+Zoerab Tchahkiev I think there just wasn't any mic on the crowd, so we can't hear their reactions. Great presentation though. I don't even do anything related to tech in my life, just took some networking courses in the early 2000s, but I could follow it pretty easily and really enjoyed it.
I run into this video by accident today. I cannot believe how someone can be such a good speaker, entertaining and knowledgeable. That crowd was more like the Walking Dead...Poor Joe. Outstanding job.
This guy is literally the best. Only thing that could have made this better: mic on the audience. I sure hope there are more lectures from him on youtube.
+d74g0n Yeah it sounds like the crowd isn't into it, but it is more likely that they just aren't mic'ed. A lot of people don't understand this sort of detail, so I'm glad to see it in the comments :) And his mic had way too much gain on it too, In my mind I could see the red indicator light glowing on the mixer as he was talking... This is why you hire a competent sound tech.
Awesome presentation. I'm not even an InfoSec guy, but i got alot out of this one. It's great when someone is a great presenter in addition to being technically proficient.
Nice, learned some new tricks and methodology concepts of pentesting. Just after watching that DEFCON about pentest's dead. The way he speaks makes learning easier.
+Donkey K0ng Thanks for the kind words. I'm putting all of my classes on my UA-cam channel now. I'm doing my best to make my content more available for FREE. Hope you enjoy it and I'll keep working on making it better.
Brilliant. Both insightful & completely understandable for someone relatively new to web application security. (ie. myself) And important broader message re, infosec "high security" environments in general: even expensive tools, without good people to run/use them, suck. (If only that were as true for attacking tools as it is for defensive tools...)
im glad to see a brotha in the industry...i hadnt noticed that there wasnt any brothas around...i actually got 2 brothas on my team... all 3 of us are bi racial, im north amerikan afrikan and dutch, the homies 1/2 mexican and the other is 1/2 russian...and we study for real. much props.
Great video... But only problem is that even in 2011, we already knew all that. To help all those who do not know, these things were already long time been protected. At least on the better sites
+Nirvik Ghosh Thanks for the kind words. I'm putting all of my classes on my UA-cam channel now. I'm doing my best to make my content more available for FREE. Hope you enjoy it and I'll keep working on making it better.
Hmmm, no offense but, not very entertaining, annoying kinda, but incredible information and brilliant mind. Would be great to have a beer with him and learn. Whatever he's making...it's not enough.
This guy is generally quite cool. But why on earth is a very slow detailed explanation of extremely basic pentest material called "Pentesting high security environments"?
you didnt get was he was trying to say... he pointed out that those "high security enviroments" usually are banks and other high risk targets that spend alot of money for security products and all you need is basic pentesting and a brain to bypass those high cost security products which "protect" this high risk targets
He is not getting a response from the crowd because they are too focused and fathomed that a black man could be this educated. Seems like they are not even paying attention to what he is actually displaying and talking about, unless every single one of them have no clue about SQL Injection...………………..
Fantastic presentation, bad crowd.
+Zoerab Tchahkiev His questions weren't that great
+Zoerab Tchahkiev I think there just wasn't any mic on the crowd, so we can't hear their reactions. Great presentation though. I don't even do anything related to tech in my life, just took some networking courses in the early 2000s, but I could follow it pretty easily and really enjoyed it.
I run into this video by accident today. I cannot believe how someone can be such a good speaker, entertaining and knowledgeable. That crowd was more like the Walking Dead...Poor Joe. Outstanding job.
Wow he really knows how to explain things well.
wtf is thaT????AND How is it ThEre?>
This guy is literally the best. Only thing that could have made this better: mic on the audience. I sure hope there are more lectures from him on youtube.
+d74g0n Yeah it sounds like the crowd isn't into it, but it is more likely that they just aren't mic'ed. A lot of people don't understand this sort of detail, so I'm glad to see it in the comments :)
And his mic had way too much gain on it too, In my mind I could see the red indicator light glowing on the mixer as he was talking... This is why you hire a competent sound tech.
Awesome presentation. I'm not even an InfoSec guy, but i got alot out of this one. It's great when someone is a great presenter in addition to being technically proficient.
This is the best speaker in Defcon I've had the pleasure to watch. I would pay good money to learn from this guy
The most funniest, entertaining presentation I have ever watched.
Nice, learned some new tricks and methodology concepts of pentesting. Just after watching that DEFCON about pentest's dead.
The way he speaks makes learning easier.
+Donkey K0ng Thanks for the kind words. I'm putting all of my classes on my UA-cam channel now. I'm doing my best to make my content more available for FREE. Hope you enjoy it and I'll keep working on making it better.
Cool Bro. Learned some funky exploring techniques.
This is an awesome presentation
Finally another brotha!
Brilliant. Both insightful & completely understandable for someone relatively new to web application security. (ie. myself) And important broader message re, infosec "high security" environments in general: even expensive tools, without good people to run/use them, suck. (If only that were as true for attacking tools as it is for defensive tools...)
how is it going with ur web application security-- did u learn new skills
I remember you. They Spent All that Money & They Still Got Owned?! Really enjoy your presentations, Joe McCray.
what a fantastic delivery.. and a very true statement! "People are smart, machines are not"
One of the really great presenter's - Thumbs up!
Very engaging speaker. Excellent information. Only thing lacking was the audience, lol.
new to the field , this guys makes it look easy .
Very professional. I like this style of presentation. Gotta give it to the demo gods.
What an awesome speaker. And a fantastic presentation.
Good Job Joe, Thank you for sharing this fantastic presentation.
im glad to see a brotha in the industry...i hadnt noticed that there wasnt any brothas around...i actually got 2 brothas on my team... all 3 of us are bi racial, im north amerikan afrikan and dutch, the homies 1/2 mexican and the other is 1/2 russian...and we study for real.
much props.
I want him as my teacher!
+Abdul Qoyyuum Haji Abdul Kadir no problem buddy. I'm putting all of my classes on my UA-cam channel now. Be sure to check it out.
+Joseph McCray awesome!
Thanks for the kind words my friend. I really appreciate it.
Thanks for the kind words buddy.
Awesome presentation! I'm just getting into security, so I don't know a whole lot, but this was very engaging!
I watched only 2 minutes and already love the presentation lol
I love this guy, I can actually learn from him because of the way he presents it to you and engages you, but the audience just sucked
+Sava Savov No mic on the crowd; makes it sound like they weren't reacting. I think Defcon have fixed this in recent years.
Joe taught me pentesting. He is a wizard.
This video was presented very well with good information
Excellent demonstration. You are a very good presenter, liked and subbed.
you are very entertaining to watch.
Thank you for sharing this. Agreed on the shell popping.
@ joe mcCray did you say poly edu and security tube as a good source of free online learning? Thanks
+Engr. David Jason Dumlao Yup, sure did say Poly edu and securitytube
Hi all, which is that vulnerable web application Joe is using for pentesting in this demo? anyone knows?
its a fake app that he has had written himsellf for testing clue is in the name acme trading !!
is it possible to get that TXT what he use????
still worth 💗💗💗
Great demo.
fantastic....hats off...
Awesome talk, this guy know's his stuff. I learned a lot thanks :)
This is why you use prepared statements for your SQL.
Great presentation! Thanks.
there should be more of these demo talks!!!
Great video... But only problem is that even in 2011, we already knew all that. To help all those who do not know, these things were already long time been protected. At least on the better sites
Could any one be kind to give me the txt file he was using?
Anyone got that text file he's using?
any one have a copy of that text file?
Awful audience, fantastic speaker.
That's awesome. Grate info
This guy rocks.
You are a hero man !
+Nirvik Ghosh Thanks for the kind words. I'm putting all of my classes on my UA-cam channel now. I'm doing my best to make my content more available for FREE. Hope you enjoy it and I'll keep working on making it better.
BASIC CODD RENORMALIZATION FORMS FOR 1st ORDER 2nd ORDER FORMS
what a funny guy he is lol........ great presentations. thanks jo.
15:17 - Sounds of a climax. Have fun eating dinner. (btw, thanks for the upload, this guy is always fantastic at defcon)
Starts @1:30
God he likes to ramble.
Awesome...!!!
gud presentation man, i wud lov having tht text file mam
15:56
dude, this guy is fucking amazing, honestly i wasnt in a good day, he made me smile
This guy is awesome... :)
Awesome!
AWESOME! :D like every year
What r u talking about?
Joe is the man!
very good video man and very sad public but anyway awesome
Joe i love ya video soooooooooooooooooooooooo much
Hmmm, no offense but, not very entertaining, annoying kinda, but incredible information and brilliant mind. Would be great to have a beer with him and learn. Whatever he's making...it's not enough.
This guy is generally quite cool. But why on earth is a very slow detailed explanation of extremely basic pentest material called "Pentesting high security environments"?
you didnt get was he was trying to say... he pointed out that those "high security enviroments" usually are banks and other high risk targets that spend alot of money for security products and all you need is basic pentesting and a brain to bypass those high cost security products which "protect" this high risk targets
+Luca InAustralien hmmm, i see what you're saying. stoll makes the title dangerously close to FUD.
Learn python .... OK, Learn Assembly ... mwaahahaha Great talk though :D
i am become his fan
Hi
Beast mode
Smart people defend networks, products don't defend networks!
Rocking the Alienware 👽!
I can hear this guy breathing for a mile away.
getting the webconfig with ./.boot.ini was awesome
A very high level of sarcasm.. could not follow quite well :'(
He is a really fucking awesom man!!! liked that!
Obamacare threw over $70 million at a problem.
Mr McCray is so fucking awesome!
i give u my 100000 likes
He is not getting a response from the crowd because they are too focused and fathomed that a black man could be this educated. Seems like they are not even paying attention to what he is actually displaying and talking about, unless every single one of them have no clue about SQL Injection...………………..
Tiny little portion of screen dedication to the presenter and a huge wallop of crap on the wrong sidebar. I'm gone. Dumb!
ppl who aren't american are too nice? ever been' to vienna??
WHACKtivity
Alienware detected
how to become a hacker
dirty elbows
Lol....bla bla...bla..
I'm still trippin over the fact he's blacker than me!
That's awesome. Grate info