PLAY PODCASTS
Chaos Computer Club - archive feed

Chaos Computer Club - archive feed

21,276 episodes — Page 154 of 426

Nørrebro.space: a hyper-local mastodon instance (bornhack2022)

Nørrebro.space is a fun-sized Mastodon (decentralized social media) instance. I tell the story of how and why I decided to start a Mastodon instance, my experiences running the place, and how the Mastodon scene has grown over the past couplle of years. about this event: https://c3voc.de

Aug 7, 20225 min

Nørrebro.space: a hyper-local mastodon instance (bornhack2022)

Aug 7, 20225 min

FE/NSA: Skal vi fortsat have kabelsamarbejde med USA? (bornhack2022)

Aug 6, 202255 min

FE/NSA: Skal vi fortsat have kabelsamarbejde med USA? (bornhack2022)

This event is a Panel Discussion in Danish. Danmark har angiveligt haft et meget direkte samarbejde mellem FE og NSA, fremover kaldet FENSA, omkring aflytning af datakabler i Danmark, efter aftale med daværende Statsminister Poul Nyrup Rasmusssen. En tidligere forsvarsminister har bekræftet og er nu anklaget for at have røbet statshemmeligheder og tidligere chef for FE; Lars Findsen anklages for det samme. Men hvad var det egentlig, der fik sendt cheferne for PET og FE hjem? Og skal vi virkelig dele vores rå data med USA? Og hvorfor taler vi ikke mere om den del af sagen? Det vil vi gerne diskutere med Bo Elkjær, journalist, Poul-Henning Kamp, debatør, Peter Kofod, aktivist og Peter Christian Bech-Nielsen, chefredaktør. Debatten modereres af Anders Kjærulff. about this event: https://c3voc.de

Aug 6, 202255 min

The NSA-files: How two danish journalists opened up Echelon (bornhack2022)

Aug 6, 202251 min

The NSA-files: How two danish journalists opened up Echelon (bornhack2022)

Global interception is not only aimed at terrorists and dictators. It is targeting everyone. Since World War II, the technology to carry out mass interception and surveillance has grown steadily. In the late 90s, it came into global focus with the revelations of the UKUSA collaboration and the Echelon scandal. Journalists uncovered the stories based on open and closed sources and on a number of whistleblowers - several years before Edward Snowden stepped forward. about this event: https://c3voc.de

Aug 6, 202251 min

Techgiganters datacentre i Danmark - Godt eller skidt for det digitale Danmark? (bornhack2022)

This event is a Panel Discussion in Danish. Der er ved at blive etableret flere datacentre i Denmark af techgiganter, men hvilker fordele og ulemper ser vi for Danmark i den forbindelse? Det vil vi gerne diskutere med Lisbeth Bech-Nielsen, politiker, Poul-Henning Kamp, debatør, Peter Kofod, aktivist, Henning Mortensen, formand for Rådet for Digital Sikkerhed og Peter Christian Bech-Nielsen, chefredaktør. Ole Kjeldsen, teknologi- og sikkerhedsdirektør hos Microsoft Danmark har desværre meldt afbud, men Tobias Fonsmark har meldt sin ankomst. Debatten modereres af Anders Kjærulff. about this event: https://c3voc.de

Aug 6, 202253 min

Techgiganters datacentre i Danmark - Godt eller skidt for det digitale Danmark? (bornhack2022)

Aug 6, 202253 min

Tvangsdigitalisering i velfærdsDanmark og cloud (bornhack2022)

Aug 6, 202225 min

Tvangsdigitalisering i velfærdsDanmark og cloud (bornhack2022)

Presentation in Danish from the Danish MP Lisbeth Bech-Nielsen about this event: https://c3voc.de

Aug 6, 202225 min

Introduktion til privacy, GDPR og tredjelandsoverførsler (bornhack2022)

Aug 6, 20221h 7m

Introduktion til privacy, GDPR og tredjelandsoverførsler (bornhack2022)

This talk is in Danish. I dette oplæg får du en introduktion til, hvorfor det er vigtigt at beskytte privatlivets fred. Desuden får du en oversigt over reglerne i databeskyttelsesforordningen, som skal efterleves i digitale projekter. Endelig gennemgås de aktuelle problemer med tredjelandsoverførsler, som vanskeliggør rigtig mange digitale løsninger. Indlægget er på dansk. about this event: https://c3voc.de

Aug 6, 20221h 7m

Surveillance Too Cheap To Meter (bornhack2022)

Aug 5, 202241 min

Surveillance Too Cheap To Meter (bornhack2022)

We used to wear fun T-shirts which showed OSI with 9 layers, the usual seven plus two extra: "Financial" and "Political". What if the joke is on us, and the T-shirt were correct? about this event: https://c3voc.de

Aug 5, 202241 min

Brug GDPR til at tvinge firmaer til at respektere dit privatliv (bornhack2022)

Aug 5, 202248 min

Brug GDPR til at tvinge firmaer til at respektere dit privatliv (bornhack2022)

Ole Tange har startet en krig mod sin fjernaflæste elmåler. I dette oplæg går vi dybere ned i sagen - både teknisk og juridisk. Sagen handler om fjernaflæste elmålere, men perspektiverne er langt større: Hvis vi kan bruge GDPR til at tvinge firmater til at respektere vores privatliv - selv det koster dem penge, så er der mange andre situationer, hvor det er relevant. Datatilsynet har endnu ikke afgjort sagen, så vi ved ikke, hvor vi står. about this event: https://c3voc.de

Aug 5, 202248 min

#Testless Software Quality (bornhack2022)

Aug 4, 202248 min

#Testless Software Quality (bornhack2022)

Bad software is everywhere. We have all experienced programs crashing, hanging, or doing the wrong thing. Software has become so unreliable that we almost expect it to fail. But it doesn't have to be this way. There are simple principles that we can follow in our code to eliminate virtually all bugs. Leading to happier users and easier maintenance. In this talk, I present six principles that in object-oriented codebases lead to bug-free code, even without testing. about this event: https://c3voc.de

Aug 4, 202248 min

Performant cross-platform development using Flutter (bornhack2022)

Aug 4, 202244 min

Performant cross-platform development using Flutter (bornhack2022)

Flutter is a software development kit based on the Dart language enabling developers to create performant cross-platform applications. We'll have an introduction for people with some basic knowledge of Flutter or other cross-platform toolkits and later on a view on advanced topics. In this talk, we will have a look on performance-tuning, useful features as well as some background information on the Flutter framework, it's engine and the Dart runtime. In particular, the following topics will be addressed: - What's this fluttery Flutter? - Animations - example of animations - performance-tuning - UX patterns in Flutter - responsive layouts - routing - hight-quality Widgets - the Flutter Framework - under the hood of Flutter's rendering - Flutter Web, dart2js and what Flutter has (not) to do with JavaScript about this event: https://c3voc.de

Aug 4, 202244 min

Danger: Client-Side Scanning (bornhack2022)

European governments are proposing vague legislation that would likely require that messages be scanned for objectionable content before the message is sent (client-side scanning). This is bad. The legislation has been promoted under names like "fighting child sexual abuse", by lobbyists promoting a proprietary screening service. We don't have good reason to think such scanning would in fact prevent child sexual abuse. Moreover, to scan messages this way would in practice require that we forego end-to-end encryption. Client-side scanning would be terrible for information security, data protection, privacy, freedom, &c. It happens only I am presenting, but the idea for this talk came from discussions at Cryptohagen. about this event: https://c3voc.de

Aug 4, 202238 min

Danger: Client-Side Scanning (bornhack2022)

Aug 4, 202238 min

This years badge (bornhack2022)

In this presentation, we will take a look at this years badge and give some hints and ideas as to how it can be hacked about this event: https://c3voc.de

Aug 4, 202218 min

This years badge (bornhack2022)

Aug 4, 202218 min

Hello World! (bornhack2022)

Aug 3, 202248 min

Hello World! (bornhack2022)

The BornHack 2022 team would like to welcome you to this year's BornHack event. We will walk over changes to the venue, schedule, and other information about the event itself. This is also an excellent opportunity to meet the teams behind BornHack. about this event: https://c3voc.de

