Friday

24C3 Review day 4 (30-12-2007)



Better late then never. I caught a nasty virus during the first day and needed some time to 'fix' the problem.

Some Trivia about the event:

  • I noticed there were a lot of woman present
  • Apparently it's normal that people take pictures of tourists (us) in German pubs
  • There were more than 4000 visitors at the congress!!!
  • About 30% of observed MAC addresses were from Apple (I saw a lot of people with iBooks)
So some more talks on this last day:
The talk was a collection of several smaller discoveries. Technically, it was ok but overall the presentation didn't impress. I must admit, it were some unusual things like dev/[k]mem race conditions. Unfortunately, it's only present in some of the *BSD families.
The European Commission did an online consultation on RFID in 2006 (of which I was unaware). 2190 responded of which 70% "interested citizens". Quite good!!!
43% came from Germany and Belgium, UK and Austria had a 4-5% each. Could the presence of the Chaos Computer Club have a good influence?
So that excessive surveillance and massive privacy violations shouldn't be possible by the massive use of RFID, adequate countermeasures should be taken. Let's hope they adopt a privacy by design. There will be a publication in 2008 by the expert group as well as another online consultation.
First part of the talk was a look back at 2007. With up to 348 days for a 0-day vulnerabilities or 39 seconds before first attacks after patch release, this looks grim. Also adhoc networks at airports (man in the corner attack) incl. bluetooth were in the picture.
Didier Stevens got mentioned with his 'Get infected here' google ad but their forgot his name. So here are some due credits.
To be expected in 2008: Apple software exploits/ Flash memory / Datahygiene / Mobile Malware / Vista / .....
Well, the 24th edition was a success. The politicians might even revoke the anti-hackertool law, which was silly in the first place. Kudos to the angels and the entire organization for five days of hard work.
Someone got arrested on the Mediamarket across the street for using a special cyberweapon. Be careful with those toys.

So see you next time at the 25th anniversary edition!!!

Previous parts:

0 comments: