YoVDO

NVMe: New Vulnerabilities Made Easy - Exploiting Cloud Storage Protocols

Offered By: Hack In The Box Security Conference via YouTube

Tags

Cybersecurity Courses Cloud Computing Courses Static Code Analysis Courses Bug Hunting Courses NVMe Courses Vulnerability Research Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the critical vulnerabilities in NVMe technology, a cornerstone of modern cloud computing, in this eye-opening conference talk from Hack In The Box Security Conference. Discover how a pre-auth remote vulnerability in the Linux kernel's NVMe implementation was uncovered in minutes, and learn the research methodology to replicate this process. Gain insights into the importance of incorporating Static Code Analysis (SCA) tools in production pipelines, supported by examples of vulnerabilities found in leading vendors like NVIDIA and the Linux kernel. Understand the potential dangers of easily detectable and exploitable pre-auth vulnerabilities that require only slight misconfigurations. Benefit from the expertise of Tal Lossos, a Security Researcher at CyberArk Labs with extensive experience in kernel module development and a focus on bug hunting in the Linux kernel.

Syllabus

#HITB2023HKT D2T2 - NVMe: New Vulnerabilities Made Easy - Tal Lossos


Taught by

Hack In The Box Security Conference

Related Courses

Stanford Seminar - The Quest for Low Storage Latency Changes Everything
Stanford University via YouTube
Programming Emerging Storage Interfaces
USENIX via YouTube
NVMe Emulation Performance Optimization Techniques in QEMU
Linux Foundation via YouTube
Enhanced NVMe Error and Status Messaging
Linux Foundation via YouTube
NVMe Dispersed Namespaces
Linux Foundation via YouTube