BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: Scanning your way into internal systems via URLScan\
 n   When: Friday\, Aug 12\, 16:25 - 17:10 PDT\n   Where: LINQ - 3rd flr - 
 Social B and C (Recon Village) - [1]Map\n\n   SpeakerBio:Rojan Rijal\n   N
 o BIO available\n   Twitter: [2]@uraniumhacker\n\n   Description:\n   URLS
 can has been frequently used by anti-phishing techniques to\n   identify p
 otentially malicious websites. However\, a misconfigured scan\n   could so
 metimes expose internal assets\, domains\, and sensitive\n   information t
 o the public. GitHub had a similar event in 2021 where\n   internal reposi
 tory names got exposed due to a misconfigured scan set.\n\n   The talk wil
 l cover various technologies and their internal usage at\n   sample compan
 ies. Once the technologies are covered the talk will\n   explore how these
  technologies can be queried in URLScan to identify\n   sensitive informat
 ion disclosed by companies.\n\n   The talk will start by explaining and hi
 ghlighting SaaS technologies\n   that oftentime leak sensitive information
  of a company. In addition to\n   the technologies\, the talk will proceed
  to explain how to use\n   extracted information for privilege escalation 
 or access to internal\n   resources. The technologies covered will include
  at minimum: Microsoft\n   Office 365\, GSuite\, Salesforce\, GitHub and S
 AML providers.\n\n   Once the technologies are covered\, the talk will cov
 er how URLScan can\n   help identify these resources en masse. This specif
 ic section of the\n   talk will go over various search queries and regex s
 earches that can\n   be used to reliably retrieve information from these t
 echnologies. Once\n   the basic queries are covered\, the talk will then e
 xplore specific\n   queries that can be combined to reliably pull informat
 ion for a given\n   company.\n\n   The end of the talk will also show samp
 le examples with real companies\n   who I have found to have disclosed sen
 sitive information.\n\n   At the end of the talk\, attendees will be able 
 to walk out with exact\n   queries they can run to find if their company o
 r their target is\n   disclosing sensitive information. In addition\, they
  will also be able\n   to use some disclosed information to further escala
 te their access\n   internally.\n\n   '\n\n   1. https://defcon.outel.org/
 consolidated_page.html#Linq\n   2. https://twitter.com/uraniumhacker\n\n\n
DTEND:20220813T001000Z
DTSTART:20220812T232500Z
LOCATION:RCV - LINQ - 3rd flr - Social B and C (Recon Village)
SUMMARY:Scanning your way into internal systems via URLScan
END:VEVENT
END:VCALENDAR
