Cybersecurity for the Blockchain? HALBORN+SANS Security Summit

Поділитися
Вставка
  • Опубліковано 16 жов 2024
  • Check out the Security Summit: www.sans.org/c...
    And check out the most recent Protocol Wars conversation! • Protocol Wars: NEAR
    Help the channel grow with a Like, Comment, & Subscribe!
    ❤️ Support ➡ j-h.io/patreon ↔ j-h.io/paypal ↔ j-h.io/buymeac...
    Check out the affiliates below for more free or discounted learning!
    🖥️ Zero-Point Security ➡ Certified Red Team Operator j-h.io/crto
    💻Zero-Point Security ➡ C2 Development with C# j-h.io/c2dev
    🐜Zero2Automated ➡ Ultimate Malware Reverse Engineering j-h.io/zero2auto
    🐜Zero2Automated ➡ MISP & Malware Sandbox j-h.io/zero2au...
    ⛳Point3 ESCALATE ➡ Top-Notch Capture the Flag Training j-h.io/escalate
    👨🏻‍💻7aSecurity ➡ Hacking Courses & Pentesting j-h.io/7asecurity
    📗Humble Bundle ➡ j-h.io/humbleb...
    🐶Snyk ➡ j-h.io/snyk
    🤹‍♀️SkillShare ➡ j-h.io/skillshare
    🌎Follow me! ➡ j-h.io/discord ↔ j-h.io/twitter ↔ j-h.io/linkedin ↔ j-h.io/instagram ↔ j-h.io/tiktok
    📧Contact me! (I may be very slow to respond or completely unable to)
    🤝Sponsorship Inquiries ➡ j-h.io/sponsor...
    🚩 CTF Hosting Requests ➡ j-h.io/ctf
    🎤 Speaking Requests ➡ j-h.io/speaking
    💥 Malware Submission ➡ j-h.io/malware
    ❓ Everything Else ➡ j-h.io/etc

КОМЕНТАРІ • 87

  • @NessHypegaming
    @NessHypegaming 2 роки тому +34

    though im a beginner, this channel has been a god send for my cybersecurity journey.

    • @hackvlix
      @hackvlix 2 роки тому +5

      One of the best cyber security channels on YT, and this is in no small part due to how John conducts himself here as a presenter/teacher.
      Especially great since he provides a lot of material here that you would have to pay serious money for when learning it elsewhere.

  • @myname-mz3lo
    @myname-mz3lo Рік тому +2

    solidity is my second language i learned and it is so fun and different. a great way to learn about blockchain is learning solidity

  • @darkstards5372
    @darkstards5372 2 роки тому +35

    Always believe a teacher when they say "I don't know" and not those who bullshit that they knows everything 👍

    • @GoldDeniel
      @GoldDeniel 2 роки тому

      +1

    • @hackvlix
      @hackvlix 2 роки тому

      Why would you _not_ believe a teacher when they say they don't know? 😉
      But of course you are right -- don't trust those who claim (or even believe themselves) that they know everything!

    • @Alex-nq5nz
      @Alex-nq5nz 2 роки тому +1

      Uhuuu! JH for president !!! Always stunning content !

  • @rebeccachoynowski6700
    @rebeccachoynowski6700 2 роки тому +2

    Jesse Buonanno’s talk was my favorite! It was so insightful to learn how malicious adversaries can leverage the blockchain for new TTPs.

  • @quentincaldway
    @quentincaldway 2 роки тому +1

    Awesome stuff, I'd love to check out this Summit! I must say i've been patiently waiting for something of this sort to pop up in one of your videos.
    You always do it justice! Blessings!

  • @UGPVlogsLA
    @UGPVlogsLA 11 місяців тому

    I’m a cryptocurrency trader, who is learning cybersecurity, been studying Solidity, smart contracts, and the blockchain is definitely where I want to be earning money.

  • @watisonik
    @watisonik 2 роки тому +1

    Thanks John! Really appreciate your time on this one.🙏🏽

  • @burekhacks
    @burekhacks 2 роки тому +1

    Great content from yesterday's blockchain summit!

  • @davidatclemson
    @davidatclemson 2 роки тому +3

    I'm a 17+ year cyber security professional who is transitioning to the blockchain space. It's an exciting space and there will be huge opportunity if you have background in both blockchain and cyber security. I encourage you to keep digging into it. Solidity is good for understand ETH contracts and Rust for projects like Solana...

