Advancing Video Application Attacks with Video Interception, Recording, and Replay

DEF CON 17

Presented by: Rich Mogull
Date: Friday July 31, 2009
Time: 14:00 - 14:50
Location: Track 3
Track: Track 3

New video applications promise many exciting cost-saving benefits, but they also bring with them a host of security challenges and vulnerabilities. This session applies existing techniques for VoIP eavesdropping towards next generation attacks against Unified Communication technologies, such as intercepting and recording private video conferences, IP video surveillance systems, and other video collaboration technology.

This presentation will focus primarily on informative and insightful live demos that show targeted video attacks and issues that put video application traffic at risk. We will focus on the following:

Jason Ostrom

<strong>Jason Ostrom</strong>, CCIE #15239, is Director of Sipera VIPER (Voice over IP Exploit Research) Lab. He is a graduate of the University of Michigan, Ann Arbor and author of the &quot;VoIP Hopper&quot; assessment tool. Ostrom has over 12 years experience in technology fields such as network infrastructure, programming, and penetration testing.

Arjun Sambamoorthy

<strong>Arjun Sambamoorthy</strong> is a Vulnerability Research Engineer in the Sipera VIPER Lab. He is a graduate of University of Texas, Dallas, and a key developer and co-author of the UCSniff tool.


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats