Conference recordings from RVAsec 15 are now online!

Conference recordings from RVAsec 15 are now online!
We've highlighted a few talks worth checking out:
Hacking Customized IDE Distributions: Methodology Behind Six Figures in Bug Bounties. The speaker explains techniques for discovering vulnerabilities in customized IDE builds, threat modeling, and building exploitation chains developed during successful bug bounty research.
Breaking Tokens: Modern Attacks on OAuth, OIDC, and JWT Auth Flows. The talk covers modern attacks on OAuth, OIDC, and JWT, including token reuse, session fixation, and privilege escalation resulting from flawed authentication implementations.
I Called Your AI Agent and It Told Me Everything: Live Voice AI Red Teaming. The presenters demonstrate attacks against voice AI agents, including speech recognition manipulation, DTMF injection, audio prompt injection, and social engineering scenarios.
Beyond the Tip of the Iceberg: Undercover HUMINT Operations Inside the Ransomware Ecosystem. The speaker explores the underground market for corporate access, its role in ransomware campaigns, and how compromised infrastructure is traded shortly after new vulnerabilities are disclosed.
Vendors
Rvasec
Youtube
Products
Ide
Jwt
Oauth
Oidc
Rvasec 15
Youtube