CENSUS participated in the "Security B-Sides 2017 Athens" conference with a presentation by Ioannis Stais on the automated discovery of expressions that bypass Web Application Firewalls and Filters, using learning automata. The presentation was entitled
"LightBulb Framework: Shedding Light on the Dark Side of WAFs and Filters" and followed Stais' and Argyros' previous research on the subject (see BlackHat Europe in 2016 presentation). The Security B-Sides presentation introduced an Extension for the Burp Suite web proxy application that allows for easier integration of the expression discovery technique to the standard toolbox of web application penetration testers.
CENSUS participated at the first BSides Athens event, with a presentation from our researcher George Chatzisofroniou entitled "Getting the most out of Evil Twin with wifiphisher". In his presentation, George showed practical examples of how the popular wifiphisher tool can be used to conduct
successful wifi phishing attacks during penetration tests. As the tool's lead developer, George also provided pointers on features that are planned to be incorporated to the tool in its next release.