Commentary
Black Hat Disputes Charles Edge Talk Even Submitted
Last week we covered two incidents surrounding Apple's (non) participation at this year's Black Hat conference. Apparently, the first was a potential talk pulled for consideration because Apple just doesn't like its engineers explaining anything about how they handle software security. The other, Black Hat contends, was never even submitted.Last week we covered two incidents surrounding Apple's (non) participation at this year's Black Hat conference. Apparently, the first was a potential talk pulled for consideration because Apple just doesn't like its engineers explaining anything about how they handle software security. The other, Black Hat contends, was never even submitted.I'm talking about the talk Apple software expert and security researcher Charles Edge wanted to present about a potential weakness in Apple's FileVault disk encryption. While Edge told Washington Post reporter Brian Krebs that he submitted the proposal for his talk several months ago, then withdrew the proposed talk a couple of weeks thereafter, Black Hat conference officials say they have no record of Edge's FileVault talk ever being submitted, let alone withdrawn.
Here is how Edge responded to News.com:
More Security Insights
White Papers
- Mobile BI: Actionable Intelligence for the Agile Enterprise
- How To Regain IT Control In An Increasingly Mobile World - by BlackBerry
Reports
More >>Webcasts
- Outsourcing Security: What Every Potential Cloud Security Customer Should Know
- Maximize ROI with Database Consolidation onto Private Clouds
I submitted the talk, and later sent a second submission using the same system to then ask to be removed from consideration. As an alumni speaker, I know from experience that the entire Black Hat organization is run extremely well. Why they cannot find me in their system, I cannot speak to.When this story first came to light, it was The Washington Post who contacted me, asking why the talk had been removed from consideration -- and not I who contacted them. I had not, in fact, discussed the talk with anyone between the time that I rescinded the talk and the time I received the call from The Washington Post, and ... their source (remains unclear).
This morning in a discussion, Krebs confirmed what Edge is saying. And as to whether or not the talk was submitted, that seems to be an unprovable he said/she said situation. My take: It's a misunderstanding. But what I'd really like to know more about is how critical this FileVault vulnerability really is.
Related Reading
| To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy. | |
|
|
T-Shirt Giveaway: Each week we're selecting one great comment from our readers. The author of the comment will receive an InformaitonWeek Community t-shirt. So get posting! |
Subscribe to RSSResource Links
This Week's Issue
Technology Whitepapers
- Creating the Enterprise-Class Tablet Environment - by Yankee Group
- How To Regain IT Control In An Increasingly Mobile World - by BlackBerry
- The BlackBerry PlayBook tablet's Good Bones - by BlackBerry
- Red Alert: Why Tablet Security Matters - by BlackBerry
- New Visual and Wizard-Driven Paradigms for Exploring Data and Developing Analytic Workflows
Featured Resource
This is your portal to all the news, product information, technical data, and other information related to the topic of computer user authentication and certification. Visit us to find out how to ensure that computer users are who they say they are.
Learn More












