YoVDO

SOHO Hacking at Pwn2Own

Offered By: Hack In The Box Security Conference via YouTube

Tags

Hack In The Box Security Conference Courses Cybersecurity Courses Network Security Courses Ethical Hacking Courses Penetration Testing Courses Exploit Development Courses

Course Description

Overview

Explore the security challenges of home office networks and enterprise perimeter shifts in this conference talk from Hack In The Box Security Conference. Dive into the methodologies used by NCC Exploit Development Group (EDG) to rapidly identify vulnerabilities in consumer routers and small business devices during Pwn2Own 2022 Toronto. Learn about the differences between LAN and WAN attack surfaces, custom tooling for vulnerability analysis, and the process of creating multiple exploit chains. Discover specific vulnerabilities found in Netgear, TP-Link, and Synology devices, and understand the unique challenges posed by the Pwn2Own competition. Examine the development of multi-stage exploit chains used to compromise routers via WAN and pivot to LAN devices. Gain insights into the security shortcomings of consumer devices and their implications for end users and enterprises. Witness demonstrations of vulnerabilities and understand how threat actors could exploit these attacks for lateral movement and persistence in networks.

Syllabus

#HITB2023AMS D1T1 - SOHO Hacking At Pwn2Own - Alex Plaskett & McCaulay Hudson


Taught by

Hack In The Box Security Conference

Related Courses

Network Security
Georgia Institute of Technology via Udacity
Proactive Computer Security
University of Colorado System via Coursera
Identifying, Monitoring, and Analyzing Risk and Incident Response and Recovery
(ISC)² via Coursera
Hacker101
HackerOne via Independent
CNIT 127: Exploit Development
CNIT - City College of San Francisco via Independent