{"$schema": "https://c3voc.de/schedule/schema.json", "generator": {"name": "pretalx", "version": "2026.1.1"}, "schedule": {"url": "https://pretalx.com/bsidesatl-2023/schedule/", "version": "_9182025", "base_url": "https://pretalx.com", "conference": {"acronym": "bsidesatl-2023", "title": "BSides Atlanta 2023", "start": "2023-10-14", "end": "2023-10-14", "daysCount": 1, "timeslot_duration": "00:05", "time_zone_name": "US/Eastern", "colors": {"primary": "#3aa57c"}, "rooms": [{"name": "Atrium - Vendors", "slug": "2443-atrium-vendors", "guid": "3f6bf0cd-e903-553c-8db8-58d86f8e8436", "description": null, "capacity": null}, {"name": "Atrium - Checkin", "slug": "2378-atrium-checkin", "guid": "c0f4bcd0-12cd-5c50-ac6c-1b2cebab8a6a", "description": null, "capacity": null}, {"name": "Room 300", "slug": "2385-room-300", "guid": "4a6d49fe-94bd-5704-96a9-3ceb0c70a008", "description": null, "capacity": null}, {"name": "Room 400", "slug": "2379-room-400", "guid": "f13aed05-1fd2-5aee-8eb6-143618926d4d", "description": null, "capacity": null}, {"name": "Room 401", "slug": "2386-room-401", "guid": "38f0e404-af59-5832-aa3b-04a9b100b4d6", "description": null, "capacity": null}, {"name": "Room 402", "slug": "2442-room-402", "guid": "aab8783e-4169-50e8-ab59-210f29700116", "description": null, "capacity": null}, {"name": "Room 460", "slug": "2387-room-460", "guid": "cf4ec4b6-0236-5a55-b2af-d724d1072c44", "description": null, "capacity": null}, {"name": "Room 461", "slug": "2388-room-461", "guid": "86296775-56fc-5851-bdb3-43522f38fed0", "description": null, "capacity": null}, {"name": "Room 462", "slug": "2389-room-462", "guid": "17ac59f8-fa16-57da-87b7-a3e33c363814", "description": null, "capacity": null}, {"name": "Room 464", "slug": "2390-room-464", "guid": "b7e07d35-5da7-53ab-b2bb-42cdc2ebbf91", "description": null, "capacity": null}], "tracks": [], "days": [{"index": 1, "date": "2023-10-14", "day_start": "2023-10-14T04:00:00-04:00", "day_end": "2023-10-15T03:59:00-04:00", "rooms": {"Atrium - Vendors": [{"guid": "7440de7d-d8ed-549e-976f-1d2ea590fe51", "code": "QGQ7PA", "id": 36925, "logo": null, "date": "2023-10-14T09:00:00-04:00", "start": "09:00", "duration": "09:00", "room": "Atrium - Vendors", "slug": "bsidesatl-2023-36925-vendor-village", "url": "https://pretalx.com/bsidesatl-2023/talk/QGQ7PA/", "title": "Vendor Village", "subtitle": "", "track": null, "type": "Village", "language": "en", "abstract": "Vendor village", "description": null, "recording_license": "", "do_not_record": false, "persons": [], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/QGQ7PA/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/QGQ7PA/", "attachments": []}], "Atrium - Checkin": [{"guid": "fc8ef79a-9b32-5111-8236-7b9f7fe7097c", "code": "WWZX7V", "id": 36237, "logo": null, "date": "2023-10-14T08:00:00-04:00", "start": "08:00", "duration": "08:00", "room": "Atrium - Checkin", "slug": "bsidesatl-2023-36237-attendee-check-in-and-registration", "url": "https://pretalx.com/bsidesatl-2023/talk/WWZX7V/", "title": "Attendee check-in and registration", "subtitle": "", "track": null, "type": "Village", "language": "en", "abstract": "Welcome to BSides Atlanta 2023!  Attendees will be able to check-in or register at our tables set up in the atrium.  Check-in will begin at 8am, and be open most of the day.  If you registered with us ahead of time, we'll have your badge and whatever swag we're able to get for everyone!  If you didn't register ahead of time, we can't promise you anything except cool talks at a great venue!", "description": null, "recording_license": "", "do_not_record": false, "persons": [], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/WWZX7V/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/WWZX7V/", "attachments": []}], "Room 300": [{"guid": "5d148106-481e-5874-8d97-19c83f3c197f", "code": "QZHJ9E", "id": 36593, "logo": null, "date": "2023-10-14T09:30:00-04:00", "start": "09:30", "duration": "00:50", "room": "Room 300", "slug": "bsidesatl-2023-36593-dfir-101-clones-drones-prison-phones", "url": "https://pretalx.com/bsidesatl-2023/talk/QZHJ9E/", "title": "DFIR 101 - Clones, drones, & prison phones", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "A couple of years ago, I stumbled into the world of law enforcement Digital Forensics and Incident Response (DFIR).  This talk will share my journey into and discovery of a new niche of IT I didn't know existed.  \r\nCome for an introduction to the hardware, software, processes, and people of DFIR.\r\nLearn how those pieces work together to gather data, review, build a timeline, and put the bad guys behind bars.\r\nLeave with the curiosity to head home, image your phone/computer, and start digging around in your own data.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "PWHDYV", "name": "Mike Judd", "avatar": null, "biography": "Mike has spent many years in the MSP world helping businesses protect and grow their IT systems. Over that time, I've fixed mice, laid out IT roadmaps, and managed systems & tools that do the behind-the-scenes heavy lifting. My first computer was an Apple IIc clone, I learned programming on the Atari 2600, and I've braved an AS/400. Away from the keyboard, I enjoy time with my kids, geocaching, and wood-turning.", "public_name": "Mike Judd", "guid": "1cbe4163-df8e-5ba9-bc51-49015f64dfc6", "url": "https://pretalx.com/bsidesatl-2023/speaker/PWHDYV/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/QZHJ9E/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/QZHJ9E/", "attachments": []}, {"guid": "fc8015cc-6f2d-53e2-bb2d-a8a3fa6e0fd2", "code": "HRVKQU", "id": 36538, "logo": null, "date": "2023-10-14T10:30:00-04:00", "start": "10:30", "duration": "00:50", "room": "Room 300", "slug": "bsidesatl-2023-36538-darkweb-business-school", "url": "https://pretalx.com/bsidesatl-2023/talk/HRVKQU/", "title": "Darkweb Business School", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "What\u2019s the difference between a ransomware gang and a Fortune 500 company? Not as much as you think. With millions of dollars in annual revenue and team sizes that compare to medium sized organizations, the business of ransomware is booming.\r\n\r\nIn this talk we\u2019ll take a deep dive into the organizational structure, cost-cutting measures, and internal policies of these large criminal organizations. Using the Conti leaks of 2021 and current day evidence as our guides, we\u2019ll discover why the business case is so appealing for both large- and small-scale ransomware operations.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "RQNRYP", "name": "Cory Wolff", "avatar": "https://pretalx.com/media/avatars/RQNRYP_3945GPL.webp", "biography": "Cory Wolff is a lifelong hacker with decades of experience in IT, security and development who serves as the Director of Offensive Security at risk3sixty. He has been building and breaking various technologies since his first computer in 1988 and has helped businesses of all sizes secure their infrastructure, build future-forward applications, and grow their information security programs since 2002.\r\n\r\nCory holds various certifications including the Offensive Security Certified Professional (OSCP) and Certified Information Systems Security Professional (CISSP) and serves as a core team member of Red Team Village.", "public_name": "Cory Wolff", "guid": "ac72e7f9-b871-5af5-b168-fe7a5311ff7f", "url": "https://pretalx.com/bsidesatl-2023/speaker/RQNRYP/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/HRVKQU/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/HRVKQU/", "attachments": []}, {"guid": "d9e0f6d8-cfd5-5df5-8a12-cad7196fac1e", "code": "VMVZAK", "id": 36519, "logo": null, "date": "2023-10-14T11:30:00-04:00", "start": "11:30", "duration": "00:20", "room": "Room 300", "slug": "bsidesatl-2023-36519-building-your-cyber-defense-in-storage-systems", "url": "https://pretalx.com/bsidesatl-2023/talk/VMVZAK/", "title": "Building Your Cyber Defense in Storage Systems", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "Ransomware is no longer the leading method cyber criminals use to infiltrate an organization. Cyber crime organizations have shifted to sophisticated phishing campaign and backdoor deployment to gain control of your IT infrastructure and access to your most important data. By adopting the long standing cybersecurity practice of defense in depth, storage systems can be the last line of defense that gives organizations a chance to recover their operations. In this proposal, we'll be looking at the best practices to ensure you have the harden process and systems to be cyber resilient. We'll explore the basic security such as multi-factor authentication, two person integrity, role and object-based authentication to the more advance immutable storage, quantum safe encryption of data at rest and the emerging ransom activity detection in file and block storage.