Skip to content

Details

🐝✡ OWASP IL ✡🐝 is excited to welcome you to our latest Meetup event! 🚀

Prepare to dive into the world of Application Security with an evening filled with engaging security topics, networking, and as always - community mingling, food and drinks.

This time, we're delighted to have Akamai as the host for our gathering!

====================================================================

Agenda:
➡️ 17:30 - 18:15 - gathering and food - We will gather at Akamai for drinks, great treats, and mingling.

➡️ 18:15 - 18:30 - OWASP Israel Intro + Microphone tuning

➡️ 18:30 to 19:05 - From Cell to Shell - Abusing SageMaker AI
Shani Peled - Senior Cloud Security Researcher @ CrowdStrike

SageMaker Quick Setup’s one-click notebooks create a convenient but risky default execution role. From a single notebook cell an attacker can escalate privileges, create persistent backdoors (endpoint & lifecycle abuse) and exfiltrate data. This talk combines PoCs and chained attack paths to show how common defaults and misconfigurations lead to full account compromise.

➡️ 19:10 - 19:45 - Pulling Trouble: Keeping Malicious Packages Out of Your Supply Chain
Rotem Reiss - Head of Application Security @ Check Point

Recently, the Shai-Hulud campaign hijacked hundreds of npm packages, some downloaded billions of times and turned them into credential-stealing traps hiding in plain sight. It’s not a new story, just a loud reminder that supply-chain attacks never really went away. In this session, I’ll describe what made this wave possible, how it differs from regular CVEs or open-source vulnerabilities, and how to build continuous, practical defenses that let us actually sleep at night while keeping our products safe.

➡️ 19:50 - 20:25 - tbc
tbc - tbc @ Akamai

====================================================================

This event is hosted by Akamai in collaboration with OWASP Israel.

Join us at the event physically as we will not include Zoom or remote participation this time.

Events in Tel Aviv-Yafo, IL
Application Security
Cybersecurity
OWASP
Software Security
Web Security

Members are also interested in