Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
CFPs: YSTS 2025https://tinyurl.com/cfpysts17
Notícias:
https://www.techspot.com/news/105929-russia-tests-cutting-itself-off-rest-internet-most.htmlhttps://www.wired.com/story/russia-gru-apt28-wifi-daisy-chain-breach/
Quatro países que têm um lugar especial no coração da CISA:
https://www.cisa.gov/topics/cyber-threats-and-advisories/nation-state-cyber-actors
Música:
Que tal uma de IA? (Caneta Azul cantando Pearl Jam)
https://www.youtube.com/watch?v=YO_9X9ATkbk
Falando em AI https://slator.com/zuckerberg-launches-ai-dubbing-speech-translation-meta-developer-conference/
Mais Notícias:
TP-LInk banida dos US:https://www.wsj.com/politics/national-security/us-ban-china-router-tp-link-systems-7d7507e6https://www.reuters.com/technology/us-considers-ban-chinas-tp-link-wsj-reports-2024-12-18/
Previsões para 2025:“IOT vai bombar em 2025”
https://www.helpnetsecurity.com/2024/12/24/iot-2025-security/
Relacionado com os itens anteriores: https://www.helpnetsecurity.com/2022/11/30/iot-device-origin/ https://digital-strategy.ec.europa.eu/en/policies/cyber-resilience-act
https://cybermagazine.com/articles/top-10-cybersecurity-predictions-for-2025
https://www.forescout.com/blog/7-cybersecurity-predictions-for-2025-prepare-for-a-bumpy-ride/
Seção Abobrinha AeroEspacial
https://apnews.com/article/drones-new-jersey-what-to-know-e6f565f5d51d9d47ad140e7e7d131842
https://www.youtube.com/watch?v=ZID7wRpdg1M
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
DEF CON: Como foi?
BSidesLV: Como foi?
BlackHat: Como foi?
THOTCON agora a cada 2 anos
Ekoparty: 1, 2, 3 de Novembro CFP ainda aberto
H2HC: 9 e 10 de Dezembro
https://www.rnp.br/noticias/hackers-do-bem-abre-processo-seletivo-para-docentes
Notícias:
Bypass Two-Factor Authentication of Facebook Accounts ($25,300)
Relatório da HP detalha técnicas de evasão de detecção, incluindo abuso do campo TXT do DNS.
Música:
Mais Notícias:
https://samcurry.net/Points-com/
https://www.404media.co/i-tracked-nyc-subway-rider-home-omny-mta/
Dica da Semana:
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
https://www.roadsec.com.br/programacao
Registro de workshops da DEF CON Fechado. Workshop do Spookerlabs
Provavelmente a lista de talks da DEF CON estará no ar até lá.
Para esses lados aqui, SummerCon neste final de semana
Notícias:
https://eco.sapo.pt/2023/07/10/cartao-do-cidadao-vai-poder-servir-de-titulo-de-transporte/
Mais Notícias:
https://www.vice.com/en/article/93kkky/people-pirating-gpt4-scraping-openai-api-keys
Seção Abobrinha AeroEspacial
https://www.virgingalactic.com/?utm_id=2585548&sfmc_id=261488864&ck=00Q3z00001FqolqEAB#featured
Dica da Semana:
https://mrbilly.blogspot.com/2009/12/defcon-para-leigos.html
https://anchisesbr.blogspot.com/2019/07/seguranca-preparativos-para-defcon-2019.html
https://www.youtube.com/watch?v=AsPeB6bc5ho
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
Teve: THOTCON, YSTS, re:inforce e fwd:cloudsec
BSidesSP
CFPs: Sector.ca até 22 de junho.