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "PGLW3G", "name": "Nat Prakongpan", "avatar": "https://pretalx.com/media/avatars/PGLW3G_c2asL7q.webp", "biography": "Nat has 20+ years of cybersecurity experience across Identity, Endpoint, Network, SIEM, Data, OT, and DevSecOps in both products and services. He is currently a part of the IBM Storage CTO office driving cyber resiliency across IBM Storage portfolio. In his previous roles, he built security development teams across Americas, Asia, and EMEA for IBM Security and X-Force Consulting. Nat is a well-regarded senior leader and hands-on subject matter expert in Cyber Range industry known for driving unprecedented results within competitive, emerging industries. He built first commercial immersive cyber range in Cambridge, MA and first cyber range on wheels for EMEA market. As a Cyber Range Consulting practice leader, Nat drove the business development and partnership based on IBM experience in the cyber range business since 2016.\r\n\r\nHis project won 2019 Edison Award and 2019 InAVation Award for Control Room of the Year by leading team to create world\u2019s 1st cyber tactical operation center, X-Force Cyber Tactical Operations Center (C-TOC).\r\nIn addition to his technical contribution, Nat also led workforce development for IBM Security through university relationships, early professional recruiting, and external cybersecurity competitions.", "public_name": "Nat Prakongpan", "guid": "59dd3fa7-d054-50e4-a276-8d0ca7f941b5", "url": "https://pretalx.com/bsidesatl-2023/speaker/PGLW3G/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/VMVZAK/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/VMVZAK/", "attachments": []}, {"guid": "cd6f6c0a-2b7e-5474-8be0-69d4a40d791a", "code": "BLA3HY", "id": 36759, "logo": null, "date": "2023-10-14T13:00:00-04:00", "start": "13:00", "duration": "00:50", "room": "Room 300", "slug": "bsidesatl-2023-36759-from-checkbox-to-checkmate-winning-the-game-for-security-budgets", "url": "https://pretalx.com/bsidesatl-2023/talk/BLA3HY/", "title": "From Checkbox to Checkmate: Winning the Game for Security Budgets", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "For many, IT security is still perceived as a sometimes-helpful nuisance, but an all-the-time cost center.\r\n\r\nThe most common exception is in compliance, often disproportionately handled by IT staff due to the technical evidence gathering requirements. And it\u2019s hard for security staff to argue the case, since you can draw a direct line from compliance reports to revenue. A clean SOC 2 report or PCI DSS certification can determine the outcome of multi-million-dollar deals. The same cannot usually be said for a clean vulnerability assessment, penetration test, or red team report (much less a not clean one).\r\n\r\nSo how can security professionals compete with compliance for budgets, and how can IT professionals garner buy-in and internal support from executives and decision makers so they can affect organizational change and improvement?\r\n\r\nThis session will cover how purple teaming activities can elevate an organization beyond exception management in revenue-generating deals, to providing multiple mechanisms for demonstrating substantial ROI, and quantifiably protecting existing and future revenues. I will detail actionable approaches \u2013 with real world examples \u2013 that showcase how purple team exercises can accomplish the following:\r\n\r\n- Establishing measurable security baselines and resilience across companies and supply chains\r\n- Validating the efficacy of security investments and identifying potential areas for greater efficiency.\r\n- Providing a blueprint for organizational advancement and agility via penetration tests and red teams\r\n- Evidence-based ROI communication to leadership and stakeholders\r\n- Demonstrable and continuous protection against headline grabbing, and investor rattling, emerging threats", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "HJRXPQ", "name": "Ryan Basden", "avatar": "https://pretalx.com/media/avatars/HJRXPQ_6jgGhrJ.webp", "biography": null, "public_name": "Ryan Basden", "guid": "72702771-d4d1-591f-9963-cfaf1db75279", "url": "https://pretalx.com/bsidesatl-2023/speaker/HJRXPQ/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/BLA3HY/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/BLA3HY/", "attachments": []}, {"guid": "fe318485-2f94-5802-895f-9003e5798ea9", "code": "SM9GEA", "id": 36850, "logo": null, "date": "2023-10-14T14:00:00-04:00", "start": "14:00", "duration": "00:50", "room": "Room 300", "slug": "bsidesatl-2023-36850-how-i-learned-to-stop-worrying-and-build-a-modern-detection-response-program", "url": "https://pretalx.com/bsidesatl-2023/talk/SM9GEA/", "title": "How I Learned to Stop Worrying and Build a Modern Detection & Response Program", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "You haven\u2019t slept in days. Pager alerts at all hours. Constant firefights. How do you get out of this mess? This talk gives away all the secrets you\u2019ll need to go from reactive chaos to building and running a finely tuned detection & response program (and finally get some sleep).\r\n\r\nGone are the days of buying the ol\u2019 EDR/IDS/NGAV combo, throwing some engineers on an on-call rotation, and calling it your incident response team. You need a robust and comprehensive detection and response program to fight modern day attackers. But there\u2019s a lot of challenges in the way: alert fatigue, tools are expensive, hiring talent is impossibly difficult, and your current team is overworked from constant firefights.\r\n\r\nHow do you successfully build a modern detection and response program, all while riding the rocket of never ending incidents and unforgiving on-call schedules?\r\n\r\nThis talk addresses the lack of a framework, which has led to ineffective, outdated, and after-thought detection and response programs. At the end of this talk, you will walk away with a better understanding of all the capabilities a modern program should have and a framework to build or improve your own.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "DGCKTN", "name": "Allyn Stott", "avatar": "https://pretalx.com/media/avatars/DGCKTN_Mh2BH3S.webp", "biography": "Allyn Stott is a senior staff engineer at Airbnb. He currently works on the information security technology leadership team where he spends most of his time working on threat detection and incident response. He especially enjoys building strategies for hunting down and finding advanced threat actors. Over the past decade, he has built and run detection and response programs at companies including Delta Dental of California, MZ, and Palantir. Red team tears are his testimonials.\r\n\r\nIn the late evenings, after his toddler ceases all antics for the day, Allyn writes a semi-regular, exclusive security newsletter. This morning espresso shot can be served directly to your inbox by subscribing here: https://www.meoward.co \r\n\r\nAllyn has previously presented at Kernelcon, BSides Seattle, BSides SATX, The Diana Initiative, BSides St. Pete, BSides Singapore, and the Texas Cyber Summit. He received his Masters in High Tech Crime Investigation from The George Washington University as part of the Department of Defense Information Assurance Scholarship Program.", "public_name": "Allyn Stott", "guid": "cdcc8b1c-c5cc-5398-a7aa-94ec65e2ef58", "url": "https://pretalx.com/bsidesatl-2023/speaker/DGCKTN/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/SM9GEA/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/SM9GEA/", "attachments": []}, {"guid": "b85219fd-878e-5e63-8849-dc1d2185cbc2", "code": "SRCWAZ", "id": 36598, "logo": "https://pretalx.com/media/bsidesatl-2023/submissions/SRCWAZ/bsides_Dchf0a5.png", "date": "2023-10-14T15:00:00-04:00", "start": "15:00", "duration": "00:50", "room": "Room 300", "slug": "bsidesatl-2023-36598-human-memory-management-techniques-for-actionable-security-research", "url": "https://pretalx.com/bsidesatl-2023/talk/SRCWAZ/", "title": "Human Memory Management: Techniques for actionable security research", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Your brain can only hold so much information about any given topic, so getting that information out of your brain and into a more long term storage solution is a highly effective way to take your career to the next level. In this presentation I will distill the lessons I've learned after passing over 15 industry certifications and taking dozens of industry trainings by demonstrating with live demos of how I keep all that knowledge easily accessible.\r\n\r\nAs security professionals we are often expected to know every detail about every technology/attack/tool as soon as it comes out. Unfortunately our brains did not evolve to think this way. This presentation delves into the importance of note-taking in cybersecurity and offers actionable strategies and techniques to maximize the value you get out of your research, training, and certifications.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "L88LXU", "name": "Graham Helton", "avatar": "https://pretalx.com/media/avatars/L88LXU_fcJErtm.webp", "biography": "Graham Helton is currently a Red Team Specialist at Google specializing in Linux exploitation. Graham posts frequently on his website https://grahamhelton.com with deep dives on various security related topics. Additionally he has taught practical phishing assessments for TCM-security, which is now released for free online and founded a security consulting company, Low Orbit Security. In his free time he likes to pretend like he knows what he's doing.\r\n\r\nEnjoys: Linux, videogames, coffee, FPV drones\r\nDislikes: Windows", "public_name": "Graham Helton", "guid": "ae088be8-6b9c-5ad1-8efa-2c2fdd8aaf5b", "url": "https://pretalx.com/bsidesatl-2023/speaker/L88LXU/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/SRCWAZ/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/SRCWAZ/", "attachments": []}, {"guid": "912d4456-8307-5045-b52c-43bf6f62b9d5", "code": "VY8WQP", "id": 36799, "logo": null, "date": "2023-10-14T16:00:00-04:00", "start": "16:00", "duration": "00:50", "room": "Room 300", "slug": "bsidesatl-2023-36799-threat-hunting-on-budget-using-oss-to-hunt-for-the-unknown", "url": "https://pretalx.com/bsidesatl-2023/talk/VY8WQP/", "title": "Threat Hunting on Budget - Using OSS to Hunt for the Unknown", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "In today's digital landscape, organizations constantly face the challenge of protecting their networks and assets from myriad cyber threats. With limited resources, staying ahead of sophisticated adversaries is a challenge. In this talk I will highlight the benefits of utilizing open-source software (OSS) to conduct effective threat hunting on a budget. Threat hunting is a proactive approach to identifying and mitigating potential cyberattacks before they escalate into full-blown incidents. This process involves detecting malicious activities, anomalies, and intrusions that may have evaded traditional security measures. However, commercial threat-hunting tools can be expensive, putting them out of reach for many organizations with constrained budgets. Open-source software offers a cost-effective alternative to commercial tools, enabling organizations to enhance their cybersecurity posture without breaking the bank. OSS provides a wide range of customizable solutions that can be tailored to meet specific organizational needs. Additionally, the collaborative nature of open-source communities fosters continuous improvement and innovation, ensuring that OSS tools remain up-to-date and effective against emerging threats. We will discuss some of the more popular OSS tools for threat hunting, like Security Onion, Wazuh, and ELK Stack. These solutions offer robust network analysis, intrusion detection, and log management capabilities. By integrating these tools, organizations can gain comprehensive visibility into their networks, allowing them to detect and respond to threats more effectively.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "XLXDFA", "name": "Jason Lawrence", "avatar": null, "biography": null, "public_name": "Jason Lawrence", "guid": "7f38cd35-e0ed-588d-acf5-3b8e69f85523", "url": "https://pretalx.com/bsidesatl-2023/speaker/XLXDFA/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/VY8WQP/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/VY8WQP/", "attachments": []}], "Room 400": [{"guid": "0a787b8f-2d22-5b26-bfa1-6674ae78b043", "code": "H7YZSX", "id": 38044, "logo": null, "date": "2023-10-14T08:30:00-04:00", "start": "08:30", "duration": "00:15", "room": "Room 400", "slug": "bsidesatl-2023-38044-ksu-bs-cybersecurity-student-of-the-year-award", "url": "https://pretalx.com/bsidesatl-2023/talk/H7YZSX/", "title": "KSU BS-Cybersecurity Student of the Year award", "subtitle": "", "track": null, "type": "Organizers remarks", "language": "en", "abstract": "We are happy to present the Student of the Year award for the Bachelor of Science in Cybersecurity degree program to Ms. Tammy King!\r\n\r\nPresenting the award is Dr. Herb Mattord, Professor of Information Security and Assurance at KSU.", "description": null, "recording_license": "", "do_not_record": false, "persons": [], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/H7YZSX/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/H7YZSX/", "attachments": []}, {"guid": "d350dfe6-2db5-5a12-b20f-f2439b54f292", "code": "79XGK8", "id": 36231, "logo": null, "date": "2023-10-14T08:45:00-04:00", "start": "08:45", "duration": "00:15", "room": "Room 400", "slug": "bsidesatl-2023-36231-organizers-welcome-remarks", "url": "https://pretalx.com/bsidesatl-2023/talk/79XGK8/", "title": "Organizers welcome remarks", "subtitle": "", "track": null, "type": "Organizers remarks", "language": "en", "abstract": "The BSides Atlanta organizers will use this time to welcome our attendees!  We will walk everyone through the schedule and various important details for the day, including talk tracks, villages, room locations, restrooms, wireless internet access, lunch, and our terrific sponsors!  We will also take this opportunity to take any questions, then welcome to the stage our keynote speaker!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "7CYWHU", "name": "Yvette Johnson", "avatar": null, "biography": null, "public_name": "Yvette Johnson", "guid": "629d0fad-7ce9-5f72-9387-01fcee05e47a", "url": "https://pretalx.com/bsidesatl-2023/speaker/7CYWHU/"}, {"code": "NCRDAA", "name": "Dr. Andy Green", "avatar": "https://pretalx.com/media/avatars/NCRDAA_cYJvGYM.webp", "biography": null, "public_name": "Dr. Andy Green", "guid": "3928b93d-394b-54f3-96eb-31daa4c6806a", "url": "https://pretalx.com/bsidesatl-2023/speaker/NCRDAA/"}, {"code": "FYQ7V7", "name": "JoEtta LeSueur", "avatar": null, "biography": null, "public_name": "JoEtta LeSueur", "guid": "ba69a066-56a6-54c0-afce-f2943298a45b", "url": "https://pretalx.com/bsidesatl-2023/speaker/FYQ7V7/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/79XGK8/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/79XGK8/", "attachments": []}, {"guid": "78df1ee6-f508-5674-acd1-876130368f63", "code": "DJ88A8", "id": 36230, "logo": null, "date": "2023-10-14T09:00:00-04:00", "start": "09:00", "duration": "00:20", "room": "Room 400", "slug": "bsidesatl-2023-36230-keynote", "url": "https://pretalx.com/bsidesatl-2023/talk/DJ88A8/", "title": "Keynote", "subtitle": "", "track": null, "type": "Keynote", "language": "en", "abstract": "Abstract is forthcoming", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "U9P8YU", "name": "Sherrod DeGrippo", "avatar": "https://pretalx.com/media/avatars/U9P8YU_LDPSQIk.webp", "biography": "Sherrod DeGrippo is Director of Threat Intelligence Strategy at Microsoft. She was selected as Cybersecurity woman of the year in 2022 and Cybersecurity PR Spokesperson of the year for 2021. \r\n \r\nPreviously, she was VP of Threat Research and Detection at Proofpoint, where she led a global team of threat researchers, malware reverse engineers and threat intelligence analysts. Her career in cybersecurity spans 19 years with prior roles including leading Red Team Services at Nexum, senior solutions engineer for Symantec, senior security consultant for Secureworks, and senior network security analyst for the National Nuclear Security Administration (NNSA). \r\n \r\nShe is a frequently cited threat intelligence expert in media including televised appearances on the BBC news, and commentary in the Wall Street Journal, CNN, New York Times, and more. Having presented at Black Hat, RSA conference, RMISC, BrunchCon, and others, Sherrod is a well known public speaker.\r\n \r\nIn her personal time, Sherrod spends time with her rescue dog Boris Karloff.", "public_name": "Sherrod DeGrippo", "guid": "d35f5b68-65d4-5512-889c-8ee980bee7c2", "url": "https://pretalx.com/bsidesatl-2023/speaker/U9P8YU/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/DJ88A8/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/DJ88A8/", "attachments": []}, {"guid": "c0ad8243-5fc1-52f8-bd7f-e018c8d3df71", "code": "LBMGBG", "id": 36239, "logo": null, "date": "2023-10-14T12:00:00-04:00", "start": "12:00", "duration": "00:50", "room": "Room 400", "slug": "bsidesatl-2023-36239-lunch", "url": "https://pretalx.com/bsidesatl-2023/talk/LBMGBG/", "title": "Lunch", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Join us for lunch!  Lunch is courtesy of all of our terrific sponsors, so please say \"thank you\" to them when you have a chance!", "description": null, "recording_license": "", "do_not_record": false, "persons": [], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/LBMGBG/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/LBMGBG/", "attachments": []}, {"guid": "2386c3f1-c310-5f1f-ab94-edf836578940", "code": "QUXTJD", "id": 36234, "logo": null, "date": "2023-10-14T17:00:00-04:00", "start": "17:00", "duration": "00:30", "room": "Room 400", "slug": "bsidesatl-2023-36234-organizers-closing-remarks-and-giveaways", "url": "https://pretalx.com/bsidesatl-2023/talk/QUXTJD/", "title": "Organizers closing remarks and giveaways", "subtitle": "", "track": null, "type": "Organizers remarks", "language": "en", "abstract": "BSides Atlanta organizers will put a \"bow on the day\" here!  We will give out door prizes, take questions, and give a big thank you to our sponsors once again!  We will also take questions from the attendees,  add any additional end-of-day details as needed, and thank our attendees for spending their Saturday with us!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "7CYWHU", "name": "Yvette Johnson", "avatar": null, "biography": null, "public_name": "Yvette Johnson", "guid": "629d0fad-7ce9-5f72-9387-01fcee05e47a", "url": "https://pretalx.com/bsidesatl-2023/speaker/7CYWHU/"}, {"code": "NCRDAA", "name": "Dr. Andy Green", "avatar": "https://pretalx.com/media/avatars/NCRDAA_cYJvGYM.webp", "biography": null, "public_name": "Dr. Andy Green", "guid": "3928b93d-394b-54f3-96eb-31daa4c6806a", "url": "https://pretalx.com/bsidesatl-2023/speaker/NCRDAA/"}, {"code": "FYQ7V7", "name": "JoEtta LeSueur", "avatar": null, "biography": null, "public_name": "JoEtta LeSueur", "guid": "ba69a066-56a6-54c0-afce-f2943298a45b", "url": "https://pretalx.com/bsidesatl-2023/speaker/FYQ7V7/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/QUXTJD/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/QUXTJD/", "attachments": []}], "Room 401": [{"guid": "386a0041-57e3-5032-8346-b6ae5381279d", "code": "U7TJK7", "id": 36225, "logo": null, "date": "2023-10-14T09:30:00-04:00", "start": "09:30", "duration": "00:50", "room": "Room 401", "slug": "bsidesatl-2023-36225-who-goes-there-actively-detecting-intruders-with-cyber-deception-tools", "url": "https://pretalx.com/bsidesatl-2023/talk/U7TJK7/", "title": "Who Goes There? Actively Detecting Intruders With Cyber Deception Tools", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Ever wish you could set traps for intruders in your environment? While you can't rig explosions to stop attacks on your servers, you can set up false credentials that trigger alarms you can act against. That is the whole idea behind honeytokens!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "MM3B73", "name": "Dwayne McDaniel", "avatar": "https://pretalx.com/media/avatars/MM3B73_e6toqeP.webp", "biography": "Dwayne has been working as a Developer Relations professional since 2015 and has been involved in tech communities since 2005. He loves sharing his knowledge, and he has done so by giving talks at over a hundred events worldwide. Dwayne currently lives in Chicago. Outside of tech, he loves karaoke, live music, and performing improv.", "public_name": "Dwayne McDaniel", "guid": "f808977e-363a-5996-b82e-274cf18dbd0c", "url": "https://pretalx.com/bsidesatl-2023/speaker/MM3B73/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/U7TJK7/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/U7TJK7/", "attachments": []}, {"guid": "1182276f-c09f-5f12-bb80-6e2507afaf94", "code": "SWFYFY", "id": 36883, "logo": null, "date": "2023-10-14T10:30:00-04:00", "start": "10:30", "duration": "00:20", "room": "Room 401", "slug": "bsidesatl-2023-36883-dissecting-linux-malware-from-the-windows", "url": "https://pretalx.com/bsidesatl-2023/talk/SWFYFY/", "title": "Dissecting Linux malware from the Windows", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "Moving from Windows reversing to Linux can seem daunting. Aside from the differences between the two operating systems, Linux runs on a wide range of different architectures and devices. This talk will cover the basics of Linux malware reverse engineering from the perspective of a primarily Windows reverse engineer. It will cover the differences in APIs and system calls between the two operating systems, different architectures, tools and various pitfalls encountered when moving from Windows to Linux reverse engineering.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "CXRHDU", "name": "crudd", "avatar": "https://pretalx.com/media/avatars/CXRHDU_j9j284x.webp", "biography": "Steve \"crudd\" Rudd is a Lead Information Security Engineer at Lumen Technologies responsible for reverse engineering malware samples across a wide variety of architectures and operating systems from a broad range of threats, including cybercriminals, ransomware operators and APTs. In addition to reversing network protocols and gleaning IoCs from custom loaders and implants to aid in investigations, Steve develops the automated threat validation capabilities of Black Lotus Labs through bot emulation and C2 validation to track and disrupt threats at scale. A self-taught practitioner, Steve is passionate about understanding how things work and digging into low-level assembly, operating system internals and network protocols", "public_name": "crudd", "guid": "53f8d855-45d7-53ce-b7ab-97234e1d2633", "url": "https://pretalx.com/bsidesatl-2023/speaker/CXRHDU/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/SWFYFY/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/SWFYFY/", "attachments": []}, {"guid": "93a2a106-b8ca-5e48-80b2-ee80c7e7e423", "code": "VEFU8F", "id": 36568, "logo": null, "date": "2023-10-14T11:00:00-04:00", "start": "11:00", "duration": "00:20", "room": "Room 401", "slug": "bsidesatl-2023-36568-unchained-unraveling-the-unconventional-security-threats-in-web3", "url": "https://pretalx.com/bsidesatl-2023/talk/VEFU8F/", "title": "Unchained: Unraveling the Unconventional Security Threats in Web3", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "With Blockchain growing, there is a new set of growing security concerns. What problems are presented in Blockchain and how can they be mitigated?", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "PB8BZK", "name": "Nick Kammerdiener", "avatar": "https://pretalx.com/media/avatars/PB8BZK_G8mKvbo.webp", "biography": "Nick runs a DevSecOps and IT Consulting company. This includes working with start-ups and blockchain companies to help ensure their infrastructure is stable and secure.", "public_name": "Nick Kammerdiener", "guid": "9a7645ce-2a47-5fd4-8b39-7002a7ddbfee", "url": "https://pretalx.com/bsidesatl-2023/speaker/PB8BZK/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/VEFU8F/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/VEFU8F/", "attachments": []}, {"guid": "f0dca199-2f7f-5437-a86e-f61b9bb2d38e", "code": "PBDXCA", "id": 36691, "logo": null, "date": "2023-10-14T11:30:00-04:00", "start": "11:30", "duration": "00:20", "room": "Room 401", "slug": "bsidesatl-2023-36691-cloud-vulns-and-keys-and-breaches-oh-my", "url": "https://pretalx.com/bsidesatl-2023/talk/PBDXCA/", "title": "Cloud vulns and keys and breaches - Oh My!", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "2023 was a fascinating year for cloud vulnerabilities that have shaken the shared responsibility model to its core. What happens to our risk analysis when we not only have to worry about a rogue public S3 bucket from application teams, but also threat actors tunneling through cloud provider internal infrastructure?\r\n\r\nThis talk will revolve around my experience disclosing a vulnerability to Google Cloud and my following trip down the cloud vulnerability rabbit hole. Additional anecdotes from Azure, Oracle Cloud, and AWS vulnerabilities will be covered. Folks thinking about moving to the cloud, living in the cloud, or migrating off the cloud are encouraged to share their thoughts about the ever growing cloud-prominent future. Audience members will walk away with a deeper understanding of the cloud vulnerability landscape, the evolving future of cloud provider responsibilities, and how they can get started with cloud security research.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "3K898Z", "name": "Jackson Reid", "avatar": "https://pretalx.com/media/avatars/3K898Z_W4vBYxP.webp", "biography": "Jackson is a security architect focused on multi cloud and container technologies. Outside of work he can be found drinking coffee or tinkering with his server rack.", "public_name": "Jackson Reid", "guid": "752c5dc1-a7bc-5ad6-bddf-6aa41775c442", "url": "https://pretalx.com/bsidesatl-2023/speaker/3K898Z/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/PBDXCA/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/PBDXCA/", "attachments": []}, {"guid": "8e514d26-115e-54f3-9aa3-c4caa495c293", "code": "FMGHZ3", "id": 36632, "logo": null, "date": "2023-10-14T13:00:00-04:00", "start": "13:00", "duration": "00:50", "room": "Room 401", "slug": "bsidesatl-2023-36632-bare-knuckle-forensics-for-white-knuckle-moments", "url": "https://pretalx.com/bsidesatl-2023/talk/FMGHZ3/", "title": "Bare Knuckle Forensics for White Knuckle Moments", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Murphy's law says anything that can go wrong will. A colleague of my mom during her professional career once quipped that McGillicudy's law says Murphy was an optimist. Most of us here have instrumented environments, tools, run books, techniques and procedures. We know how to take those tools and find evil and eradicate from our environment. That's great, when the malicious activity is on a known server that was built to the corporate image and all tools are installed properly, functioning perfectly, and reporting back regularly. I don't think I have ever worked a case like that. Forensics cases happen on systems that are new, old, unknown, shadow IT, forgotten about in some corner and result in an email telling you that your system is part of a DDoS on their network and to cut it out, or an email from admin saying \"I found this strange file on my server and I didn't put it there\".  What do you do now? Once you have gotten the resulting panic out of your system, refilled your soda and taken a deep breath, you have to triage and do forensics on this unknown orphan system from who knows where built with who knows what for anyone's guess at a purpose. How do you do that?   