If you are citizen of an European Union member nation, you may not use this service unless you are at least 16 years old.
You already know Dokkio is an AI-powered assistant to organize & manage your digital files & messages. Very soon, Dokkio will support Outlook as well as One Drive. Check it out today!
An eclectic gathering of infosec people to hear awesome talks and have outrageously fun discussions! Our mission is to provide an inclusive, open environment for the sharing and collaborative discourse on topics that most interest you.
Event Videos:
When: Friday, October 8, 2010
Where: Think Inc World HQ, 1375 Peachtree St. Suite 600, Atlanta, Ga (The Earthlink Bldg).
Parking: Before 9:30, parking in the building is $5/day. Afterward, $7 (mention bsides). There is $3 early bird 1/2 block south.
NB re getting the 6th Floor: You will need to come to the 1st Floor lobby. One of the elevator banks will not have the 6th Floor locked down by HID cards (yeah, and please don't hack the elevators!). Security will tell you which one.
Cost: Free!
Registration is complete. Walk-ins will be accommodated if possible. Ask about capacity on twitter for real-time feedback.
SEPARATE REGISTRATION ---- #BSidesATL Welcome Reception: REGISTRATION IS CLOSED for the welcome reception....
Date/Time: Thursday Oct. 7th 7:00pm-10:00pm
Location:Halo Lounge (817 W. Peachtree St. NW Atlanta, GA 30308)
(Entrance to Halo is on 6th St. between West Peachtree & Peachtree, under the Biltmore)
MARTA - Midtown Station is 3 blocks away, or look for street parking on W. Peachtree.
Details: Enjoy drinks and snacks at the ultra posh Halo Lounge courtesy of our sponsors and get excited for the big con the next day!
The official Security BSides Atlanta Program is LIVE -- you can view and/or print it here --- we will have a few first-come-first-serve copies at the event but in an effort to save a few trees, we will not print for all 200+++ of you!!! ;-) Schedule and abstracts all included in this PDF - enjoy.
To make the very most of this event, we need your help! We currently are looking for sponsors. If you are interested in sponsoring, please contact Nick Owen at nowen at wikidsystems.com or Mary Catherine Petermann at mc at barracuda.com. Sponsorship details are located at BSidesATL-SponsorshipFINAL.pdf
Rob Ragan - Lord of the Bing: Taking back search engine hacking
10:30
11:00
Dave Shackleford / Rick Hayes- Testing Exfiltration: Recreating Outbound Evil
11:30
12:00
Lunch
1:00
Aldrich de Mata / Christopher Elisan- Malware packing and more
1:30
2:00
Dave Kennedy / Eric Smith - Strategic penetration testing
2:30
3:00
Chris Nickerson - Top 5 Ways to Steal a Company "Forget root, I want it all"
3:30
4:00
Mike Doyle - Pivoting arbitrary tools with Socket Proxy
4:30
Gal Shpantzer - Security Domination via Hard Drive Isolation
5:00
5:45 - 7:30
Closing Reception
Start Time
Track 2 - In the Watchtower
9:30
Keynote - Jack Daniel
10:00
Gary Palgon - A New Approach to Enterprise Data Security: Tokenization
10:30
11:00
Martin Fisher - Why we suck at Incident Response
11:30
12:00
Lunch
1:00
Thomas Cross - Unauthorized Internet Wiretapping: Exploiting Lawful Intercept
1:30
2:00
Tony UV - Applying Application Threat Modeling Beyond the Conceptual Hype
2:30
3:00
Erik Peterson - The long Con of Automated Dynamic Web Application Security Testing
3:30
4:00
Peter Hesse - Security Policies: The Next Generation slides
4:30
Mike Rothman - Information Security 2011: Gaze into the Crystal Ball
5:00
5:45-7:30
Closing Reception
Start Time
Track 3 - In the Mix
9:30
Keynote - Jack Daniel
10:00
Logan Kleier - SANS Top 20 Critical Controls Implementation
10:30
11:00
Nick Owen - Securing Remote Access with 2 Factor and Open Source
11:30
12:00
Lunch
1:00
Todd Merrill - Protecting PHI with encryption for HIPAA compliance
1:30
