BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: Sold Out - Email Detection Engineering and Threat Hu
 nting\n   When: Saturday\, Aug 10\, 14:00 - 17:59 PDT\n   Where: Springhil
 l Suites/Desert Inn - [1]Map\n\n   Description:\n\n   Email remains the #1
  initial access vector for commodity malware and\n   nation state actors. 
 Historically\, tackling email-based threats has\n   been considered the pu
 rview of black-box vendor solutions\, with\n   defenders having limited sc
 ope (or tooling!) to swiftly and\n   effectively respond to emerging attac
 ker activity and novel offensive\n   tradecraft. In this workshop\, attend
 ees will be given detailed insight\n   into the latest techniques used to 
 deliver prevalent malware strains\,\n   including Pikabot and DarkGate\, a
 nd will hunt through email data to\n   identify this malicious activity\, 
 developing rules to detect and block\n   these attacks. Initially attendee
 s will be introduced to the\n   foundational technologies that enable thre
 at hunting\, detection\n   engineering\, and response in the email domain\
 , before being given\n   access to the email data of a fictitious company 
 seeded with benign\n   and real-world attack data. Throughout the day\, pa
 rticipants will\n   learn to hunt common phishing techniques including: - 
 QR codes -\n   Image-as-content - Drive-by delivery via links and HTML smu
 ggling -\n   Excel attachments with embedded links to SMB shares - ISO att
 achments\n   - PDF attachments with embedded links to malware (PDF -> URL 
 -> ZIP ->\n   WSF) - VIP impersonations - BEC Attendees will be guided thr
 ough the\n   rule creation process\, utilizing free and open detection eng
 ines\n   including Sublime and Yara\, and will be introduced to the signal
 s and\n   email attributes that can be used to craft high-fidelity rules\,
 \n   including targeted user groups\, sentiment analysis\, sender domain a
 ge\,\n   and attachment analysis. Having completed the workshop\, attendee
 s will\n   have a strong understanding of the tools and techniques at thei
 r\n   disposal to defend their organizations from all manor of email\n   t
 hreats.\n\n   Speakers:Alfie Champion\,Josh Kamdjou\n\n   SpeakerBio:  Alf
 ie Champion\, Co-founder at DelivrTo\n\n   Alfie specialises in the delive
 ry of attack detection and adversary\n   emulation services\, actively con
 tributing education content\, tooling\n   and blogs to further the industr
 y. He has previously worked with\n   organisations across multiple industr
 y verticals to uplift and\n   validate their detective capability through 
 red or purple team\n   engagements\, and now leads the global adversary em
 ulation function at\n   a FTSE 250 company. He has previously spoken at Bl
 ackHat USA\, RSA and\n   Blue Team Con 2022\, among others\, and is the co
 -founder of DelivrTo.\n\n   SpeakerBio:  Josh Kamdjou\, Founder and CEO at
  Sublime Security\n\n   Josh has been doing offensive security-related thi
 ngs for the past 12\n   years. He's spent most of his professional career 
 breaking into\n   networks via spear-phishing and other methods\, and buil
 ding software\n   for both the public (Department of Defense) and private 
 sectors. Josh\n   is the Founder and CEO of Sublime Security\, and in his 
 private life\n   enjoys weight lifting\, Martial Arts\, soccer\, and spend
 ing time with\n   his niece and nephew.\n\n   '\n\n   1. #Springhill_Full\
 n\n\n
DTEND:20240811T005900Z
DTSTART:20240810T210000Z
LOCATION:WS - Springhill Suites/Desert Inn
SUMMARY:Sold Out - Email Detection Engineering and Threat Hunting
END:VEVENT
END:VCALENDAR
