About 250 scientists from 31 countries have signed another open letter https://t.co/5SChCDci8Y criticizing the latest EU #chatcontrol draft https://t.co/gUMoBNXSdy. The letter confirms 2 earlier letters from July 2023 https://t.co/mYePVHOk02 and May 2024 https://t.co/bublijBATW
For anyone worrying about this, I’d like to hear how you were already handling a near identical attack that didn’t require this vuln:
- steal Yubikey
- login
- returns key WITHOUT cloning it, because 1 session is enough for most objectives
Same attack flow.
If that wasn’t already part of your threat model, why is this?
If it was part of your threat model, how do your existing defenses not already handle the vuln? (I can think of a few, but none that apply to most of the people who are concerned)
This should change very little for most people.
Now that we're all back and caught up on sleep it's @defcon CTF @Nautilus_CTF wrap-up time! 🐚🚩 we managed a great 6th place in a tough competition with conventional pwnage, GenAI-powered spaceships, and LiveCTF duels
And that's it for this year @defcon#CTF: your favorite Italian team got 6th place after 3 intense days of !sleeping. Thanks to the organizers @Nautilus_CTF and all the amazing teams that competed with us in this backdoor-sharing event!
See you next year! ♥️
#defcon#defcon32
📢 Calling all Sponsors!
Get mhackeroni to the DEF CON 32 CTF finals 🚩🍝
Would you like to be a part of moving the kitchen to Las Vegas this summer & secure a spot for your logo in our highly-demanded t-shirt?
Contact us!
Your favourite Italian Acheri™️ need your help!
Hi! We’re confident this IS NOT a 0click attack.
It’s a bug in our phone number privacy+usernames implementation, fix coming soon.
I’ve asked OP to clarify/delete in service of minimizing harmful misinfo ❤️🙏
🚩 #openECSC 2024 #CTF has been launched!
🗓️ 1st round will start on Mar 18th
👉 Registration open @ https://t.co/881IUhzUHP
🇮🇹 Winners of the 3 rounds will be invited to #ECSC in Italy! 🔥
📕 Rules @ https://t.co/QbsymSjKbZ
@csirt_it@CyberSecNatLab#cybersecurity#ECSC2024
Our work "Cookie Crumbles: Breaking and Fixing Web Session Integrity" is among the nominations for the top-10 Web hacking techniques! Consider voting for us if you enjoyed our @BlackHatEvents@USENIXSecurity talks or liked the research. https://t.co/eIJpUBKUy9
RT appreciated! 🍪
🚩 Last hour before the start of the 2nd edition of the #TeamItaly CTF!
🖊 Register and play here:
https://t.co/gpqlalUuiH
🗓 From 30/09 14:00 to 01/10 14:00 (CEST)
#CTF#TeamItaly#ECSC#ECSC2023#TeamItalyCTF @openECSC
When in Stockholm and you’re cold… what about blankets?
Very proud of our teammates for a great result at @MidnightSunCTF and thanks to the orgs for the amazing event! 🇸🇪🇮🇹
@DEFCON wrap-up time🌴 great to be back & our new friends from @aboutblankets joining! We managed an unbelievable win at @hack_a_sat finals: so happy we could bring our pasta capabilities to space 🛰️ Thanks for an out-of-this-world experience! Our gorgeous sat pic attached 😍