Presentations today:

  • Analysis of PE executable files: a tool written in Java to get the content of headers
  • Man in the Browser: (my presentation) looking at Microsoft Detours targeting data before it is protected by SSL/TLS
  • Microsoft Security Development Life-cycle (SDL): Using spiral model, finding vulnerabilities at an early stage to reduce cost...
  • Build system for C, C++ and not Java: Using bash scripts in Linux to get source from a depository, do static analysis, compile and send back the result.
  • Test automation (recording): Not really sure..