.0, and 10.2.3 Hotfix 1246778 and earlier. By exploiting a time of check to time of use (TOCTOU) race condition during a specific scanning sequence, the unprivileged user is able to perform a privilege escal...
CVE-2018-16515
PUBLISHED: 2018-09-18
Matrix Synapse before 0.33.3.1 allows remote attackers to spoof events and possibly have unspecified other impacts by leveraging improper transaction and event signature validation.
CVE-2018-16794
PUBLISHED: 2018-09-18
Microsoft ADFS 4.0 Windows Server 2016 and previous (Active Directory Federation Services) has an SSRF vulnerability via the txtBoxEmail parameter in /adfs/ls.