#BlackHat

2025-11-24

Un film sur le piratage informatique : Hacker ("black hat" en VO), 2015, Michael Mann.

Négociations internationales en coulisse, #Hacker #BlackHat #MichaelMann #ChrisHemsworth #PiratageInformatique ...

senscritique.com/film/hacker/9

Un film sur le piratage informatique : Hacker ("black hat" en VO), 2015, Michael Mann. 

Négociations internationales en coulisse, #Hacker #BlackHat #MichaelMann #ChrisHemsworth #PiratageInformatique ... 

https://www.senscritique.com/film/hacker/9118502
2025-11-24

Misc story time:
tldr: I've been collecting security conference stickers for 20+ years and just now got around to using them ¯\_(ツ)_/¯

I'm not the kind of person to put stickers on my laptop. This means that for 23 years (apparently), when I got stickers from a conference, I kept them, put them in a bag, moved them from house-to-house, but never actually did anything with them. Until now.

I finally found a usage; which is decorating the otherwise-sketchy-looking metal ammo case which @VeronicaKovah & I are now using to carry phones with us to trainings. We watched some videos on youtube that make it seem like those LiPo fire-protection bags would do a whole lot of not-much in the event that a fire broke out on one of the batteries. But a simple metal box seemed to do a lot better in terms of containing the flames.

So we of course expect that airport security will always stop us when traveling with them (though at least this time our TSA pre-check status seemed to give us a pass on the way out). But the expectation is that contrary to what you might thing, adding hacking conference stickers will actually be disarming, rather than alarming, with security personnel - at least when compared to the alternative of seeing a raw ammo canister ;)

The oldest sticker seems to be from DEF CON 10 (X), circa 2002 (my first DEF CON was 8 FWIW). In general I don't seek out stickers, but I do think the BadBIOS and "I want to believe" ones are things I probably got from Joe Fitz as they were of-the-moment and relevant to my interests. (If you're not familiar with the latter, it's from a very FUDish cover article [1]). I could have completely filled them, but I left a little bit of space for the future. Check out the larger pics for a potential stroll down memory lane. (RIP Shmoocon, Hackademic.info, NoSuchCon. Memento mori conference organizers ;))

#DEFCON, #BlackHat, #ShmooCon, #BlueHat, #RingZer0, #HackLU, #HardwearIO, #DistrictCon, #HackFest, #NoSuchCon, #DeepSec, #HITB, #HackersOnTheHill

[1] bloomberg.com/news/features/20

2025-11-19
@salvatorelasorella@mastodon.uno

La storia è molto più complessa di così: gli #hacker negli anni '80 e primi anni '90 furono perseguitati e infamati con una propaganda violentissima perché non si sottomettevano alle regole del capitalismo statunitense.
In the United States, in the 80's just like today, "evil" is everything that could negatively affect the profits of the riches. They were scared by people who removed copy protection from video games, got free phone calls or cripple the trust of the working class in Capitalism by showing how easy it was to hack the Bank Of America's Home Banking System.

In 1986 the first legislation related to hacking was enacted, the Federal Computer Fraud and Abuse Act. Just like the Hopkins' The Discovery of Witches, such text was wielded thousands of times to convict high-profile hackers and low-level criminals alike, in the most recent witch-hunt of American history.

Meanwhile, the mainstream Americans were building their own prejudice about hackers through their most powerful propaganda-device, with films like War Games.

So while some hackers were arrested all over the States, others tried to distance from them, introducing the term "cracker" to mock "the criminals" in the hope preserve their freedom and appear as the good, well integrated citizens they ough to be.

All of this worked as a sort of evolutive pressure, pruning those who challenged the American life-style and supporting those that were happy to subdue to the cultural hegemony of the times.

Then, when "cracking systems" became a well payed job, a bunch of coloured "hats" were invented, to distinguish crackers "hackers" according to the masters they serve.
Tuttavia, nonostante la maggiore consapevolezza politica, vi era assoluta continuità fra l'etica delle prime comunità hacker al MIT e quelle successive.

