Disobey 2023 - Summary

ITSEC Newsletter 2023-05-29

Dates: 2023-02-17 - 2023-02-18

Location: Kaapelitehdas / Helsinki

Embedded Linux device bughunting

"A walkthrough of the audit procedure of an embedded Linux device, in this case an IP camera created by Uniview, showcasing a range of (RCE) bugs and describing how to get started reviewing / auditing / hacking devices like this."

Need for network visibility in the age of modern EDR

"EDR is an excellent tool for getting local visibility to endpoints but linking events to a context to get a clearer picture requires something more, especially when the users are mobile."

Vulnerability handling for the masses

"This talk presents case examples of trying to cope with server vulnerabilities and their aftermath in Finland. Cases include openssl, Exchange, and Confluence vulnerabilities and various areas of their handling: network scanning, contacting system owners, analysing incidents as well as detecting and reversing backdoors."