BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: Forgotten but Not Gone: Unauthenticated RCEs and LPE
 s in\n   Legacy Linux Services\n   Tags: DEF CON Official Talk | Demo ðŸ’»
  | Tool ðŸ›  | Exploit ðŸª²\n   When: Saturday\, Aug 8\, 11:00 - 11:59 PDT
 \n   Where: LVCCW Level 1 Hall 3 906 (Main Track 3) and DCTV-3 - [1]Map\n\
 n   Description:\n\n   The cybersecurity community chases the greatest ris
 ks in the latest\n   tech\, while components with outdated security princi
 ples gather dust.\n   Companies rush to secure their latest AI product\, w
 hile their network\n   remains the same. Do attackers really need more tha
 n legacy services\n   to take you down?\n\n   We asked this question as we
  analyzed an unauthenticated RCE in\n   GNU-TelnetD that was discovered in
  January. We were amazed a simple\n   shell injection existed for so long 
 in the most popular telnet daemon.\n   We further investigated Telnet and 
 discovered it runs a\n   root-privileged process with environment variable
 s supplied by an\n   unauthenticated client! Leading us to a privilege esc
 alation\n   vulnerability.\n\n   We then looked into Samba\, the Linux ser
 vice for sharing files and\n   printers over SMB. Focused on shell injecti
 ons\, we searched for\n   command execution using format strings - and we 
 couldn't believe it!\n   Two more shell injection RCEs waited for us! In t
 his talk\, you'll ask\n   yourself\, â€œHow come it was only found in 2026
 ?!â€ We will analyze\n   the unauthenticated RCE in TelnetD and reveal th
 ree severe\n   vulnerabilities: 2 unauthenticated RCEs in Samba (CVE-2026-
 4480 &\n   CVE-2026-4408) and a privilege escalation in TelnetD (CVE-2026-
 28372).\n   The routers or printers you forget to update might run those s
 ervices\,\n   and they put you at risk\n\n   https://www.safebreach.com/bl
 og/safebreach-labs-root-cause-analysis-and-poc-exploit-for-cve-2026-24061/
 \n\n   SpeakerBio:  Ron Ben Yizhak\, SafeBreach\n\n   Ron (@RonB_Y) is a s
 ecurity researcher at SafeBreach with 11 years of\n   experience. He works
  in vulnerability research and has knowledge in\n   forensic investigation
 s\, malware analysis and reverse engineering. Ron\n   previously worked in
  the development of security products and spoke\n   several times at DEF C
 ON\n\n   '\n\n   1. #LVCCW_Level1_Hall3\n\n\n
DTEND:20260808T185900Z
DTSTART:20260808T180000Z
LOCATION:DEF CON Talks - LVCCW Level 1 Hall 3 906 (Main Track 3) and DCTV-3
SUMMARY:Forgotten but Not Gone: Unauthenticated RCEs and LPEs in Legacy Lin
 ux Services
END:VEVENT
END:VCALENDAR
