video
Microsoft RemoteApp Breakout and Bypasses
This talk by Jon Rhodes explores security vulnerabilities and evasion techniques targeting Microsoft RemoteApp, focusing on breakout methods that escape the isolated RemoteApp container to access the underlying host system, as well as bypasses for common detection and restriction mechanisms.
Jailbreak to Root: Escaping Python Sandboxes and Owning the Host
This talk by Aravind Pallavoor explores advanced techniques for escaping Python-based sandbox environments—such as those used in CTF challenges, online judges, or serverless functions—to achieve arbitrary code execution and ultimately gain root-level control over the underlying host system.
Shall We Play a Game? Unlocking Mastery in Hacking, Coding, and AI
Marcus Carey demystifies complex disciplines through play, curiosity, and iterative challenge.
Preparing for the New Identity War: A CCN Podcast Session
Chris Glanden discusses emerging societal, technological, and geopolitical tensions centered on identity and what it means for digital sovereignty, biometric data control, cultural narratives and AI-driven identity manipulation.
Offensive Forensics: A Useful Addition For Your Offsec Toolbox To Pwn More Things
Cory Mathews introduces “Offensive Forensics,” a mindset and methodology that combines digital forensics techniques with offensive security practices to uncover hidden artifacts, persistence mechanisms, and overlooked attack surfaces during red team engagements and penetration testing.
Ghosts in the Machine - The Therac-25 Affair
Sean Satterlee examines the case of Therac-25, a computer-controlled radiation therapy machine that delivered massive, lethal overdoses to at least six patients in the mid-1980s due to software flaws, poor safety design, and inadequate testing.
What did I learn from analyzing hundreds of App Privacy Reports from iPhones
The talk by Sergey Shkundaleu details insights gained from analyzing hundreds of iOS app privacy reports — automatically generated by Apple’s App Privacy Report feature — to uncover real-world data collection and tracking behaviors across popular apps.
From AI Hacking Hype to Enterprise Reality: What Mythos Actually Changes
Justin “Hutch” Hutchens examines the gap between sensationalized narratives around “AI hacking” and the pragmatic, risk-informed reality of AI adoption in enterprise environments.
Stealing Trust: Modern Social Engineering from Phishing to AI-Powered Vishin
The talk “Stealing Trust: Modern Social Engineering from Phishing to AI-Powered Vishing” by Chris Russell explores the evolution and increasing sophistication of social engineering attacks, emphasizing how adversaries now leverage artificial intelligence to automate and personalize deception.
Offense for Defense
Tim Medin’s talk “Offense for Defense” is a practical, engaging, and humorous guide for blue teamers, defenders, and IT professionals on leveraging offensive security tools and mindsets to proactively strengthen their organizations—without needing to become full-time red teamers.
Hacking Transit: Repurposing Surplus Devices for Fun and Shenanigans
Transit hardware hacking shows how surplus public transportation devices can be reverse engineered, repurposed and explored to uncover how real-world systems work — and where unexpected security weaknesses may hide.
A Brief Introduction to Cognitive Warfare
Cognitive warfare turns the human mind into an attack surface, using disinformation, emotion, identity and social manipulation to exploit cognitive biases, erode trust and shape how people perceive reality.