You improvise! That is what this talk is about. This talk will discuss windows OS built in commands, free and open source tools, and techniques to solve this problem.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "MSWZC9", "name": "Tony Drake", "avatar": null, "biography": "Tony Drake has been working in security and security adjacent roles for almost 3 decades. Over the years he has held positions ranging from UNIX and Linux administration to system architecture, engineering, application security, security administration, IR, Forensics and \"hey security guy\". He currently is the Lead Researcher for Threat Intelligence at the Intercontinental Exchange where he works on long term tactical security challenges to advance the next generation of security solutions.", "public_name": "Tony Drake", "guid": "70f8d21b-a533-5827-bd7e-5d9546c2f52c", "url": "https://pretalx.com/bsidesatl-2023/speaker/MSWZC9/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/FMGHZ3/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/FMGHZ3/", "attachments": []}, {"guid": "bf6b2ff4-76a7-533b-aec7-6b38394bbe08", "code": "KDJJ8G", "id": 36592, "logo": null, "date": "2023-10-14T14:00:00-04:00", "start": "14:00", "duration": "00:20", "room": "Room 401", "slug": "bsidesatl-2023-36592-stupid-log-tricks", "url": "https://pretalx.com/bsidesatl-2023/talk/KDJJ8G/", "title": "Stupid Log Tricks", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "Would you like to search petabytes of security logs in milliseconds?  Lower the cost of your SIEM or swap out your vendor with the push of a button?  Easily deliver logs to multiple tools in real time?  Deliver a consistent search experience to your SOC regardless of source?  Then this is the talk for you!  We'll cover our journey from a bunch of devices blasting data into an expensive and ineffective black hole to a modern architecture built on open source components.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "EFGWGR", "name": "Matt Carothers", "avatar": "https://pretalx.com/media/avatars/EFGWGR_Gl0rtdg.webp", "biography": "Matt Carothers is a Sagittarius. He enjoys sunsets, long hikes in the mountains, and intrusion detection. After studying Computer Science at the University of Oklahoma, he accepted a position with Cox Communications in 2001 under the leadership of renowned thought leader and virtuoso bass player William \u201cWild Bill\u201d Beesley, who asked to be credited in this bio. There Matt formed Cox's first customer safety department, which he led for several years, and today he serves as Cox\u2019s Senior Principal Security Architect.  On weekends you can usually find him crashing radio controlled planes and 3d printing replacement parts for them.", "public_name": "Matt Carothers", "guid": "0e479750-c2dd-597d-a3c4-438cb5454ce2", "url": "https://pretalx.com/bsidesatl-2023/speaker/EFGWGR/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/KDJJ8G/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/KDJJ8G/", "attachments": []}, {"guid": "ea08b238-19e8-58db-93e2-cf9e754ff9b4", "code": "T9PW97", "id": 36355, "logo": "https://pretalx.com/media/bsidesatl-2023/submissions/T9PW97/Its_Security_Yall_LOGO_U6SvAGZ.jpg", "date": "2023-10-14T15:00:00-04:00", "start": "15:00", "duration": "00:20", "room": "Room 401", "slug": "bsidesatl-2023-36355-improving-incident-response-or-is-it-incident-management", "url": "https://pretalx.com/bsidesatl-2023/talk/T9PW97/", "title": "Improving Incident Response or is it Incident Management.", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "Howdy y\u2019all, cybersecurity incident response is my passion. I have 5 years of experience in Incident Response, with a total of almost 9 years of experience in Cybersecurity as a whole. I have built SOC teams and have created Incident Response Playbooks for several companies in my 5 years doing this. I wanted to share this passion with you.\r\nAs you know, cyberattacks are becoming more and more common. In fact, a recent study by the Ponemon Institute found that the average cost of a data breach is now $3.86 million.\r\nThat's why it's so important for organizations to have a strong incident response plan in place. A good incident response plan will help you to quickly identify and contain a cyberattack, minimize the damage, and recover your systems and data.\r\nIn this presentation, we'll discuss the basics of incident response, including:\r\n\u2022\tWhat is incident response?\r\n\u2022\tWhy is it important?\r\n\u2022\tWhat are the steps of incident response?\r\n\u2022\tHow can you improve your incident response plan?\r\nWe'll also provide some additional tips for improving your cybersecurity posture and reducing the risk of a cyberattack.\r\nSo, whether you're just starting to think about incident response or you're looking for ways to improve your existing plan, I hope you'll find this presentation helpful.\r\nLet's get started!\r\nWhat is Incident Response?\r\nWhy it is important.\r\nWhat are the steps of Incident Response?\r\nHow can you improve your Incident Response?", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "FAXMFE", "name": "Reggie T Davis", "avatar": "https://pretalx.com/media/avatars/FAXMFE_qFpbKYY.webp", "biography": "My mom always made sure a computer was in our home. That was the key to my beginning. I was also a very hands on kid who liked taking things apart and putting them back together. As I got older I would repair the VCRs from my mom's school when they would break and troubleshoot computers in different classrooms for her.\r\nSo how did I get wanting to do information security?\r\nWellllll, back when I was about 14 (1994-1995ish), I decided it would be a good idea to download an adult screensaver (I know, I'm dating myself. lol) Well I clicked on the link in the email and ALL HECK BROKE LOOSE!!! LMAO I had popsup and skulls and sirens, the whole 9! I freaked out and looked at the clock, it was currently 2 or 3 pm and my mom would be home around 4:30. So I got to work. I had Spybot: Search & Destory installed. I got it to run. That cut some of the mess, but then I realized the malware was trying to murder my harddrive by writing junk to C drive and the registry. I suddenly had the thought to kill the internet connection, so I reached up and unplugged the phone cable that was connecting my little 56k modem to the world. The data flood stopped. (I breath) I look at the clock, it is getting closer to doomsday. I get Spybot: S&D to clean the C drive, but the registry is another story! I do get a list from Sb:S&D and I painsteakingly begin cleaning the computer. I do a final reboot as I hear the garage door start to go up. Everything comes back up!!! WOOT!!!\r\n\r\nAftermath.\r\nSo first off, my mom didn't find out about this until just a few years ago. Secondly, I started researching (There was no Google, it was metacrawler, excite, Lycos, and yahoo.) I researched malware and everything I could find out about it.\r\n\r\nI skated the deck for a few decades, started my own PC repair business, became the family PC support guy (I mean, I could set the clock on a VCR. If ya know, ya know.) I tried my hand at network security and as an associate degree student, I build Cisco labs (because the equipment was \"OK\" at best but could not do what the actual lab manual required.) for the graduate level students. After get my AA in Computer Network Security, I worked in IAM, I have mad respect for anyone that stuck with it from the early days! Y'all rock! After doing that for a year I moved to SOC work and became a network security engineer for 2 years. After that I stayed in the SOC, but joined the Incident Response Team. That was 5 years ago. It took me well over 20 years to get to where I wanted to be, but here I am. Building Incident Response programs from the ground up.", "public_name": "Reggie T Davis", "guid": "915d60b2-ae2e-54d2-8325-71f8b0a6708e", "url": "https://pretalx.com/bsidesatl-2023/speaker/FAXMFE/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/T9PW97/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/T9PW97/", "attachments": []}, {"guid": "04bbe622-e995-55cd-806e-fe51af0b7075", "code": "FVUT88", "id": 36537, "logo": null, "date": "2023-10-14T15:30:00-04:00", "start": "15:30", "duration": "00:20", "room": "Room 401", "slug": "bsidesatl-2023-36537-pivoting-into-the-cloud", "url": "https://pretalx.com/bsidesatl-2023/talk/FVUT88/", "title": "Pivoting into the Cloud", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "Discussing various applicable ways to pivot into cloud environments such as AWS from web applications by abusing the Instance Metadata Service (IMDS) through a variety of misconfigurations.