BEGIN:VCALENDAR
PRODID:-//vBulletin 6//EN
VERSION:2.0
CALSCALE:GREGORIAN
BEGIN:VEVENT
UID:d3bf6564-a065-4d5f-97ed-49dbcc1ee5d8
DTSTAMP:20260616T144359Z
SUMMARY:USBvalve - Expose USB activity on the fly - Cesare Pizzi
DESCRIPTION:USBvalve - Expose USB activity on the fly\n\nSaturday August 12
 \, 10:00 – 11:55\, Unity Boardroom\, Forum\n\nCesare Pizzi\n\nUSB spread
 ing malware is still a concern today. Over the past few months\, we have w
 itnessed an increase in malicious software exploiting USB drives to bypass
  security measures\, even in air-gapped systems. Whenever we connect our U
 SB drive to an "untrusted" system\, numerous doubts arise: what happens be
 hind the scenes? Is something accessing\, modifying\, or encrypting our fi
 les? This is where USBvalve comes in. It is an affordable dongle\, built u
 sing readily available hardware\, designed to reveal the true activities o
 ccurring when a USB drive is connected to a system. It can also be used to
  check for "BADUSB" (HID) on USB keys before inserting them into our own s
 ystems. The best part is that it's as compact as a keychain\, making it co
 nvenient to carry with us at all times!\n\nCesare Pizzi is a Security Rese
 archer\, Analyst\, and Technology Enthusiast at Sorint.lab. He develops so
 ftware and hardware\, and tries to share this with the community. Mainly f
 ocused on low level programming\, he developed a lot of OpenSource softwar
 e\, sometimes hardware related and sometimes not. Doing a lot of reverse e
 ngineering too. He likes to share his job when possible (at Defcon\, Insom
 ni'hack\, Nullcon. etc). Contributor of several OS Security project (Volat
 ility\, OpenCanary\, PersistenceSniper\, Speakeasy\, CETUS\, etc) and CTF 
 player.\n\nAudience - Malware analysts\, Digital Forensic investigator\, S
 ecurity Practitioners​
URL:https://forum.defcon.org/node/246327
DTSTART:20230812T180000Z
DTEND:20230812T195501Z
LOCATION:Unity Boardroom\, Forum
END:VEVENT
END:VCALENDAR
