Skip to content

Details

Speaker: Matt Scheurer
A.K.A. The InfoSec Rock Star!

Topic 1: How I stopped paying the bills and still saved my cybersecurity podcast

Abstract:
This topic has an obvious backstory, but there are plenty of lessons to be learned touching numerous facets of cybersecurity from this story. For starters, Matt’s frugal nature is consistent with the very same trade-craft of many known threat actors. Using no-cost (or very low-cost) hosting and services is an extremely common threat vector today. Matt clearly has very different motivations from fraudulent individuals and groups. Very clear lines define legitimate use vs. outright abuse. However, the technology and the techniques remain the same.

We will engage in discussions about high-level principles of "Identity". We will deep-dive into technical details of domain registration, online code repositories, web hosting, cloud storage buckets, and DNS configurations. Many of Matt’s online fronts are technical illusions concealed through smoke and mirrors (or cobbled together by duct tape and bubble gum, if you prefer). Plenty of "show & tell" live demos accompany this presentation. Join us as we pull back the curtain to explain the magic of how all of these tricks works together.

Topic 2 (Time Permitting): Web Investigation Strategies Revealed

Summary:
Live demos of some ways in which Matt obtains and analyzes web code and captures web traffic to investigate websites for the purposes of reaching a verdict of "bad" or "benign". Oh, and about WordPress... Plus Q&A.

About Us:

The CiNPA Security SIG is the Cincinnati Networking Professionals Association Security Special Interest Group. We meet monthly on the third Thursday of each month, starting at 6:30 p.m.

Please connect with us on Google Groups at https://groups.google.com/g/cinpa-security-sig to stay updated on notices. (This link will explain how to join the group.)

You can also follow us on Linkedin.

The CiNPA Security SIG's monthly meeting format typically consists of one or two main monthly meeting topics featuring live presentations or demonstrations promoting open and interactive group discussions. Our focus is primarily on the technical aspects of InfoSec, but we occasionally touch on other areas of cybersecurity as well. Information security news, announcements, and round-table discussions follow our main meeting topics.

Attendee Benefits:

• Attendance qualifies for 2 hours of CPE or CEU credit towards certification renewals

• Maintaining awareness of new vulnerabilities and exploits

• Learning about the latest security tools, utilities, products, services, solutions, strategies, techniques, frameworks, and best practices

• Sharing of information regarding trends concerning enterprise systems and technology

• Hearing announcements of upcoming area security conferences and events

• Networking with peers in the local Information Security (InfoSec) communityi

Related topics

You may also like