<?xml version='1.0' encoding='utf-8' ?>
<iCalendar xmlns:pentabarf='http://pentabarf.org' xmlns:xCal='urn:ietf:params:xml:ns:xcal'>
    <vcalendar>
        <version>2.0</version>
        <prodid>-//Pentabarf//Schedule//EN</prodid>
        <x-wr-caldesc></x-wr-caldesc>
        <x-wr-calname></x-wr-calname>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>TXUJF3@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-TXUJF3</pentabarf:event-slug>
            <pentabarf:title>Opening Speech</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T090000</dtstart>
            <dtend>20230211T091000</dtend>
            <duration>001000</duration>
            <summary>Opening Speech</summary>
            <description>Hello and Welcome!</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Pecha Kucha</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/TXUJF3/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Craig Jones, Clare Johnson + Stuart Criddle</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>ECGZYB@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-ECGZYB</pentabarf:event-slug>
            <pentabarf:title>Keynote Speech</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T091500</dtstart>
            <dtend>20230211T094500</dtend>
            <duration>003000</duration>
            <summary>Keynote Speech</summary>
            <description>Keynote/Opening Speech</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/ECGZYB/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>John Shier</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>BZQBXJ@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-BZQBXJ</pentabarf:event-slug>
            <pentabarf:title>Let that think in: Thought experiments and their application to cyber security</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T095000</dtstart>
            <dtend>20230211T103500</dtend>
            <duration>004500</duration>
            <summary>Let that think in: Thought experiments and their application to cyber security</summary>
            <description>Brief outline of the talk:

1. INTRODUCTION: who I am, what I do; my interest in thought experiments; aims of the talk

2. WHAT IS A THOUGHT EXPERIMENT? Competing definitions; history and examples in various fields (philosophy, physics, law); types of thought experiment (destructive, constructive, platonic); format and usage (how they&apos;re presented; unfolding of scenario; why they should be used, Kuhnian crises); outputs (models); caveats (biases, where does new knowledge come from, idealisation, imagination as a negative); unusual forms (koans, fiction)

3. APPLICATIONS TO CYBER SECURITY: Background (usage, distinction vs. tabletop exercises, scenarios, &apos;thinking like an attacker&apos;); why we need thought experiments (Kuhnian crisis, challenging assumptions); examples of pre-existing thought experiments in related areas (AI, cryptography, privacy); benefits; examples (adapting pre-existing thought experiments and coming up with new ones - examples include attribution, innovation, cyberweapons)

4. HOW TO DESIGN A THOUGHT EXPERIMENT: destructive and constructive forms; outline of the process

5. CONCLUSION: Reiterate aims; first step; call for collaboration and cooperation; references, contact details, and questions.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk - long</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/BZQBXJ/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Matt Wixey</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>YQR3J7@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-YQR3J7</pentabarf:event-slug>
            <pentabarf:title>Fangxiao, a Chinese phishing threat actor</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T104000</dtstart>
            <dtend>20230211T111000</dtend>
            <duration>003000</duration>
            <summary>Fangxiao, a Chinese phishing threat actor</summary>
            <description>Have you ever seen a fake survey site spready by WhatsApp? If so, you might have interacted with Fangxiao. Starting from a single phishing website, this talk will cover how we identified tens of thousands of phishing domains and de-anonymised domains behind Cloudflare. Pivoting across sites, we uncover a shady world of lead generation agencies, fake dating sites, and a frankly ridiculous number of domains. We will explain how we identified and tracked the group behind these sites and discuss their operational security failures.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/YQR3J7/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Emily Dennison</attendee>
            
            <attendee>Alana Witten</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>YCASUH@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-YCASUH</pentabarf:event-slug>
            <pentabarf:title>Electryone: In the land with no sun</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T111500</dtstart>
            <dtend>20230211T120000</dtend>
            <duration>004500</duration>
            <summary>Electryone: In the land with no sun</summary>
            <description>Targeting an installer cloud means that a successful attack would give elevated access to the inverters , including functions not accessible to PV&#8217;s owners.

In this talk we are going to review how attacking a PV installer cloud could lead to taking hundreds of thousands of inverters offline and introduce instability into countries&#8217; power grids.

All attacks are remotely exploitable and a result of logic flaws introduced by the web portals&#8217; developers. Those logic flaws vary from simple Insecure Direct Object References (IDORs) to self-promoting your user to platform admin.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk - long</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/YCASUH/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Vangelis Stykas</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>EN7TT3@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-EN7TT3</pentabarf:event-slug>
            <pentabarf:title>Lunch - Click for Menu</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T120500</dtstart>
            <dtend>20230211T130500</dtend>
            <duration>010000</duration>
            <summary>Lunch - Click for Menu</summary>
            <description>Lunch will be a buffet and cater for a spectrum of dietary requirements: 
&#8226;	Salad boxes including- 
&#8226;	Green salads, 
&#8226;	Coleslaw, 
&#8226;	Mediterranean couscous 
&#8226;	Tomato salad 
 
&#8226;	With a choice of Caesar chicken, bbq chicken, teriyaki salmon, selection of cheese and then dietary appropriate options- these will be labelled for self-service and collection. 
 
&#8226;	Rustic Bread roll selection
&#8226;	Assortment of sweet treats- carrot cakes, muffins, mini cakes, cookies 
&#8226;	Packets of crisps- assorted flavours  
&#8226;	Assortment of soft drinks 
 
Any special dietary requirements provided in advance will be labelled and accessible.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk - long</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/EN7TT3/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Craig Jones, Clare Johnson + Stuart Criddle</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>VXJRWD@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-VXJRWD</pentabarf:event-slug>
            <pentabarf:title>Bohemian IcedID - Queen of Loaders</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T131500</dtstart>
            <dtend>20230211T134500</dtend>
            <duration>003000</duration>
            <summary>Bohemian IcedID - Queen of Loaders</summary>
            <description>IcedID (also referred to as BokBot) first appeared in early 2017 as a &apos;traditional&apos; banking trojan leveraging webinjects to steal financial information from victims. Since this time, it has evolved to include dropper functionality, and is now primarily used as a vehicle for the delivery of other tools, such as Cobalt Strike, and the eventual deployment of ransomware.

IcedID itself is commonly delivered in phishing (spam) campaigns, leveraging an assortment of lure types and execution processes.

IcedID has two stages to its initial command and control (C2) communications, prior to further tools being downloaded on the victim host. Patterns in the way these C2 communications are setup and appear in network telemetry data allow us to follow threat actor campaigns, often from a starting point of &apos;pre-spam&apos; (before infrastructure is used actively in the wild).

We look forward to sharing more details in our talk!</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/VXJRWD/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Josh Hopkins</attendee>
            
            <attendee>Thibault Seret</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>QVMLF3@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-QVMLF3</pentabarf:event-slug>
            <pentabarf:title>The Office of Danger: A Choose Your Own adventure story!</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T135500</dtstart>
            <dtend>20230211T142500</dtend>
            <duration>003000</duration>
            <summary>The Office of Danger: A Choose Your Own adventure story!</summary>
            <description>The Office of Danger: A Choose Your Own adventure story! This session will put the audience in the driving seat of a real-life social engineering engagement against a high security office building in central London. 
Simulating the high-pressure environment of a social engineering engagement, the slides will present the audience with a choice that must be made quickly to avoid detection, unlock new areas of the office and achieve their objective. 
So, what will you do?
&#8226;	Head for the stairs or the elevator?
&#8226;	Sweet talk the receptionist, or try and blend in with the crowd?
&#8226;	Run as quickly as you can from Security, or hide in the toilet?
You are presented with two options to take each adventure in a unique direction, with over 30 different choices to be made, resulting in a different and unique presentation each time! 
This is the first of its kind talk, which puts you in the driving seat and shows the level of quick thinking that is needed to avoid detection and reach your targets!</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/QVMLF3/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Phil Eveleigh</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>8JRWD9@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-8JRWD9</pentabarf:event-slug>
            <pentabarf:title>Hacking to defend: How we hacked into a Polar Orbit Satellite and managed to get a full system compromise</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T143000</dtstart>
            <dtend>20230211T150000</dtend>
            <duration>003000</duration>
            <summary>Hacking to defend: How we hacked into a Polar Orbit Satellite and managed to get a full system compromise</summary>
            <description>While researching a Polar Orbit Satellite we managed to identify a critical vulnerability allowing full system compromise, we managed to completely own the box within a time span of a few hours. The vulnerabilities were reported and patched.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/8JRWD9/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>James (0xJay)</attendee>
            