    • @viq234
      @viq234 2 роки тому +1

      Just started blockchain study myself. I didn't realise Ethereum could run code. Pretty cool

    • @CrittingOut
      @CrittingOut 2 роки тому

      @@viq234 and quite often vulnerable

  • @andyli
    @andyli 2 роки тому +4

    web3 security going more mainstream 🙂

  • @hihihi1733
    @hihihi1733 2 роки тому +7

    Please bring back malware analysis series

  • @hackvlix
    @hackvlix 2 роки тому +3

    If you find (and exploit) a vulnerability in Ethereum, you just pay your own bounty. 😝 After all, code is law...

  • @markyoungkush2925
    @markyoungkush2925 2 роки тому +3

    Love the videos !! Keep it going 😁

  • @elisansabimana6200
    @elisansabimana6200 2 роки тому +3

    Thank you very much John. This is my first time hearing about the smart contract blockchain security. And am really interested. How can some get started into this as a career ?

  • @TheDutchisGaming
    @TheDutchisGaming 2 роки тому

    Blockchain security is one of my special interests. Got an 8/10 for a school exam project about the subject digital signatures on blockchain.

  • @peternavarroiii3944
    @peternavarroiii3944 2 роки тому

    Nice, love the blockchain security content. Keep it coming!

  • @myname-mz3lo
    @myname-mz3lo Рік тому +1

    in blockchain there are alot of zero days compared to web 2 pentesting. its the wild west , kinda like being a pentester in the early days of the internet.

  • @whysoserious483
    @whysoserious483 2 роки тому

    Celebrate the day who teach us to SWEAT MORE
    Happy Teacher's Day
    ❤️ john

  • @bertrandfossung1216
    @bertrandfossung1216 2 роки тому

    Thank you John. This was worth watching. Keep up with the good work👍🏽

  • @alexjaimes1141
    @alexjaimes1141 2 роки тому

    Yo I can’t believe that the guy who made Rick n Morty is an elite hacker. Good stuff bro.

  • @ChairmanHehe
    @ChairmanHehe 2 роки тому

    love this -more blockchain pls!

  • @jordangallant7482
    @jordangallant7482 2 роки тому

    super COOL!!!!

  • @flojow2403
    @flojow2403 2 роки тому

    you're the man. glad you're making blockchain content

  • @captainkatz1775
    @captainkatz1775 2 роки тому

    This seems like a really interesting topic and also really important, as always that's for the videos

  • @silentkille4
    @silentkille4 2 роки тому

    This is something i was looking for thanks for this content 🙏

  • @CodyHoskin
    @CodyHoskin 2 роки тому

    Yea!!! This is the area I want to get into! I’m pretty sure you gave a talk at my program at Sait 😁

  • @guilherme5094
    @guilherme5094 2 роки тому

    👍

  • @ibramahamat4184
    @ibramahamat4184 2 роки тому

    You are the best

  • @raphaelalejandro2360
    @raphaelalejandro2360 2 роки тому

    awesome

  • @carnagelan
    @carnagelan 2 роки тому

    Hi John. I have been watching your videos for a few days now and I am learning alot. I have now subscribed. Which is the best distro for pen testing and Try hack me . Is kalli better than Blackbox? Thank you for what you are doing 😊

  • @trailblazrr2991
    @trailblazrr2991 10 місяців тому

    cissp needs to have blockchain security as a domain in CBK

  • @persistentbake9041
    @persistentbake9041 2 роки тому

    Great seeing you in the chat

  • @rian222
    @rian222 2 роки тому

    @John Hammond you mentioned that the videos would be saved. Do you happen to know where? I registered for the Summit, but I wasn't able to watch the videos live.

    • @Maryjano
      @Maryjano 2 роки тому +1

      Also interested in this.

  • @arturodelgado7071
    @arturodelgado7071 2 роки тому

    Sadly I couldnt find the recordings on the website. Do you know where I can find them? If im able to have the direct link

  • @amosdjone8184
    @amosdjone8184 5 місяців тому

    A blockchain developer can doing Smart contrat audit ?? Thanks you

  • @testingstuff6111
    @testingstuff6111 2 роки тому +1

    Wonder why Ziion picked Oracle instead of KVM ... Even Whonix is recommended to be used in KVM instead of VirtualBox due to Oracles bad track record of fixing and giving details about security issues.

