Snakeoil AcademySpeak at PyCon AU 2021

Operation Luigi: How I hacked my friend without her noticing

Alex

they/them

“Alex” (@mangopdf) does Red Teaming, recently completed Operation ACTUAL CRIMES, and can’t wait until they’re inevitably struck down by their own hubris.

They’re known for hacking a friend (with consent!) in Operation Luigi, being an organiser for purplecon.nz (a defensive, inclusive, pastel-purple security conference) and for writing dumb blog posts on mango.pdf.zone. They’re also known for exposing a privacy flaw in Tinder, and showing it was possible to make graphs of when your Facebook friends are awake.

At PyCon AU, they’ll be wearing their Sunday best emotionally, and hence or otherwise tryign their bset.

Operation Luigi: How I hacked my friend without her noticing

Yep so I asked my friend if I could hack her and she said yes. This is about what worked, what went wrong, all the flubs I made, the critical business services of LinkedIn, and how to not suffer the same fate as her. Also Mario’s green brother is there, and then that part takes a sinister turn.

Come along and learn about what it takes to hack a Regular User these days, how to protect your users, and how to protect yourself.

Conference schedule listing