BLACK ALPS

November 6th & 7th, 2024
Yverdon-les-Bains, Switzerland

Program

Cutting Edge Technical Talks... and more!

#BlackAlps24 program has been prepared by an independent, neutral committee of internationally recognized experts. The program committee reviewed many proposals and selected the most appropriate and interesting talks for the conference (except the keynotes and rumps). Learn more about the Call For Proposal and committee.

Wednesday November 6th, 2024

All sub-events are at La Marive, except the Networking dinner (Nov 6th 2024).

08:30 - 09:00 Welcome and coffee
09:00 - 09:10
opening Opening words
Sylvain Pasini (HEIG-VD, president of Black Alps)
09:10 - 09:40
K01 We've not been trained for this: life after the Newag DRM disclosure (en)
Michał "Redford" Kowalczyk ( Dragon Sector / Invisible Things Lab)
Jakub Stepniewicz
q3k
09:40 - 10:25
08 Reach the Nirvana : Hijack, Inject, Sleep (en)
Yoann Dequeker (Wavestone)
10:25 - 10:50 Coffee break
10:50 - 11:35
10 Broken isolation - draining your credentials from popular macOS password managers (en)
Wojciech Regula (Securing)
11:35 - 12:20
04 Who dat? - Sender-constraining personal access tokens (en)
Vitor Meireles (GitLab)
Rohit Shambhuni (GitLab)
12:20 - 14:05 Lunch
14:05 - 14:50
02 GlobalConfusion: TrustZone Trusted Application 0-Days by Design (en)
Marcel Busch (EPFL)
Philipp Mao (EPFL)
14:50 - 15:35
13 IDAT Loader: The Malware’s Camouflaged Weapon (en)
Niranjan Jayanand
15:35 - 16:00 Coffee break
16:00 - 16:45
12 GCP CL-WHY: The Hacker's and the Hero's Guide to the CLI (en)
Shannon McHale (Google)
16:45 - 17:30
11 Iconv, set the charset to RCE: exploiting the glibc to hack the PHP engine (en)
Charles Fol (Lexfo)
17:45 - 18:15 Travel
(17:50, bus departure from La Marive to Salle des Quais)
from 18:00 Networking dinner
Salle des quais (Grandson)
Mandatory registration
Aperitif at 18:00
Dinner at 19:30
Corporate event
(La Marive)
Mandatory registration

Welcome at 17:30
Start at 17:45
Aperitif at 19:15
Shuttle to Networking Dinner at 19:15
End at 20:30
23:30 - 00:00 Travel
(23:30 - Bus departure from Salle des Quais to Yverdon train station, La Marive, and Grand Hotel des Bains )

Thursday November 7th, 2024

(08:15 - Bus departure from Grand Hotel des Bains to La Marive)
08:30 - 09:00 Welcome and coffee
09:00 - 09:15 Opening words
09:15 - 09:45
K02 Are We on the Edge of an AI Cybercrime Armageddon? Separating Hype from Reality (en)
Candid Wüest ( xorlab )
09:45 - 10:30
09 Start them early and keep on keepin’ on. An industry perspective on automated protocol analysis for designing and iterating cryptographic protocols (en)
Marc Ilunga (Trail of Bits)
10:30 - 11:00 Coffee break
11:00 - 11:45
05 The pitfalls of Fully Homomorphic Encryption: when IND-CPA security is not enough (en)
Jean-Philippe Bossuat (Gauss Labs PTE. LTD.)
11:45 - 12:30
07 Unveiling the offensive potential of Group Policy Objects in Active Directory: old - and new GPO ACLs attack vectors (en)
Quentin Roland (Synacktiv)
12:30 - 14:15 Lunch
14:15 - 15:00
03 Now I See You: Pwning the Synology BC500 Camera (en)
Emanuele Barbeno (Compass Security)
15:00 - 15:45
06 Crypto wallet - What could go wrong ? (en)
Ryan Sauge (Taurus SA)
15:45 - 16:30 Coffee break
16:30 - 17:30
14 Rump session (en/fr)
Several speakers
17:30 - 19:00 Closing aperitif
19:00 - 23:00 Black Dinner
(La Marive)
Free for all
Black Alps participants





CTF
(La Marive)
Mandatory registration

Welcome at 18:45
Start at 19:15
End at 23:30

Awards at 23:45

Legend

         Keynote

         Conference

         Side event

         Evening