Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
×
Programming Security The Internet Technology

Blackhat/Defcon Report 305

Joe Barr writes "NewsForge [ed. note: part of OSTG along with Slashdot] is running its concluding piece on the week-long Blackhat/DEFCON hackerfest in Las Vegas. Want to know how little our police/intelligence agencies seem to have learned from their failures prior to 9/11? Or how a very large goon known only as Priest prevented outright political violence at a DEFCON presentation on Civil Disobedience? Or which of the two conferences is right for you? It's all here in the Blackhat/Defcon: Final report." Reader M. Curphey writes "The Web Application Security Consortium (WASC) announced at Blackhat the release of a 'Threat Classifications' document. This document attempts to clarify web security terminology such as Cross Site Scripting, Session Fixation, Cookie poisoning, and HTTP response splitting (to name a few)."
This discussion has been archived. No new comments can be posted.

Blackhat/Defcon Report

Comments Filter:
  • Re:Hmm... (Score:4, Informative)

    by Maestro4k ( 707634 ) on Tuesday August 03, 2004 @01:17PM (#9869830) Journal
    • Looks like the 503 Errors with Firefox are really slowing down discussions.
    They're not just in Firefox, they're affecting everyone. Slashdot's been more like SlashNOT this week so far.
  • Re:Girls (Score:4, Informative)

    by DecoDragon ( 161394 ) on Tuesday August 03, 2004 @01:23PM (#9869863)
    First off, there are females at DefCon, and not all of them are there, because they think it's an easy place to pick up guys.

    That said, have her look at the program and see if any of the talks are interesting to her. If she knows only a bit, maybe the technical talks won't be that interesting, but the talks that delve into the overlap between politics and technology might be of interest. I'm guessing if she's not that into it, the contests wouldn't be very fun to her.

    If it's not her thing at all, have her look and see if Vegas is something interesting to her, and she can join you later. But, I'd be more inclined to say, if it's not her thing, plan a different trip that both of you would enjoy before or after DefCon.
  • by stanmann ( 602645 ) on Tuesday August 03, 2004 @01:41PM (#9869966) Journal
    Did you read the same article I did? IN the article I read, the security showed up and sat next to him during his diatribe and only removed him AFTER one of the spectators appeared to be on the verge of violence toward the speaker(and this was during or after the Q&A portion of the presentation).
  • Too crowded (Score:3, Informative)

    by Rorschach1 ( 174480 ) on Tuesday August 03, 2004 @01:47PM (#9870019) Homepage
    I haven't been to Def Con in a couple of years. I went the first year they were at the Alexis Park, and it was OK. Went back the next year, and they'd clearly outgrown the venue. Wasn't able to get a seat for ANY of the talks.

    I don't know if they've signed some sort of long-term contract, or maybe they've just gotten kicked out of everywhere else, but I'm not going back until they get a considerably larger place.
  • Re:Hmm... (Score:5, Informative)

    by Cramer ( 69040 ) on Tuesday August 03, 2004 @01:51PM (#9870065) Homepage
    There have been a high number of occurances of 503's since the zero-notice updates a few weeks ago. (at the same time, all web pages started returning "no-cache" so simple brower navigation is forced to redownload every byte on every mouse click. When I logged a bug about this, it was immediately dismissed without comment.)
  • by IncarnadineConor ( 457458 ) on Tuesday August 03, 2004 @01:54PM (#9870099)
    It is interesting, it had never dawned on me.
  • by Otter ( 3800 ) on Tuesday August 03, 2004 @02:18PM (#9870337) Journal
    Well I didn't jump up and say it but I've been wondering myself why we need one, as you point out, what's Tom Ridge for? I thought he, and his new department of Homeland Security, were supposed to at least coordinate info from various agencies.

    Putting aside the question of whether either position is a good idea, I don't quite get what you guys are so puzzled about. Homeland Security is supposed to maintain domestic security operations and, as you say, filter relevant intelligence info. It's not supposed to be responsible for intelligence operations in general -- that's why the Coast Guard has been put under their authority but the CIA and NSA haven't.

  • Re:Hmm... (Score:3, Informative)

    by garcia ( 6573 ) * on Tuesday August 03, 2004 @03:28PM (#9870933)
    The 503 errors were not just with Firefox. I was getting the same error while being logged in on either Firefox or IE. Only if I cleared my cookies and loaded the page would I be allowed to get past the 503.

HELP!!!! I'm being held prisoner in /usr/games/lib!

Working...