            <attendee>Josh Allman</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>FEPNNU@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-FEPNNU</pentabarf:event-slug>
            <pentabarf:title>Bypassing Anti-Virus using BadUSB</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T151000</dtstart>
            <dtend>20230211T155500</dtend>
            <duration>004500</duration>
            <summary>Bypassing Anti-Virus using BadUSB</summary>
            <description>During this presentation, we will take a look over how we can bypass most Anti-Virus detection using a payload embedded on a BadUSB device, resulting in a silver bullet for gaining initial access inside a victim network. Demo will be also included during the presentation.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk - long</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/FEPNNU/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Cristian Cornea</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>BNC8W3@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-BNC8W3</pentabarf:event-slug>
            <pentabarf:title>Needles Without the Thread: Threadless Process Injection</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T160000</dtstart>
            <dtend>20230211T163000</dtend>
            <duration>003000</duration>
            <summary>Needles Without the Thread: Threadless Process Injection</summary>
            <description>As red teamers, we always find ourselves in a cat and mouse game with the blue team.  Many Anti-virus and EDR solutions over the past 10 years have become significantly more advanced at detecting fileless malware activity in a generic way.  

Process injection, a technique used for executing code from within the address space of another process is a common method within the offensive operator&#8217;s toolbox.  Commonly used to mask activity within legitimate processes such as browsers and instant messaging clients already running on the target workstation.

Within the last 2 years, tools such as Sysmon have added new detections and events for process injection along with big improvements in detections within commercial EDR space.
With this in mind, a new method of injection was researched that would not fall foul to the traditional methods that are often detected today. 

Throughout the talk we will cover some of these traditional process injection techniques followed by a technical dive into the novel method that was researched and release a corresponding open-source tool that leverages the technique.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/BNC8W3/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Ceri Coburn</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>VCTQJK@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-VCTQJK</pentabarf:event-slug>
            <pentabarf:title>Closing Speech</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T164000</dtstart>
            <dtend>20230211T164000</dtend>
            <duration>000000</duration>
            <summary>Closing Speech</summary>
            <description>A short thanks to everyone and details of the afterparty.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/VCTQJK/</url>
            <location>Track 1- Dragon Suite</location>
            
            <attendee>Craig Jones, Clare Johnson + Stuart Criddle</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>AGYTSR@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-AGYTSR</pentabarf:event-slug>
            <pentabarf:title>Robots for Complete Beginners</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T095000</dtstart>
            <dtend>20230211T103500</dtend>
            <duration>004500</duration>
            <summary>Robots for Complete Beginners</summary>
            <description>Robots look fun, right? We&apos;d all love to build robots... but how?

