09 August 2009
~3 min
By marco
[part 5 in a series of 5 video write-ups from our BlackHat 09 talk, summary here] The final installment of our BlackHat video series showcases weaknesses in the password reset feature for Apple’s MobileMe service as well as publicizing an XSS vulnerability in the application. At first glance the choice of MobileMe may seem arbitrary, but it was useful for a number of reasons. MobileMe is one of the more…
08 August 2009
~6 min
By marco
[part 4 in a series of 5 video write-ups from our BlackHat 09 talk, summary here] In the fourth installment of our BlackHat video series, we turned our attention to Amazon’s cloud platform and focused on their Elastic Compute Cloud (EC2) service specifically. Theft of resources is the red-headed step-child of attack classes and doesn’t get much attention, but on cloud platforms where resources are shared amongst many users these…
08 August 2009
~5 min
By marco
[part 3 in a series of 5 video write-ups from our BlackHat 09 talk, summary here] Our third video write-up covers abuse of cloud services. By signing up for free accounts, it is possible to gain access to small amounts of free resources, specifically processing time and bandwidth. However these resources are tightly controlled to maintain fairness across the many thousands of users who share the same platform. We aim…
06 August 2009
~2 min
By marco
[part 2 in a series of 5 video write-ups from our BlackHat 09 talk, summary here] The premise behind this video was that while we are migrating more and more services into the cloud, the front-end through which the services are accessed as well as managed is (in many cases) a web application and we still have not figured out how to write secure web applications reliably. The implication is…
06 August 2009
~4 min
By marco
[part 1 in a series of 5 video write-ups from our BlackHat 09 talk, summary here] We wanted to demonstrate how access to cloud resources can bring certain attack classes within reach of regular users. Instead of focusing on brute-forcing regular user credentials such as usernames and passwords, we decided to look at less noisy options since failed logins would typically be a closely watched metric. To this end, different…
A recent maillist thread shows that the DC15 videos are anow available online [here] Our video (although my voice sounded alot better in my head than it does on video) is available [here]