Notícias:
https://www.mandiant.com/resources/blog/barracuda-esg-exploited-globally
https://labs.watchtowr.com/xortigate-or-cve-2023-27997/
Mais Notícias:
https://www.tomshardware.com/news/security-researcher-finds-coldplay-lyrics-in-kingston-ssd-firmware
https://thenewstack.io/the-first-kubernetes-bill-of-materials-standard-arrives/
Seção Abobrinha AeroEspacial
https://www.apple.com/apple-vision-pro
Dicas de streaming por pessoas de extremo e refinado bom gosto
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
RSA Conf
YSTS Agenda no Ar
CFPs
BlackHat USA Arsenal 21 de Abril
Notícias:
Mas que não é nada mais do que https://media.blackhat.com/us-13/US-13-Ossmann-Multiplexed-Wired-Attack-Surfaces-WP.pdf
Não acredite em tudo que vê na internet
Mais Notícias:
SIM Swap, a "novidade" dos Estados Unidos
https://thehackernews.com/2023/04/israeli-spyware-vendor-quadream-to-shut.html
Nokia 3310, o novo Flipperzero
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
https://securitybsides.com.br/2023/
Notícias:
https://www.eff.org/deeplinks/2023/03/flipper-zero-devices-being-seized-brazils-telecom-agency
https://techdigipro.com/how-to/casper-attack-steals-data-using-internal-air-gapped-computer-speaker/
https://www.linkedin.com/feed/update/urn:li:activity:7037622241441808384/
https://www.washingtonpost.com/nation/2023/03/14/tesla-app-unlock-strangers-car/
Música:
https://www.youtube.com/watch?v=qkaAmfgJ60w
Mais Notícias:
https://www.jailbreakchat.com/
https://www.reuters.com/technology/chinese-search-giant-baidu-introduces-ernie-bot-2023-03-16/
Seção Abobrinha Inter-estelar
https://www.theregister.com/AMP/2023/03/13/lockbit_spacex_ransomware/
1 hora e 4 minutos
Eventos
SSI (ITA) no more (?)
24th Chaos Communication Congress 2007: Call for Participation
December 27th to 30th, 2007
Berlin, Germany
http://events.ccc.de/congress/2007/
POC
Date of POC 2007
• Date: November 15 ~ 16
• Venue: Seoul Kyoyuk MunHwa HoeKwan.
POC 2007 Call for Papers (August 23, 2007)
eadline of Submission: September 30, 2007
All submission must include PPT and WORD in English with your brief biography.
http://www.powerofcommunity.net/notice.html
Noticias
Fonelista
http://comercio.fonelista.com.br/cadastro.html?Submit=Incluir+meu+Telefone%21
iPhone Unlocked
http://www.engadget.com/2007/08/24/iphone-unlocked-atandt-loses-iphone-exclusivity-august-24-2007/
http://www.iphonesimfree.com/
Researcher crosses swords with Google over XSS 'flaw'
http://www.theregister.co.uk/2007/08/21/google_modules_security_debate/
-
Assunto 1
[Dailydave] Myth: The US is more vulnerable to information warfare because it is more reliant on information technology
http://lists.immunitysec.com/pipermail/dailydave/2007-August/004524.html
Assunto 2
Hacking Germany's New Computer Crime Law
http://www.darkreading.com/document.asp?doc_id=132255&WT.svl=news1_2
Duração 58 minutos
Eventos
Bluehat 14
SampaSec
SaciCon
H2HC
C00l B-Sides Edição 10
Black Hat São Paulo
GTS 24
RoadSec SP
CFP da Infiltrate 2015
Vídeos da DerbyCon 2014
Vídeos da Secure Brasil 2014
Notícias
POODLE Test
Mais POODLE
Vazamento de informação na Staples
Abóbrinhas sobre o Apple Pay
Estatísticas em ataques em caixas eletrônicos
FCC e o ataque contra os Access Points Piratas
E, para confirmar que o Nelson estava certo... os Furbies
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Seção: A gente não erra mas às vezes comete pequenos equívocos:
Eventos:
https://www.mindthesec.com.br/call-for-papers
Notícias:
OpenSSL Security Advisory [7th February 2023]
Música:
https://www.youtube.com/watch?v=swr719Qc2Yk
Malditos HackerEs
https://globoplay.globo.com/v/11347652/
Seção Abobrinha Inter-estelar
https://www.youtube.com/channel/UCSoTXYNzSD9f6fF2IvRVHdA
Dicas de streaming por pessoas de extremo e refinado bom gosto:
https://www.youtube.com/watch?v=KBhJZ2qD0yM
Dica da Semana:
Por favor, parem de falar errado
Engine
Zine
Source
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
BSidesSF - CFP aberto até 1o. de Fevereiro
CanSecWest CFP ainda aberto até quando não sabemos (talvez nem eles)
BlueHat Seattle - Dias 8 e 9 de Fevereiro
Notícias:
https://thehackernews.com/2023/01/millions-of-vehicles-at-risk-api.html
https://www.malwarebytes.com/blog/news/2023/01/fake-flipper-zero-websites-look-to-cause-a-big-splash
Música: - Avu-Chan (Queen Bee) -- 生き続ける (Staying Alive) Japanese Cover
Mais notícias:
chkrootkit 0.57 is now available! (Release Date: Jan 13 2023)
https://www.vice.com/en/article/wxn9vx/researchers-track-reviver-digital-license-plate-gps-location
https://thehackernews.com/2023/01/researchers-uncover-3-pypi-packages.html
Dica da Semana:
Treinamento de grátis para desenvolvedores
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
CFP BlackHat Asia (Cingapura) - até 12 de janeiro 2023
Notícias:
Pq ainda usam a PyPi?
https://www.sans.org/blog/get-ahead-of-the-five-most-dangerous-new-attack-techniques/
Mais notícias:
https://www.reddit.com/r/cybersecurity/comments/yj8q14/isc2_posts_invalid_ballot_for_board_election/
FTX, irão pegar os malditos hackers?
