- Alexander Kornbrust Oracle Security Blog - http://blog.red-database-security.com -
Man-in-the-Middle attacks at upcoming Black Hat Europe
Dieser Eintrag stammt von Alexander Kornbrust Am 12 Apr 2010 @ 15:30 In Tools, SQL Injection, Oracle Security | Kommentarfunktion deaktiviert
[1] Wendel Guglielmetti Henrique and [2] Steve Ocepek will demonstrate at the upcoming [3] Black Hat Europe 2010 in Barcelona (14-15 April) [4] how to steal credentials by downgrading authentication mechanisms as well as overtaking existing user sessions. They will also show their thicknet tool which will be available after the conference.
This sounds similar to Laszlo work on [5] downgrading JDBC. But I had already a chance to review their presentation so I know it is different.
More information after their presentation.
Dieser Artikel wurde ausgedruckt ab Alexander Kornbrust Oracle Security Blog: http://blog.red-database-security.com
URL zum Artikel: http://blog.red-database-security.com/2010/04/12/man-in-the-middle-attacks-at-upcoming-black-hat-europe/
URLs in this post:
[1] Wendel Guglielmetti Henrique: http://www.blackhat.com/html/bh-eu-10/bh-eu-10-speakerbios.html#Henrique
[2] Steve Ocepek: http://www.blackhat.com/html/bh-eu-10/bh-eu-10-speakerbios.html#Ocepek
[3] Black Hat Europe 2010: http://www.blackhat.com/html/bh-eu-10/bh-eu-10-briefings.html#Ocepek
[4] how to steal credentials: http://www.eweek.com/c/a/Database/Researchers-to-Demonstrate-Database-ManintheMi
ddle-Attacks-at-Black-Hat-191316/
[5] downgrading JDBC: http://soonerorlater.hu/download/hacktivity_lt_2009_en.pdf
Klicken hier zum Drucken.