Linux Investigations & Hacking the CI/CD pipeline
Details
Hey hackers! Who is excited for the next DEFCON Toronto Meetup? The group for hackers, cyber security professionals, and enthusiasts. We are excited to have you all join us for our February meetup at Pivotal Labs where we will have some great in depth technical talks for you!
Food & soft drinks sponsored by Mandiant, a FireEye Company.
Talk #1
Speaker: Julian Pileggi
Topic: Introduction to Linux Investigations
Synopsis: This talk is geared towards an analyst who may need to investigate an intrusion into their systems from an external threat actor. This talk will cover some of the basics in performing incident response on a single, Linux-based system. We’ll talk about what artifacts are available to review, and some best practices to make sure your environment is as investigation-friendly as possible in the case where an investigation is required. Drawing on years of incident response experience, this talk has been tailored for the novice analyst or IT professional interesting in learning about the field of Incident Response and Digital Forensics. We'll cover some of the most useful artifacts to know that will help you get most of what you need in the shortest time possible. This talk will include technical content, but is geared towards everyone.
Bio: Julian Pileggi is a Principal Incident Response Consultant at Mandiant, based in Toronto, Canada. His areas of expertise include enterprise incident response, digital forensics, threat hunting and security operations center team development. Prior to his employment at Mandiant, Julian worked at a large financial institution within the security operations and incident response team.
Talk #2
Speaker: Geoff Heymann
Topic: Your CI/CD Pipeline is my CI/CD Pipeline
Synopsis: This talk is geared against anyone that is interested in a few creative ways the CI/CD pipeline of an application could be used to compromise said application or the infrastructure around it. This talk will cover the basics of what constitutes a CI/CD pipeline, the attack surface to consider when deploying and maintaining a CI/CD pipeline, Ways an attacker could actionably leverage that pipeline to their advantage and considerations to take when securing the pipeline.
Bio: Geoff Heymann is a Senior Security Consultant at Security Compass, based in Toronto, Canada. His areas of expertise include application security, penetration testing in various domains, and cloud security
DC416 Tribe Showcase
We will open up the floor to any of the dc416 tribes who want to share any cool hacker projects they have been working on.
Want to learn more about DEFCON Toronto?
Visit our Website (http://dc416.com)
Join our Facebook group (https://www.facebook.com/groups/DC647/)
Join the conversation on Twitter! Share and follow along with @defcon_toronto
(https://twitter.com/defcon_toronto)
Interested in sponsoring a DEFCON Toronto event? E-mail us at info@dc416.com
To join our slack you can also request an invite by e-mailing info@dc416.com