Era proprio questo il problema: gli hacker rivelavano la vulnerabilità di un sistema che si presentava al mondo come vincente, diffondevano "conoscenze pericolose" più rapidamente di quanto il capitale volesse permettersi, e iniziavano ad avere una pericolosissima coscienza di classe: erano proletari con il pieno controllo degli strumenti di produzione, saldamente ancorati sul collo.

Per questo andavano divisi, marginalizzati e perseguitati.

Quando dei giovani vengono a dirmi che gli hacker sono criminali, o quando (più raramente) mi vengono a dire che non lo sono, che i criminali sono i #cracker o ancora i #blackhat mentre gli hacker sono quelli che scrivono software libero, io spiego ad entrambi che non hanno capito cos'è un hacker.

Un hacker persegue la propria sete di conoscenza, la propria curiosità, come valore fondamentale.

Quando una legge gli impedisce di accedere a tale conoscenza la ignora. Quando gli permette di massimizzarla, la utilizza.

#PhineasFisher non è "meno hacker" di #RichardStallman o di #LeonardoDaVinci. Il primo e l'ultimo hanno violato ripetutamente leggi oppressive, il secondo ha cercato di sovvertirne una (il copyright).

Ma è normale ed inevitabile che gli hacker siano marginalizzati ed oppressi dal potere, che siano stigmatizzati come criminali e persino perseguitati da folle inferocite eterodirette: non si piegano al potere, lo deridono e lo umiliano.

Ma solo chi detiene il #potere ha ragione di temerli.

@computer@diggita.com
Marco Ciappelli🎙️✨:verified: :donor:Marcociappelli@infosec.exchange
2025-11-18

You Think There's Time—Until There Isn't

The 2026 Cybersecurity Conference Season Is Coming—And Coverage Spots Are Limited And Moving Fast.

For over 10 years, ITSPmagazine has been on the ground at the industry's most important events. These conferences are where we reconnect with our community, where the conversations that matter happen, and where the future of cybersecurity takes shape.

Our coverage goes deep: daily recaps, editorial opinion pieces, extensive photo documentation, and conversations with the experts we've known for years alongside the new voices shaping what comes next.

Three Major Events in 2026:

📍 RSAC Conference | San Francisco | March 23–26

📍 Infosecurity Europe | London | June 3–5

📍 Black Hat USA | Las Vegas | August 1–6

We'd love for you to join us on this adventure and place your brand in the spotlight as we share what happens on location and reveal the future of our industry.

What We Offer:

🎯 Full Coverage Sponsorship – Your brand sponsors all editorial content before, during, and after the event. Includes pre-event briefing, on-site conversation with Sean Martin, CISSP and me, banner advertising, sponsorship recognition across articles and podcasts, and full content rights. $3,000 per event. Six spots per event.

🎙️ On-Location Briefing – 20-minute recorded briefing, companion article, placement on event coverage page, full content rights. $1,500 per event. Six spots per event.

Special Offer:

Two Full Coverage Sponsorships: $5,000 (save $1,000) – Use code 1KOFFTWO

Both programs traditionally sell out before event dates.

📋 Learn More & Book: studioc60.com/performance

💳 Book Two Events (Special Offer): payments.itspmagazine.com/b/00

☎️ Sean and I are happy to get on a call and answer your questions: cal.com/team/itspmagazine/prog

View Our Coverage Pages:

RSAC: itspmagazine.com/rsac-2026-con

Infosecurity Europe: itspmagazine.com/infosecurity-

Black Hat USA: itspmagazine.com/black-hat-usa

See all our event coverage: itspmagazine.com/technology-an

Join us!

Marco Ciappelli & Sean Martin, CISSP

#Cybersecurity #InfoSec #RSAC #InfoSecurityEurope #BlackHat #EventCoverage #MediaPartnership #cybersecuritymarketing #cybersecurityevents

2025-11-12

I just did a quick post about my #blackhat and #sector arsenal experiences this year. #opensource #bh2025 #sector2025 medium.com/@we-are-fact...

Black Hat 2025 Arsenal Experie...

2025-11-11

"Darknet Diaries Deutsch": Grifter – von der Straße zur Security

Neil Wyler alias Grifter erzählt seine unglaubliche Reise: vom jugendlichen Cyberkriminellen zum Sicherheitsexperten, der Großkonzerne und Regierungen berät.

heise.de/news/Darknet-Diaries-

#BlackHat #Darknet #DarknetDiaries #Hacking #Journal #Sicherheitslücken #news

2025-10-25

Excellent #Cyber Interviews Series
wherewarlocksstayuplate.com/

ParMaster - from incarceration to #Cybersecurity
youtube.com/watch?v=BkeXk9rBBrs
audible.com/podcast/The-Parmas
(Par and Assange book)

Rankhorn - FBI undercover and Law Enforcement perspective
wwsul.podbean.com/e/episode-5-
Blind Man's Bluff (book)
en.wikipedia.org/wiki/Blind_Ma
pt. II 48:00 - race conditions for Nick #IRC

Pewp - hacker groups grew up and rethinking things through
youtube.com/watch?v=YVm30NiHhdQ
[1:00:00] The Golden Age / Decline of #IRC hacker groups
#ComputerHistory #GabriellaColeman
archive.org/details/pca_Phone_
#EHAP thecyberexpress.com/anonymous-
hack.se swehack.se/

Skyper - Blue Boxing, rules of #Phreaking
wwsul.podbean.com/e/episode-4-
#BBS - dial "The Number" - modems
cool domain name indicated access to server
#TESO Austrian hacker group
wokb.cz/Hacking/Skupiny/teso.h
"Not criminals, researchers" [1:31:00]

Kingpin - thoughts about nerodivergence
youtube.com/watch?v=MgSvFdwunLU
Cold Wallet (movie)
imdb.com/title/tt27307826/

Mohammed Bagha - lost era of hacker culture,
youtube.com/watch?v=PN2RQ_O2Cq0
makes you wonder about the possibility of "human interest" stories (staring team human instead of machinic professionalization) in the contemporary cyber scene
also reminiscent of the difference between
savant inventors versus the rise of big science
and yet, there is a definition of "hacker" as anyone who
brings ingenutiy to problem solving

Ralph Logan - humanitarian, #hacker groups #history
youtube.com/watch?v=O0CmLzhggrw
#cDc T -Files
archive.org/download/cultdeadc
#Phrack
archive.org/details/phrack67/P
#gorillaton #l0pht
youtube.com/watch?v=r4166Kb4UdQ
#MIT #Boston #magazine #zine #underground

Matt Harrigan - early wild west net, but now Feds will always win
youtube.com/watch?v=7IHKRzGQeog

"Programmable Threats"
#Blackhat keynote #Mikko_Hypponen
youtube.com/watch?v=H14EhT-DRJ8
#Malware #Virus #Drones #Cybersecurity

2025-10-20

Excellent #Cyber Interviews Series
wherewarlocksstayuplate.com/
"Programmable Threats"
#Blackhat keynote #Mikko_Hypponen
youtube.com/watch?v=H14EhT-DRJ8
#Malware #Virus #Drones #Cybersecurity

BBS/AE/CF - in the end, only the CatFurs survived . . . hahaha! #cDc
ParMaster - from incarceration to #Cybersecurity
youtube.com/watch?v=BkeXk9rBBrs
audible.com/podcast/The-Parmas
(Par and Assange book)
Pewp - hacker groups grew up and rethinking things through
youtube.com/watch?v=YVm30NiHhdQ
[1:00:00] The Golden Age / Decline of #IRC hacker groups
#ComputerHistory #GabriellaColeman
archive.org/details/pca_Phone_
#EHAP thecyberexpress.com/anonymous-
hack.se swehack.se/
Skyper - Blue Boxing, rules of #Phreaking
wwsul.podbean.com/e/episode-4-
#BBS - dial "The Number" - modems
cool domain name indicated access to server
#TESO Austrian hacker group
wokb.cz/Hacking/Skupiny/teso.h
"Not criminals, researchers" [1:31:00]
Rankhorn - FBI undercover and Law Enforcement perspective
wwsul.podbean.com/e/episode-5-
Blind Man's Bluff (book)
en.wikipedia.org/wiki/Blind_Ma
pt. II 48:00 - race conditions for Nick #IRC
Kingpin - thoughts about nerodivergence
youtube.com/watch?v=MgSvFdwunLU
Cold Wallet (movie)
imdb.com/title/tt27307826/
Mohammed Bagha - lost era of hacker culture,
youtube.com/watch?v=PN2RQ_O2Cq0
makes you wonder about the possibility of "human interest" stories (staring team human instead of machinic professionalization) in the contemporary cyber scene
also reminiscent of the difference between
savant inventors versus the rise of big science
and yet, there is a definition of "hacker" as anyone who
brings ingenutiy to problem solving
Ralph Logan - humanitarian, #hacker groups #history
youtube.com/watch?v=O0CmLzhggrw
#cDc T -Files
archive.org/download/cultdeadc
#Phrack
archive.org/details/phrack67/P
#gorillaton #l0pht
youtube.com/watch?v=r4166Kb4UdQ
#MIT #Boston #magazine #zine #underground
Matt Harrigan - early wild west net, but now Feds will always win
youtube.com/watch?v=7IHKRzGQeog