  • @2ndflare54
    @2ndflare54 2 роки тому

    you gotta learn all about how messages are sent on discord and what clicking a discord message would lead a person to do , thats how 75% of attacks go

  • @gaddz4886
    @gaddz4886 2 роки тому

    How can i watch these presentations?

  • @abhishek24506
    @abhishek24506 2 роки тому

    What do you mean by different OSI model??

  • @cybersamurai5766
    @cybersamurai5766 2 роки тому +1

    Is there anybody else who can't find ziion?

  • @TheFirstOnlyRealUltra
    @TheFirstOnlyRealUltra 2 роки тому

    why would anyone share their private key ? did you mean public key ?

  • @stamshem12
    @stamshem12 2 роки тому

    I have a question, I would be happy if you could answer me with which programming languages is it possible to know the exact location of the person with a link (without him confirming his location, he enters the link and you know his location)?

    • @rasfatzat
      @rasfatzat 2 роки тому +1

      maybe i am wrong but you can have a look at the canary tokens!

  • @pedallknife
    @pedallknife 2 роки тому

    Blockchain will be the next sector for Cyber professionals to innovate and secure the future!

  • @ashish6443
    @ashish6443 2 роки тому +1

    Jiyo

  • @darshans3259
    @darshans3259 2 роки тому

    make a more video on block chain dev

  • @realslimchaggy
    @realslimchaggy 2 роки тому

    can you redo the tutorial of hacking a zip archive without bruteforceing (with a methode I forgot about it)

  • @maikolsoro1835
    @maikolsoro1835 Рік тому

    What OS is that ?

  • @carterrr.pham89
    @carterrr.pham89 2 роки тому

    Anyone got the summit records ?

  • @activelearner9924
    @activelearner9924 2 роки тому

    is that website free??

  • @masudrahman253
    @masudrahman253 Рік тому

    7:45

  • @Ryan-xq3kl
    @Ryan-xq3kl 2 роки тому

    cryptography maaan

  • @kartikeykartikey8953
    @kartikeykartikey8953 2 роки тому +2

    First comment

  • @apophic6254
    @apophic6254 2 роки тому

    14th

  • @astitwopandey8413
    @astitwopandey8413 2 роки тому +1

    5th

  • @ArSiddharth
    @ArSiddharth 2 роки тому +1

    Hey

  • @unknown_3293
    @unknown_3293 2 роки тому +1

    FIRST

  • @neondigital547
    @neondigital547 2 роки тому

    Thousands of contracts and new projects are released every single day. What's great is anyone can interact with these contracts on the backend, and anyone can do flash loans. You can borrow say $3 million for a trade that you want to make, and achieve this without any collateral upfront or deposit. Let's say you see a coin selling for a penny more on Coinbase than it is on Binance, but you only have $100 to invest. It's not worth the trouble for a $1 profit you think, right? With a flash loan and millions of dollars at your disposal, you can make that trade and turn it into a very profitable one. Life-changing money in a single trade that ultimately you made for free. Mind-boggling right?.. How do these type of loans work and where can you get them?... Go do your own research like I did lmao!!!

  • @hotefects
    @hotefects 2 роки тому

    4 that U need an AI

  • @eyup8267
    @eyup8267 2 роки тому +1

    Keep an expert,

  • @devilish2136
    @devilish2136 2 роки тому +1

    ponzy sceam and smart contracts are not exactly smart can be changeable

  • @kathleen1685
    @kathleen1685 2 роки тому +1

    Up until recently, I used to process crypto purchases. As with anything, there is a way to hack the process. People are overly confident in the blockchains. Just remember that a chain is only as strong as its weakest link.

  • @marwanbahaoui5898
    @marwanbahaoui5898 2 роки тому

    honey pot .--

  • @DiamondHero
    @DiamondHero 2 роки тому

    0:23 isn't that skull on the trusted by section a racist symbol

    • @OffByOneSecurity
      @OffByOneSecurity 2 роки тому +1

      That's the Bored Ape Yacht Club / Yuga Labs skull for their NFT's I believe. Not sure if it's been used elsewhere.