This talk is about the &quot;how&quot;. Using some tools that most of us will be familiar with (Lego!!) and some that are perhaps less familiar... but easy (Arduino) we&apos;ll examine how to turn an off-the-shelf toy into something more special.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk - long</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/AGYTSR/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Mark Goodwin</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>TXYBVN@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-TXYBVN</pentabarf:event-slug>
            <pentabarf:title>Verify, then Trust</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T104000</dtstart>
            <dtend>20230211T111000</dtend>
            <duration>003000</duration>
            <summary>Verify, then Trust</summary>
            <description>From dummy think tanks to false academic credentials and degree mills, Dr Jennings, author of the acclaimed book on establishing false identities &apos;When You&apos;re Not You&apos;, presents a fascinating session on how people claim false authority. Covering everything from the principles of influence involved, to the techniques, and how to verify the claims people make.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/TXYBVN/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Rick Jennings</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>QKGJMM@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-QKGJMM</pentabarf:event-slug>
            <pentabarf:title>Extending the capabilities of Dependency Modelling for Risk Identification in an ICS environment</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T111500</dtstart>
            <dtend>20230211T112500</dtend>
            <duration>001000</duration>
            <summary>Extending the capabilities of Dependency Modelling for Risk Identification in an ICS environment</summary>
            <description>Dependency modelling (DM) is a standardised approach proposed by the Open standard Institute as a methodology to manage risk and build trust between inter-dependent enterprises .  This approach aligns with the National Cyber Security Centre (NCSC)&#8217;s advocacy of system-driven risk analysis.  measures risk as the degree of uncertainty - uncertainty that a system will be at a required (desired) state. DM is expressed as the probability of achieving the desired state of a goal and how it is impacted by things beyond the control, predictability or understanding of the system/process owner. These probabilities of events (nodes) change when the probabilities of some other events change. However, there exist limitations in the current expressions of DM that hinder its complete adaptation for risk identification in a complex environment such as ICS. This research investigates how the capability of DM could be extended to address the identified limitations and proposes additional variables to address phenomena that are unique to ICS environments. The proposed extension is built into a system-driven, ICS dependency modeller, and we present an illustrative example using a scenario of a generic ICS environment. We reflect that the proposed technique supports an improvement in the initial user data input in the identification of areas of risk at the enterprise, business process, and technology levels.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Pecha Kucha</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/QKGJMM/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Ayo Rotibi</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>GPH7YY@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-GPH7YY</pentabarf:event-slug>
            <pentabarf:title>Developing cybersecurity curriculum for secondary school</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T113000</dtstart>
            <dtend>20230211T114000</dtend>
            <duration>001000</duration>
            <summary>Developing cybersecurity curriculum for secondary school</summary>
            <description>This study answers the following essential questions: (1) what the challenges of teaching cyber security between 12 to 15 are?
(2) How is cyber security education addressed in secondary school curricula worldwide? (3) What are the issues with the existing cyber security curricula worldwide?</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Pecha Kucha</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/GPH7YY/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Maha Alotaibi1</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>RX87LC@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-RX87LC</pentabarf:event-slug>
            <pentabarf:title>Trust &amp; Blame in Self-Driving Cars Following a Cyber Attack</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T114500</dtstart>
            <dtend>20230211T115500</dtend>
            <duration>001000</duration>
            <summary>Trust &amp; Blame in Self-Driving Cars Following a Cyber Attack</summary>
            <description>One increasingly pertinent concern related to self-driving car technology (and its connected infrastructure) is the potential for it to be cyber attacked.  Should (or when) an adverse experience occurs, such an event is likely to erode human trust in the technology and potentially inhibit its uptake. It is therefore important to understand who is blamed for the attack and how/when trust is affected so that appropriate cyber security measures can be implemented (pre and post attack) to mitigate its impact on users and other stakeholders.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Pecha Kucha</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/RX87LC/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Victoria Marcinkiewicz</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>W9PAQ8@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-W9PAQ8</pentabarf:event-slug>
            <pentabarf:title>A Review of Intrusion Detection Systems in Large-scale IoT Systems: Challenges, Approaches, and Needs</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T120000</dtstart>
            <dtend>20230211T121000</dtend>
            <duration>001000</duration>
            <summary>A Review of Intrusion Detection Systems in Large-scale IoT Systems: Challenges, Approaches, and Needs</summary>
            <description>In this talk, I will present a comprehensive review of current intrusion detection systems for IoT systems to shed light on the challenges and associated solutions.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Pecha Kucha</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/W9PAQ8/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Othmane Belarbi</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>WCL8S7@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-WCL8S7</pentabarf:event-slug>
            <pentabarf:title>Why critical thinking is not the answer to misinformation</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T121500</dtstart>
            <dtend>20230211T122500</dtend>
            <duration>001000</duration>
            <summary>Why critical thinking is not the answer to misinformation</summary>
            <description>This presentation focuses on how the interaction of the digital environment and a user&#8217;s psychology may lead to incorrectly evaluating the trustworthiness of online information. The two studies aim to demonstrate how asking users to critically think when assessing digital information overlooks how the digital environment may increase psychological biases to distort our ability to successfully evaluate the trustworthiness of digital information. The first study reviews the current evidence for digital trust cues that increase a user&#8217;s perception of trustworthy information. The second study focuses on how trust cues are used to make judgements over the trustworthiness of information within open-source software libraries.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Pecha Kucha</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/WCL8S7/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Rob Peace</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>FHP3U9@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-FHP3U9</pentabarf:event-slug>
            <pentabarf:title>Vulnerability Management Sucks.</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T123000</dtstart>
            <dtend>20230211T124000</dtend>
            <duration>001000</duration>
            <summary>Vulnerability Management Sucks.</summary>
            <description>This talk aims to highlight some of the issues that seem to be a common headache. The task of combining the varying vulnerability management solutions you may have and presenting it back to relevant stakeholders in a neat package, all while trying to properly understand what data matters. Not forgetting the varying compliance and certification requirements that need meeting....

