|

Russ will be presenting Incident Response in Virtual Environments: Challenges in the Cloud, with Bryan Casper, at the 22nd Annual FIRST Conference in Miami, on Thursday, June 17, 2010, 1300-1400. Abstract Incident response in large production environments is challenging enough. Add layers of virtualization, a constantly dynamic state, as well as a broad external customer base and the challenges deepen exponentially.
This presentation aims to provide recommendations and guidance based on experience and information gathered while conducting incident response in such environments including large virtualized caching networks and cloud-based services. Logging, tooling, forensic methods, and egress-based network security monitoring are amongst the topics to be discussed. This presentation also intends to allow active discussion with participants to share their experiences. |
|
|

Mike Bailey and I discussed CSRF: Yeah, It Still Works at DEFCON 17 on Saturday, August 1st, 2009 at 1100. Presentation slides here . Links to all the PoC videos are in the presentation. |
|
|

Russ presented Visualizing IDS output: Tools and Methodology at RSA 2010, March 5, 2010, 10:10-11:00 am. The session ID was NMS-402 and the room is Orange 306. Slides will be available shortly. |
|
|
The IT Infrastructure Threat Modeling Guide, a Solutions Accelerator I've written with the Solution Accelerators for Security and Compliance team is now available for download via the Technet Library and the Download Center. Networkworld's kind coverage of the guide's release provides additional insight. |
|
|
Issue 17 of (IN)SECURE magazine includes Russ's article Open redirect vulnerabilities: definition and prevention on page 43. (IN)SECURE, if you haven't already discovered, is an excellent publication and is freely available online. |
|
|
|
<< Start < Prev 1 2 Next > End >>
|
| Results 1 - 9 of 13 |