Welcome to Black Hat, where the attendees are the threat
wsj.com
wsj.com
The long answer: It depends on the crime & sometimes the victim. There's a pretty good summary of all Federal Crimes (including many that can't be committed with a computer, at least not yet) starting on page 20 of this report.[2] Sometimes the statute of limitations doesn't begin to countdown until the crime is discovered or until the victim turns 18. Serious crimes, like espionage or terrorism, don't typically have any statute of limitations.
[1] [PDF] https://www.justice.gov/sites/default/files/criminal-ccips/l...
[2] [PDF] https://fas.org/sgp/crs/misc/RL31253.pdf
sickness, T-cell, white blood cell analogy
As it is, IMO this article seems like more filler, than anything else.
Where in the guidelines is that ok?
For this extension, I selected for it to only load on-demand (Setting: "This can read and change site data", Option: "When you click the extension"). Enjoy :)
Mods, please update original.
If you've never been to such a conference I guess this can tell you a few things about it. Otherwise, there's nothing of value in the article anyway.
Even this:
> Over the course of the conference, there were 84,875 “network events,” or activities suspicious enough to make the team want to take a look.
If you know about IDS and SIEM then you know that such a number is meaningless. Because if its badly configured, you are going to get a plethora of false positives. Its just meant to impress the clueless reader.
An event like this can be a goldmine for blue teaming though. The pressure, the sheer amount of data, fine-tuning your rulesets, etc. But that part the article doesn't explain. Cause it doesn't sound as sexy as some high number.
TL;DR if you haven't read the article, you're not missing out. Move along, move along.
Maybe that's more a joke than anything - but it wouldn't surprise me to find out that the Fed to Blackhat ratio wasn't something huge, and those actual BH attendees were either other researchers who go to "be cool" (or legitimately present research), or were major "n00bs" who don't understand what they are trying to get into, and will likely end up in the Feds hands in short order.
Or maybe all of them are faking it?
It just seems like - if you were a real BH worth your salt - a conference of any sort where you effectively are advertising your creds would be avoided. If you went at all, you'd want to do it under the radar. At which point you might as well go to DefCon, Hope or something.
Its an interesting scene nonetheless - which maybe is why there are any attendees at all; maybe the whole thing is just one giant form of cosplay LARP - and the people who participate are really BH's and LEO's? Like some kind of weird meta-thing going on...?
Sadly the term has stuck, and making fun of it these days has reduced to just maturity/age-signalling.