#video #live #security #OWASP Ukraine 12020
11:00 Opening + lottery/raffles announcement
11:25 Maksym Khramov & Serhii Korolenko - 6 digit OTP for Two Factor Auth (2FA) is brute-forceable in 3 days + OTP Lottery
11:45 Julia Potapenko - React Native Security: Addressing Typical Mistakes
12:30 Константин Корсун - Безпека додатку Дія - “Оскар” чи “Золота малина”
13:30 Anatolii Bereziuk - OAuth2.0: What? Where? When?
14:40 Serhii Korolenko & Eduard Kiiko & Oksana Safronova - OWASP JuicyShop Workshop
16:00 Philippe Humeau - Leveraging the crowd power to regain faith in Internet’s zero trust architecture (in English)
17:00 Pawel Rzepa - Serverless security: attack & defense (in English)
18:00 Lottery/raffles results + Closing word
https://youtu.be/e7myCGQ0gO4
11:00 Opening + lottery/raffles announcement
11:25 Maksym Khramov & Serhii Korolenko - 6 digit OTP for Two Factor Auth (2FA) is brute-forceable in 3 days + OTP Lottery
11:45 Julia Potapenko - React Native Security: Addressing Typical Mistakes
12:30 Константин Корсун - Безпека додатку Дія - “Оскар” чи “Золота малина”
13:30 Anatolii Bereziuk - OAuth2.0: What? Where? When?
14:40 Serhii Korolenko & Eduard Kiiko & Oksana Safronova - OWASP JuicyShop Workshop
16:00 Philippe Humeau - Leveraging the crowd power to regain faith in Internet’s zero trust architecture (in English)
17:00 Pawel Rzepa - Serverless security: attack & defense (in English)
18:00 Lottery/raffles results + Closing word
https://youtu.be/e7myCGQ0gO4
Forwarded from CatOps
Recent Google incident post-mortem: https://status.cloud.google.com/incident/zall/20013#20013004
tl;dr: wrong quota applied to the Google User ID Service
#postmortem
tl;dr: wrong quota applied to the Google User ID Service
#postmortem
#hack
https://citizenlab.ca/2020/12/the-great-ipwn-journalists-hacked-with-suspected-nso-group-imessage-zero-click-exploit/
https://citizenlab.ca/2020/12/the-great-ipwn-journalists-hacked-with-suspected-nso-group-imessage-zero-click-exploit/
The Citizen Lab
The Great iPwn
Government operatives used NSO Group’s Pegasus spyware to hack 36 personal phones belonging to journalists, producers, anchors, and executives at Al Jazeera. The journalists were hacked by four Pegasus operators, including one operator MONARCHY that we attribute…