Taylor Banks - Letting go of Control: A Twelve-Step Program for Embracing the Cloud slides
2:00
Brian Wilson - Intro to DOCSIS and cable modem operations
2:30
Michael Woolfe - How to get someone else to do your job
3:00
Daniel Frye - Basics of Securing PeopleSoft Architectures
3:30
4:00
Karthik Rangarajan - Browser Add-Ons That Steal
4:30
Daniel Peck/Nidhi Shah - Demystifying Web Malware
5:00
5:45-7:30
Closing Reception
Start Time
Bonus Exclusives: Panels & Training
9:30
Keynote - Jack Daniel
10:00
False Starts: How to Improve the Atlanta Security Community's Start:Exit Ratio
ISS is the poster child for security startups. Started by a teenager, grew to hundreds of millions in revenue, went public, then acquired. Since then, dozens of security companies have been started in Atlanta but few have reached a successful outcome. Part of the success of Silicon Valley is the ability to create two types of companies: 1) billion dollar independent 'pillar' companies and 2) high growth companies that can quickly prove out their value in terms of technology, revenue and customers and then become attractive M&A targets for larger technology companies. Out of dozens of security companies started in Atlanta over the last decade, we've only created one 'pillar' and a handful of 'exits' with many others still working to determine their growth path or some to even stay afloat. Dozens of other companies had good ideas and good people but did not reach the finish line. In this interactive panel, we explore what entrepreneurs and the Atlanta community need to do to increase the 'start-to-exit' ratio.
10:30
11:00
Information Security and the Modern College Campus
This is an unmoderated interactive panel about the issues related to securing assets and setting policies for modern college campuses. This discussion will explore what it is like to operate a network in such an environment, war stories, new challenges and where it is going over the next 1-3 years.
James Blanton - SSCP, Technical Services Manager ASaP - Kennesaw State University
Michael Carroll - Systems Support Professional V - Kennesaw State University
Stephen Gay - ITS Associate Director - Information Security Office – Kennesaw State University Information Security Officer
Brad Judy - Information Security/Office of Information Technology - Emory University and Healthcare
11:30
12:00
Lunch
1:00
Training Seminar: Wireless Penetration Testing - Hosted by Errata Security
Details: This 5-part class developed by Dave Maynor and Rob Graham of Errata Security will touch on all the critical pieces to a professional wireless penetration test.
RSVP: Sign-up for the class is currently closed.
1:30
2:00
2:30
3:00
FALE: Locksport Group Training & Demonstration
3:30
4:00
4:30
5:00
5:45-7:30
Closing Reception
Thank you to everyone who submitted a talk!
Call for Theme (CFT): Every conference needs a theme so suggest one (post your theme and name):
"Dirty Security" - Marisa
"B-SidesAtlanta: Come for the security, stay for the BBQ & Mojitos" - Nick
"B-SidesAtlanta: Come to Atlanta, Home of the World's No 1 Hacker, (Bureau of Prisons #13432-112)" - Nick
"B-Sides Atlanta: Better than NASCAR" - Shack
"B-Sides Atlanta: Proving we're not the same as Arkansas". - Eric
"It's an information security con, laydeez..." - Marisa
"B-Sides Atlanta" not sponsored by LIGATT! - Brian
"B-Sides Atlanta" Frankly my dear Scarlett, we're gonna have a damn good time!" -Andre
"B-Sides Atlanta: Security Deliverance" - Nick
"B-Sides Atlanta: The Rise of the South 2010" - Tony UV
"As God is my witness, I will never reuse that password again!" - Marisa
"B-Sides Atlanta: Burnin the Southern Sprawl" - philA
Events/Contests
BSidesATL is planning several contests, events and fundraisers in conjunction with our sponsors.
#BSidesATL Welcome Reception: MUST RSVP - LIMITED CAPACITY!!