There is a larger focus on traditional infrastructure vulnerability management in this talk.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Pecha Kucha</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/FHP3U9/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Luke Jones</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>CK9QSG@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-CK9QSG</pentabarf:event-slug>
            <pentabarf:title>Lunch - Click for Menu</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T124500</dtstart>
            <dtend>20230211T134500</dtend>
            <duration>010000</duration>
            <summary>Lunch - Click for Menu</summary>
            <description>Lunch will be a buffet and cater for a spectrum of dietary requirements: 
&#8226;	Salad boxes including- 
&#8226;	Green salads, 
&#8226;	Coleslaw, 
&#8226;	Mediterranean couscous 
&#8226;	Tomato salad 
 
&#8226;	With a choice of Caesar chicken, bbq chicken, teriyaki salmon, selection of cheese and then dietary appropriate options- these will be labelled for self-service and collection. 
 
&#8226;	Rustic Bread roll selection
&#8226;	Assortment of sweet treats- carrot cakes, muffins, mini cakes, cookies 
&#8226;	Packets of crisps- assorted flavours  
&#8226;	Assortment of soft drinks 
 
Any special dietary requirements provided in advance will be labelled and accessible.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk - long</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/CK9QSG/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Craig Jones, Clare Johnson + Stuart Criddle</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>P8FVTA@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-P8FVTA</pentabarf:event-slug>
            <pentabarf:title>IOC What You Mean</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T135000</dtstart>
            <dtend>20230211T142000</dtend>
            <duration>003000</duration>
            <summary>IOC What You Mean</summary>
            <description>The Pyramid of Pain made by David Bianco and popularised by MITRE et al. It is ultimately a conceptual model to increase the adversaries operational cost via the effective use of Cyber Threat Intelligence.

