antiTree | posts and projects
portfolio-image

Command And KubeCTL: Real-World Kubernetes Security For Pentesters

A talk given at Shmoocon in 2020 contrasting the challenges of deploying Kubernetes into different types of environments.


portfolio-image

Pentesting DevOps: Attacking Containers

A presentation for the Rochester Security Summit in 2019 discussing CI/CD and complex devops environments.


portfolio-image

K8s - Pods to root in minutes

A short demonstration for Rochester 2600 exploiting Kubernetes ABAC authentication to compromise a cluster.

portfolio-image

Tizen: Hacking the next modern mobile OS

A talk from 2013 on Tizen hacking and security controls.

portfolio-image

The Attrocities of Desktop Keyrings

This was the output of spending time assessing gnome-keyring security controls and looking at other keyrings like Windows and MacOS.

portfolio-image

Web Browsing Like It's 1984

A local presentation on the security controls of modern browser extensions comparing Firefox to Chrome and others.

portfolio-image

The State of WiFi Security

A talk about the then current state of WiFi security, it's lack of ephemeral key creation for WPA, and ways to set it up yourself.


portfolio-image

Docker Security

A basic talk about the Docker, security controls, and known exploits.


portfolio-image

NSA and VPN

A summary of what some of the capabilities the NSA have over exploiting commong VPN mis-configurations.


portfolio-image

Corporate Spies

A version of a talk given at GrrCon and BSidesDetroit on performing intelligence gathering for corporations.


portfolio-image

Meek and Domain Fronting

A talk going over the cryptography of Meek and how the basics of domain fronting works.


portfolio-image

Tools and Techniques Related to Android Security

One of my first talks on Android security for the Rochester security summit. Initial release of Manitree.


portfolio-image

Lock Picking - Advanced Lock Picking Techniques

A version of talks given in the Rochester community about lock picking along with demonstrations.


portfolio-image

Laverna

A simple talk about an attempt at a secure not-taking app and it's use of client-side encryption.


portfolio-image

Liberte & Cables vs TAILS & Bitmessage

A comparision between TAILS and Liberte which were then the state-of-the-art for a secure desktop.