BSDCan 2005

Posted by Jonathan

BSDCan 2005 should be over now. If you were so unfortunately as myself and could not attend be sure to read the presentations and papers that are now slowly published.

Colin Percival published his paper about a vulnerability in Hyperthreading that can lead to information disclosure on various Operating Systems:

permits local information disclosure, including allowing an unprivileged user to steal an RSA private key being used on the same machine. Administrators of multi-user systems are strongly advised to take action to disable Hyper-Threading immediately; single-user systems (i.e., desktop computers) are not affected.

This vulnerability was the “security issue” that caused some misunderstanding between Theo de Raadt/OpenBSD and Colin Percival/FreeBSD back in March.

Kris Kennaway, the FreeBSD ports “master”, held a presentation about the FreeBSD package cluster that is used to build and test all FreeBSD ports on all supported platforms. You can find his kris/”>website.

Richard Bejtlich, author of the fabulous The Tao Of Network Security Monitoring, gave a talk about keeping FreeBSD up-to-date. The talk is based on his paper on the same topic.

Henning Brauer presented OpenBGPD, an older presentation can be found here. I’m sure that the presentation he held was very similar.

These were the presentations or papers that I could already find. More should be published soon.

Comments

Leave a response