Is the Pyramid of Pain too high to climb without very expensive vendor support? In this talk we&apos;ll slice up the pyramid of pain using analytical techniques, to reveal how you can prioritise and effectively reduce the permutations of each indicator type via the use of open-source tooling. This will result in  tailored &apos;byte&apos; sized high fidelity chunks for respective courses of action.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/P8FVTA/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Darren Kingsnorth</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>E9HTYX@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-E9HTYX</pentabarf:event-slug>
            <pentabarf:title>When diplomats send Beacon - A retrospective view of APT29 malicious phishing campaigns</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T143000</dtstart>
            <dtend>20230211T150000</dtend>
            <duration>003000</duration>
            <summary>When diplomats send Beacon - A retrospective view of APT29 malicious phishing campaigns</summary>
            <description>(happy to write a description if needed)</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/E9HTYX/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Mathias Frank</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>CBQJRN@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-CBQJRN</pentabarf:event-slug>
            <pentabarf:title>Getting In: Initial Access in 2023</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T151000</dtstart>
            <dtend>20230211T154000</dtend>
            <duration>003000</duration>
            <summary>Getting In: Initial Access in 2023</summary>
            <description>The days of initial access being a case of sending a basic phishing email and get creds are long gone. With email filters so much more effective, end user training more frequent, corporate procedures enhanced, phishing is no longer trivial. We need to think differently, we need to be creative. That is what this talk is all about. Showing you the TTPs we ave developed over the years to evade or even bypass corporate controls and trick staff into giving us access. We will reveal less used TTPs that we have developed over time, showing how they can be leveraged. This is much more than phishing, this is full spectrum initial access, from OSINT led exploits, to in person SE, to creative remote social engineering, providing the many ways of getting in and gaining initial access in 2023.
Are you a blue teamer? Don&apos;t worry we will show you all the ways you can stop our attacks, using your defensive onion to make the bad guys cry!</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/CBQJRN/</url>
            <location>Track 2  -  Foxhunter</location>
            
            <attendee>Tony Gee</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>NWWJHM@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-NWWJHM</pentabarf:event-slug>
            <pentabarf:title>EVSE Ecosystems &amp; Connected Vehicle Privacy</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T154500</dtstart>
            <dtend>20230211T163000</dtend>
            <duration>004500</duration>
            <summary>EVSE Ecosystems &amp; Connected Vehicle Privacy</summary>
            <description>EVSE Ecosystems &amp; Connected Vehicle Privacy</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Talk - long</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/NWWJHM/</url>
            <location>Track 2  -  Foxhunter</location>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>SSNZU8@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-SSNZU8</pentabarf:event-slug>
            <pentabarf:title>Trans Tech Tent - (Talks begin at 10 am) Click for Schedule of talks</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T090000</dtstart>
            <dtend>20230211T170000</dtend>
            <duration>080000</duration>
            <summary>Trans Tech Tent - (Talks begin at 10 am) Click for Schedule of talks</summary>
            <description>The Trans Tech Tent is a Welsh organisation that started out as a community repairs group for queer people in the Cardiff area. Two years later, we hack everything, fix everything, and have a global support community.

Come visit us for talks, chats, and workshops throughout the day on every topic we could reasonably fit into a security BSides event!

See https://pretalx.c3voc.de/trans-tech-tent-2023/schedule/ for current schedule

10:00
AM
30min
Risky Business - using risk-based analysis to detect bad things
Jaime McCallion

10:35 AM 30min
Giving you the ICK - Industrial Cyber Knowledge for n00bs
Jamie Grant

11:10 AM 45min
Biohacking in the 21st Century - A guide to transition
Abby

1:00 PM 30min
Reimplementing game servers for fun and giggles
Eva Lauren Kelly (thejsa)

1:35 PM 30min
Reversing UK mobile rail tickets
eta

2:10 PM 30min
Smart Watches are dumber than you think
June Fleetwood

2:45 PM 30min
Why Don&apos;t I Know Kung Fu Yet?
Misha Whitney

3:20 PM 30min
Wandering wombs - A History of Medical Misogyny
Raven Gough

3:55 PM 30min
it&apos;s borked - programming was a mistake
Maya

5:00 PM 15min
Closing Statement
Abby</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Village</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/SSNZU8/</url>
            <location>Track 3 (TTT) - St David&apos;s Suite</location>
            
            <attendee>a[gk]i|ab+y</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>JMZHJM@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-JMZHJM</pentabarf:event-slug>
            <pentabarf:title>Introduction to GEOINT</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T093000</dtstart>
            <dtend>20230211T130000</dtend>
            <duration>033000</duration>
            <summary>Introduction to GEOINT</summary>
            <description>A workshop describing the techniques to identify important parts of an image or video that could be used to locate it (and also when location may not be possible). It will descend into the geekery of sites that can identify various aspects of an image.

