http://conference.hitb.org/hitbsecconf2008kl/



hackinthebox
 ::  hitb portal  ::  hitb portal (SSL)  ::  hitb forum (SSL)  ::  hitb security conference  ::  hitb training ::  hitb irc  ::  hitb photos  ::  hitb videos :: 

HITB Search:
Who's Online
There are 230 unregistered users and 0 registered users on-line.

You can log-in or register for a user account here.



Main Menu

Top Stories for Today
[532] No excuses -- encrypt all laptops
[355] Asprox computer virus infects key government and consumer websites
[294] Microsoft's DNS Fix Leads to More Problems
[198] Clever students make hapless admin's job a nightmare
[194] Kaminsky on How He Discovered DNS Flaw and More
[175] Can obscurity make cryptography better?
[135] Steve Jobs teases over new Apple products
[135] 'Cold boot' tools surface
[131] Malware Spammers Get Sense of Humor
[130] Computer tech hands over secret codes to Newsom in jailhouse visit
[124] Kerfuffle erupts as DNS flaw described
[118] Last HOPE to become Next HOPE
[111] Philadelphia TV Anchor Accused Of Hacking Rival's E-mail
[109] Are you prepared for targeted attacks?
[108] Iranian hackers target Israeli Web site over message by Jewish group
[106] Second firm tests Apple's legal resolve with Mac OS X-ready PCs
[103] China arrests cyber dissident, rights group says
[103] Mind games: Harnessing the power of your thoughts
[102] Courts strike down COPA
[101] Singaporean lawyer Anamah Tan latest victim of e-mail hoax
[95] New service helps callers avoid awkward cell-phone moments
[93] Kaspersky Lab's Malaysian Web site hacked
[88] To disclose or not to disclose?
[86] Kaspersky says hacking attack did no damage
[85] MySpace Supports OpenID Universal Sign In
[79] Pwnie Awards celebrate best and worst of security

View the Top 50 articles

Top 20 of the Last 2 Weeks

E-Zine Archive

Past Articles
Wednesday, July 23
·Kaspersky Lab's Malaysian Web site hacked (0)
· To disclose or not to disclose?  (0)
·Pwnie Awards celebrate best and worst of security  (0)
·New service helps callers avoid awkward cell-phone moments (0)
·Philadelphia TV Anchor Accused Of Hacking Rival's E-mail  (0)
·MySpace Supports OpenID Universal Sign In  (0)
Monday, July 21
·First iPhone 2.0 antivirus software released (0)
·WiMAX begins to gain momentum (0)
·China Telecom Added 890,000 Internet Users in June (0)
·Six open source web application testing tools  (0)
·Former Microsoft manager sent down for domain name fraud (0)
·Facebook Sues German Knockoff Social Networking Site (0)
·The Wiki-Hacker Strikes Again (0)
·Brit pol loses BlackBerry to spy (0)
·Social Engineering 101: Mitnick and other hackers show how it's done (0)
·2600 magazine-sponsored event kicks off with pwning session (0)
·Kaspersky to set up SEA base in KL  (0)
·8 Killer iPhone 3G Alternatives  (0)
·Futuristic windshield aims to help older drivers (0)
·Hackers open core of Apple's iPhone (0)
Sunday, July 20
·Jailbreak app for iPhone 3G released! (0)
Friday, July 18
·Say goodbye to the computer mouse  (0)
·Microsoft in talks over AOL merger (0)
·Russia: Get computer-savvy or get out, Medvedev tells staff (0)
·Trovalds: OpenBSD developers are a bunch of masturbating monkeys (0)
·Sony Cuts Price on PlayStation 3, Axes Backwards Compatibility Too (0)
·AMD’s Chief Executive Officer Hector Ruiz Steps Down (0)
·Google 2Q letdown raises economic worries  (0)
·Fraudulent calls leave library with $15,000 phone bill  (0)
·Mozilla Fixes Firefox Flaw, But Needs New Security Practices (0)
 Older articles

HITB Links

Login
 



 


 Log in Problems?
 New User? Sign Up!

HITBSecConf2008 - Malaysia
The following speakers have confirmed their participation in HITBSecConf2008 - Malaysia; the premier network security event in Asia and the Middle East!

Day 1 Keynote Speakers

1.) Jeremiah Grossman (Founder & Chief Technology Officer, White Hat Security.)
2.) Marcus Ranum (Chief Security Officer, Tenable Network Security)

Day 2 Keynote Speakers

3.) Dr. Anton Chuvakin (Chief Research Officer, Log Logic Inc.)
4.) Peter Sunde [brokep] (Founder, The Pirate Bay - TPB) and Fredrik Neij [TiAMO] (Founder, The Pirate Bay - TPB)

Conference Speakers (alphabetical order)

1. AR (Independent Network Security Researcher, Securebits)
2. Adrian ‘pagvac’ Pastor (ProCheckUp Ltd. / GNUCITIZEN)
3. Akshay Agrawal (Practice Manager, Microsoft Information Security ACE Team)
4. Andrew ‘Q’ Righter (HacDC)
5. Alexander Tereshkin (Principal Researcher, Invisible Things Lab)
6. Charlie Miller (Principal Analyst, Independent Security Evaluators)
7. Ching Tim Meng (Security Consultant, Cable & Wireless)
8. Dino Covotsos (Managing Director, Telspace Systems)
9. Dino Dai Zovi (Security Researcher)
10. Ero Carrera (Reverse Engineering Automation Researcher, zynamics GmbH)
11. Haroon Meer (Technical Director, Sensepost Information Security)
12. Hernan Ochoa (Senior Security Consultant, Core Security Technologies)
13. Ilfak Guilfanov (Founder/CEO of Hex-Rays SA and creator of IDA Pro)
14. Jamie Butler (Coauthor of Rootkits: Subverting the Windows Kernel)
15. Jim Geovedi (Member of HERT & Security Consultant, PT. Bellua Asia Pacific)
16. Julian Ho (Chief Operating Officer, THINKSecure Pte. Ltd.)
17. King Tuna (Independent Network Security Researcher)
18. Kris Kaspersky (Independent Network Security Researcher)
19. Lee Chin Sheng [geek00l] (Independent Network Security Researcher)
20. Matthew Geiger (Forensics Specialist, CERT)
21. Meling Mudin [spoonfork] (Independent Network Security Researcher)
22. Marc Weber Tobias (Investigative Attorney and Security Specialist)
23. Nitesh Dhanjani (Senior Manager, Ernst & Young)
24. Paul Craig (Principal Security Consultant, Security-Assessment.com)
25. Pedram Amini (Manager, Security Research, TippingPoint)
26. Petko D. Petkov [pdp] (GNUCITIZEN)
27. Shreeraj Shah (Director, BlueInfy)
28. Saumil Shah (Founder, Net-Square)
29. Teo Sze Siong (Senior Web Security Researcher, F-Secure Corporation)
30. The Grugq (Independent Network Security Researcher)

There are very limited seats and registrants are encouraged to register early!

REGISTER NOW


Last 15 Postings to HITB Forum

Packet Storm Security Latest
· dns-writeup.txt
Interesting write up discussing DNS cache poisoning then and now.
· USN-627-1.txt
Ubuntu Security Notice 627-1 - Dan Kaminsky discovered weaknesses in the DNS protocol as implemented by Dnsmasq. A remote attacker could exploit this to spoof DNS entries and poison DNS caches. Among other things, this could lead to misdirected email and web traffic.
· DSECRG-08-032.txt
Claroline eLearning and eWorking Platform version 1.8.10 suffers from cross site scripting vulnerabilities.
· dsa-1613-1.txt
Debian Security Advisory 1613-1 - Multiple vulnerabilities have been identified in libgd2, a library for programmatic graphics creation and manipulation. The Common Vulnerabilities and Exposures project identifies the following three issues:
· MDVSA-2008-151.txt
Mandriva Linux Security Advisory - A buffer overflow vulnerability in libxslt could be exploited via an XSL style sheet file with a long XLST transformation match condition, which could possibly lead to the execution of arbitrary code. The updated packages have been patched to correct this issue.
· sipwitch-0.2.2.tar.gz
GNU SIP Witch is a pure SIP-based office telephone call server that supports generic phone system features like call forwarding, hunt groups and call distribution, call coverage and ring groups, holding, and call transfer, as well as offering SIP specific capabilities such as presence and messaging. It supports secure telephone extensions for making calls over the Internet, and intercept/decrypt-free peer-to-peer audio and video extensions. It is not a SIP proxy, a multi-protocol telephone server, or an IP-PBX, and does not try to emulate Asterisk, FreeSWITCH, or Yate.
· pkd-1.0.tgz
ipt_pkd is an iptables extension implementing port knock detection. This project provides 3 parts: the kernel module ipt_pkd, the iptables user space module libipt_pkd.so, and a user space client knock program. For the knock packet, it uses a UDP packet sent to a random port that contains a SHA-256 of a timestamp, small header, random bytes, and a shared key. ipt_pkd checks the time window of the packet and does the SHA-256 to verify the packet. The shared key is never sent.
· shopcartdx-sql.txt
ShopCartDx version 4.30 suffers from a remote SQL injection vulnerability.


Topics
· All topics
· AMD News (Jul 18, 2008)
· Apple News (Jul 23, 2008)
· Articles (Feb 13, 2006)
· Ask Us (Feb 01, 2003)
· Audio/Video (Jul 18, 2008)
· Encryption (Jul 23, 2008)
· Games (Jul 18, 2008)
· Hardware (Jul 15, 2008)
· HITB News (May 18, 2008)
· Industry News (Jul 23, 2008)
· Intel News (Jul 15, 2008)
· Law and Order (Jul 23, 2008)
· Linux (Jul 18, 2008)
· Microsoft (Jul 23, 2008)
· Networking (Jul 12, 2008)
· PDAs (Feb 09, 2007)
· Privacy (Jul 21, 2008)
· Red Hat (May 13, 2008)
· Science (Jul 16, 2008)
· Security (Jul 23, 2008)
· Software & Programming (Jul 21, 2008)
· Spam (Jul 10, 2008)
· Technology (Jul 23, 2008)
· Transmeta (Jul 07, 2007)
· Viruses & Malware (Jul 23, 2008)
· Wireless (Jul 12, 2008)

HITB Affiliates