by kriggins on February 5, 2010
I meant to mention this again earlier this week, but forgot to. ShmooCon will be live streaming the entire event this year. The conference starts today at 3:00 EDT.
If you are not familiar with ShmooCon, here is a tidbit from the conference website:
Different • ShmooCon is an annual East coast hacker convention hell-bent on offering three days of an interesting atmosphere for demonstrating technology exploitation, inventive software & hardware solutions, and open discussions of critical infosec issues. The first day is a single track of speed talks, One Track Mind. The next two days, there are three tracks: Break It!, Build It!, and Bring It On!.
Affordable • ShmooCon is about high-quality without the high price. Space is limited! ShmooCon has sold out every year, so unless taking a chance on an eBay auction to get your ticket sounds like fun, register early!
Accessible • ShmooCon is in Washington, D.C., at the Marriott Wardman Park Hotel, just a few steps from the D.C. Metro. Fly into DCA, IAD, or BWI, or take a train to Union Station, and you are just a quick cab ride away from the con
Entertaining • Brain melting from all the cool tech you are learning? Check out some of the contests running at ShmooCon, including the Hacker Arcade and Hack-Or-Halo. In years past, we have also thrown massive parties at a local area hot-spot, so expect that to happen again too!
Here are the links to the different streams. The source page is here.
Friday Feb 5th, 2010
One Track Mind
Saturday Feb 6th, 2010
Build It
Break It
Bring It On
Sunday Feb 7th, 2010
Build It
Break It
Bring It On
I’ll be watching as much as I can. You should too!
-Kevin
by kriggins on February 4, 2010
by kriggins on February 3, 2010
by kriggins on February 2, 2010
DOWNLOAD ISSUE 24 HERE (February 2010)
- Writing a secure SOAP client with PHP: Field report from a real-world project
- How virtualized browsing shields against web-based attacks
- Review: 1Password 3
- Preparing a strategy for application vulnerability detection
- Threats 2.0: A glimpse into the near future
- Preventing malicious documents from compromising Windows machines
- Balancing productivity and security in a mixed environment
- AES and 3DES comparison analysis
- OSSEC: An introduction to open source log and event management
- Secure and differentiated access in enterprise wireless networks
- AND MORE!
by kriggins on February 1, 2010
I am installing a new theme over the next few days so I expect some hicups and snags around here. I apologize for any issues you may have, but things should be back to normal in a couple days.
-Kevin
by kriggins on February 1, 2010
I have submitted a topic for consideration for Security BSides San Francisco 2010 which happens concurrently with RSA.
For those not familiar with Security BSides, the following is from the website:
What is BSides?
BSides is an ad-hoc gathering of information security types born from the desire for people to share and learn in an open environment. It is an intense event with discussions, demos and interaction from participants. It is entirely community driven. It is where conversations for the next-big-thing may be happening. We’ve followed the BarCamp format… because it works.
My topic:
- Title: Discussion: What Makes a Good Risk Management Practice?
- Abstract: All of our organizations have to manage risk, specifically information security risk. What does it mean to do that well? What are the moving parts that make up a good risk management practice? This discussion/panel/talk will not focus on assessment methodologies or frameworks. It will also not focus on the “information security program.” We will spend some time focusing on the other moving parts of a risk management practice. Engagement with our business partners, how we bring it all together, how we can manage the inputs and outputs of the risk management process, etc. It will be an opportunity for those interested to share and learn from each other.
This topic is modeled after the RSA Peer-2-Peer sessions in that it is not a presentation. I anticipate a discussion where we can all contribute to the conversation and try to define what we it means to build a good risk management practice in our organizations.
Please vote for my topic by tweeting the following if this sounds like a conversation you’d like to be a part of:
@SecurityBSides I vote for “What Makes a Good Risk Management Practice?” by @kriggins #BSidesSF http://bit.ly/BSidesSFtalks
-Kevin
by kriggins on February 1, 2010
by kriggins on January 28, 2010
by kriggins on January 27, 2010
by kriggins on January 26, 2010