BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: No Socket\, No Privs\, No Problem: Weaponizing OCI R
 egistries\n   for SSRF\, Credential Theft\, and Container Escapes\n   Tags
 : DEF CON Official Talk | Demo 💻 | Exploit 🪲\n   When: Saturday\, Au
 g 8\, 10:00 - 10:30 PDT\n   Where: LVCCW Level 1 Hall 3 904 (Main Track 4)
  and DCTV-4 - [1]Map\n\n   Description:\n\n   Every day\, developers and M
 L engineers pull containers and models from\n   OCI registries without a s
 econd thought. What if that pull\, no\n   privileges\, no special access\,
  could be turned into host enumeration\,\n   credential theft\, remote cod
 e execution\, or even a container escape?\n\n   We found a class of vulner
 abilities that spans the OCI ecosystem. Not\n   just in registry clients\,
  but in the underlying technologies they feed\n   into\, container runtime
 s\, ML inference engines\, and more. By standing\n   up malicious registri
 es and abusing how these tools handle registry\n   responses\, we turned r
 outine pull operations into attack primitives.\n   The result: multiple cr
 itical vulnerabilities across widely used tools\n   and platforms\, includ
 ing SSRFs\, arbitrary file reads for credential\n   exfiltration\, and a n
 ovel path to escaping a Docker container to the\n   underlying host.\n\n  
  What do they all have in common? They all either use or offer OCI\n   ser
 vices through a client or a registry. This talk walks through the\n   diff
 erent attack paths we’ve found\, how they were discovered\, trends\n   w
 e’ve noticed across multiple products\, proof-of-concepts\, and what\n  
  it means for the ecosystem moving forward.\n\n   Speakers:David "davidrxc
 hester" Rochester\,Nicholas "gouldnicholas"\n   Gould\n\n   SpeakerBio:  D
 avid "davidrxchester" Rochester\, Booz Allen Hamilton\n\n   David Rocheste
 r is a penetration tester by day\, where he focuses on\n   web\, cloud\, n
 etwork\, and Active Directory security. He earned his B.S.\n   in Computer
  Science from Clemson University and is currently pursuing\n   a master's 
 at the University of Texas at Austin. He holds the OSCP\,\n   OSWE\, and C
 RTO\, along with several cloud security certifications. As\n   an independ
 ent security researcher\, his vulnerability research and\n   exploitation 
 work has produced eight CVEs to date\, including findings\n   in Docker an
 d Ollama.\n\n   SpeakerBio:  Nicholas "gouldnicholas" Gould\, Booz Allen H
 amilton\n\n   Nicholas Gould is a Red Team Operator & Penetration Tester\,
  as well as\n   an independent security researcher specializing in offensi
 ve\, cloud\,\n   application\, and container security. He has discovered o
 r\n   co-discovered multiple CVEs across containerization\, proxies\, IaC\
 n   tooling\, and programming language runtime/interpreter implementations
 .\n   His recent research focuses on AI / ML infrastructure security\, and
 \n   when not hunting for vulnerabilities\, he builds agentic AI tools for
 \n   offensive and defensive security operations.\n\n   '\n\n   1. #LVCCW_
 Level1_Hall3\n\n\n
DTEND:20260808T173000Z
DTSTART:20260808T170000Z
LOCATION:DEF CON Talks - LVCCW Level 1 Hall 3 904 (Main Track 4) and DCTV-4
SUMMARY:No Socket\, No Privs\, No Problem: Weaponizing OCI Registries for S
 SRF\, Credential Theft\, and Container Escapes
END:VEVENT
END:VCALENDAR