2025-10-20

MOST AI Code Was INSECURE in Tests

Watch the video on YouTube:
youtu.be/X46BBdaTKSY

This video is sponsored by ThreatLocker.

#threatlocker #sponsored #blackhat

2025-10-06
Tim burton style illuatration
#art
#artist
#artists
#black
#white
#smile
#blackhat
2025-10-01

About to present Faction at SecTor Arsenal at 4 eastern. Hope to see you there. #appsec #blackhat #sectorca #redteam.

Tanya Janca | SheHacksPurple :verified: :verified:SheHacksPurple@infosec.exchange
2025-09-29

Interview with Vandana Verma at Black Hat! @infosecvandana #blackhat

twp.ai/4iqDfC

Can the tech community PLEASE stop having conferences in Las Vegas. It's such a loud and obnoxious place. It's hot and miserable everywhere. Everything on the strip is smokey.

#lasvegas #blackhat #defcon #oktane

2025-09-26

I'm excited to be presenting at SecTor Arsenal! I'll be demoing OWASP Faction, an open source pen-testing collaboration framework. Hope to see you there! #SECTORCA #appsec #owasp #cybersecurity #blackhat #pentesting

Cyber Kendra :verified:cyberkendra@techhub.social
2025-09-23

Critical Microsoft Entra ID Flaw Could Have Compromised Every Azure Customer
cyberkendra.com/2025/09/critic
#microsoft #entraid #security #BlackHat

2025-09-21

Have a security talk you think could hit harder?
Drop the link and I’ll dissect the delivery, not the content.
(Assuming it’s already conference-grade 👀)

#Cybersecurity #BlackHat #infosec #PublicSpeaking #Trustial #PayloadDelivered

Top 10 Hacker Movies You’ve Missed

Who Am I? (2014)

Introduction

Yeah, I’m doing one of these.

I’m going to list and rank ten movies that feature hackers as major characters or hacking itself as a major plot point and discuss what makes them good or bad.

I am purposefully not including WarGames, Sneakers, Hackers or Swordfish, all movies that have existing rabid fans and detractors in the hacking scene.

10. Prime Risk (1985)

https://www.youtube.com/watch?v=FiU7hkMe4_M

Prime Risk is a weird movie, despite how much they talk about hackers and computers it is obvious that the writers had no idea about either so we get an odd movie about electronics causing ATMs to spit out money. Add in a conspiracy by a shadowy cabal to undermine the entire financial system and you have something approximating a coherent movie.

I like that the hacker in this is a woman though, and her sidekick is a goofy guy.

9. Hide and Seek (1984)

https://www.youtube.com/watch?v=xjQnucHby8Y

This movie is based on a sci-fi novel from 1977 but it is essentially a lower budget Canadian WarGames, there’s a certain charm to it though.

A high-school student hacker befriends a rogue AI and mischief ensues before the plot takes a hard left turn into averting nuclear disaster.

8. Takedown (2000)

https://www.youtube.com/watch?v=NbgDMYy9mzM

This movie about Kevin Mitnick caused so much controversy, as he was still in prison when they started filming it, that it never saw a proper release. You can find copies online though.

