BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: The Hard Part of ASM: Ownership Attribution\n   Tags
 : Recon Village | Creator Workshop\n   When: Saturday\, Aug 8\, 12:40 - 15
 :10 PDT\n   Where: LVCCW Level 1 Hall 2 501 (Recon Village) - [1]Map\n\n  
  Description:\n\n   Attack Surface Management (ASM) lives or dies on a dec
 eptively simple\n   question: who owns this? Without reliable attribution\
 , an asset\n   inventory is just a pile of hosts\, domains\, certificates\
 , and cloud\n   endpoints—with no defensible way to scope an organizatio
 n’s true\n   digital footprint or separate first-party infrastructure fr
 om vendors\,\n   subsidiaries\, acquisitions\, joint ventures\, and brand 
 portfolios.\n\n   This talk dives into the real-world challenge of attribu
 ting\n   internet-exposed assets to legal entities\, not just names. Corpo
 rate\n   identity is messy: organizations operate under trade names\, loca
 lized\n   spellings\, legacy names\, and jurisdiction-specific registratio
 ns.\n   Meanwhile\, the internet leaks ownership signals through fragmente
 d\,\n   lossy metadata—RDAP/WHOIS\, certificate subject/issuer fields\, 
 ASN\n   registrations\, DNS TXT verification records\, trademark reference
 s\, and\n   public corporate registries. Each source is incomplete on its 
 own\;\n   together they can still conflict\, drift over time\, and create\
 n   duplicate “identities” that quietly degrade attribution accuracy.\
 n\n   Using the OWASP Amass Project as a concrete reference point\, we’l
 l\n   walk through an attribution-centric discovery workflow: collecting\n
    signals\, normalizing entity identity\, resolving aliases across\n   ju
 risdictions\, and scoring confidence to decide when to merge\, when to\n  
  split\, and when to escalate for analyst review. We’ll also explore\n  
  how attribution errors propagate into ASM outcomes—missed scope\,\n   f
 alse positives\, and blind spots in third-party exposure—and how\n   dis
 ciplined entity modeling can turn noisy OSINT into a repeatable\n   system
  of record.\n\n   Attendees will leave with practical techniques for impro
 ving\n   attribution quality\, a mental model for entity resolution\, and\
 n   actionable ideas for making ASM outputs trustworthy enough to drive\n 
   risk decisions.\n\n   SpeakerBio:  Jeff Foley\, Founder and Project Lead
 er at OWASP Amass\n   Project\n   No BIO available\n   '\n\n   1. #LVCCW_L
 evel1_Hall2\n\n\n
DTEND:20260808T221000Z
DTSTART:20260808T194000Z
LOCATION:Recon Village - LVCCW Level 1 Hall 2 501 (Recon Village)
SUMMARY:The Hard Part of ASM: Ownership Attribution
END:VEVENT
END:VCALENDAR