Seção Abobrinha
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
Como foi CyberSecurity Summit 2022, MTS, GTER 51, GTS 37, H2HC ?
B-Sides SP 20/11
CFP THOTCON fecha 1 de jan
CFP ShmooCon 30 de nov
Notícias:
TOP 10 unattributed APT mysteries
Cybersecurity event cancelled after scammers disrupt LinkedIn live chat
Fresquinha, WhatsApp parou hoje?
Mais notícias:
https://www.theregister.com/2022/10/18/car_thieves_arrested_keyless_tech/
Seção Abobrinha
https://gizmodo.com/apple-app-store-ads-today-tab-homepage-1849694826
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
DEF CON e Black Hat como foi?
https://www.vice.com/en/article/88qxdz/hacker-conference-def-con-bans-pro-trump-outlet-oan
https://www.theregister.com/2022/08/15/black_hat_covid/
https://hackaday.com/2022/08/14/starlink-ground-stations-successfully-hacked/
https://www.theregister.com/2022/08/16/john_deere_doom/
https://defcon.outel.org/consolidated_page_split_Sat.html#AAVMV_f951fe8a642cec6da8016b461dac0b10
https://defcon.outel.org/consolidated_page_split_Fri.html#AAPLV_7ec0d25db7da7de46a596ea974018217
Notícias:
https://www.cnn.com/2022/08/23/tech/twitter-whistleblower-peiter-zatko-security/index.html
https://www.cnn.com/2022/08/24/tech/peiter-zatko-twitter-whistleblower-profile/index.html
https://www.theguardian.com/technology/2022/aug/30/elon-musk-adds-whistleblower-claims-to-list-of-reasons-for-ending-twitter-deal
https://www.theguardian.com/technology/2022/aug/29/how-to-shut-down-the-internet-and-how-to-fight-back
https://pierrekim.github.io/blog/2022-08-24-2-byte-dos-freebsd-netbsd-telnetd-netkit-telnetd-inetutils-telnetd-kerberos-telnetd.html
https://www.vice.com/en/article/88q8ak/kaspersky-employees-say-they-were-asked-to-resign-because-they-wanted-to-leave-russia
Mais notícias:
https://www.vice.com/en/article/qjkvxv/how-a-third-party-sms-service-was-used-to-take-over-signal-accounts
https://www.theguardian.com/technology/2022/aug/18/apple-security-flaw-hack-iphone-ipad-macs
https://nakedsecurity.sophos.com/2022/08/31/urgent-apple-quietly-slips-out-zero-day-update-for-older-iphones/
https://www.vice.com/en/article/v7veg8/anom-app-source-code-operation-trojan-shield-an0m?utm_content=bufferf67ab&utm_medium=social&utm_source=linkedin.com&utm_campaign=buffer
https://spreadprivacy.com/protect-your-inbox-with-duckduckgo-email-protection/
https://www.hackread.com/cisco-confirms-breach-employee-google-account-hacked/
https://www.zdnet.com/article/lastpass-hacked/
Seção Abobrinha
https://gizmodo.com/spacex-south-korea-moon-launch-pathfinder-lunar-orbiter-1849373010
https://www.washingtonpost.com/technology/2022/08/30/spacex-t-mobile-starlink-satellite/
https://www.theverge.com/2022/8/30/23329610/royal-caribbean-spacex-starlink-cruise-ships-celebrity-silversea
https://olhardigital.com.br/2022/08/30/reviews/iphone-14-pode-ter-conectividade-via-satelite-mas-isso-depende-de-acordos/
https://www-vice-com.cdn.ampproject.org/c/s/www.vice.com/amp/en/article/akek8e/walmart-30tb-ssd-hard-drive-scam-sd-cards
https://www.forbes.com/sites/richardnieva/2022/08/18/tiktok-in-app-browser-research
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
DEF CON e Black Hat chegando
Notícias:
https://www.darkreading.com/iot/unpatched-gps-tracker-security-bugs-disruption
Mais notícias:
Relacionado a ultima noticia acima
Seção Abobrinha Aeroespacial
https://www.vice.com/en/article/93abw3/nasa-rover-discovers-weird-clump-of-string-on-mars
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
YSTS
BHack Ingressos a venda
Evento tech, não exatamente de segurança
Notícias:
