Skip to content

Details

This is SecTalks first joint live event! We are thrilled to have 'codingo' presenting here in Melbourne, which will be live streamed to Adelaide, Sydney and Perth SecTalks. There will be limited capacity for this event, but there will be public live steam link to participate remotely.

  • Title -
    The Changing Landscape of Web Tooling: Open Source products, Tools and Techniques from 2019, and a crystal ball into 2020.

  • Description -
    The sheer quality of open source tools has changed dramatically over this year. With new offerings and significant improvements in fuzzing, directory brute-forcing and subdomain discovery being so significant, the previous approaches documented heavily in courses, guides and discussed by others are in many cases no longer as relevant as they once were. We’ve also seen the rise in newer points of enumeration (such as build logs) and tools surrounding this ranging from discovery to API key verification. Additionally, previous attacks that were difficult to perform given a lack of tooling are now accessible to the masses given new tools and automation surrounding them. It’s important that both offensive and defensive security professionals are aware of these advancements so they can improve their workflows or detection methods.

  • Speaker -
    Michael (also known as codingo) is the current Head of Researcher Enablement at Bugcrowd and is heavily active in the open source space as https://github.com/codingo. Michael has written and maintains a number of tools, focused on web application security including but not limited to Reconnoitre, NoSQLMap, VHostScan, and Interlace. Michael also helps to maintain a number of online resources of interest to defensive teams including tools and datasets for the mitigation of ransomware, crypto jacking, key verification, and fingerprinting of services that are vulnerable to subdomain takeovers.

  • Bug Bounty Event -
    We're working with Bugcrowd and a well-known Australian brand, to bring you a live Bug Bounty session. Please bring your own internet access and tools. More details to follow.

  • After-Drinks -
    Post-meetup drinks are now held at HOPSCOTCH (Just outside SecTalks, 4 Riverside Quay, Southbank VIC 3006).

  • Sponsors -
    Thanks to PwC (https://pwc.com.au) for venue and catering and Privasec Red (https://privasec.com.au/services/red-team-attacks) for the prizes, infrastructure costs and bar tab!

We are always looking for new sponsors to cover some of our initiatives and keep events free while having great prizes. If you'd like to help sponsor an event or in general, please get in touch at melbourne@sectalks.org

Related topics

You may also like