Events > Event Details


SyScan Seattle 2017

You might be surprised to find that there are actually more than 25 subtitle formats out there, most of which support exotic features such as HTML tags, raw images or even freeform binary (What?). Moreover, there is usually no standard library designed to parse subtitles, which leaves this task to be independently implemented by the various media players. What can go wrong? Well, basically - everything. We will pioneer the uncharted subtitles attack vector and demonstrate its disastrous potential, and unravel the numerous vulnerabilities we found involving subtitles. There will be unsanitized JavaScript running on native web applications; files being manipulated; heaps being corrupted; and full RCE on the most common streaming platforms including VLC, Kodi (XBMC) and PopcornTime.

Key Information

Tuesday, May 30, 2017
Event Duration: 2 Days
Seattle, WA United States
Cost: 800 USD - 1200 USD

SyScan Seattle 2017 | Conference

Tuesday, May 30, 2017

Seattle, WA, United States