https://thehackernews.com/2022/05/attackers-can-use-electromagnetic.htm
https://www.infosecurity-magazine.com/news/evil-corp-changes-ransomware/
Mais notícias:
https://thehackernews.com/2022/06/atlassian-releases-patch-for-confluence.html
https://g1.globo.com/rj/rio-de-janeiro/noticia/2022/05/27/paineis-de-aeroporto-sao-hackeados.ghtml
Seção Abobrinha Aeroespacial
https://g1.globo.com/inovacao/noticia/2022/06/06/brasileiro-no-espaco-perguntas-e-respostas-sobre-voo-da-blue-origin.ghtml
https://www.space.com/spacex-starship-deploy-starlink-satellites-pez-dispenser
https://www.virgingalactic.com/sign-up
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
Notícias:
Mais Noticias:
https://nypost.com/2022/05/09/hackers-hijack-russian-tv-to-say-country-has-blood-on-hands/
https://www.foxla.com/news/key-fob-hacking-how-thieves-can-hack-into-your-car-and-tips-to-stop-it
https://nypost.com/2022/05/09/hackers-hijack-russian-tv-to-say-country-has-blood-on-hands/
Seção Abobrinha
https://www.androidauthority.com/motorola-razr-3-design-images-3162383/
https://mashed.com/856489/why-starbucks-wants-to-jump-on-the-nft-bandwagon/
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos:
https://www.cybersecuritysummit.com.br/
https://www.mindthesec.com.br/mts-22
Notícias:
Dica da Semana:
O tapa do Will Smith
E como já falamos antes, não saia scaneando QR codes
Como disse o Nelson, escolha para quem vc vende sua privacidade
Mais Noticias:
Lapsus$ Então? No final, o que aconteceu?
https://blog.checkpoint.com/2022/03/22/lapsuss-okta-the-cyber-attacks-continue/
Seção Abobrinha
Elon investe no twitter e ganha assento no board.
https://www.bbc.com/news/world-us-canada-10668480
Nova especialidade do Nelson Murilo
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos
https://www.virusbulletin.com/conference/vb2022/call-papers1/
VB2022 will take place in Prague, Czech Republic, from 28 to 30 September 2022.
BHAck - 26 e 27 de Novembro, Belo Horizonte.
Notícias:
https://www.armis.com/research/tlstorm/
"Meu dados vazaram e tudo que eu tenho é essa camiseta"
Música: https://www.youtube.com/watch?v=NxeybUo7whY
Mais Noticias:
Seção Abobrinha
https://interestingengineering.com/elon-musk-starlink-satellite-ukraine
https://www.teslarati.com/elon-musk-starlink-ukraine-most-downloaded-app
https://www.nytimes.com/2022/03/15/us/politics/submarine-spy-brazil.html
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos
Notícias:
https://www.vice.com/en/article/k7wpax/freedom-convoy-givesendgo-donors-leaked
https://www.kaspersky.com/blog/webkit-vulnerability-cve-2022-22620/43650/
E-Book da OCC com 50 tipos de golpes digitais
Mais Noticias:
Experts Warn of Hacking Group Targeting Aviation and Defense Sectors
Apple moves to stop AirTag tracking misuse
Um bilhão de máquinas de cartão num estalar de dedos:
Seção Abobrinha
https://www.engadget.com/spacex-all-civilian-spacewalk-starship-flight-165202465.html
Roteiro: Luiz Eduardo, Nelson Murilo, Willian Caprino
Produção: Halfmouth Podcasts
Some Music from: https://www.bensound.com
Eventos
Bsides Vancouver Virtual - CFP open.
Seção Obituário:
Notícias:
E o log4j deu o ar da graça, mas para a versão 1.x que está descontinuada desde 2015.
Segundo problema no validador de passaporte da vacina DATASUS em uma semana.
Joe Grand recupera crypto wallet
19 anos do aniversário do Slammer
Dicas da Semana:
Tem um iPhone? Já o atualizou desde a semana passada?
Música:
Mais Noticias:
https://news.ycombinator.com/item?id=30150343
Receita da Semana:
https://www.mcdonalds.com/us/en-us/menu-hacks.html
Seção Abobrinha