home.social

#steelcon — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #steelcon, aggregated by home.social.

fetched live
  1. #SteelCon #swag

    For saying that there would be "no sticker stall" due to some drama.... there were still a lot of stickers on offer!

  2. #SteelCon #swag

    For saying that there would be "no sticker stall" due to some drama.... there were still a lot of stickers on offer!

  3. #SteelCon #swag

    For saying that there would be "no sticker stall" due to some drama.... there were still a lot of stickers on offer!

  4. #SteelCon #swag

    For saying that there would be "no sticker stall" due to some drama.... there were still a lot of stickers on offer!

  5. The next talk was about flashing a £6 USB #LTE Modem to run a custom Linux install (using #OpenStick) that could function as a keyboard injector and USB "webcam" to send remote video.

    Oh, and it also plays #Doom.... controlled remotely via LTE !

    Great talk ❤️

    #HardwareHacking #Steelcon

  6. The next talk was about flashing a £6 USB #LTE Modem to run a custom Linux install (using #OpenStick) that could function as a keyboard injector and USB "webcam" to send remote video.

    Oh, and it also plays #Doom.... controlled remotely via LTE !

    Great talk ❤️

    #HardwareHacking #Steelcon

  7. The next talk was about flashing a £6 USB #LTE Modem to run a custom Linux install (using #OpenStick) that could function as a keyboard injector and USB "webcam" to send remote video.

    Oh, and it also plays #Doom.... controlled remotely via LTE !

    Great talk ❤️

    #HardwareHacking #Steelcon

  8. The next talk was about flashing a £6 USB #LTE Modem to run a custom Linux install (using #OpenStick) that could function as a keyboard injector and USB "webcam" to send remote video.

    Oh, and it also plays #Doom.... controlled remotely via LTE !

    Great talk ❤️

    #HardwareHacking #Steelcon

  9. From the country that first brought you the humble stroopwafel, and then stroopwafel likeur, now comes another mad concoction. Sweet and hot pink (the pic doesn't do it justice): Tompouce likorette
    14% alcohol. Coming to a Roebuck near you #SteelCon #VicMadeMeDoIt
    (Someone please bring shot glasses)

  10. From the country that first brought you the humble stroopwafel, and then stroopwafel likeur, now comes another mad concoction. Sweet and hot pink (the pic doesn't do it justice): Tompouce likorette
    14% alcohol. Coming to a Roebuck near you #SteelCon #VicMadeMeDoIt
    (Someone please bring shot glasses)

  11. From the country that first brought you the humble stroopwafel, and then stroopwafel likeur, now comes another mad concoction. Sweet and hot pink (the pic doesn't do it justice): Tompouce likorette
    14% alcohol. Coming to a Roebuck near you #SteelCon #VicMadeMeDoIt
    (Someone please bring shot glasses)

  12. From the country that first brought you the humble stroopwafel, and then stroopwafel likeur, now comes another mad concoction. Sweet and hot pink (the pic doesn't do it justice): Tompouce likorette
    14% alcohol. Coming to a Roebuck near you #SteelCon #VicMadeMeDoIt
    (Someone please bring shot glasses)

  13. Anyone on here going to #SteelCon this year?

    I got my ticket, just need to pick a hotel before it's too late :)

  14. Anyone on here going to #SteelCon this year?

    I got my ticket, just need to pick a hotel before it's too late :)

  15. Anyone on here going to #SteelCon this year?

    I got my ticket, just need to pick a hotel before it's too late :)

  16. Anyone on here going to #SteelCon this year?

    I got my ticket, just need to pick a hotel before it's too late :)

  17. Managed to grab a #SteelCon ticket in today's drop, see you there!

  18. Managed to grab a #SteelCon ticket in today's drop, see you there!

  19. Managed to grab a #SteelCon ticket in today's drop, see you there!

  20. Managed to grab a #SteelCon ticket in today's drop, see you there!

  21. Oops, I forgot one:
    I also went to this talk at #SteelCon by Sam Maesschalck about OT.
    No, not Operating Thetan, but #OperationalTechnology apparently, which basically means embedded systems etc for manufacturing and utilities etc. and what we can do to try and secure these old/insecure systems that were never supposed to be on the internet....

  22. Oops, I forgot one:
    I also went to this talk at #SteelCon by Sam Maesschalck about OT.
    No, not Operating Thetan, but #OperationalTechnology apparently, which basically means embedded systems etc for manufacturing and utilities etc. and what we can do to try and secure these old/insecure systems that were never supposed to be on the internet....