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "9PHJJE", "name": "Andrew Johnson", "avatar": "https://pretalx.com/media/avatars/9PHJJE_5aflqgY.webp", "biography": "Andrew Johnson\r\nSenior Penetration Tester\r\nOSCP | eWPTXv2", "public_name": "Andrew Johnson", "guid": "387f65c3-1a70-5bd3-b4f4-fc2d13303e88", "url": "https://pretalx.com/bsidesatl-2023/speaker/9PHJJE/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/FVUT88/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/FVUT88/", "attachments": []}, {"guid": "f96cb98d-2f98-59f5-b334-797597be3da5", "code": "WTYL9X", "id": 36658, "logo": null, "date": "2023-10-14T16:00:00-04:00", "start": "16:00", "duration": "00:20", "room": "Room 401", "slug": "bsidesatl-2023-36658-threat-intel-for-effective-recovery", "url": "https://pretalx.com/bsidesatl-2023/talk/WTYL9X/", "title": "Threat Intel for Effective Recovery", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "Responding to a post-compromise cyber incident often stops after recovery, however organizations and their associates remain the target of attacks long after suffering a breach. The impact of attacks like ransomware extends beyond the initial encryption or exfiltration, with residual threats often lingering in the shadows. In this presentation, we'll explore the critical aftermath of ransomware attacks, focusing on deep/dark web research and the integration of threat intelligence for effective post-recovery considerations.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "ARRQLX", "name": "Alex Dangel", "avatar": "https://pretalx.com/media/avatars/ARRQLX_rxMURB4.webp", "biography": "Alex is a dedicated Threat Intel, Response, and Detection Engineering enthusiast. He currently runs the Red Team at Barracuda Networks and helps protects their customers through XDR-powered security integrations and operations. In this role, he works with companies who are dealing with critical cyber security incidents and uses these investigations to create detections to help the SOC catch future threats.", "public_name": "Alex Dangel", "guid": "221a0d7e-4208-557b-8101-8d8806c297f8", "url": "https://pretalx.com/bsidesatl-2023/speaker/ARRQLX/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/WTYL9X/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/WTYL9X/", "attachments": []}], "Room 402": [{"guid": "e21d27a0-1978-5103-8370-70014481b001", "code": "TYJECP", "id": 36890, "logo": "https://pretalx.com/media/bsidesatl-2023/submissions/TYJECP/BSidesATLELFART_bRhj72R.png", "date": "2023-10-14T09:30:00-04:00", "start": "09:30", "duration": "00:50", "room": "Room 402", "slug": "bsidesatl-2023-36890-elf-binary-infection-attacks-for-persistence-and-heuristic-detection", "url": "https://pretalx.com/bsidesatl-2023/talk/TYJECP/", "title": "ELF Binary Infection Attacks For Persistence and Heuristic Detection.", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "ELF binary infection has been around for roughly 25 years, but is still an underutilized style of persistence. Instead most persistence mechanism particularly on Linux are focused on modifications of plain-text configurations where either a malicious user account is added to the system or execution of malicious binary or script takes place. The problem with such mechanism is that they are antiquated and are well known. In the event suspicions of system compromise takes place, most system administrators and IR personnel will check these configurations for malicious modifications.  ELF binary infection methods offer a more covert form of carrying out malicious activity because the code can reside in legitimate programs and execute in their context. The lack of knowledge and analysis skills surrounding ELF binaries also serves as a barrier for detection. Both current automated tools and personnel are far behind in the arena of detection and analysis in comparison to their counterparts on the Windows platform. Using applications such as d0zer, we will explore utilizing old and novel techniques to infect targets in order to demonstrate infection capability for offensive purposes. For defense/detection I will demonstrate how basic and powerful heuristics can be utilized to help bridge the gap that exists between current Linux antivirus technology and ELF binary infection algorithms.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "CWWMCX", "name": "Chad Delecia", "avatar": null, "biography": "Just a nerd employed as penetration tester and offensive security researcher. Currently involved in two communities (tmp.0ut and VX-Underground) that produced printed and electronic magazines around malware development.", "public_name": "Chad Delecia", "guid": "d30cbdbe-a2db-5f93-bac4-9e9181f2000d", "url": "https://pretalx.com/bsidesatl-2023/speaker/CWWMCX/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/TYJECP/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/TYJECP/", "attachments": []}, {"guid": "29c96a68-fba4-5195-85ed-3f357257890b", "code": "FEVENJ", "id": 36315, "logo": "https://pretalx.com/media/bsidesatl-2023/submissions/FEVENJ/download_njbJ6fg.jpg", "date": "2023-10-14T10:30:00-04:00", "start": "10:30", "duration": "00:50", "room": "Room 402", "slug": "bsidesatl-2023-36315-jamboree-java-android-magisk-burp-objection-root-emulator-easy", "url": "https://pretalx.com/bsidesatl-2023/talk/FEVENJ/", "title": "JAMBOREE: Java Android Magisk Burp Objection Root Emulator Easy", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Get a working portable Python/Git/Java environment on Windows in SECONDS without having local administrator, regardless of your broken Python environment. Our open-source script downloads directly from proper sources without any binaries. While the code may not be perfect, it includes many useful PowerShell tricks.\r\n\r\nRun Android apps and pentest without the adware and malware of BlueStacks or NOX.\r\nRun BloodHound Active Directory auditing tool\r\nAUTOMATIC1111 Stable Diffusion web UI A browser interface based on Gradio library for Stable Diffusion\r\nAutoGPT ( Setup for Pay as you go gpt3-turbo https://platform.openai.com/account/usage )\r\nPyCharm\r\nAndroid Debloat Tools\r\nHow it works:\r\nTemporarily resets your windows $PATH environment variable to fix any issues with existing python/java installation\r\nBuild a working Python environment in seconds using a tiny 16 meg nuget.org Python binary and portable PortableGit. Our solution doesn't require a package manager like Anaconda.\r\n\r\n** comming soon SaftyNet Bypass from Yuzzuff AKA N2R2D2 **", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "V7Q38C", "name": "Robert McCurdy", "avatar": "https://pretalx.com/media/avatars/V7Q38C_7GRJCc9.webp", "biography": null, "public_name": "Robert McCurdy", "guid": "ce57d203-78a3-535d-89db-6604e9e57222", "url": "https://pretalx.com/bsidesatl-2023/speaker/V7Q38C/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/FEVENJ/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/FEVENJ/", "attachments": []}, {"guid": "45e7984e-ef04-5f55-ba66-3434cf6dd0ae", "code": "DRCNU8", "id": 36599, "logo": null, "date": "2023-10-14T11:30:00-04:00", "start": "11:30", "duration": "00:20", "room": "Room 402", "slug": "bsidesatl-2023-36599-hands-off-keyboard-cyber-incident-commander-primer", "url": "https://pretalx.com/bsidesatl-2023/talk/DRCNU8/", "title": "Hands off keyboard: Cyber Incident Commander primer", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "You have been appointed as the Incident Commander for a security incident. Congratulations! Do you know what is expected of you? Have you received any training on Incident Command and role expectations? Does your IR plan or playbooks help you execute on your incident command duties? If you answer no to any of these questions, then this presentation is for you...and you are not alone. While there is a ton of educational material on DFIR and hands-on-keyboard Incident Response, there is very little focus on the Incident Commander role. In my experience a good incident commander can make a big difference in making \u201cIR boring\u201d - that desired state where surprises are minimized and where the IR team executes on their mission like the pit crew on an F1 race.\r\n\r\nIn this session I will share lessons learned in Incident Command from multiple types of IR engagements (product security, data breaches, network compromise, and  \u201cmajor risk\u201d incidents like Log4j). We will talk about the Triangle of IR communications, how to lead an incident meeting (yes, a meeting!), and the importance of \u201cremaining neutral\u201d, even when handling overexcited executives. There will be some stories, but you will leave with practical advice and actions you can take in your next incident.