syscan 2017 Sept. 11, 2017 to Sept. 12, 2017, beijing,china

Event Page


Tell us about missing data
Title Speakers Summary Topic Types
Pwned in Translation - from Subtitles to RCE Omri Herscovici , Omer Gull ABSTRACT What if I told you, that when you're watching a movie on your PC ...
The Ro(o)tten Apple: Vulnerabilities heaven behind the iOS sandbox Nikias \xe2\x80\x98@pimskeks\xe2\x80\x99 Bassen ABSTRACT In modern days, no exploitation chain can be considered complete without a reliable privilege ...
Penetration through ICS Development Software - potentially devastating attack vector or not? CODESYS 0days examples. Yuriy Gurkin ABSTRACT Among well known ICS development tools there is a CODESYS Programming Software which is ...
How to hide your browser 0-Days Zoltan Balazs , Mrg Effitas ABSTRACT When it comes to browser exploits, so far there was no known technique to ...
Transforming Open Source to Open Access in Closed Applications: Finding Vulnerabilities in Adobe Reader's XSLT Engine Brian Gorenc , Jasiel Spelman , Abdul-aziz Hariri ABSTRACT The inclusion of open-source components into large, closed-sourced applications has become a common practice ...
Bypass 2FA, Stealing Private Keys, and the Introduction to 2FAssassin Maxwell Koh ABSTRACT The "knowledge factor" (using passwords for authentication) will never be enough for security. We ...
Exploiting and abusing web applications flaws in industrial and network communication devices Bertin Bervis ABSTRACT PLCS, data acquisition servers and industrial network communication gateways/routers often comes with a web ...
The Shadow Brokers – Cyber Fear Game-Changers Matt Suiche ABSTRACT Who are/is TheShadowBrokers? We have no clue. Nobody really does. The Shadow Brokers are ...
Butterfly Effect and Program Mistake ---- Exploit an "Unexploitable" Chrome Bug Guang Gong ABSTRACT Does the flap of a butterfly’s wings in Brazil set off a tornado in ...
The Virtio Security in Qemu Zhibin Hu , Qiang Li ABSTRACT QEMU 是现代开源虚拟化解决方案的一个基本组成部分,特别是在 KVM 和 Xen 中。作为一款全面的虚拟化解决方案,QEMU 能够模拟处理器、内存和外设。如要改善虚拟机的性能,virtio 架构通常是首要之选。目前,几乎所有云平台都默认使用 virtio 设备。但事实表明,高性能与高安全性不可同时兼得。在本次演讲中,我将探讨 virtio 的安全性。内容将包括 virtio 架构的详情及其为何能改善性能。此外,我还将探讨 ...