Websec at DEFCON 2009

Websec at DEFCON 2009

Posted on May 03, 2010

In 2009, Websec was proud to participate in DEFCON as a featured speaker. DEFCON is the world's largest and most prestigious computer security/hacker conference, in which participants gather from around the world in Las Vegas to share and discuss newly discovered vulnerabilities and security issues. DEFCON 2009 featured nearly eight thousand attendees and two hundred speakers, marking another year of growth in this its 17th year of existence.

In this year's conference, Websec security researcher Pedro Joaquin presented the long awaited results from his most recent studies regarding residential modem security, Attacks on 2wire Residential Gateways. Pedro was the first to publicly expose a high-impact vulnerability targeting the 2wire model of router. This vulnerability allows DNS poisoning via a cross site forgery request, resulting in authentication bypass and drive-by router pharming.

This vulnerability is particularly troublesome in Mexico, where use of the 2wire router is most prevalent. A subsequent patch designed to rectify the problem was itself flawed and in fact contained the additional, more severe problem of another authentication bypass vulnerability. Pedro's work in discovering and remedying the initial vulnerability, and well as the one contained within the patch, has helped to greatly improve the security of residential systems that utilize the 2wire router.

For additional information: http://www.defcon.org http://www.hakim.ws

RSS Feed

Stay up to date on the latest news in the information security field.


Latest Blog Entries

Panoptic
An overview of Panoptic, an open source penetration testing tool that automates the process of search and retrieval of common log and config files through LFI vulnerabilities.
Posted in panoptic python tool lfi

Special discount code for "Nmap 6: Network Exploration and Security Auditing Cookbook"
PacktPub created a special discount code for our friends from HackerHalted
Posted in Nmap Hacker Halted nmap cookbook

Mac2WepKey HHG5xx for iPhone
The famous app to obtain the default WiFi passwords for Huawei routers is now available for the iPhone iOS 5.
Posted in HHG5xx iPhone huawei mac2wepkey passwords generator

Latest News

Oct 12, 2012
Websec at Hacker Halted USA 2012
Hacker Halted USA 2012 will reunite information security specialists from around the world to show the latest and most innovating research in the field of information security.

Sep 27, 2012
Nmap 6: Network Exploration and Security Auditing Cookbook is now on pre-sale!
The book "Nmap 6: Network Exploration and Security Auditing Cookbook" by Paulino Calderón is now on pre-sale and will be available soon.