Breaking HTTPS With BGP Hijacking
Offered By: Black Hat via YouTube
Course Description
Overview
Explore the critical security implications of BGP hijacking in this Black Hat conference talk. Delve into the vulnerabilities of Internet routing and its impact on SSL/TLS PKI. Learn how BGP hijacking, often occurring due to route leaks and misconfigurations, can be exploited to compromise encrypted connections. Discover the intricacies of Internet infrastructure, including autonomous systems, DNS servers, and certificate authorities. Examine real-world examples of routing oddities and their consequences. Understand the limitations of current security measures and explore potential solutions to mitigate these risks. Gain insights into the complex interplay between Internet routing, encryption, and trust in the digital landscape.
Syllabus
Introduction
How the Internet works
Route Leak
Tracking oddities
What happens next
Speed of light
Preference
Commercial Relationships
Autonomous Systems
Obtaining TLS Certificate
How To Get A TLS Certificate
DNS Servers Are Loaded
Summary
Autonomous System
Local Hijacking
Work rounds
Certificate Patrol
Taught by
Black Hat
Related Courses
Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security ChipBlack Hat via YouTube Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube