Saturday, December 22, 2007

clubhack 2k7 .... India's own International Hackers' Convention

DISCLAIMER-:
This blog entry is absolutely based on my understanding about the topics. It is advisable to go through the presentations available here. You can also contact the respective speakers if you have any questions or need more information. I will not be held liable for any decisions made/ misunderstandings based on this entry.

after the barcamp, it was clubhack. this season is full of events :) and it only gets better and better. barcamp was an unconference whereas clubhack was more of a well organized conference. well that doesn't mean that barcamp wasn't well organized but the two were certainly different. in terms of content, clubhack was all about security. Officially put "ClubHack is one of its kind hackers' convention in India which serves as a meeting place for hackers, security professionals, law enforcement agencies and all other security enthusiasts". speakers included professionals from various fields like legal, security, telecom and even foreign nationals. sessions were started as two parallel threads. it was held on 9th December 2007. i know its been late already but then i was occupied with couple of other things so couldn't blog @ it.

the first session i attended was about hacking the firefox using the extension vulnerability bu Sunil. it was good and pretty scary as he showed a demonstration that data passing over https can be captured if the attacker manages to deploy his malicious extension into your browser. so the point is stay away from exentsions from unknown sources.

the second session was by Chetan Gupta (he is a symantechie too :D) he works for incident response team in Symantec. he showed us lot of tools to dig up data as a part of forensic investigation of any (cyber) incident.

third session i attended was by Rohas Nagpal. he is the president of asian school of cyber laws. it was also an interesting session. he mentioned 7 best cases in cyber crime. he gave us lot of knowledge about cyber laws in india. he spoke about the bazee case, the recent orkut case etc. the bottomline was beware of your rights and more importantly responsibilities of being a indian citizen. even the stupidest attempt to hack into your friend's mailbox can lead you into jail and of course some fine too :) best is stay away from the legal hassles :D

then i attended the crazy toaster session by Dror Shalev. it was real good as he actually showed the demo of hacking into network using a toaster connected as device onto a network :) the idea was how our home devices connected to the network can be used to compromise security. it was quite interesting though frankly speaking i am not sure if i got it right entirely ;) nonetheless it was really cool.

after the crazy toaster, i attended hacking web 2.0 session. personally speaking i found it ok types as it sounded more like a theoritical session or whatever. there was some useful info but not as good as others. then there was this VOIP session where these fellows told us about how VOIP if deployed incorrectly can cause security issues. they also gave us lot of demos which were cool as well. but unfortunately i could not figure out the exact weak point meaning where things went wrong.

presentations are uploaded on the site and can be found here (ref clubhack).
overall a BIG THUMBS UP to the event and of course to the co-founder Rohit Srivastwa. my bits of snaps can be located here. hope to attend more such events in the coming year.


- signing off
ameyas7

No comments: