{"id":8229,"date":"2017-07-04T05:40:49","date_gmt":"2017-07-04T13:40:49","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2017\/07\/04\/news-2004\/"},"modified":"2017-07-04T05:40:49","modified_gmt":"2017-07-04T13:40:49","slug":"news-2004","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2017\/07\/04\/news-2004\/","title":{"rendered":"SSTIC 2017 in a Nutshell"},"content":{"rendered":"<p><strong>Credit to Author: Axelle Apvrille| Date: Tue, 04 Jul 2017 12:58:00 +0000<\/strong><\/p>\n<div class=\"entry\">\n<style type=\"text\/css\">table {      width: 75%;  }  tr:nth-child(odd) {      background-color: #f8f8f8;  }  td {      border: 1px solid #000000;      padding-left: 10px;      padding-right: 10px;  }    td {      position: relative;  }    .bg {      position: absolute;      left: 0;      top: 0;      bottom: 0;      background-color: #52c74c;      \/*z-index: -1;*\/  }  <\/style>\n<p>This blog post is a summary of&nbsp;<a href=\"http:\/\/www.sstic.org\">SSTIC<\/a>, a major infosec conference held in France. As usual, this year&rsquo;s conference came with excellent presentations. The sessions have been recorded, and the papers are available on the <a href=\"http:\/\/www.sstic.org\">website<\/a>, although most of the content is in French.<\/p>\n<p>For a detailed wrap-up of SSTIC, please read @xme:<\/p>\n<ul>\n<li><a href=\"https:\/\/blog.rootshell.be\/2017\/06\/08\/sstic-2017-wrap-day-1\/\">Day 1<\/a><\/li>\n<li><a href=\"https:\/\/blog.rootshell.be\/2017\/06\/09\/sstic-2017-wrap-day-2\/\">Day 2<\/a><\/li>\n<li><a href=\"https:\/\/blog.rootshell.be\/2017\/06\/10\/sstic-2017-wrap-day-3\/\">Day 3<\/a><\/li>\n<\/ul>\n<p>SSTIC is one of the few IT conferences which (1) ask authors to submit full papers, (2) from which you return with information or tools to work on, and (3) whose presentations are mostly in LaTeX \ud83d\ude09<\/p>\n<p>Concerning the first point, I like to read papers during or after a conference to check out details, because you always miss some points in a presentation. As for the second point, there are many conferences where talks are like entertaining movies: you watch them, say &quot;wow&quot;, laugh, etc. . . . but when you get back home, you realize you don&#39;t exactly know how they did what they demonstrated, or that this or that point was missing, etc., and two days later you forget all about it. SSTIC presentations, on the other hand, are perhaps more difficult to follow, but I believe their longevity is much better.<\/p>\n<h2>Technical Presentations<\/h2>\n<p>Allow me to summarize SSTIC with a table. The ratings are my own opinion: all the talks were really good, but how much I liked one obviously depended on my interest in the field. For more details, please read the SSTIC wrap-up or visit the SSTIC website.<\/p>\n<h2>Screenshots<\/h2>\n<p><img decoding=\"async\" alt=\"\" src=\"https:\/\/d3gpjj9d20n0p3.cloudfront.net\/ngblog\/uploads\/files\/SSTIC1.png\" style=\"width: 900px; height: 589px;\" \/>&nbsp;<\/p>\n<p>The image above shows caradoc analyzing one of SSTIC&#39;s submissions. \ud83d\ude09 This is the interactive mode.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"https:\/\/d3gpjj9d20n0p3.cloudfront.net\/ngblog\/uploads\/files\/SSTIC2.png\" style=\"width: 900px; height: 547px;\" \/>&nbsp;<\/p>\n<p>This is my own tool to remotely control a smart toothbrush.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"https:\/\/d3gpjj9d20n0p3.cloudfront.net\/ngblog\/uploads\/files\/SSTIC3.png\" style=\"width: 900px; height: 585px;\" \/><\/p>\n<p>I&#39;ve used binnacle, above, for several Android malware samples. I can indeed quickly find out which ones call&nbsp;getSubscriberId&nbsp;to retrieve the IMSI.<\/p>\n<p>Interesting!<\/p>\n<p><em>&#8212; the Crypto Girl<\/em><\/p>\n<\/div<br \/><a href=\"https:\/\/blog.fortinet.com\/2017\/07\/04\/sstic-2017-in-a-nutshell\" target=\"bwo\" >https:\/\/blog.fortinet.com\/feed<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/d3gpjj9d20n0p3.cloudfront.net\/ngblog\/uploads\/files\/SSTIC1.png\"\/><\/p>\n<p><strong>Credit to Author: Axelle Apvrille| Date: Tue, 04 Jul 2017 12:58:00 +0000<\/strong><\/p>\n<p>This blog post is a summary of\u00a0SSTIC, a major infosec conference held in France. As usual, this year\u2019s conference came with excellent presentations. The sessions have been recorded, and the papers are available on the website, although most of the content is in French.    For a detailed wrap-up of SSTIC, please read @xme:      \tDay 1  \tDay 2  \tDay 3      SSTIC is one of the few IT conferences which (1) ask authors to submit full papers, (2) from which you return with information or tools to work on, and (3) whose presentations are mostly&#8230;<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10424,10378],"tags":[],"class_list":["post-8229","post","type-post","status-publish","format-standard","hentry","category-fortinet","category-security"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/8229","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=8229"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/8229\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=8229"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=8229"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=8229"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}