- Alexander Kornbrust Oracle Security Blog - http://blog.red-database-security.com -

Man-in-the-Middle attacks at upcoming Black Hat Europe

Dieser Eintrag stammt von Alexander Kornbrust Am 12 Apr 2010 @ 15:30 In Tools, SQL Injection, Oracle Security | Kommentarfunktion deaktiviert

[1] Wendel Guglielmetti Henrique  and [2] Steve Ocepek will demonstrate at the upcoming [3] Black Hat Europe 2010 in Barcelona (14-15 April) [4] how to steal credentials by downgrading authentication mechanisms as well as overtaking existing user sessions. They will also show their thicknet tool which will be available after the conference.

This sounds similar to Laszlo work on [5] downgrading JDBC. But I had already a chance to review their presentation so I know it is different.

More information after their presentation.


Dieser Artikel wurde ausgedruckt ab Alexander Kornbrust Oracle Security Blog: http://blog.red-database-security.com

URL zum Artikel: http://blog.red-database-security.com/2010/04/12/man-in-the-middle-attacks-at-upcoming-black-hat-europe/

URLs in this post:
[1] Wendel Guglielmetti Henrique: http://www.blackhat.com/html/bh-eu-10/bh-eu-10-speakerbios.html#Henrique
[2] Steve Ocepek: http://www.blackhat.com/html/bh-eu-10/bh-eu-10-speakerbios.html#Ocepek
[3] Black Hat Europe 2010: http://www.blackhat.com/html/bh-eu-10/bh-eu-10-briefings.html#Ocepek
[4] how to steal credentials: http://www.eweek.com/c/a/Database/Researchers-to-Demonstrate-Database-ManintheMi
ddle-Attacks-at-Black-Hat-191316/

[5] downgrading JDBC: http://soonerorlater.hu/download/hacktivity_lt_2009_en.pdf

Klicken hier zum Drucken.