Home > Security News > New attacks and vulnerability trends highlighted at Black Hat
Security News:
EMAIL THIS LICENSING & REPRINTS

New attacks and vulnerability trends highlighted at Black Hat

By Shawna McAlearney, News Writer
28 Jul 2004 | SearchSecurity.com

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   

LAS VEGAS -- Nearly 2,000 hackers of all stripes are expected at the 8th Annual Black Hat Briefings USA this week. Presentations beginning today will analyze vulnerabilities, zero-day code, phishing and secure wireless deployment, among many other topics.

According to conference organizer Jeff Moss, this year's event will demonstrate three significant exploits, 20 new freeware releases and new research on almost 50 topics. This year's focus will be on application security.

"The Black Hat Briefings have become the place where first demonstrations of relevant issues are discussed in the security industry," Jack Holleran, former technical director of the National Computer Security Center at the NSA, said in a statement. "This is where researchers unveil information that pushes the entire industry forward."

The two-day conference, which precedes the better known DEFCON, will offer a number of ground-breaking sessions, including:

  • Phillip Hallam-Baker, principal scientist of VeriSign, presenting "Phishing: Committing Fraud in Public," on new research that tracks organized crime through forensics and data trending.


  • Joseph Ansanelli, CEO of Vontu, and Mary Ann Davidson, CSO of Oracle, presenting "The Black Hat Hearings" on protecting customer data, followed by a question and answer session with privacy experts from Motorola, In-QTel and Informed Security.


  • JD Glaser, founder of NT Objectives, on "Hacking with Executives," including new research, freeware and panel discussion with executives from VeriSign, Siebel and Safeway on the connection between banks and corporate networks where fraud and financial information leaks takes place.


  • Peter Silberman and Richard Johnson, iDefense security engineers, releasing a new exploit and tool on buffer-overflow prevention. This presentation will focus on the most commonly exploited software vulnerability in the security world and include the first public discussion of available third-party buffer overflow prevention software for the Windows operating system.


  • Gerhard Eschelbeck, CTO of Qualys, presenting "The Laws of Vulnerabilities for Internal Networks" based on research derived from real-world vulnerability data.

"This is an extension of Gerhard's popular talk from last year, this time focusing on internal vulnerability trends," said Moss. "I haven't seen a whole lot of statistics based on internal attack data, so I'm hoping his presentation will shed light about what's going on.

"This year, attendees will be able to play with Paul Wouters' unique WaveSEC deployment, the first wireless network I would consider using in my own home or office," added Moss. "On the more controversial side, David Litchfield will release zero-day code exposing a never before seen security flaw."

Tags: Security Industry Market Trends, Predictions and ForecastsPhishingWireless LAN ArchitectureHandheld and Mobile Device SecurityVulnerability AssessmentApplication Attacks (Buffer Overflows, Cross-Site Scripting)VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineWebcastsWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2003 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts