27C3

Dec. 30th, 2010 11:40 pm
hirez: Humppa! (Humppa!)
[personal profile] hirez
... Looks to have been a bit of a stormer.

Here's the list of talks.

Here's the list of mirrors for video download.

Rop's keynote is well worth the half-hour. He's right about Wikileaks, Anonymous and Defcon, and is just a good chap. Text version here.

Other stuff I shall be viewing when it gets encoded and uploaded:

Contemporary Profiling of Web Users
SMS-o-Death
Recent advances in IPv6 insecurities
Spinning the electronic Wheel. Still the bicycles for the 21th century
File -> Print -> Electronics. A new circuit board printer will liberate you from the Arduino-Industrial Complex
"The Concert". A disconcerting moment for free culture
High-speed high-security cryptography: encrypting and authenticating the whole Internet (DJB!)
The Baseband Apocalypse
Data Recovery Techniques
Secure communications below the hearing threshold. Improved approaches for auditive steganography
Cognitive Psychology for Hackers. Bugs, exploits, and occasional patches

... And loads more. I am sad to have missed this one, but it would have required more organisation and a different rest-of-the-year.

I don't do new year resolutions, but if I were going to it would be 'write some code for an open source project'. Rop, as usual, is an inspirational sort of fellow.

Date: 2010-12-31 01:26 am (UTC)
From: [identity profile] steer.livejournal.com
Doh -- https and no valid certificate -- from the sort of place which should be sticklers for that kind of thing.

Interesting keynote.

Date: 2010-12-31 03:11 pm (UTC)
From: [identity profile] hirez.livejournal.com
You're assuming a 'valid' root CA is worth something. This was demonstrated not to be the case at a previous CCC.

(That comes across as too po-faced. IIRC there is a sensible reason why CCC and Hxx don't bother with a cert signed by one of the roots distributed in popular browsers.)

Date: 2010-12-31 04:25 pm (UTC)
From: [identity profile] steer.livejournal.com
You're thinking of things like the null character attacks? Isn't that fixed? It was pretty minor (not to disrespect Kaminsky who does good work). Or is there some other attack I don't know of.

Date: 2010-12-31 05:10 pm (UTC)
From: [identity profile] hirez.livejournal.com
Well, there's this thing: http://www.gnucitizen.org/blog/thoughts-on-the-certificate-authority-attack-presented-at-ccc/

Or it could be that cacert.org are a good bunch of chaps.

Date: 2010-12-31 05:25 pm (UTC)
From: [identity profile] steer.livejournal.com
Heh... small world -- [livejournal.com profile] maradydd is in credits on PDF. Mental expensive hack though. :-)

Date: 2010-12-31 05:34 pm (UTC)
From: [identity profile] hirez.livejournal.com
... Who mentions David Chaum who I met at HEU in '93. A very small world.

I wonder if doing it again with cloud-based GPUs would be faster and cheaper? Read to the end of the PDF, H-R...
Edited Date: 2010-12-31 05:36 pm (UTC)

Date: 2010-12-31 05:56 pm (UTC)
From: [identity profile] steer.livejournal.com
Heh.... one day I will complete my master plan to efficiently allow CPUs to render graphics, freeing up the GPU for the crypto, physics simulation and cloud computing tasks it was designed for.

May 2025

S M T W T F S
    123
45678910
11121314151617
18192021222324
2526272829 3031

Style Credit

Expand Cut Tags

No cut tags
Page generated Mar. 22nd, 2026 04:28 pm
Powered by Dreamwidth Studios