ViewTube

ViewTube
Sign inSign upSubscriptions
Filters

Upload date

Type

Duration

Sort by

Features

Reset

279 results

DEFCONConference
DEF CON 30  - Jeffrey Hofmann - PreAuth RCE Chains on an MDM - KACE SMA

MDM solutions are, by design, a single point of failure for organizations. MDM appliances often have the ability to execute ...

35:59
DEF CON 30 - Jeffrey Hofmann - PreAuth RCE Chains on an MDM - KACE SMA

1,630 views

3 years ago

DEFCONConference
DEF CON Safe Mode - ayoul3 - Only Takes a Spark Popping a Shell on 1000 Nodes

Apache Spark is one of the major players if not the leader when it comes to distributed computing and processing. Want to use ...

45:03
DEF CON Safe Mode - ayoul3 - Only Takes a Spark Popping a Shell on 1000 Nodes

5,453 views

5 years ago

DEFCONConference
DEF CON 31 - Exploring Linux Memory Manipulation for Stealth and Evasion - Polop, Gutierrez

As cyber threats continue to evolve, attackers constantly develop new methods for exploiting system vulnerabilities and evading ...

44:24
DEF CON 31 - Exploring Linux Memory Manipulation for Stealth and Evasion - Polop, Gutierrez

5,121 views

2 years ago

DEFCONConference
DEF CON 31 - Exploiting OPC UA - Practical Attacks Against OPC UA Architectures - Moshe, Brizinov

... to remote code execution. For example, we explored OPC-UA features such as method call processing, chunking mechanisms, ...

39:21
DEF CON 31 - Exploiting OPC UA - Practical Attacks Against OPC UA Architectures - Moshe, Brizinov

2,462 views

2 years ago

DEFCONConference
DEF CON 31 - Prototype Pollution Leads to Remote Code Execution in NodeJS -  Shcherbakov, Balliu

Many have heard about Prototype Pollution vulnerabilities in JavaScript applications. This kind of vulnerability allows an attacker ...

20:18
DEF CON 31 - Prototype Pollution Leads to Remote Code Execution in NodeJS - Shcherbakov, Balliu

4,210 views

2 years ago

DEFCONConference
DEF CON 23 - Nemus - Hacking SQL Injection for Remote Code Execution on a LAMP Stack

Remember that web application you wrote when you where first learning PHP? Ever wonder how vulnerable that code base is?

38:46
DEF CON 23 - Nemus - Hacking SQL Injection for Remote Code Execution on a LAMP Stack

9,034 views

10 years ago

DEFCONConference
DEF CON 31 - Visual Studio Code is Why I Have Workspace Trust Issues - Chauchefoin, Gerste

Developers are threat actors' targets of choice because of their access to business-critical services. After compromising a single ...

38:26
DEF CON 31 - Visual Studio Code is Why I Have Workspace Trust Issues - Chauchefoin, Gerste

3,694 views

2 years ago

DEFCONConference
Wenxiang Qian - Breaking Google Home Exploit It with SQLite - DEF CON 27 Conference

Over the past years, our team has used several new approaches to identify multiple critical vulnerabilities in SQLite and Curl, two ...

38:36
Wenxiang Qian - Breaking Google Home Exploit It with SQLite - DEF CON 27 Conference

1,835 views

6 years ago

DEFCONConference
DEF CON 31 - Apples Predicament - NSPredicate Exploitation on macOS and iOS - Austin Emmitt

This new technique allowed attackers to sidestep codesigning, ASLR, and all other mitigations to execute arbitrary code on Apple ...

34:35
DEF CON 31 - Apples Predicament - NSPredicate Exploitation on macOS and iOS - Austin Emmitt

6,533 views

2 years ago

DEFCONConference
DEF CON 30 - Aaditya Purani, Max Garrett - ElectroVolt - Pwning Popular Desktop Apps

... either via feature or misconfiguration of Deep Link or Open redirect or XSS it would lead to Remote Code Execution on the OS.

44:48
DEF CON 30 - Aaditya Purani, Max Garrett - ElectroVolt - Pwning Popular Desktop Apps

2,292 views

3 years ago

DEFCONConference
Michael Stepankin - Apache Solr Injection- DEF CON 27 Conference

... for web applications - Solr parameter injection, and provide some useful ways how to achieve remote code execution through it.

16:21
Michael Stepankin - Apache Solr Injection- DEF CON 27 Conference

2,272 views

6 years ago

DEFCONConference
DEF CON 31 - ndays are also 0days - Bohan Liu, Zheng Wang, GuanCheng Li

Chromium is not only the most popular browser in the world but also one of the most widely integrated supply chain components.

39:50
DEF CON 31 - ndays are also 0days - Bohan Liu, Zheng Wang, GuanCheng Li

824 views

2 years ago

DEFCONConference
Omer Gull - SELECT code execution from using SQlite - DEF CON 27 Conference

Everyone knows that databases are the crown jewels from a hacker's point of view, but what if you could use a database as the ...

40:56
Omer Gull - SELECT code execution from using SQlite - DEF CON 27 Conference

2,393 views

6 years ago

DEFCONConference
DEF CON 31 - Attacking And Securing the Pixel Modem  - Karimi,  Xing , Gong, Rodionov

To ensure Google Pixel devices are always at their most secure, the Android Red Team continuously attacks the riskiest areas of ...

48:11
DEF CON 31 - Attacking And Securing the Pixel Modem - Karimi, Xing , Gong, Rodionov

1,856 views

2 years ago

DEFCONConference
DEF CON 31 - Second Breakfast Implicit & Mutation Based Serialization Vulns in  NET - Jonathan Birch

Exploits of insecure serialization leading to remote code execution have been a common attack against .NET applications for ...

35:05
DEF CON 31 - Second Breakfast Implicit & Mutation Based Serialization Vulns in NET - Jonathan Birch

945 views

2 years ago

OpenSecurityTraining2
Vulns1001 05 Out-of-Bounds-Write 🥷CVE-2019-10540📶 02 Exploit

View the full free MOOC at https://ost2.fyi/Vulns1001. This class is for C/C++ developers learning secure development, and ...

20:02
Vulns1001 05 Out-of-Bounds-Write 🥷CVE-2019-10540📶 02 Exploit

1,234 views

3 years ago

DEFCONConference
DEF CON 29 - Kelly Kaoudis, Sick Codes - Rotten code, aging standards, & pwning IPv4 parsing

Openness to responsibly disclosed external vulnerability research is crucial for modern software maintainers and security teams.

39:38
DEF CON 29 - Kelly Kaoudis, Sick Codes - Rotten code, aging standards, & pwning IPv4 parsing

4,507 views

4 years ago

Ap3x
Panoptes EDR Demo

This is a demo of a personal project of Panoptes Endpoint Detection and Response version 1.0.0 The project ...

3:41
Panoptes EDR Demo

100 views

11 months ago

OpenSecurityTraining2
Paging - Page Table Entries - Exploit Mitigation Aside: XD, SMEP, SMAP

You can watch this class without ads and with quizzes and lab setup instructions by going to https://ost2.fyi/Arch2001.

2:55
Paging - Page Table Entries - Exploit Mitigation Aside: XD, SMEP, SMAP

407 views

3 years ago

DEFCONConference
DEF CON 29 - Seth Kintigh  - OTA remote code execution on the DEF CON 27 badge via NFMI

The DEF CON 27 badge employed an obscure form of wireless communication: Near Field Magnetic Inductance (NFMI).

47:30
DEF CON 29 - Seth Kintigh - OTA remote code execution on the DEF CON 27 badge via NFMI

1,399 views

4 years ago