Date/Time: Thursday Oct. 7th 7:00pm-10:00pm
Location:Halo Lounge (817 W. Peachtree St. NW Atlanta, GA 30308)
(Entrance to Halo is on 6th St. between West Peachtree & Peachtree, under the Biltmore)
MARTA - Midtown Station is 3 blocks away, or look for street parking on W. Peachtree.
Details: Enjoy drinks and snacks at the ultra posh Halo Lounge courtesy of our sponsors and get excited for the big con the next day!
Details: In coordination with the InfoSec Mentors Project, B-Sides Atlanta is providing some much needed career advice to all you hackers, slackers, and upstarts. Bring your resume for review by a hiring manager or practice interview questions.
Lockpicking Village:
Date/Time: Friday Oct. 8th
Location:Earthlink Building
Details:RT @jwelborn: Good news everyone! FALE Association of Locksport Enthusiasts (http://lockfale.com) will be hosting the lockpick village at #BsidesATL
The FALE Locksport group will be demonstrating lock picking, bypassing and circumvention.
Schedule / CFP Information
The CFP is closed!! We've had a tremendous amount of solid talks submitted and look forward to seeing everyone there!
Topics I would like to hear about:
Infosec practitioner's toolbox: A review and discussion of new software (and hardware) tools, good ways to use old standbys, and war stories relating to the tools of the trade.
Other topics (please add to this list) ...
Planners
Mary Catherine Petermann
Nick Owen
Marisa Fagan
Eric Smith
Tony UV
Andy Green
Volunteers
Andy Green
Shack
Brian Wilson
Andre Frech
Mike Doyle
Mathew Lyons
Jason Schmitt
Mark Painter
Participants
We're using http://bsidesatlanta.eventbrite.com/ to register participants ONLY. You will need to register there to be admitted to the conference. This section is for participants to enter their name and contact info so we can all keep in touch and talk to each other about the event!
Your attendance at BSides Atlanta is valid toward the CISSP continuing education credits (CPEs). If you are a CISSP, please print a copy of this form and bring it to the meeting. Give it to the meeting moderator or one of the BSides Atlanta Staff members to sign, after which you can submit it to (ISC)2 as needed.
Tags for flickr, delicious, ma.gnolia, technorati etc.
Please use the tag #BSidesATL for content related to this event
Start
Track 1 - In the trenches
9:30
Keynote - Jack Daniel
10:00
Rob Ragan - Lord of the Bing: Taking back search engine hacking
10:30
11:00
Dave Shackleford / Rick Hayes- Testing Exfiltration: Recreating Outbound Evil
11:30
12:00
Lunch
1:00
Aldrich de Mata / Christopher Elisan- Malware packing and more
1:30
2:00
Dave Kennedy / Eric Smith - Strategic penetration testing
2:30
3:00
Chris Nickerson - Owning people, places and things
3:30
4:00
Mike Doyle - Pivoting arbitrary tools with Socket Proxy
4:30
Gal Shpantzer - Security Domination via Hard Drive Isolation
5:00
5:45
Closing Reception
7:30
Letting go of Control: A Twelve-Step Program
Unauthorized Internet Wiretapping: Exploiting Lawful Intercept
I am available to assist any way I can and I am local to Atlanta. I was involved in setting up the first B-sides in Vegas last year and eager to bring it to my own backyard. Looking forward to it! Reach out for anything you need.
Twitter: @infosecmafia
BTW, we need a regular security meet up in Atlanta. I would be so down with some kind of monthly event in Midtown or something like that. Anyone interested? I like the ring of HotSec. What do you guys think?
That looks kinda cool. I generally like the secsocial environment of the events that haven't been say.. vetted to give you CISSP credits, but whatevs, this looks like a nice event. Thanks for the tip, signing up to the mailing list. I still think something way less formalized would be fun :)
Nick, Having to register for NAISG, and it being a "local chapter" that earns you continuing ed credits for CISSP certification pretty much says it all. I'm not against it, but if you have never been to one of the other socialsec meetups, I highly suggest it. I don't think they would be in competition. NAISG seems to have an agenda, I'm just talking about a time to gather folks in the vicinity of other hackers/security folk, beer, and food.
