27C3

Dec 30, 2010 23:40

... Looks to have been a bit of a stormer.

Here's the list of talks.

Here's the list of mirrors for video download.

Rop's keynote is well worth the half-hour. He's right about Wikileaks, Anonymous and Defcon, and is just a good chap. Text version here.

Other stuff I shall be viewing when it gets encoded and uploaded:

Contemporary Profiling of Read more... )

whatthehack, humppa!, hack-tic

Leave a comment

Comments 7

steer December 31 2010, 01:26:18 UTC
Doh -- https and no valid certificate -- from the sort of place which should be sticklers for that kind of thing.

Interesting keynote.

Reply

hirez December 31 2010, 15:11:41 UTC
You're assuming a 'valid' root CA is worth something. This was demonstrated not to be the case at a previous CCC.

(That comes across as too po-faced. IIRC there is a sensible reason why CCC and Hxx don't bother with a cert signed by one of the roots distributed in popular browsers.)

Reply

steer December 31 2010, 16:25:07 UTC
You're thinking of things like the null character attacks? Isn't that fixed? It was pretty minor (not to disrespect Kaminsky who does good work). Or is there some other attack I don't know of.

Reply

hirez December 31 2010, 17:10:15 UTC
Well, there's this thing: http://www.gnucitizen.org/blog/thoughts-on-the-certificate-authority-attack-presented-at-ccc/

Or it could be that cacert.org are a good bunch of chaps.

Reply


Leave a comment

Up