A feature in the Twitter API (application programming interface) can be abused by attackers to launch credible social engineering attacks that would give them a high chance of hijacking user accounts, a mobile application developer revealed Wednesday at the Hack in the Box security conference in Amsterdam.
L33tdawg: Ofer's slides along with all other presentation materials can be downloaded from http://conference.hitb.org/hitbsecconf2013ams/materials/
Hackers could use vulnerable charging stations to prevent the charging of electric vehicles in a certain area, or possibly even use the vulnerabilities to cripple parts of the electricity grid, a security researcher said during the Hack in the Box conference in Amsterdam on Thursday.
So if the TSA confiscated your dangerous tube of toothpaste over 3 ounces, or perhaps took possession of another object on the prohibited items list, it’s all “for the safety and security of the traveling public.” Right? Well the answer is no, not so much, especially after seeing a presentation that showed just how easily a person can make a weapon after going through TSA airport security.
L33tdawg: Presentation slides from Sergey and Artem's #HITB2013AMS presentation is here.
Sergey Shekyan and Artem Harutyunyan, researchers from the security firm Qualys, said the search engine Shodan shows about 100,000 wireless IP cameras that have "little or no emphasis on security." At the recent Hack in the Box security conference in Amsterdam, the researchers presented,