Billy Rios: Biting the Hand that Feeds You - Storing and Serving Malicous Content From Well Known Web Servers episode artwork

EPISODE · Jan 9, 2006 · 44 MIN

Billy Rios: Biting the Hand that Feeds You - Storing and Serving Malicous Content From Well Known Web Servers

from DEFCON 15 [Audio] Speeches from the hacker conventions · host DEF CON Announcements

Whats in a name? How do you know you should "trust" the content you are receiving? In today's World Wide Web, we place a lot of "trust" into domain names. For many, domain names help determine the whether a particular link or file should be trusted, or eyed with suspicion. Domain name trust has even made its way into security systems, considering many of the protections built into our browsers are based strictly on domain names! In this talk, we'll take a look at some simple ways to store and serve malicious content from some of the most popular servers on the Internet. It's time we rethink the ways we've implemented one of our most treasured Web resources... web mail. We'll bite the hand that feeds us by abusing the very features that make web mail services so popular. We'll show you how to use popular web mail servers as a repository for malicious content and how to serve that content to those surfing the World Wide Web (no email address required!)."Billy Rios is a Senior researcher for VeriSign's Global Security Consulting Service. He has performed network, application, web-application, source-code, wireless, Internet, Intranet, and dial-up security reviews and penetration testing for numerous clients in the Fortune 500.

Episode metadata supplied by the publisher feed · Published Jan 9, 2006

Embed this episode

Whats in a name? How do you know you should "trust" the content you are receiving? In today's World Wide Web, we place a lot of "trust" into domain names. For many, domain names help determine the whether a particular link or file should be trusted, or eyed with suspicion. Domain name trust has even made its way into security systems, considering many of the protections built into our browsers are based strictly on domain names! In this talk, we'll take a look at some simple ways to store and serve malicious content from some of the most popular servers on the Internet. It's time we rethink the ways we've implemented one of our most treasured Web resources... web mail. We'll bite the hand that feeds us by abusing the very features that make web mail services so popular. We'll show you how to use popular web mail servers as a repository for malicious content and how to serve that content to those surfing the World Wide Web (no email address required!)."Billy Rios is a Senior researcher for VeriSign's Global Security Consulting Service. He has performed network, application, web-application, source-code, wireless, Internet, Intranet, and dial-up security reviews and penetration testing for numerous clients in the Fortune 500. Prior to joining VeriSign, Billy worked as an Intrusion Detection Analyst with the Defense Information Systems Agency (DISA). While at DISA, Billy provided vulnerability analysis, network intrusion detection, incident response, incident handling and formal incident reporting of incidents related to Department of Defense information systems throughout the entire Pacific Region. Billy has an undergraduate degree in Business (with a formal concentration Information Systems) from the University of Washington and a Master of Science Degree in Information Systems (with Distinction) from Hawaii Pacific University. Billy is also a Captain in the United States Marine Corps Reserve and served as an active duty Marine Officer during Operation Iraqi Freedom. Billy was recognized by Time magazine as "Person of the Year" for 2006.

Distinct summary based on available episode metadata or transcript content.

NOW PLAYING

Billy Rios: Biting the Hand that Feeds You - Storing and Serving Malicous Content From Well Known Web Servers

0:00 44:27

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of DEFCON 15 [Audio] Speeches from the hacker conventions?

This episode is 44 minutes long.

When was this DEFCON 15 [Audio] Speeches from the hacker conventions episode published?

This episode was published on January 9, 2006.

Can I download this DEFCON 15 [Audio] Speeches from the hacker conventions episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!