It is designed to be fully interactive. It will demonstrate the art of locating through examples and practice. Common search engines and Internet resources will be used to aid in this.

Attendees are encouraged to bring their own images with them so that they can be used in the workshop to practice their own skills. They are also encouraged to share databases or knowledge that other attendees may not know about.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Workshop</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/JMZHJM/</url>
            <location>Workshops - Glamorgan Suite</location>
            
            <attendee>David Lodge</attendee>
            
            <attendee>Tony Gee</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>QEQ7G9@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-QEQ7G9</pentabarf:event-slug>
            <pentabarf:title>Mastering Android Application Reverse Engineering</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T130000</dtstart>
            <dtend>20230211T170000</dtend>
            <duration>040000</duration>
            <summary>Mastering Android Application Reverse Engineering</summary>
            <description># Summary
This workshop will be broken down into three sections,: an introduction and talk on the fundamentals, a guided challenge / exercise, followed by free-form challenges and activities. By the end of this workshop you&apos;ll be able to develop simple Android applications, reverse Android applications to both Java and SMALI, and apply other dynamic techniques to your reverse engineering efforts such as using Frida and Patching. 

# Prerequisites 
- A foundation knowledge of Linux CLI use
- A laptop that can run a virtual machine (with VMWare Player or equivalent installed)
- An Android Phone with ADB enabled or Android Studio installed with an emulator (please check the emulator works before hand).

# About James
James is a vulnerability researcher focusing on the Android system and applications. James has over five years experience in the industry and has worked in a variety of roles from startups to global organizations.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Workshop</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/QEQ7G9/</url>
            <location>Workshops - Glamorgan Suite</location>
            
            <attendee>James Stevenson</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>XPKMPQ@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-XPKMPQ</pentabarf:event-slug>
            <pentabarf:title>ICS Village (Opens at 9.45)</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T090000</dtstart>
            <dtend>20230211T170000</dtend>
            <duration>080000</duration>
            <summary>ICS Village (Opens at 9.45)</summary>
            <description>Industrial control systems, such as those controlling many aspects of critical infrastructure including energy, water and manufacturing, are increasingly the target of sophisticated cyber attacks.  At the ICS village you can see practical attack demonstrations against real ICS devices, including demonstrations of attack scenarios which can cause physical processes to go wrong. Demonstrations include reconnaissance of ICS devices, the exploitation of programmable logic controllers and password cracking of human machine interfaces.</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Village</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/XPKMPQ/</url>
            <location>Workshops - ClockTower</location>
            
            <attendee>Joe Gardiner</attendee>
            
        </vevent>
        
        <vevent>
            <method>PUBLISH</method>
            <uid>CVFVFM@@pretalx.com</uid>
            <pentabarf:event-id></pentabarf:event-id>
            <pentabarf:event-slug>-CVFVFM</pentabarf:event-slug>
            <pentabarf:title>Battle Bots (Opens at 9.45)</pentabarf:title>
            <pentabarf:subtitle></pentabarf:subtitle>
            <pentabarf:language>en</pentabarf:language>
            <pentabarf:language-code>en</pentabarf:language-code>
            <dtstart>20230211T090000</dtstart>
            <dtend>20230211T170000</dtend>
            <duration>080000</duration>
            <summary>Battle Bots (Opens at 9.45)</summary>
            <description>Mini Battle Bots!</description>
            <class>PUBLIC</class>
            <status>CONFIRMED</status>
            <category>Village</category>
            <url>https://pretalx.com/bsides-cymru-2023-2022/talk/CVFVFM/</url>
            <location>Workshops Clocktower (more)</location>
            
        </vevent>
        
    </vcalendar>
</iCalendar>
