BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//bsides-canberra-2025//speaker//RKVELE
BEGIN:VTIMEZONE
TZID:AEST
BEGIN:STANDARD
DTSTART:20000326T040000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3;UNTIL=20050326T170000Z
TZNAME:AEST
TZOFFSETFROM:+1100
TZOFFSETTO:+1000
END:STANDARD
BEGIN:STANDARD
DTSTART:20060402T040000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=4;UNTIL=20060401T170000Z
TZNAME:AEST
TZOFFSETFROM:+1100
TZOFFSETTO:+1000
END:STANDARD
BEGIN:STANDARD
DTSTART:20070325T040000
RRULE:FREQ=YEARLY;BYDAY=4SU;BYMONTH=3;UNTIL=20070324T170000Z
TZNAME:AEST
TZOFFSETFROM:+1100
TZOFFSETTO:+1000
END:STANDARD
BEGIN:STANDARD
DTSTART:20080406T040000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=4
TZNAME:AEST
TZOFFSETFROM:+1100
TZOFFSETTO:+1000
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000827T030000
RRULE:FREQ=YEARLY;BYDAY=4SU;BYMONTH=8;UNTIL=20000826T170000Z
TZNAME:AEDT
TZOFFSETFROM:+1000
TZOFFSETTO:+1100
END:DAYLIGHT
BEGIN:DAYLIGHT
DTSTART:20011028T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10;UNTIL=20071027T170000Z
TZNAME:AEDT
TZOFFSETFROM:+1000
TZOFFSETTO:+1100
END:DAYLIGHT
BEGIN:DAYLIGHT
DTSTART:20081005T030000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=10
TZNAME:AEDT
TZOFFSETFROM:+1000
TZOFFSETTO:+1100
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsides-canberra-2025-BRL9QD@pretalx.com
DTSTART;TZID=AEST:20250927T113000
DTEND;TZID=AEST:20250927T122500
DESCRIPTION:Ever wondered what it's like to investigate a phishing campaign
 ? Do you just grep the IOCs and call it a day? But what if you go further\
 , how deep do you go? If you stop at the first email\, what are you actual
 ly achieving and does doing that actually help? What if investigating furt
 her results in the operators abandoning the entire phishing-as-a-service o
 peration?\n\nIn this talk\, I'll be speaking about the journey and process
  I took to investigate a previously unknown phishing-as-a-service group th
 at lead to the operators completely shutting down their entire operation w
 ithin days of publishing the report. I'll be going through some of the ops
 ec failures\, source code snippets\, as well as other fun facts and exampl
 es about how threat actors make the same mistakes we do.
DTSTAMP:20260603T234437Z
LOCATION:Off-Main Track
SUMMARY:My First Phish: The SAIGA Saga - Justin Soyke
URL:https://pretalx.com/bsides-canberra-2025/talk/BRL9QD/
END:VEVENT
END:VCALENDAR
