Editor's Picks
Best Talks at Nullcon Goa 2025
Hand-picked from in-depth reviewer verdicts — the top 9 talks from this conference. Skip the noise, find the signal.
-
1
Draining Your Credentials From Popular MacOS Password Managers - Wojciech Regula
Wojciech Regula's Nullcon talk, "Broken Isolation: Draining Your Credentials From Popular MacOS Password Managers," delivers a critical examination of macOS security, aiming to dispel common misconceptions and expose vulnerabilities in widely used third-party applications…
0 Dr. Zero STRONG ACCEPT ★★★★☆ H Heather Calloway SOLID ★★★☆☆ -
2
Predator Malware: Trust Broken At The Core - Matthias Frielingsdorf
This talk by Matthias Frielingsdorf, VP of Research at A-Verify, delves into the sophisticated world of **commercial spyware**, specifically focusing on the evolution and technical intricacies of the **Predator malware**. Frielingsdorf highlights the critical challenge posed by…
0 Dr. Zero STRONG ACCEPT ★★★★☆ H Heather Calloway SOLID ★★★☆☆ -
3
Windows Keylogger Detection: Targeting Past & Present Keylogging Techniques- Asuka
In this insightful Nullcon talk, Asuka Nakajima, a Senior Security Research Engineer at Elastic, delves into the persistent threat of keyloggers on Windows systems. The presentation meticulously dissects both traditional and emerging keylogging techniques, offering a…
0 Dr. Zero STRONG ACCEPT ★★★★☆ H Heather Calloway SOLID ★★★☆☆ -
4
Securing the chains: Building defensive layers for software supply chains
In an era defined by interconnected software components, the security of the software supply chain has become a paramount concern for organizations worldwide. This Nullcon talk, "Securing the chains: Building defensive layers for software supply chains," delivered by Yadu…
0 Dr. Zero SOLID ★★★☆☆ H Heather Calloway SOLID ★★★☆☆ -
5
Large-Scale Exposure Of Orphaned Commits On Major Git Platforms by Kumar Ashwin
Ashwin Kumar's Nullcon talk, "Large-Scale Exposure Of Orphaned Commits On Major Git Platforms," sheds critical light on a pervasive yet often overlooked security vulnerability: the persistence of sensitive data within **dangling commits** (also known as orphaned commits) on…
0 Dr. Zero SOLID ★★★☆☆ H Heather Calloway SOLID ★★★☆☆ -
6
MLOps Under Attack: Threat Modeling Modern AI Systems - Sandeep Singh
Sandeep Singh's Nullcon talk, "MLOps Under Attack: Threat Modeling Modern AI Systems," provides a crucial examination of the often-overlooked security landscape surrounding modern Machine Learning Operations (MLOps). The presentation delves beyond the surface-level concerns of…
0 Dr. Zero SOLID ★★★☆☆ H Heather Calloway SOLID ★★★☆☆ -
7
Fueling The Future: Building Robust Engines - Daniel Cuthbert (Keynote)
In his compelling Nullcon keynote, "Fueling The Future: Building Robust Engines," Daniel Cuthbert challenges the cybersecurity industry to fundamentally rethink its approach, advocating for a shift from a reactive, bug-centric mindset to a proactive **safety engineering**…
0 Dr. Zero SOLID ★★★☆☆ H Heather Calloway SOLID ★★★☆☆ -
8
Breaking Boundaries & Demystifying Kernel SU 4 Root Access In Azure Cloud Shell
This talk, titled "Colonel Conquest," presented by Wami and Abhishek, delves into the critical security implications of containerized environments, specifically within Microsoft's Azure Cloud Shell. The speakers meticulously detail two significant kernel vulnerabilities they…
0 Dr. Zero STRONG ACCEPT ★★★★☆ H Heather Calloway WEAK ★★☆☆☆ -
9
Trapped By The CLI - William Robinet
William Robinet's Nullcon talk, "Trapped By The CLI," delves into subtle yet critical vulnerabilities within widely used cryptographic command-line interface (CLI) tools, primarily focusing on **OpenSSL**. The presentation exposes how meticulously crafted X.509 certificates and…
0 Dr. Zero STRONG ACCEPT ★★★★☆ H Heather Calloway WEAK ★★☆☆☆