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "TD7GEM", "name": "Jorge Lopez", "avatar": "https://pretalx.com/media/avatars/TD7GEM_KXRdviX.webp", "biography": "Jorge leads Detection and Response at Zoom, encompassing the SOC, IR, Detection Engineering, Threat Intelligence, and Security Logging. Prior to Zoom he led Security Operations and Response at Peloton, held several security and non-security roles at Microsoft, and piloted a desk in the US Air Force. Jorge hails from Puerto Rico, but has lived in ten different cities before relocating to the Alpharetta area in 2021.", "public_name": "Jorge Lopez", "guid": "09d68404-5f83-5e21-b1f9-ad11e692765e", "url": "https://pretalx.com/bsidesatl-2023/speaker/TD7GEM/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/DRCNU8/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/DRCNU8/", "attachments": []}, {"guid": "d2646ef2-fb38-59d3-bf13-39d3702dd84f", "code": "7EAAUW", "id": 36720, "logo": null, "date": "2023-10-14T13:00:00-04:00", "start": "13:00", "duration": "00:50", "room": "Room 402", "slug": "bsidesatl-2023-36720-cmmc-who-the-basics-of-new-dod-cybersecurity-compliance", "url": "https://pretalx.com/bsidesatl-2023/talk/7EAAUW/", "title": "CMMC Who? The Basics of New DoD Cybersecurity Compliance", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "The Cybersecurity Maturity Model Certification (CMMC) is the new security program the Department of Defense (DoD) is requiring Defense Industrial Base (DIB) contractors to comply with. CMMC 2.0, released in late 2021, aims to protect Controlled Unclassified Information (CUI) with the evolving nature of contemporary cybersecurity threats in mind. In this talk, Chris Silvers will explore the historical progression of DoD cybersecurity requirements (including the 9/11 Commission Report), highlight the most impactful new components of in CMMC, and provide his expert guidance for DIB contractors to forge a path to certification. \r\n\r\nChris, one of less than 100 individuals officially certified as both a Certified CMMC Provisional Assessor and Instructor, has led CMMC instruction for more than 500 students. His positioning on the front lines of the CMMC 2.0 rollout, and his cumulative 25-plus years in cybersecurity, uniquely qualify him to guide DIB contractors through the certification process.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "V9QRJ3", "name": "Chris Silvers", "avatar": "https://pretalx.com/media/avatars/V9QRJ3_GU0u1O0.webp", "biography": "With more than 25 years of information security experience, Chris Silvers, CISSP, MBA, is the Founder and Principal Consultant at CG Silvers Consulting, a boutique information security firm based in Atlanta, GA. He is an established presenter and instructor, bringing an engaging, relatable storytelling style to all speaking engagements. In the classroom, Chris has worked with thousands of students, from 8-year-old Girl Scouts learning how to stay safe online to career forensic architects in government positions. Chris is also one of less than 100 individuals officially certified as both a Provisional CMMC Assessor and a Provisional CMMC Instructor, rendering him a uniquely qualified CMMC instructor for his almost 500 Defense Industrial Base students to date. On the presentation stage, he has been featured at DEF CON, TEDx, DerbyCon, and various universities, community events, and industry conferences. Chris regularly delivers engaging presentations on topics broadly ranging from social engineering, the state of the cyber security industry, cyber safety for families, and more. Chris' 2017 TEDx talk, The Cyber Skills Gap, has amassed more than 100,000 views and counting on YouTube.", "public_name": "Chris Silvers", "guid": "a4580a8a-52c3-5591-b947-61ebed040483", "url": "https://pretalx.com/bsidesatl-2023/speaker/V9QRJ3/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/7EAAUW/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/7EAAUW/", "attachments": []}, {"guid": "f090773c-fdd2-528f-95f0-29d65b06005d", "code": "KSEC3A", "id": 36218, "logo": null, "date": "2023-10-14T14:00:00-04:00", "start": "14:00", "duration": "00:50", "room": "Room 402", "slug": "bsidesatl-2023-36218-sliver-me-timbers-a-c2-alternative-to-cobalt-strike", "url": "https://pretalx.com/bsidesatl-2023/talk/KSEC3A/", "title": "Sliver Me Timbers: A C2 Alternative to Cobalt Strike", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Cobalt Strike is the go-to C2 framework for security professionals and cyber criminal. Cobalt Strike's popularity has come at a cost to red teamers. It has become heavily signatured and requires a lot of customization to bypass a competent blue team.\r\n\r\nSliver is an excellent alternative to Cobalt Strike and is free. This will be mainly a technical presentation on the ins and outs of Sliver. Still, it should have some good high-level info for a general audience.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "DYMC3U", "name": "Steven Peterson", "avatar": "https://pretalx.com/media/avatars/DYMC3U_rKkGCcM.webp", "biography": "Founder and Chief Hacking Officer of White Box Security. Steven is a seasoned veteran of the network security space with over 17 years of experience in both offensive and defensive roles. Steven has been focused on penetration testing and red teaming for over a decade.", "public_name": "Steven Peterson", "guid": "9b4c955b-afa0-5df9-bd3a-1b4a8373cccb", "url": "https://pretalx.com/bsidesatl-2023/speaker/DYMC3U/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/KSEC3A/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/KSEC3A/", "attachments": []}, {"guid": "b5065c77-53ee-5d42-bbdd-2ad7193ab453", "code": "VM8RHS", "id": 36846, "logo": null, "date": "2023-10-14T15:00:00-04:00", "start": "15:00", "duration": "00:50", "room": "Room 402", "slug": "bsidesatl-2023-36846-writing-your-first-scap-check", "url": "https://pretalx.com/bsidesatl-2023/talk/VM8RHS/", "title": "Writing Your First SCAP Check", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "SCAP can be an \"Easy Button\" for Linux security, and there are lots of documentation and tutorials for tools using existing SCAP content to harden or scan a system. But wouldn\u2019t you like to write your own content? Wouldn\u2019t you like to be able to build or customize the SCAP to your needs rather than waiting on someone else to do it for you? It doesn\u2019t have to be scary. We\u2019ll teach you how. In under an hour we\u2019ll take you from completely new to SCAP to able to use it to create your own automated checks.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "DAWFVL", "name": "Winston Messer", "avatar": null, "biography": "Winston is a senior research scientist at the Georgia Tech Research Institute.  He is a security professional and a Linux enthusiast.", "public_name": "Winston Messer", "guid": "00d95308-1177-5610-bb4a-33eccad91fd2", "url": "https://pretalx.com/bsidesatl-2023/speaker/DAWFVL/"}, {"code": "3M97EF", "name": "Ryan Parker", "avatar": "https://pretalx.com/media/avatars/3M97EF_KQIsEDS.webp", "biography": "Ryan is a cyber security engineer at the Georgia Tech Research Institute. Previously, Ryan worked for a government contractor in the Mark Center in Alexandria, Virginia where he configured Linux systems to be compliant with DISA STIGs. Ryan took this knowledge and applied it at GTRI where he developed automated security hardening content utilizing SCAP-based tools. A Red Hat Certified Engineer, Ryan helps support many admins in ensuring their Linux systems are both security compliant and functional. In his spare time, Ryan enjoys rock climbing, cooking, and making sure his cats don\u2019t tear down his house.", "public_name": "Ryan Parker", "guid": "b408f21e-e332-55d6-838e-1b126984cef7", "url": "https://pretalx.com/bsidesatl-2023/speaker/3M97EF/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/VM8RHS/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/VM8RHS/", "attachments": []}, {"guid": "3ab0d1ba-0edc-5128-81ab-4461fea0a66e", "code": "7BF8FH", "id": 36848, "logo": null, "date": "2023-10-14T16:00:00-04:00", "start": "16:00", "duration": "00:20", "room": "Room 402", "slug": "bsidesatl-2023-36848-where-to-start-start-at-the-end-point", "url": "https://pretalx.com/bsidesatl-2023/talk/7BF8FH/", "title": "Where to Start? Start at the End...Point", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "With a small budget and not much support from Senior Leaders where do you begin to carve out a Cyber Security program?", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "FNVRWR", "name": "Belinda Mobley", "avatar": "https://pretalx.com/media/avatars/FNVRWR_wvIXNoH.webp", "biography": "Belinda Mobley has been in the EDR space since 2017. She began moving into Cyber Security with Endpoint Protection in the Point of Sale environment back in 2011. With over 35 years of IT Industry and Security experience she is great in a crisis, but better at preventing one through EDR tools.", "public_name": "Belinda Mobley", "guid": "f9a81c34-18f6-51ea-b2dc-952344c5f68d", "url": "https://pretalx.com/bsidesatl-2023/speaker/FNVRWR/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/7BF8FH/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/7BF8FH/", "attachments": [{"title": "BMobley - Start at the EndPoint Handout", "url": "/media/bsidesatl-2023/submissions/7BF8FH/resources/Handout_-_Where_to_Start-Start_at_the_End-Po_X0OAeN1.pdf", "type": "related"}]}], "Room 460": [{"guid": "2421a74c-f572-50b1-b47b-164d5d4deb4c", "code": "SE9DSV", "id": 36245, "logo": null, "date": "2023-10-14T08:00:00-04:00", "start": "08:00", "duration": "09:00", "room": "Room 460", "slug": "bsidesatl-2023-36245-lockpick-village", "url": "https://pretalx.com/bsidesatl-2023/talk/SE9DSV/", "title": "Lockpick Village", "subtitle": "", "track": null, "type": "Village", "language": "en", "abstract": "Come learn how to pick locks at the Lockpick Village.  All are welcome, regardless of prior experience!  \r\n\r\nYou've never picked a lock before?  This is the place for you to get your feet wet!