BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: How to find 0-days in your “memory safe” stack?\
 n   When: Sunday\, Aug 14\, 10:00 - 10:59 PDT\n   Where: Flamingo - Twilig
 ht Ballroom - AppSec Village - Main Stage -\n   [1]Map\n\n   SpeakerBio:Ce
 zary Cerekwicki\n   Responsible for the AppSec program\, covering all Oper
 a products\n   globally. Spiritual leader of security champions. Vacation 
 approver of\n   penetration testers. Bug bounty distributor. Holder of som
 e\n   certificates. Occasionally hacks things.\n\n   Description:\n   Your
  memory-safe stack is not memory-safe at all. For instance\, many\n   popu
 lar Python libraries have substantial amounts of memory-unsafe\n   code. P
 ython is not unique here. You can find some potential for\n   memory safet
 y bugs in practically every software stack. If three\n   simple\, realisti
 c conditions are met\, you may have an RCEs waiting to\n   be found. Let m
 e tell you how I dealt with such a case. It’s a story\n   of an actual a
 ttack against an open-source software used in production\n   by my employe
 r to process content served to millions of users. All 30\n   zero-days fou
 nd have been responsibly disclosed and fixed. I will\n   provide guidance 
 on how to find patterns like this in your stack and\n   fix it.\n   '\n\n 
   1. https://defcon.outel.org/consolidated_page.html#FlamingoThirdFloor\n\
 n\n
DTEND:20220814T175900Z
DTSTART:20220814T170000Z
LOCATION:APV - Flamingo - Twilight Ballroom - AppSec Village - Main Stage
SUMMARY:How to find 0-days in your “memory safe” stack?
END:VEVENT
END:VCALENDAR