  23. Oops, I forgot one:
    I also went to this talk at #SteelCon by Sam Maesschalck about OT.
    No, not Operating Thetan, but #OperationalTechnology apparently, which basically means embedded systems etc for manufacturing and utilities etc. and what we can do to try and secure these old/insecure systems that were never supposed to be on the internet....

  24. Oops, I forgot one:
    I also went to this talk at #SteelCon by Sam Maesschalck about OT.
    No, not Operating Thetan, but #OperationalTechnology apparently, which basically means embedded systems etc for manufacturing and utilities etc. and what we can do to try and secure these old/insecure systems that were never supposed to be on the internet....

  25. Last talk at #SteelCon was "Plundering and pillaging #password and passphrase plains for profit".
    Will Hunt explained how to use #Hashcat and other password #cracking utils, as well as interesting hashes

  26. Last talk at #SteelCon was "Plundering and pillaging #password and passphrase plains for profit".
    Will Hunt explained how to use #Hashcat and other password #cracking utils, as well as interesting hashes

  27. Last talk at #SteelCon was "Plundering and pillaging #password and passphrase plains for profit".
    Will Hunt explained how to use #Hashcat and other password #cracking utils, as well as interesting hashes

  28. Last talk at #SteelCon was "Plundering and pillaging #password and passphrase plains for profit".
    Will Hunt explained how to use #Hashcat and other password #cracking utils, as well as interesting hashes

  29. Next at #SteelCon was a talk about Threat Modelling, slides are available here: github.com/ajones17/TMT2025

    They mentioned using the free Microsoft Threat Modelling software, available at aka.ms/tmt, and the various frameworks available:

    STRIDE: microsoft.com/en-us/security/b
    PASTA: versprite.com/cybersecurity-li
    DREAD: download.microsoft.com/downloa

    One interesting thing that makes sense, but I'd not really thought about, was that new supplier "offboarding" should be written at the same time as "onboarding" docs.
    If nothing else, it should signal to the supplier that you have thought about an exit strategy.

  30. Next at #SteelCon was a talk about Threat Modelling, slides are available here: github.com/ajones17/TMT2025

    They mentioned using the free Microsoft Threat Modelling software, available at aka.ms/tmt, and the various frameworks available:

    STRIDE: microsoft.com/en-us/security/b
    PASTA: versprite.com/cybersecurity-li
    DREAD: download.microsoft.com/downloa

    One interesting thing that makes sense, but I'd not really thought about, was that new supplier "offboarding" should be written at the same time as "onboarding" docs.
    If nothing else, it should signal to the supplier that you have thought about an exit strategy.

  31. Next at #SteelCon was a talk about Threat Modelling, slides are available here: github.com/ajones17/TMT2025

    They mentioned using the free Microsoft Threat Modelling software, available at aka.ms/tmt, and the various frameworks available:

    STRIDE: microsoft.com/en-us/security/b
    PASTA: versprite.com/cybersecurity-li
    DREAD: download.microsoft.com/downloa

    One interesting thing that makes sense, but I'd not really thought about, was that new supplier "offboarding" should be written at the same time as "onboarding" docs.
    If nothing else, it should signal to the supplier that you have thought about an exit strategy.

  32. Next at #SteelCon was a talk about Threat Modelling, slides are available here: github.com/ajones17/TMT2025

    They mentioned using the free Microsoft Threat Modelling software, available at aka.ms/tmt, and the various frameworks available:

    STRIDE: microsoft.com/en-us/security/b
    PASTA: versprite.com/cybersecurity-li
    DREAD: download.microsoft.com/downloa

    One interesting thing that makes sense, but I'd not really thought about, was that new supplier "offboarding" should be written at the same time as "onboarding" docs.
    If nothing else, it should signal to the supplier that you have thought about an exit strategy.

  33. Next at #SteelCon I went to "Hacking Stripe Integrations to Bypass E-Commerce Payments" by Ananda Dhakal, who was part of the Nepal team of hackers that were assigned Stripe as a target of a 2023 competition.
    They found some vulnerabilities.

    One was that you could basically edit the HTML to lower the postage rate to "0" and the system would accept it and honour the transaction 🤣

    Next year they were assigned the same target and found more!

  34. Next at #SteelCon I went to "Hacking Stripe Integrations to Bypass E-Commerce Payments" by Ananda Dhakal, who was part of the Nepal team of hackers that were assigned Stripe as a target of a 2023 competition.
    They found some vulnerabilities.

    One was that you could basically edit the HTML to lower the postage rate to "0" and the system would accept it and honour the transaction 🤣

    Next year they were assigned the same target and found more!

  35. Next at #SteelCon I went to "Hacking Stripe Integrations to Bypass E-Commerce Payments" by Ananda Dhakal, who was part of the Nepal team of hackers that were assigned Stripe as a target of a 2023 competition.
    They found some vulnerabilities.

    One was that you could basically edit the HTML to lower the postage rate to "0" and the system would accept it and honour the transaction 🤣

    Next year they were assigned the same target and found more!

  36. Next at #SteelCon I went to "Hacking Stripe Integrations to Bypass E-Commerce Payments" by Ananda Dhakal, who was part of the Nepal team of hackers that were assigned Stripe as a target of a 2023 competition.
    They found some vulnerabilities.

    One was that you could basically edit the HTML to lower the postage rate to "0" and the system would accept it and honour the transaction 🤣

    Next year they were assigned the same target and found more!

  37. The next one I heard at #Steelcon was "Fantastic crypto failures and where to find them" which was interesting, although I didn't understand all of it.

    As @metacosm said, it was really aimed at developers, which are unlikely to be in the audience.

  38. The next one I heard at #Steelcon was "Fantastic crypto failures and where to find them" which was interesting, although I didn't understand all of it.

    As @metacosm said, it was really aimed at developers, which are unlikely to be in the audience.

  39. The next one I heard at #Steelcon was "Fantastic crypto failures and where to find them" which was interesting, although I didn't understand all of it.

    As @metacosm said, it was really aimed at developers, which are unlikely to be in the audience.

  40. The next one I heard at #Steelcon was "Fantastic crypto failures and where to find them" which was interesting, although I didn't understand all of it.

    As @metacosm said, it was really aimed at developers, which are unlikely to be in the audience.

  41. #SteelCon Adaora Uche - #Scams, #Sextortion and Snapchats: Keeping Gen-Alpha Safe in a Digital Wild West

    Within 19 hrs of 1 guy in the US starting chatting with a sextorter on the Wizz app, he had killed himself. This was not the only example.

    In the audience, someone from a school said they had a teacher disappear recently from a secondary school, and it turned out he was being investigated for being inappropriate with 20 kids from the school. She is dealing with the fallout with 6 of the children.

    Someone else in the audience was sextorted, and was threatened with her parents and work being told. She bravely didn't give in to their demands.
    A credit to her parents, they basically said "what is your point? we've seen her nude before" 🤣
    She said it was an interesting talk with her employer, however 😢

  42. #SteelCon Adaora Uche - #Scams, #Sextortion and Snapchats: Keeping Gen-Alpha Safe in a Digital Wild West

    Within 19 hrs of 1 guy in the US starting chatting with a sextorter on the Wizz app, he had killed himself. This was not the only example.

    In the audience, someone from a school said they had a teacher disappear recently from a secondary school, and it turned out he was being investigated for being inappropriate with 20 kids from the school. She is dealing with the fallout with 6 of the children.

    Someone else in the audience was sextorted, and was threatened with her parents and work being told. She bravely didn't give in to their demands.
    A credit to her parents, they basically said "what is your point? we've seen her nude before" 🤣
    She said it was an interesting talk with her employer, however 😢

  43. #SteelCon Adaora Uche - #Scams, #Sextortion and Snapchats: Keeping Gen-Alpha Safe in a Digital Wild West

    Within 19 hrs of 1 guy in the US starting chatting with a sextorter on the Wizz app, he had killed himself. This was not the only example.

    In the audience, someone from a school said they had a teacher disappear recently from a secondary school, and it turned out he was being investigated for being inappropriate with 20 kids from the school. She is dealing with the fallout with 6 of the children.

    Someone else in the audience was sextorted, and was threatened with her parents and work being told. She bravely didn't give in to their demands.
    A credit to her parents, they basically said "what is your point? we've seen her nude before" 🤣
    She said it was an interesting talk with her employer, however 😢

  44. #SteelCon Adaora Uche - #Scams, #Sextortion and Snapchats: Keeping Gen-Alpha Safe in a Digital Wild West

    Within 19 hrs of 1 guy in the US starting chatting with a sextorter on the Wizz app, he had killed himself. This was not the only example.

    In the audience, someone from a school said they had a teacher disappear recently from a secondary school, and it turned out he was being investigated for being inappropriate with 20 kids from the school. She is dealing with the fallout with 6 of the children.

    Someone else in the audience was sextorted, and was threatened with her parents and work being told. She bravely didn't give in to their demands.
    A credit to her parents, they basically said "what is your point? we've seen her nude before" 🤣
    She said it was an interesting talk with her employer, however 😢

  45. At #Steelcon today and the swag is impressive for their 10th anniversary run

  46. At #Steelcon today and the swag is impressive for their 10th anniversary run

  47. At #Steelcon today and the swag is impressive for their 10th anniversary run

  48. At #Steelcon today and the swag is impressive for their 10th anniversary run