\r\n\r\nThis event is sponsored by Atlanta Locksport!", "description": null, "recording_license": "", "do_not_record": false, "persons": [], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/SE9DSV/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/SE9DSV/", "attachments": []}], "Room 462": [{"guid": "69af900f-87a7-56aa-a497-62c05786d404", "code": "GYZ3JV", "id": 36878, "logo": null, "date": "2023-10-14T09:30:00-04:00", "start": "09:30", "duration": "00:20", "room": "Room 462", "slug": "bsidesatl-2023-36878-hacker-s-guide-to-starting-your-security-career", "url": "https://pretalx.com/bsidesatl-2023/talk/GYZ3JV/", "title": "Hacker\u2019s Guide to Starting Your Security Career", "subtitle": "", "track": null, "type": "20 minute talk", "language": "en", "abstract": "Despite the information security field having a reported personnel shortage in the hundreds of thousands, breaking into the industry is as hard as ever. In this presentation, I will share the lessons I have learned the hard way including avoiding common pitfalls, up-skilling the right way, and finding communities that will help you prosper. Additionally, this talk will arm you with a mental model to recognize and take advantage of the opportunities available to you.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "MDTQCQ", "name": "Ayub Yusuf", "avatar": "https://pretalx.com/media/avatars/MDTQCQ_hS4l2WZ.webp", "biography": "Ayub Yusuf is a Penetration Tester at Black Hills Information Security. He holds several industry certifications including the OSCP and 6 GIAC certifications. Ayub is an active member of the infosec community where he is a Teaching Assistant at the SANS Institute, a volunteer at Antisyphon Training, and a competitor in capture the flag competitions.", "public_name": "Ayub Yusuf", "guid": "a3fc1e34-8a8e-5042-b11b-f572bbbbe065", "url": "https://pretalx.com/bsidesatl-2023/speaker/MDTQCQ/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/GYZ3JV/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/GYZ3JV/", "attachments": []}, {"guid": "354b3132-e7ac-5fee-aa1f-7ee39a51e6b1", "code": "L7NBXE", "id": 36894, "logo": null, "date": "2023-10-14T10:00:00-04:00", "start": "10:00", "duration": "00:50", "room": "Room 462", "slug": "bsidesatl-2023-36894-offer-comparisons-to-make-informed-hiring-career-decisions", "url": "https://pretalx.com/bsidesatl-2023/talk/L7NBXE/", "title": "Offer Comparisons to Make Informed Hiring & Career Decisions", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Taking a new job, and hiring, are both extremely complex. \r\n\r\nTaking a new job, and hiring, are both extremely complex. \r\nWhen searching for a new job, or hiring, the way that opportunities are ranked has measurable metrics that can be used to improve retention, increase career growth, and improve the hiring process. In this talk, 20 minutes will be spent on the job searching side discussing how to rank opportunities by not just their salary and benefits. The growth opportunities, culture, training budgets, and much more should be considered for longevity. Following that, 20 minutes will be spent on the hiring side - how to make sure the offers being generated are the strongest they can be, to compete in this very challenging hiring climate. Knowing how people view the career opportunities, and their futures in those roles, is a very powerful element of extending offers that are accepted and retaining people in those roles.  A downloadable spreadsheet will be made available, and posted after the event and a limited number of printouts will be provided.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "HRYNWY", "name": "Amy Knoell", "avatar": "https://pretalx.com/media/avatars/HRYNWY_BCePUbP.webp", "biography": "CEO and Co-Founder of SecureRecruit, Amy is an experienced advocate for better hiring practices in the cybersecurity community. Recruiting continuously for 23 years, with experience building strategic partnerships and recruiting top cyber talent, she has focused on staffing positions specifically in the Cybersecurity space for the last 10 years. Amy understands the complexity of the challenges faced by corporations when it comes to hiring talented Cyber Security Professionals. Her career specialties include Product Security, Software Security, AppSec, DevSec, Security Architecture, and Security Leadership. Amy is born and raised from Georgia, and in her free time she enjoys music, getting sunshine, and spending time with her son Denver.", "public_name": "Amy Knoell", "guid": "a1f05bb9-ddea-5e41-876a-b32e8aa25102", "url": "https://pretalx.com/bsidesatl-2023/speaker/HRYNWY/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/L7NBXE/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/L7NBXE/", "attachments": [{"title": "Offer Checklist", "url": "/media/bsidesatl-2023/submissions/L7NBXE/resources/Offer_Comparison_Checklist_Preview_4QiJMC8.xlsx", "type": "related"}]}, {"guid": "95c3f349-0897-5385-bb2d-6c8cde375e76", "code": "XFJKRP", "id": 36223, "logo": null, "date": "2023-10-14T11:00:00-04:00", "start": "11:00", "duration": "00:50", "room": "Room 462", "slug": "bsidesatl-2023-36223-think-like-a-magnet-how-to-attract-retain-and-develop-amazing-people", "url": "https://pretalx.com/bsidesatl-2023/talk/XFJKRP/", "title": "Think like a magnet: how to attract, retain, and develop amazing people", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "Modern organizations in every industry are experiencing systemic challenges with hiring and retaining people. This talk will walk through steps myself and the risk3sixty leadership team have used to punch above our weight in a competitive industry.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "AECVJZ", "name": "Jessica A Lucas", "avatar": "https://pretalx.com/media/avatars/AECVJZ_oCPlUNc.webp", "biography": "Jessica leads risk3sixty\u2019s people and Vibes (HR) functions and has been instrumental in building the company\u2019s culture of \u2018Investing in People.\u2019\r\n\r\nJessica has extensive experience as a human resource officer, specializing in talent management and development for combat units.\r\n\r\nJessica graduated and received a B.S. from the United States Military Academy at West Point and her Master\u2019s in Leadership from Georgetown University. She also holds Senior Talent Manager Practitioner certification.", "public_name": "Jessica A Lucas", "guid": "881bca2f-4c88-52e5-998e-e6bf663dd47a", "url": "https://pretalx.com/bsidesatl-2023/speaker/AECVJZ/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/XFJKRP/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/XFJKRP/", "attachments": []}, {"guid": "491a1cd6-eead-5429-b97e-6d0160acb260", "code": "DQ8UYT", "id": 36884, "logo": "https://pretalx.com/media/bsidesatl-2023/submissions/DQ8UYT/The_Art_of_Service_gMSNrvs.png", "date": "2023-10-14T13:00:00-04:00", "start": "13:00", "duration": "00:50", "room": "Room 462", "slug": "bsidesatl-2023-36884-the-art-of-service-5-lessons-learned-about-life-leadership-and-business-from-building-a-cybersecurity-company", "url": "https://pretalx.com/bsidesatl-2023/talk/DQ8UYT/", "title": "The Art of Service: 5 Lessons Learned About Life, Leadership, and Business From Building a Cybersecurity Company", "subtitle": "", "track": null, "type": "50 minute talk", "language": "en", "abstract": "I would like to share 5 important lessons I have learned over the last 7 years born from my experience founding and building a cybersecurity company. Lessons about life, what it means to be a leader, business, and serving others. These are lessons about what I thought was true - and what I have found to be true instead. The Art of Service will help leaders rethink how to be a more effective and fulfilled leader. This presentation is ideal for current or emerging cybersecurity leaders looking for tools to shape their career. We will discuss 5 important lessons and 15 tactical tools that they can take from this presentation and apply immediately.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "MUKLEY", "name": "Christian Hyatt", "avatar": "https://pretalx.com/media/avatars/MUKLEY_YsQ2YVZ.webp", "biography": "Christian is an entrepreneur, executive, and advisor to technology companies on cybersecurity. As an entrepreneur Christian has helped build one of the fastest growing cybersecurity technology companies in the nation. Christian is the CEO and Co-founder of risk3sixty.", "public_name": "Christian Hyatt", "guid": "747f0eb8-5985-5ff9-be8e-5c10beed639a", "url": "https://pretalx.com/bsidesatl-2023/speaker/MUKLEY/"}], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/DQ8UYT/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/DQ8UYT/", "attachments": []}], "Room 464": [{"guid": "ac2bb4b1-b233-5152-93f0-a79ba6120f50", "code": "JB3MS8", "id": 36243, "logo": null, "date": "2023-10-14T09:30:00-04:00", "start": "09:30", "duration": "07:00", "room": "Room 464", "slug": "bsidesatl-2023-36243-network-king-of-the-hill", "url": "https://pretalx.com/bsidesatl-2023/talk/JB3MS8/", "title": "Network King of the Hill", "subtitle": "", "track": null, "type": "Village", "language": "en", "abstract": "Come test your skills with Network King of the Hill!  \r\n\r\nThis event is sponsored and conducted by Kammerdiener Technologies!", "description": null, "recording_license": "", "do_not_record": false, "persons": [], "links": [], "feedback_url": "https://pretalx.com/bsidesatl-2023/talk/JB3MS8/feedback/", "origin_url": "https://pretalx.com/bsidesatl-2023/talk/JB3MS8/", "attachments": []}]}}]}}}