Skeet Ulrich is serviceable as Mitnick, Donal Logue is great as Lewis de Payne and if you can separate the film from the actual story and person it was based on and just see it as a work of fiction it becomes a lot more watchable.

7. Blackhat (2015)

https://www.youtube.com/watch?v=-CA95Bzpy7s

I honestly don’t know how I feel about this movie, I watched it and then heard there was a director’s cut that was longer and more cohesive. I purchased a special edition Blu-ray so I could watch the director’s cut and I still don’t know how I feel about it.

A lot of people in the hacking scene hate it, but it looks great, it is very visually stylish and Mann seems really engaged with the subject matter. Chris Hemsworth is miscast though, or he was told to act in a way that renders his character an emotionless hulk for most of the movie.

6. The Net (1995)

https://www.youtube.com/watch?v=WsHYQjHrhKY

I really like this movie, it meanders a bit in the middle but the overall concept is tight and if you can ignore the hand waving over whether any of it is technically possible you will have a good time.

Sandra Bullock is great and the plot captures genuine anxiety from the mid-90s as to how this thing called the internet was steadily encroaching on people’s lives and threatening to change society.

You can find a video I made about it over at the YouTube channel.

5. 23 (1998)

https://www.youtube.com/watch?v=JUDWU4RBtds

The first of two German hacker movies on this list, it is set in the 80s and really feels like it. I’ll warn you now though this is based on the real life case of young German hackers who handed data over to the Soviet government, it does not have a happy ending.

You may have trouble tracking down a copy with english subtitles for this one, I don’t think there is any dubbed version.

I’ve made a video on this movie over on my YouTube channel.

4. Masterminds (1997)

https://www.youtube.com/watch?v=A5gtXzHnN7M

This is an action comedy with Patrick Stewart holding a school full of rich kids hostage while a teen hacker who was previously expelled from the school tries to thwart his plans.

The plot moves along quickly, there is a satisfactory amount of action and Patrick Stewart makes a wonderful villain, I recommend checking it out.

3. Enemy of the State (1998)

https://www.youtube.com/watch?v=a3mrRv-1khI

I recently rewatched this movie, having originally seen it in the cinema when it came out with my local 2600 meetup, and I still like it. The concerns over privacy seem really outdated now, as we all hand over so much data to corporations and the government.

It is a solid movie about a man (Will Smith) who isn’t the most technically minded person finding himself up against a vast and nefarious surveillance apparatus. Plus you get Jamie Kennedy and Jack Black as smart ass government hackers, I feel like both of them played similar roles in multiple movies.

2. Who Am I (2014)

https://www.youtube.com/watch?v=5vnjheCqRIs

The second German movie on this list, I love this movie. A dark thriller about a young man who joins a sort of Anonymous like hacker group, has various thrills and spills with them before disaster strikes.

A little bit Mr Robot, you need to check this movie out if you like your hacker movies with tangled plots and absolutely soaked in paranoia.

1. The Steal (1995)

https://www.youtube.com/watch?v=QBxvGaIK2eE

I only discovered this movie recently and until it appeared on some streaming services it was quite hard to track down.

It is a whimsical British crime caper involving a free spirited American con artist and an uptight British computer programmer being pursued by a British aristocrat, while they try to drain bank accounts belonging to an evil corporation.

Hacking and social engineering play a heavy role in the movie and I love the cast.

You can watch the entire movie on YouTube, linked above.

Conclusion

I was going to include some honorable mentions here, but honestly there are so many movies I could have added to this list that a follow up blog is inevitable.

If you enjoyed this blog head on over to Bluesky for similar thoughts on hackers in pop culture.

#23 #Blackhat #EnemyOfTheState #film #films #Germany #hackers #hacking #HideAndSeek #history #KevinMitnick #list #Masterminds #Mitnick #Movies #PrimeRisk #Sneakers #Swordfish #Takedown #TheNet #TheSteal #WarGames #WarGames #Webmaster #WhoAmI_

Tanya Janca | SheHacksPurple :verified: :verified:SheHacksPurple@infosec.exchange
2025-09-14

Interview with Vandana Verma at Black Hat! @infosecvandana #blackhat

twp.ai/4iq2V5

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst