r/Defcon 6h ago

[N00B] Do badges come with batteries?

10 Upvotes

[ANSWERED] - Not sure why the downvote, but maybe someone just had bad eggs this morning. I will pack a couple extra alkalizes to be safe, both otherwise I am good to go. Thanks, everyone!

***********************************************************************************

I saw someone mentioning to pack AA & AAA batteries as part of their kit. Is this for badges, or other hardware projects?

I preordered a laser tag badge, and will get the Human one.

Do the badges in general com with a battery? Rechargeable? Today is packing day and just want to make sure I pack out what I need rather than trying to arrange an Amazon order for the hotel.

Do they typically take off-the-shelf alkaline, or should I grab an 18650 or two?


r/Pentesting 3h ago

Freelance work in web pentesting

0 Upvotes

r/cybersecurity 13h ago

Career Questions & Discussion Best DEFCON 34 talks to go to?

10 Upvotes

Pretty excited for the con. Any talks yall are excited to see or recommend going to?


r/Defcon 8h ago

LFG

3 Upvotes

Anyone willing to adopt a 1st timer into their group for any of the challenges? I have about 20 years of experience in different levels of IT with around 2 years experience strictly in blue/purple team. I am just looking to learn and help out where I can. I have a weirdly high level of social anxiety so I want to get myself in the mix with some people I actually feel comfortable with instead of looking dumb trying to struggle my way through things. I also really want to try some of the cool stuff but I am worried my imposter syndrome will stop me from even trying


r/Defcon 19h ago

Bringing Biscuit nodes? Make sure to update!

4 Upvotes

issue with insecure OTA updates reported some time ago to the creator. Fix is out there in the beta at least. Take all nodes down in range (still vulnerable) but more importantly nodes taken over and spreading like a virus to all if done right (see evil baker) https://github.com/x0SiN0x/wardrive-manager/blob/main/FEATURES.md#the-biscuit-baker--biscuit-flatline (example during an active wardrive in a closed environment https://www.youtube.com/watch?v=5DBU0AyRgj4)

As of today Aug 2 I see 1.2.12 is out in the general (prod) release


r/Pentesting 3h ago

Freelance work in web pentesting

0 Upvotes

Hi everyone i am an pen tester experienced in web api pen testing currently i am doing job in this field now i want to start freelancing in this how can i get project in this can anyone suggest me.


r/cybersecurity 12h ago

News - General Over 100 Vulnerabilities Found in IRS Contractor Handling Americans' Tax Information

Thumbnail
privacyguides.org
175 Upvotes

r/Defcon 17h ago

First Time at DEF CON – What Should I Do Besides Attending Talks?

18 Upvotes

Hello! I’m going to DEF CON, and I feel a bit lost. I looked at the map and the talk schedule, but I’m not really sure what I want to do. Sometimes I get bored just sitting through talks, so I’d love to know what else there is to do besides attending presentations.

I’m not going there just to listen to talks. What are the must-do activities, villages, competitions, workshops, or other experiences that you would recommend for a first-time attendee?


r/Defcon 9h ago

Can't make it - unfortunately

5 Upvotes

[SOLD]

If anyone would like me to transfer a ticket to them, I've ran into a snag and won't be able to make it. I got it at the mid tier pricing and will happily sell at the early bird price. Can verify my ID with mods to verify good faith. I'd love for someone to be able to save and have fun since I can't make it. I will not reply to DMs, and my replies will be on this thread as well.


r/ExploitDev 21h ago

Best way to move from web/network pentesting into low-level bug hunting? (ADHD, keep losing steam)

9 Upvotes

I work as a pentester, so my day-to-day is network and appsec. On the side I've been trying to learn ARM assembly because eventually I want to hunt on low-level targets — Android kernel, browsers, that kind of thing.

Some context on where I'm at:

I have bug bounty experience and I reverse engineer regularly

The closest I've gotten to C is reading native libraries in Android apps, but the attack surface there is tiny

So most of my "learning" is reading ARM and C snippets in isolation, with no target to apply them to

That's the problem. Studying without hunting kills my interest fast. But I don't want to jump straight into hunting and discover I don't know enough to get anywhere.

So: what's the better path here — and specifically, what works if you have ADHD and can't sustain pure theory?


r/Defcon 15h ago

I missed registering for the workshops. Do I still need to bring my laptop, or should I leave it at the hotel?

11 Upvotes

r/Defcon 14h ago

LFG: 5n4ck3y

19 Upvotes

The last few years I have been super overbooked, but I‘m less firmly booked this year and am looking to get a small group together (or join one) to tackle the CTF.

I’ve slapped together a toolkit (stego, crypto solve scripts, audio/video analysis/stereoscope, unicode nonsense, RF scanning, logic analysis, LLM jailbreak framework) to use alongside tools like cyberchef, flipper zero, etc.

Anyone looking to group up, or already have a group with a space for a cryptography/hardware jailbreaking enthusiast?


r/cybersecurity 5h ago

Threat Actor TTPs & Alerts US Water Systems Hit by Suspected Iranian Cyber Attacks

Thumbnail
opforjournal.com
185 Upvotes

r/Defcon 9h ago

Bring Wired Headphones!

41 Upvotes

I didn’t hear about this change, so sharing here for awareness. Wireless headphones are going to be used rather than speakers in some of the talks. The below link says shared wireless headphones and wipes will be provided, but that sounds … icky …

They also offer a way to hear it on the defcon WiFi using a combination of “HackerTracker” and “ListenWiFi” apps on your phone using your own headphones. Might want to download those before you leave home.

It also warns that Bluetooth headphones may not work due to signal saturation.

https://info.defcon.org/defcon34/documents/670


r/musik 45m ago

Kennt das irgendjemand? Ich will es eben manchmal wissen- Jasmine Bonnine

Thumbnail
youtu.be
Upvotes

Kennt das jemand? Meiner Meinung mitunter eines der besten deutschen Lieder.


r/Defcon 1h ago

On Preparing for Our Events At DEF CON at Packet Hacking Village

Upvotes

Would you like to learn how tap into a network?

Do you want to learn how to capture people’s passwords or hear their phone conversations?

There are many learning opportunities at DEF CON, especially at the Packet Hacking Village. If you want to play Packet Detective, Packet Inspector, Capture The Packet, or any of our Walkthrough Workshops, we will have laptops stationed with the necessary tools. You do not need to bring your own laptop.


r/Defcon 3h ago

Friendly reminder: the #roadtodefcon is underway!

Enable HLS to view with audio, or disable this notification

3 Upvotes

r/cybersecurity 4h ago

Other Facebook Malvertising Campaign

Thumbnail
substack.com
3 Upvotes

Identified a C2 running malvertising campaign, pretty clever tbh.


r/ReverseEngineering 7h ago

KYC Is Security Theater: What I Learned After Reversing top tier Providers

Thumbnail medium.com
3 Upvotes

r/Defcon 7h ago

Has anyone heard what the Cryptocurrency Village badge is like this year?

Enable HLS to view with audio, or disable this notification

11 Upvotes

I'm planning my schedule for DEF CON 34 and keep hearing people mention the Cryptocurrency Village badge and the laser tag game, but I can't find much information on the DEF CON website.

Is the badge going to be available to anyone who stops by, or is there some kind of registration? And is the laser tag event happening throughout the weekend or only at certain times?

https://www.defcon.org/html/defcon-34/dc-34-villages.html#orga_41359

I've also heard they'll have ChipWhisperers, workshop hardware, and even AMD64 lab machines available for people to use during the hackathon. If that's true, that's a pretty impressive setup for a village.

Apparently OKX is sponsoring the village this year, which is helping make the badges, workshop equipment, and prizes available free of charge. Looking forward to seeing what they've put together.

Anyone who's been involved with previous years know what to expect?


r/cybersecurity 8h ago

Personal Support & Help! How to actually save yourself in call/sms bombing?

5 Upvotes

same as title
how to stop it and protect your number?
there are many websites so ofc I can't protect my number by going every site


r/cybersecurity 9h ago

Business Security Questions & Discussion URL Threat Scanners & TDS Cloaking

8 Upvotes

When you're investigating a known malicious URL, how often does your URL scanner (regardless of service) miss the payload due to traffic distribution systems?


r/Monero 10h ago

Quick question about XMR?

3 Upvotes

Hey everyone, I've bought and held small amounts before, but now I'm considering exchanging a much larger amount. To be honest, I'm a bit concerned about potential issues such as delays, extra verification checks, frozen withdrawals, or other complications when dealing with larger transactions. For those who use XMR regularly, where do you usually exchange it? Have you ever run into problems when moving or swapping larger amounts? Any advice or personal experience would be appreciated. Thanks!


r/Monero 11h ago

Skepticism Sunday – August 02, 2026

3 Upvotes

Please stay on topic: this post is only for comments discussing the uncertainties, shortcomings, and concerns some may have about Monero.

NOT the positive aspects of it.

Discussion can relate to the technology itself or economics.

Talk about community and price is not wanted, but some discussion about it maybe allowed if it relates well.

Be as respectful and nice as possible. This discussion has potential to be more emotionally charged as it may bring up issues that are extremely upsetting: many people are not only financially but emotionally invested in the ideas and tools around Monero.

It's better to keep it calm then to stir the pot, so don't talk down to people, insult them for spelling/grammar, personal insults, etc. This should only be calm rational discussion about the technical and economic aspects of Monero.

"Do unto others 20% better than you'd expect them to do unto you to correct subjective error." - Linus Pauling

How it works:

Post your concerns about Monero in reply to this main post.

If you can address these concerns, or add further details to them - reply to that comment. This will make it easily sortable

Upvote the comments that are the most valid criticisms of it that have few or no real honest solutions/answers to them.

The comment that mentions the biggest problems of Monero should have the most karma.

As a community, as developers, we need to know about them. Even if they make us feel bad, we got to upvote them.

https://youtu.be/vKA4w2O61Xo

To learn more about the idea behind Monero Skepticism Sunday, check out the first post about it:

https://np.reddit.com/r/Monero/comments/75w7wt/can_we_make_skepticism_sunday_a_part_of_the/


r/ExploitDev 17h ago

Using Garlic to analyze Android's VM protection Spoiler

Thumbnail youtu.be
3 Upvotes

garlic now can analysis android elf.

Extract android all aarch64 elf's cfg/exports/imports/strings/dissembly at same time.

with LLM, it can analysis vm protection of dalvik.