Aug 3, 202248 min

Einfache Projekte mit Tinkercad und Thingiverse (petitfoo)

Jul 27, 202219 min

Einfache Projekte mit Tinkercad und Thingiverse (petitfoo)

3D Modellierung ist zu aufwändig? Und auf Thingiverse nichts passendes gefunden? In diesem Petit Foo zeige ich anhand eines Beispieles wie man einfach und schnell 3D Projekte umsetzt indem man Modelle von Thingiverse remixt und daraus eine passende Lösung kreiert. about this event: https://www.chaospott.de

Jul 27, 202219 min

⚠️ May Contain Hackers 2022 Closing (MCH2022)

Jul 26, 202217 min

⚠️ May Contain Hackers 2022 Closing (MCH2022)

It's over before you know it... this talk looks back at the event, explains how the tear-down works, highlights next years camps and gives a tanks to all the organizers on stage. What more can i say? Except that i need to enter at least 250 characters. I'll just blabber on and fill up th 🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈🌈 about this event: https://program.mch2022.org/mch2022/talk/DZAUQA/

Jul 26, 202217 min

Infrastructure review (MCH2022)

Jul 26, 202258 min

Infrastructure review (MCH2022)

The traditional talk by most or all operational teams about the infrastructure built for MCH2022. While the site has some infrastructure in place, a lot of it has to be built for this event. On the other hand there's also teams that just make things go away. MCH2022 can not be organised without a lot of temporary infrastructure. Join the operational teams and discover the new, the unexpected or the surprising technologies that were necessary to make MCH2022 a success. Expect graphs, pictures of bodges, perhaps a few hacks but definitely a lot of hard work behind the scenes. Think fiber, LEDs, DatenKlos, trusses, waste bags, Terabytes, angels, vouchers, simultaneous viewers, amps, volts, golf carts etc. Please smile (or laugh) at our bad jokes, we're all running on fumes and in desperate need of a proper sleep. about this event: https://program.mch2022.org/mch2022/talk/ZLALJT/

Jul 26, 202258 min

The MCH2022 Design (MCH2022)

Jul 26, 202218 min

The MCH2022 Design (MCH2022)

The MCH2022 design speaks for itself, but we would still nerd about it for a while. It is beautiful, colorful, generative, and has some physics ideas behind it. Some of it is obvious, but if you want to know all the hidden depths, this is the talk to visit. The triangulair MCH2022 design is a colourfull generative kaleidoscope with some hidden depths. In that way it reflects the hacker community. It is in some ways a spiritual successor to the SHA2017 design, but it has its own look and feel. You can find it all around the field, on prints and stickers, on the website and on the event shirts. Do you want to know the nitty gritty details of the optical physics, the generative basis and symmetric math ideas behind it? Some of it is obvious, but we would like to talk about it, and go deeper in on the concepts. about this event: https://program.mch2022.org/mch2022/talk/KBP937/

Jul 26, 202218 min

No Permissions Needed! (MCH2022)

Jul 26, 202230 min

Cryptography is easy, but no magic. Use it. Wisely. (MCH2022)

Jul 26, 202228 min

No Permissions Needed! (MCH2022)

Data keeps flowing! In Android, we have the concept of permissions, users feel confident that only if they turn on the permission, their data is shared. But what about an app silently sitting on your device with no permission whatsoever! What can that app know about you? In this talk, I'll talk about the Privacy Posture of Android! What kind of data is being collected, and how is it channelled and used? How does advertising work on mobile? Can your device be fingerprinted? What kind of privacy threats exists on Android? We will learn about the permission model of Android and how permissions operate at the kernel level! This shall be followed by a demo of an Android app, which needs no permission from the user. We will see what all information can be retrieved from your device, without any permission! about this event: https://program.mch2022.org/mch2022/talk/DWWQAN/

Jul 26, 202230 min

Cryptography is easy, but no magic. Use it. Wisely. (MCH2022)

Using cryptography can give you easy assurances, keep data confidential and keep prying eyes from stuff where they should not be. However it's not magic. This talk is intended for programmers, users and software designers. This talk is about hardcore mathematics while you should not have to understand what the mathematics are but what they do. What does cryptography do: encrypt, decrypt, sign and verify. How are certificates used in cryptogaphy and why are they totally not a magical thing. It covers what cool hardware is available, open design and open source, hardware tokens and how to use TPM for cool features. And last but not least: it contains best practices and warnings. After this talk you might be able to see what's snakeoil and what is real. == NFT's are a scam. If you are into crypto-bullshit please stay away. == Cryptography seems like magic anytime you at first look at it. In the past years I have been helping a lot of projects and customers with my more-than-basic knowledge about applied cryptography. I'll talk about: * What is cryptography (basic math) - encryption - decryption - digital signatures - digital signature verification * What can it do for you? - Deliver security - Deliver privacy - Deliver dataloss * When to use encryption - what cryptography do you want to build (hint: none) - what cryptography do you want to use (a- or symetrical encryption). - how do you do key management - where to find the best practices * About hardware - Provide security - Provide speed - HSM, TPM, processor and other acceleration * Standards - The good, the bad, the ugly - Old ones - New ones - Very special ones * Limitations and workarounds * Software - How to avoid OpenSSL * This all in random() order. Random = 4 about this event: https://program.mch2022.org/mch2022/talk/S7GEZF/

Jul 26, 202228 min

Badge talk (MCH2022)

A high bar set by earlier creations, a pandemic, a postponed event and chip shortages made for a great challenge and a wild adventure creating the MCH2022 badge. This talk explains how we pulled off our most advanced creation yet. We will tell you about the process of converting a vague idea into a piece of electronics, including the prototyping process and the difficulties we encountered. Bodging badges in a time where the pandemic and the chip shortage makes creating a cool gadget near impossible. This talk explains how we pulled off our most advanced creation yet (or not, depending on how things go...). We will tell you about the process of converting a vague idea into a piece of electronics, including the prototyping process and the difficulties we encountered. about this event: https://program.mch2022.org/mch2022/talk/HVGFKB/

Jul 26, 202244 min

How do GPS/Galileo really work & how the galmon.eu monitors all navigation satellites (MCH2022)

The whole world depends on Global Navigation Satellite Systems like GPS, Galileo, BeiDou and GLONASS. The technology behind these systems is fascinating and far more interested than generally presented. Although GNSS is super important, up to recently no good monitoring was publicly available. The "galmon.eu" project changed this. In this talk I cover: * How your phone really figures out where it is (so it can sell more expensive ads) * How the "satellite ephemeris" is broadcast, what it means * What is really in this 'assisted GPS'? * The extensive ground infrastructure that is active 24/7 to determine the satellite orbits so GNSS is precise enough to tell which store you are in, or which side of the road you are driving on * How GNSS are monitored in public by 100 Galmon.eu volunteers, running open source receivers all over the world * And the research we enable * Discussion of suitable hardware and GNSS-SDR that allows hackers to see each and every bit coming from the satellites * A brief part on how GNSS can be spoofed and jammed, and the odd cryptography used to help detect or prevent this The goal of this presentation is to expose the fascinating reality behind that little circle on your maps app, but also to explain how vulnerable this system is, which is why we need to monitor it closely. The whole world depends on Global Navigation Satellite Systems like GPS, Galileo, BeiDou and GLONASS. The technology behind these systems is fascinating and far more interested than generally presented. Although GNSS is super important, up to recently no good monitoring was publicly available. The "galmon.eu" project changed this. In this talk I cover: * How your phone really figures out where it is (so it can sell more expensive ads) * How the "satellite ephemeris" is broadcast, what it means * What is really in this 'assisted GPS'? * The extensive ground infrastructure that is active 24/7 to determine the satellite orbits so GNSS is precise enough to tell which store you are in, or which side of the road you are driving on * How GNSS are monitored in public by 100 Galmon.eu volunteers, running open source receivers all over the world * And the research we enable * Discussion of suitable hardware and GNSS-SDR that allows hackers to see each and every bit coming from the satellites * A brief part on how GNSS can be spoofed and jammed, and the odd cryptography used to help detect or prevent this The goal of this presentation is to expose the fascinating reality behind that little circle on your maps app, but also to explain how vulnerable this system is, which is why we need to monitor it closely. about this event: https://program.mch2022.org/mch2022/talk/QTUAXG/

Jul 26, 202249 min

Badge talk (MCH2022)

Jul 26, 202244 min

Lightning Talks Tuesday (MCH2022)

Jul 26, 202253 min

How do GPS/Galileo really work & how the galmon.eu monitors all navigation satellites (MCH2022)

Jul 26, 202249 min

Lightning Talks Tuesday (MCH2022)

Lightning talks are a 5 to 10 minute quick talk on an interesting subject. They can be with or without slides, and with or without proper preparation. if you weren't accepted in the main CfP, this is also a great opportunity to give an abridged version of your talk. These sessions will be available to sign up to later on, with details on the wiki: https://wiki.mch2022.org/Static:Lightning_Talks Lightning talks are a 5 to 10 minute quick talk on an interesting subject. They can be with or without slides, and with or without proper preparation. if you weren't accepted in the main CfP, this is also a great opportunity to give an abridged version of your talk. These sessions will be available to sign up to later on, with details on the wiki.Lightning talks are a 5 to 10 minute quick talk on an interesting subject. They can be with or without slides, and with or without proper preparation. if you weren't accepted in the main CfP, this is also a great opportunity to give an abridged version of your talk. These sessions will be available to sign up to later on, with details on the wiki: https://wiki.mch2022.org/Static:Lightning_Talks about this event: https://program.mch2022.org/mch2022/talk/78PVXQ/

Jul 26, 202253 min

Guardians of the Dutch healthcare (MCH2022)

Jul 26, 202226 min

Guardians of the Dutch healthcare (MCH2022)

In 2017 (just before SHA2017) the Dutch healthcare sector came together to create Stichting Z-CERT, the Zorg Computer Emergency Response Team. A nonprofit to protect and advise the Dutch Healthcare sector. What started as a small startup has now grown into a scaleup with the ambitions to match. The COVID-19 pandemic restarted the discussion about whether or not healthcare is vital infrastructure. With NIS2 the role and importance of Z-CERT will only grow from here on. This talk is not to intended to be a corporate “Look how great we are and what kind of sexy products we have. BUY OUR STUFF.” No, we want to simply show what we do and what we learned in 5 years of being a CERT. This might help our (future) fellow CERT’s and the community. This talk is not to intended to be a corporate “Look how great we are and what kind of sexy products we have. BUY OUR STUFF.” No, we want to simply show what we do and what we learned in 5 years of being a CERT. These lessons include: - how to startup a sectoral CERT - How to build a community of members of your constituency - Connecting with fellow CERT organizations - Tools of the trade This might help our (future) fellow CERT’s and the community. about this event: https://program.mch2022.org/mch2022/talk/RHXDFR/

Jul 26, 202226 min

SSH Configuration, Intermediate Level (MCH2022)

So, you know how to "use" the ssh command line? You enter connection parameters like username, hostname or private key every time you need to connect? You manually log into the jump/bastion host when connecting to your target host? Then come to this session and learn how you can make your life easier and your work more efficient by using custom config files and a tiny little bit of preparation. So, you know how to "use" the ssh command line? You enter connection parameters like username, hostname or private key every time you need to connect? You manually log into the jump/bastion host when connecting to your target host? Then come to this session and learn how you can make your life easier and your work more efficient by using custom config files and a tiny little bit of preparation. In addition, we will also cover common best practices and improvements to your current SSH setup. You will benefit the most from this talk, if you have used SSH before. SSH novices are welcome as well, SSH experts may drop by for the bad jokes. The target audience for this talk is people with a beginner/intermediate understanding of SSH. about this event: https://program.mch2022.org/mch2022/talk/KHWLR9/

Jul 26, 202248 min

Computing within Limits (MCH2022)

Jul 26, 202243 min

SSH Configuration, Intermediate Level (MCH2022)

Jul 26, 202248 min

What to do when someone close to you takes their life and you are not Tech-Savvy (MCH2022)

Jul 26, 202233 min