BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//bsidesaugusta2023//speaker//L9GGTA
BEGIN:VTIMEZONE
TZID:EST
BEGIN:STANDARD
DTSTART:20001029T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10;UNTIL=20061029T070000Z
TZNAME:EST
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
END:STANDARD
BEGIN:STANDARD
DTSTART:20071104T030000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=11
TZNAME:EST
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000402T030000
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=4;UNTIL=20060402T080000Z
TZNAME:EDT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
END:DAYLIGHT
BEGIN:DAYLIGHT
DTSTART:20070311T030000
RRULE:FREQ=YEARLY;BYDAY=2SU;BYMONTH=3
TZNAME:EDT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsidesaugusta2023-SBEYDW@pretalx.com
DTSTART;TZID=EST:20231007T141500
DTEND;TZID=EST:20231007T151500
DESCRIPTION:The rise in ransomware attacks and third-party breach notificat
 ions has contributed to reducing the global mean time to detection (MTTD).
  So\, adversary dwell time is likely much higher than perceived. We must a
 lso consider the "unknowns unknowns" that allow attackers to lurk casually
  on our networks like silent ghosts. In this talk\, we will look at a blue
  team tactic for Microsoft Windows environments that will help reduce the 
 dwell time of ghouls feeding on our sensitive data and the ghosts haunting
  our networks. A demo at the end will showcase one way to operationalize t
 he information presented using a custom tool.
DTSTAMP:20260309T213231Z
LOCATION:Track 4
SUMMARY:Detecting Ghouls & Ghosts in the Wires - Michael Edie
URL:https://pretalx.com/bsidesaugusta2023/talk/SBEYDW/
END:VEVENT
END:VCALENDAR