Not really much reason to have one besides as a souvenir, but has anyone thought about a badge? Maybe a fun/interactive one like the quahogcon zombies game or the ninja badge this year?
And everyone start beating people up for presentations, we've got a lot of talent, and a lot of lazy in the local security folks!
If you have questions or experience problems, please report them to [email protected]. For issues related to this wiki, please see the PBWiki Support Forum.
Comments (16)
aaron said
at 5:10 pm on May 6, 2010
Nice. ATL definitely needs one. Is there a list of those in the Atlanta area who would help set it up? I'd like to help if possible.
Eric Smith said
at 7:43 pm on May 6, 2010
I am available to assist any way I can and I am local to Atlanta. I was involved in setting up the first B-sides in Vegas last year and eager to bring it to my own backyard. Looking forward to it! Reach out for anything you need.
Twitter: @infosecmafia
Marisa Fagan said
at 10:08 pm on May 8, 2010
#LongLiveBSides! Count me in as a volunteer!
aaron said
at 9:42 am on May 10, 2010
BTW, we need a regular security meet up in Atlanta. I would be so down with some kind of monthly event in Midtown or something like that. Anyone interested? I like the ring of HotSec. What do you guys think?
Jack Daniel said
at 9:49 am on May 10, 2010
Aaron- have you checked out NAISG Atlanta? Next meeting is Wednesday, http://atlanta.naisg.org/
aaron said
at 1:21 pm on May 12, 2010
That looks kinda cool. I generally like the secsocial environment of the events that haven't been say.. vetted to give you CISSP credits, but whatevs, this looks like a nice event. Thanks for the tip, signing up to the mailing list. I still think something way less formalized would be fun :)
Nick Owen said
at 10:01 am on May 18, 2010
Aaron: It is very informal. This summer will probably be extra low-key without presentations, just happy hours. Still somewhat TBD.
aaron said
at 4:30 pm on May 18, 2010
Nick, Having to register for NAISG, and it being a "local chapter" that earns you continuing ed credits for CISSP certification pretty much says it all. I'm not against it, but if you have never been to one of the other socialsec meetups, I highly suggest it. I don't think they would be in competition. NAISG seems to have an agenda, I'm just talking about a time to gather folks in the vicinity of other hackers/security folk, beer, and food.
aaron said
at 7:48 am on May 19, 2010
FWIW I meant CitySec not secsocial
John Glaze said
at 12:04 pm on Aug 9, 2010
aaron, DC404 meets monthly in the Vortex midtown, http://dc404.kaos.to/ but the website is traditionally outdated. Mail lists work good though.
Daniel Peck said
at 2:52 pm on Aug 12, 2010
Not really much reason to have one besides as a souvenir, but has anyone thought about a badge? Maybe a fun/interactive one like the quahogcon zombies game or the ninja badge this year?
And everyone start beating people up for presentations, we've got a lot of talent, and a lot of lazy in the local security folks!
Marisa Fagan said
at 2:47 am on Aug 17, 2010
Just curious, Dan and everyone, would you rather have a t-shirt or an interactive badge?
John Glaze said
at 1:28 pm on Aug 17, 2010
Interactive badges are fun for a short while, shirts are fun for years. I prefer shirts, obviously.
John Glaze said
at 1:29 pm on Aug 17, 2010
Shirts have the added benefit of advertising the event, promoting interest for future BSides events.
John Glaze said
at 9:24 am on Sep 27, 2010
What is the parking situation at/near the convention site? Available, limited, pot luck? Free, paid, exact change?
dmz said
at 10:46 pm on Oct 2, 2010
:( I'm gonna have to pass; I was hoping to see a cheap flight show up but they are all $400! Next time; have fun y'all!
You don't have permission to comment on this page.