• If you are citizen of an European Union member nation, you may not use this service unless you are at least 16 years old.

  • You already know Dokkio is an AI-powered assistant to organize & manage your digital files & messages. Very soon, Dokkio will support Outlook as well as One Drive. Check it out today!

View
 

BSidesAtlanta

 

 Event Details:

 

An eclectic gathering of infosec people to hear awesome talks and have outrageously fun discussions! Our mission is to provide an inclusive, open environment for the sharing and collaborative discourse on topics that most interest you.

 

Event Videos:

 

 

 

 

When: Friday, October 8, 2010

 

Where: Think Inc World HQ, 1375 Peachtree St.  Suite 600, Atlanta, Ga (The Earthlink Bldg).

 

Parking: Before 9:30, parking in the building is $5/day. Afterward, $7 (mention bsides). There is $3 early bird 1/2 block south.

 

I've started a custom google map: http://maps.google.com/maps/ms?ie=UTF8&hl=en&msa=0&ll=33.779219,-84.386448&spn=0.006554,0.009645&t=h&z=17&msid=117931428217953485576.00049193a57a0e471eb8e

 

NB re getting the 6th Floor: You will need to come to the 1st Floor lobby.  One of the elevator banks will not have the 6th Floor locked down by HID cards (yeah, and please don't hack the elevators!). Security will tell you which one.

 

Cost: Free! 

 

Registration is complete.  Walk-ins will be accommodated if possible. Ask about capacity on twitter for real-time feedback.

 

  • SEPARATE REGISTRATION ---- #BSidesATL Welcome Reception: REGISTRATION IS CLOSED for the welcome reception....
    • Date/Time: Thursday Oct. 7th 7:00pm-10:00pm
    • Location: Halo Lounge (817 W. Peachtree St. NW Atlanta, GA 30308)
      • (Entrance to Halo is on 6th St. between West Peachtree & Peachtree, under the Biltmore)    
      • MARTA - Midtown Station is 3 blocks away, or look for street parking on W. Peachtree. 
    • Details: Enjoy drinks and snacks at the ultra posh Halo Lounge courtesy of our sponsors and get excited for the big con the next day! 

 

The official Security BSides Atlanta Program is LIVE -- you can view and/or print it here --- we will have a few first-come-first-serve copies at the event but in an effort to save a few trees, we will not print for all 200+++ of you!!! ;-)  Schedule and abstracts all included in this PDF - enjoy.

PROGRAM ABSTRACTS & SCHEDULE FINAL.pdf

 

 

The Schedule and Talks page is up!

 

Full Schedule and details of talks are on the Talks page

 

Security Sign-up is Here! - Sign up TODAY!

 

Sponsors

To make the very most of this event, we need your help! We currently are looking for sponsors. If you are interested in sponsoring, please contact Nick Owen at nowen at wikidsystems.com or Mary Catherine Petermann at mc at barracuda.com. Sponsorship details are located at BSidesATL-SponsorshipFINAL.pdf

 

Many thanks to our sponsor to date:

 






Wikid Systems

Global Security B-Sides Sponsor

Global Security B-Sides Sponsor 

 

 

Global Security B-Sides Sponsor 

 

 


 

 

Speaker Schedule - 3 Tracks + Bonus Exclusives Panels & Training!

 

Start Time
Track 1 - In the Trenches
9:30 Keynote - Jack Daniel
10:00 Rob Ragan - Lord of the Bing: Taking back search engine hacking
10:30
11:00 Dave Shackleford / Rick Hayes- Testing Exfiltration: Recreating Outbound Evil
11:30
12:00 Lunch
1:00 Aldrich de Mata / Christopher Elisan- Malware packing and more
1:30
2:00 Dave Kennedy / Eric Smith - Strategic penetration testing
2:30
3:00 Chris Nickerson - Top 5 Ways to Steal a Company "Forget root, I want it all"
3:30
4:00 Mike Doyle - Pivoting arbitrary tools with Socket Proxy
4:30 Gal Shpantzer - Security Domination via Hard Drive Isolation
5:00
5:45 - 7:30
Closing Reception

 

 

 

Start Time
Track 2 - In the Watchtower
9:30 Keynote - Jack Daniel
10:00 Gary Palgon - A New Approach to Enterprise Data Security: Tokenization
10:30
11:00 Martin Fisher - Why we suck at Incident Response
11:30
12:00 Lunch
1:00 Thomas Cross -  Unauthorized Internet Wiretapping: Exploiting Lawful Intercept
1:30
2:00 Tony UV - Applying Application Threat Modeling Beyond the Conceptual Hype
2:30
3:00 Erik Peterson - The long Con of Automated Dynamic Web Application Security Testing
3:30
4:00 Peter Hesse - Security Policies: The Next Generation slides 
4:30 Mike Rothman - Information Security 2011: Gaze into the Crystal Ball
5:00
5:45-7:30 Closing Reception