  • @tea_otomo
    @tea_otomo 2 роки тому

    Easiest solution: Just don't use blockchain...

  • @snowru672
    @snowru672 2 роки тому

    blocjkhain can be hackable !!!!!!!!!!!!!!!!!!!!!!!!!!!

  • @hasharmujahid1288
    @hasharmujahid1288 2 роки тому

    Man U need a hair cut 😁

  • @DePhoegonIsle
    @DePhoegonIsle 2 роки тому +5

    I can't tell you how I started to want to throw up with the whole 'Web 3.0' nonsense.
    The problem is not 'the blockchain', so much as there is no real reason for it for most things, and the sheer cost in infrastructure for .... anything being done.
    I'll start with my ... take on it.
    - The VERY real problem of how hard it is to implement a change, is as double edge sword or worse as it can get.
    = What happens when someone manages to get a hacked/fraudulent transaction on it? (because only a fool thinks a security measure is impossible to break)
    ~ What happens when When those who received the fraudulently transferred assets refuse to transfer them back?
    ~~ Do you build in an override bypass to force it from a master server (which introduces a critical weakness/flaw) and basically invalidate the trust of the very chain by using what amounts client/server model that we have now & have people ask why even use the blockchain if you're going to do shit like this?
    ~~ Do you build/use/enforce a hack client side to do the transfer? Which is ... as against the point of the blockchain, as it is dystopian & what amounts to enabling forced claiming of property that someone with power thinks you shouldn't have. (Sure we have bits of that now, but atm we can actually fight against it to some degree... imagine it being automated & enforced with no ability to counter it)
    The problem ... Is an insane level of idiocy of being 'star struck' over web 3.0 nonsense, and about how 'blockchains' are all so amazing, and just how robust they are... but not one shred of thought on the practical potshot of .... does a service like xyz actually need a block chain? what does the blockchain even benefit a service like xyz? While frankly the most important aspect of what people need to ask.. 'How does consumer / Business relations benefit if the blockchain is enforced?' Seriously... Does my One off 'Soda' purchase need to be blockchained forever in a ledger of the local 7-11? Does any purchase that's NEVER intended(like fast food dinner, etc) to ever be resold need to be blockchained? What sort of headache are you going to start giving people reselling old computer gear or blockchained items at a swapmeet? Like .. Really, imagine the migraines obtained all because some dude/dudette wanted to sell his/her computer, and transfer some digital goods that come with said computer. What seriously happens when Art gets blockchained? Who the f controls the blockchains, & which blockchains, & when different blockchains claim that different people own the same thing... who or what decides which one valid & how does anyone go about enforcing compliance to the losing blockchain ledgers?

    • @eli_the_crypto_guy
      @eli_the_crypto_guy 2 роки тому +1

      You could say that about any new technology, could we still survive if the automobile wasn't invented? Yes, would you have the things and be able to do the things now without it? No. As far as new tech and cyber security goes, tech always moves forward faster than cyber security, this is why cyber security will always be behind tech. Not everything needs to be on a blockchain however it is a sure way to decentralize different sectors, take the middle man out is not a bad goal to have. Blockchains provide immutable transactions, without the need of human intervention which can create bias, and error. This is just the tip of the iceberg, block chain has thousands of potential use cases, but to answer your question no we don't need any new technology to survive, if you want to make improve life then that is what tech is for.

    • @JSRJS
      @JSRJS 2 роки тому +1

      @@eli_the_crypto_guy Nicely said Eli

    • @Konarcoffee
      @Konarcoffee 2 роки тому

      @@eli_the_crypto_guy Cars solved an existing problem instead of a solution looking for a problem. They also are massive carbon nightmares, so it has that in common with existing uses of blockchain :D

    • @eli_the_crypto_guy
      @eli_the_crypto_guy 2 роки тому +1

      @@Konarcoffee Horses are also a carbon problem, research has shown the carbon foot print for a horse to travel the same distance is on par with a Chevy Corvette. Think about it, water, food, waste, etc. Producing food takes up a lot of resources. going back to horse and buggy is not the answer. ATM's and current banking system uses multitudes more electricity than blockchains, I don't see us going away from that anytime soon.

    • @UGPVlogsLA
      @UGPVlogsLA 11 місяців тому +1

      @@eli_the_crypto_guybrilliantly said 😂