BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: One Bootloader to Load Them All\n   When: Friday\, A
 ug 12\, 12:00 - 12:45 PDT\n   Where: Caesars Forum - Alliance 301-309\, 32
 1 (Track 4) - [1]Map\n   Speakers:Jesse Michael\,Mickey Shkatov\n\n   Spea
 kerBio:Jesse Michael \, Hacker\n   Jesse Michael - Jesse is an experienced
  security researcher focused on\n   vulnerability detection and mitigation
  who has worked at all layers of\n   modern computing environments from ex
 ploiting worldwide corporate\n   network infrastructure down to hunting vu
 lnerabilities inside\n   processors at the hardware design level. His prim
 ary areas of\n   expertise include reverse engineering embedded firmware a
 nd exploit\n   development. He has also presented research at DEF CON\, Bl
 ack Hat\,\n   PacSec\, Hackito Ergo Sum\, Ekoparty\, and BSides Portland.\
 n   Twitter: [2]@JesseMichael\n\n   SpeakerBio:Mickey Shkatov \, Hacker\n 
   Mickey has been doing security research for almost a decade\, one of\n  
  specialties is simplifying complex concepts and finding security flaws\n 
   in unlikely places. He has seen some crazy things and lived to tell\n   
 about them at security conferences all over the world\, his past talks\n  
  range from web pentesting to black badges and from hacking cars to\n   BI
 OS firmware.\n   Twitter: [3]@HackingThings\n\n   Description:\n   Introdu
 ced in 2012\, Secure Boot - the OG trust in boot - has become a\n   founda
 tional rock in modern computing and is used by millions of\n   UEFI-enable
 d computers around the world due to its integration in\n   their BIOS. The
  way Secure Boot works is simple and effective\, by\n   using tightly cont
 rolled code signing certificates\, OEMs like\n   Microsoft\, Lenovo\, Dell
  and others secure their boot process\, blocking\n   unsigned code from ru
 nning during boot. But this model puts its trust\n   in developers develop
 ing code without vulnerabilities or backdoors\; in\n   this presentation w
 e will discuss past and current flaws in valid\n   bootloaders\, including
  some which misuse built-in features to\n   inadvertently bypass Secure Bo
 ot. We will also discuss how in some\n   cases malicious executables can h
 ide from TPM measurements used by\n   BitLocker and remote attestation mec
 hanisms. Come join us as we dive\n   deeper and explain how it all works\,
  describe the vulnerabilities we\n   found and walk you through how to use
  the new exploits and custom\n   tools we created to allow for a consisten
 t bypass for secure boot\n   effective against every X86-64 UEFI platform.
 \n   '\n\n   1. https://defcon.outel.org/consolidated_page.html#CaesarsAll
 ianceBR\n   2. https://twitter.com/JesseMichael\n   3. https://twitter.com
 /HackingThings\n\n\n
DTEND:20220812T194500Z
DTSTART:20220812T190000Z
LOCATION:DC - Caesars Forum - Alliance 301-309\, 321 (Track 4)
SUMMARY:One Bootloader to Load Them All
END:VEVENT
END:VCALENDAR
