Jan 2020
13 Mon
14 Tue
15 Wed
16 Thu
17 Fri
18 Sat 09:00 AM – 05:40 PM IST
19 Sun
Vaibhav Gupta
Abstract:
AWS is the most widely used cloud environments today and almost every security professional has to encounter this environment whether you are attacking an organization or defending it. In this fast-paced workshop, we will teach participants with some neat tools, techniques, and procedures to attack the most widely used AWS services as well as to defend them. Below is the broad agenda for the workshop:
Takeaways:
Students will be able to understand and appreciate the delta in attack surface which gets added due to moving to the cloud. And subsequently, design architecture and develop applications to defend them.
What will participants be provided?
Target Audience:
Detailed Outline:
Quick primer of AWS (15 min)
Explaining the virtual target enterprise scenario (5 min)
Recon + Attacking S3 buckets (25 Mins)
Exploiting web application flaws to compromise AWS services (40 Mins)
Attacking Serverless applications (40 Mins)
Defending networks in AWS (15 Mins)
Automating defenses/security monitoring in AWS environments (30 Mins)
Conclusion and Wrap up (10 Mins)
Prerequisites for students:
Vaibhav Gupta
Vaibhav is working as a Security Researcher with Adobe. His expertise lies in infusing design and architecture level security in applications hosted in-house and on cloud environments. With ~10 years of diverse InfoSec exposure, he has strong experience in attacking and defending applications and cloud environments.
He has shared his knowledge at multiple international platforms like Blackhat USA, OWASP AppSec Europe, Nullcon, BSides Las Vegas, Defcon USA, etc. He is a strong supporter of open communities and is leading OWASP, BSides, and Null in Delhi region.
LinkedIn: https://www.linkedin.com/in/vaibhav0
Twitter: https://twitter.com/VaibhavGupta_1
Sandeep Singh:
Sandeep is a Security Managing Consultant with NotSoSecure, a specialist IT Security company. He has over 5 years of experience in delivering high-end security consulting services to clients across the globe. He is the co-lead of OWASP Delhi chapter and Community Manager of null community and actively contributes to the local security community. He has conducted and delivered many talks and workshops for the local community in the past.
Hosted by
{{ gettext('Login to leave a comment') }}
{{ gettext('Post a comment…') }}{{ errorMsg }}
{{ gettext('No comments posted yet') }}