 

 

 

Start Time
Track 3 - In the Mix
9:30 Keynote - Jack Daniel
10:00 Logan Kleier - SANS Top 20 Critical Controls Implementation
10:30
11:00 Nick Owen - Securing Remote Access with 2 Factor and Open Source
11:30
12:00 Lunch
1:00 Todd Merrill - Protecting PHI with encryption for HIPAA compliance
1:30 Taylor Banks -  Letting go of Control: A Twelve-Step Program for Embracing the Cloud slides
2:00 Brian Wilson - Intro to DOCSIS and cable modem operations
2:30 Michael Woolfe - How to get someone else to do your job
3:00 Daniel Frye - Basics of Securing PeopleSoft Architectures
3:30
4:00 Karthik Rangarajan - Browser Add-Ons That Steal
4:30 Daniel Peck/Nidhi Shah - Demystifying Web Malware
5:00
5:45-7:30 Closing Reception

 

 

 

Start Time
Bonus Exclusives: Panels & Training
9:30 Keynote - Jack Daniel
10:00

False Starts: How to Improve the Atlanta Security Community's Start:Exit Ratio

ISS is the poster child for security startups. Started by a teenager, grew to hundreds of millions in revenue, went public, then acquired. Since then, dozens of security companies have been started in Atlanta but few have reached a successful outcome. Part of the success of Silicon Valley is the ability to create two types of companies: 1) billion dollar independent 'pillar' companies and 2) high growth companies that can quickly prove out their value in terms of technology, revenue and customers and then become attractive M&A targets for larger technology companies. Out of dozens of security companies started in Atlanta over the last decade, we've only created one 'pillar' and a handful of 'exits' with many others still working to determine their growth path or some to even stay afloat. Dozens of other companies had good ideas and good people but did not reach the finish line. In this interactive panel, we explore what entrepreneurs and the Atlanta community need to do to increase the 'start-to-exit' ratio.

10:30
11:00

Information Security and the Modern College Campus

 

This is an unmoderated interactive panel about the issues related to securing assets and setting policies for modern college campuses. This discussion will explore what it is like to operate a network in such an environment, war stories, new challenges and where it is going over the next 1-3 years. 

  • James Blanton - SSCP, Technical Services Manager ASaP - Kennesaw State University
  • Michael Carroll - Systems Support Professional V - Kennesaw State University
  • Stephen Gay - ITS Associate Director - Information Security Office – Kennesaw State University Information Security Officer
  • Brad Judy - Information Security/Office of Information Technology - Emory University and Healthcare

 

11:30
12:00 Lunch
1:00 Training Seminar: Wireless Penetration Testing - Hosted by Errata Security 
  • Details: This 5-part class developed by Dave Maynor and Rob Graham of Errata Security will touch on all the critical pieces to a professional wireless penetration test. 
  • RSVP: Sign-up for the class is currently closed.
  
1:30
2:00
2:30
3:00  FALE: Locksport Group Training & Demonstration   
3:30
4:00
4:30
5:00
5:45-7:30 Closing Reception

 

 

Thank you to everyone who submitted a talk!

 

 

 

Call for Theme (CFT): Every conference needs a theme so suggest one (post your theme and name):

 

  • "Dirty Security" - Marisa
  • "B-SidesAtlanta: Come for the security, stay for the BBQ & Mojitos" - Nick
  • "B-SidesAtlanta: Come to Atlanta, Home of the World's No 1 Hacker, (Bureau of Prisons #13432-112)" - Nick
  • "B-Sides Atlanta: Better than NASCAR"  - Shack
  • "B-Sides Atlanta: Proving we're not the same as Arkansas". - Eric
  • "It's an information security con, laydeez..." - Marisa 
  • "B-Sides Atlanta" not sponsored by LIGATT! - Brian
  • "B-Sides Atlanta" Frankly my dear Scarlett, we're gonna have a damn good time!"  -Andre 
  • "B-Sides Atlanta: Security Deliverance" - Nick 
  • "B-Sides Atlanta: The Rise of the South 2010" - Tony UV
  • "As God is my witness, I will never reuse that password again!" - Marisa
  • "B-Sides Atlanta: Burnin the Southern Sprawl"  - philA

 

 

Events/Contests

 

BSidesATL is planning several contests, events and fundraisers in conjunction with our sponsors.

 

  • #BSidesATL Welcome Reception: MUST RSVP - LIMITED CAPACITY!!
    • Date/Time: Thursday Oct. 7th 7:00pm-10:00pm
    • Location: Halo Lounge (817 W. Peachtree St. NW Atlanta, GA 30308)
      • (Entrance to Halo is on 6th St. between West Peachtree & Peachtree, under the Biltmore)   
      • MARTA - Midtown Station is 3 blocks away, or look for street parking on W. Peachtree. 
    • Details: Enjoy drinks and snacks at the ultra posh Halo Lounge courtesy of our sponsors and get excited for the big con the next day! 
    • RSVP: http://bsideshalo.eventbrite.com/ RSVP Required for drinks (Must be 21+)

 

 

  • B-Sides BINGO:
    • Date/Time: Friday Oct. 8th
    • Location: Earthlink Building
    • Details: To Be Announced!

 

  • Career First-Aid Booth:
    • Date/Time: Friday Oct. 8th
    • Location: Earthlink Building
    • Details: In coordination with the InfoSec Mentors Project, B-Sides Atlanta is providing some much needed career advice to all you hackers, slackers, and upstarts. Bring your resume for review by a hiring manager or practice interview questions.

 

  • Lockpicking Village:
    • Date/Time: Friday Oct. 8th
    • Location: Earthlink Building
    • Details: RT @jwelborn: Good news everyone! FALE Association of Locksport Enthusiasts (http://lockfale.com) will be hosting the lockpick village at #BsidesATL
    • The FALE Locksport group will be demonstrating lock picking, bypassing and circumvention.

 

 

 

Schedule / CFP Information

 

The CFP is closed!! We've had a tremendous amount of solid talks submitted and look forward to seeing everyone there!

 

 

Topics I would like to hear about:

  • Infosec practitioner's toolbox: A review and discussion of new software (and hardware) tools, good ways to use old standbys, and war stories relating to the tools of the trade.
  • Other topics (please add to this list) ... 

 

Planners 

  • Mary Catherine Petermann
  • Nick Owen
  • Marisa Fagan 
  • Eric Smith 
  • Tony UV 
  • Andy Green 

 

Volunteers

  • Andy Green
  • Shack
  • Brian Wilson
  • Andre Frech  
  • Mike Doyle
  • Mathew Lyons 
  • Jason Schmitt
  • Mark Painter 

      

Participants

We're using http://bsidesatlanta.eventbrite.com/ to register participants ONLY. You will need to register there to be admitted to the conference. This section is for participants to enter their name and contact info so we can all keep in touch and talk to each other about the event! 

First Name Last Name 

Twitter/email etc 

Nick  Owen

@wikidsystems

Aaron Sigel @diretraversal
Marisa Fagan @dewzi
Dave
Shackleford
@daveshackleford
Brian
Wilson
@slimjim100
Eric Smith @infosecmafia
Erik  Peterson  @silvexis 
Mary Catherine Petermann @petermannmc / mc at barracuda dot com
David M. Zendzian @dmz006 / dmz at zzservers dot com
Gary Palgon @GaryPalgon
Tony UV

@versprite

Mike Rothman

@securityincite

Andy Green @andy_green / agreen57 at kennesaw dot edu
Andre Frech

afrech at g mail dot com

Peter Hesse

@pmhesse / at geminisecurity dot com

Joseph Sokoly

@jsokoly

Jack Daniel @jack_daniel
Martin
Fisher

@armorguy

Karthik Rangarajan @krangarajan
Jeff Murri @infosec208
Tim Tomes @lanmaster53 
Phil Agcaoili

@hacksec

Keith Watson

@xelcgb / krwatson at cc dot gatech dot edu 

Michael W

@wfmn

Christopher Elisan

@tophs

Taylor Banks @taylorbanks / taylor at taylorbanks dot com

 

 

 

Who's blogging? Podcasting?

Name  URL 
Securabit  http://www.securabit.com/2010/08/19/securabit-episode-63-walking-to-the-waffle-house-with-andy-willingham/ 
Southern Fried Security Podcast
http://www.southernfriedsecurity.com
ISDPodcast
http://www.isdpodcast.com
   
   

 

 

CPEs for CISSPs etc.

Your attendance at BSides Atlanta is valid toward the CISSP continuing education credits (CPEs). If you are a CISSP, please print a copy of this form and bring it to the meeting. Give it to the meeting moderator or one of the BSides Atlanta Staff members to sign, after which you can submit it to (ISC)2 as needed. 

 

 

Tags for flickr, delicious, ma.gnolia, technorati etc.

Please use the tag #BSidesATL for content related to this event

 

 

 

 

 

Start Track 1 - In the trenches
9:30 Keynote - Jack Daniel
10:00 Rob Ragan - Lord of the Bing: Taking back search engine hacking
10:30
11:00 Dave Shackleford / Rick Hayes- Testing Exfiltration: Recreating Outbound Evil
11:30
12:00 Lunch
1:00 Aldrich de Mata / Christopher Elisan- Malware packing and more
1:30
2:00 Dave Kennedy / Eric Smith - Strategic penetration testing
2:30
3:00 Chris Nickerson - Owning people, places and things
3:30
4:00 Mike Doyle - Pivoting arbitrary tools with Socket Proxy
4:30 Gal Shpantzer - Security Domination via Hard Drive Isolation
5:00
5:45 Closing Reception
7:30  
Letting go of Control: A Twelve-Step Program
Unauthorized Internet Wiretapping: Exploiting Lawful Intercept

Comments (16)

aaron said

at 5:10 pm on May 6, 2010

Nice. ATL definitely needs one. Is there a list of those in the Atlanta area who would help set it up? I'd like to help if possible.

Eric Smith said

at 7:43 pm on May 6, 2010

I am available to assist any way I can and I am local to Atlanta. I was involved in setting up the first B-sides in Vegas last year and eager to bring it to my own backyard. Looking forward to it! Reach out for anything you need.
Twitter: @infosecmafia

Marisa Fagan said

at 10:08 pm on May 8, 2010

#LongLiveBSides! Count me in as a volunteer!

aaron said

at 9:42 am on May 10, 2010

BTW, we need a regular security meet up in Atlanta. I would be so down with some kind of monthly event in Midtown or something like that. Anyone interested? I like the ring of HotSec. What do you guys think?

Jack Daniel said

at 9:49 am on May 10, 2010

Aaron- have you checked out NAISG Atlanta? Next meeting is Wednesday, http://atlanta.naisg.org/

aaron said

at 1:21 pm on May 12, 2010

That looks kinda cool. I generally like the secsocial environment of the events that haven't been say.. vetted to give you CISSP credits, but whatevs, this looks like a nice event. Thanks for the tip, signing up to the mailing list. I still think something way less formalized would be fun :)

Nick Owen said

at 10:01 am on May 18, 2010

Aaron: It is very informal. This summer will probably be extra low-key without presentations, just happy hours. Still somewhat TBD.

aaron said

at 4:30 pm on May 18, 2010

Nick, Having to register for NAISG, and it being a "local chapter" that earns you continuing ed credits for CISSP certification pretty much says it all. I'm not against it, but if you have never been to one of the other socialsec meetups, I highly suggest it. I don't think they would be in competition. NAISG seems to have an agenda, I'm just talking about a time to gather folks in the vicinity of other hackers/security folk, beer, and food.

aaron said

at 7:48 am on May 19, 2010

FWIW I meant CitySec not secsocial

John Glaze said

at 12:04 pm on Aug 9, 2010

aaron, DC404 meets monthly in the Vortex midtown, http://dc404.kaos.to/ but the website is traditionally outdated. Mail lists work good though.

Daniel Peck said

at 2:52 pm on Aug 12, 2010

Not really much reason to have one besides as a souvenir, but has anyone thought about a badge? Maybe a fun/interactive one like the quahogcon zombies game or the ninja badge this year?

And everyone start beating people up for presentations, we've got a lot of talent, and a lot of lazy in the local security folks!

Marisa Fagan said

at 2:47 am on Aug 17, 2010

Just curious, Dan and everyone, would you rather have a t-shirt or an interactive badge?

John Glaze said

at 1:28 pm on Aug 17, 2010

Interactive badges are fun for a short while, shirts are fun for years. I prefer shirts, obviously.

John Glaze said

at 1:29 pm on Aug 17, 2010

Shirts have the added benefit of advertising the event, promoting interest for future BSides events.

John Glaze said

at 9:24 am on Sep 27, 2010

What is the parking situation at/near the convention site? Available, limited, pot luck? Free, paid, exact change?

dmz said

at 10:46 pm on Oct 2, 2010

:( I'm gonna have to pass; I was hoping to see a cheap flight show up but they are all $400! Next time; have fun y'all!

You don't have permission to comment on this page.