Alaid TechThread
675 subscribers
6 photos
1 video
82 files
1.31K links
Vulnerability discovery, threat intelligence, reverse engineering, AppSec
Download Telegram
Black Hat.zip
420.8 MB
Все доступные на данный момент презентации с Black Hat USA 2018
https://github.com/aeroflotsrc/webapp Халатность авиакомпании "Аэрофлот" в защите данных.
- Running a port scan caused the weapons system to fail

- One admin password for a system was guessed in nine seconds

- "Nearly all major acquisition programs that were operationally tested between 2012 and 2017 had mission-critical cyber vulnerabilities that adversaries could compromise."

- Taking over systems was pretty much playing on easy mode: "In one case, it took a two-person test team just one hour to gain initial access to a weapon system and one day to gain full control of the system they were testing."