BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//hack-lu-2023//speaker//9UABYJ
BEGIN:VTIMEZONE
TZID:Europe/Luxembourg
BEGIN:DAYLIGHT
DTSTART:20221016T000000
TZNAME:CEST
TZOFFSETFROM:+0200
TZOFFSETTO:+0200
END:DAYLIGHT
BEGIN:STANDARD
DTSTART:20221030T030000
RDATE:20231029T030000
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20230326T030000
RDATE:20240331T030000
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
SUMMARY:Detecting VPNs/proxies by analyzing their attack patterns over tim
 e - Emanuel Seemann
DTSTART;TZID=Europe/Luxembourg:20231016T113000
DTEND;TZID=Europe/Luxembourg:20231016T115000
DTSTAMP:20260814T181802Z
UID:pretalx-hack-lu-2023-XZPCVE@pretalx.com
DESCRIPTION:At Crowdsec we receive a lot of signals of users detecting att
 acks using our open source intrusion prevention system. We used these sign
 als to detect whether attackers are behind anonymization services such as 
 proxies or VPNs. We show that by monitoring changes in attack behavior ove
 r time we can reliably detect proxies and VPNs and use this data to improv
 e our threat intelligence.
LOCATION:Salle Europe
URL:https://pretalx.com/hack-lu-2023/talk/XZPCVE/
END:VEVENT
BEGIN:VEVENT
SUMMARY:Reviving our oldest Tool - Using Bayesian inference to detect cybe
 r attacks - Emanuel Seemann
DTSTART;TZID=Europe/Luxembourg:20231019T150000
DTEND;TZID=Europe/Luxembourg:20231019T152000
DTSTAMP:20260814T181802Z
UID:pretalx-hack-lu-2023-YAQLW9@pretalx.com
DESCRIPTION:Crowdsec is an open-source IDS/IPS and we recently added a det
 ection capability that is based on Bayesian inference\, a technique which 
 has long been used to detect email spam. We show that this old and simple 
 tool is still incredibly powerful and present how other threat analysts ca
 n improve their threat detection using Bayesian inference.
LOCATION:Salle Europe
URL:https://pretalx.com/hack-lu-2023/talk/YAQLW9/
END:VEVENT
END:VCALENDAR
