| Events |
|
|
|
|
HolisticInfoSec.org's Russ McRee speaks regularly on information security topics in the hope of sharing knowledge and resources with a wide audience. Russ will present Visualizing APT: Analyzing the targeted attacks against government, military, and industry at the ISSA Puget Sound August 2010 Membership meeting, August 19, 2010, 6:00 to 8:30 pm, City University, Bellevue, WA. Russ is presenting Incident Response in Increasingly Complex Environments at the ISSA International Conference. September 16, 2010, in Atlanta, GA. Past Events
Presented Incident Response in Virtual Environments: Challenges in the Cloud, with Bryan Casper, at the 22nd Annual FIRST Conference in Miami, on Thursday, June 17, 2010, 1300-1400.
Presented Visualizing APT: Analyzing the Zeus attack against government and military to the Washington State HTCIA on April 16, 2010, 10a-12p.
Presented Securing Your Company's Web Presence to ISACA Puget Sound on March 16, 2010, 12p.
Presented Visualizing IDS output: Tools and Methodology at RSA 2010, March 5, 2010, 10:10-11:00 am.
Presented IT Infrastructure Threat Modeling at the ISSA Puget Sound August chapter meeting, August 20, 2009 from 6-8pm.
Presented CSRF: Yeah, It Still Works with Mike Bailey at Defcon 17 on Saturday, August 1, 2009. Presentation slides here .
Russ provided a guest lecture at University of Washington's Certificate Program in Information Systems Security , specifically on the topics Practical Crytography: TrueCrypt and Web Application Security Flaws (May 21, 2009).
Russ participated in a panel discussion at the Ziff Davis Enterprise Security Summit 2008 on October 21, 2008 at the Fairmont Olympic Hotel in Seattle, WA. Details here . Presented The XSS Epidemic: Discovery, Disclosure, and Remediation to the Puget Sound chapter of the ISSA on August 23, 2008. Presented The XSS Epidemic: Discovery, Disclosure, and Remediation to the Washington Technology Industry Association Security Special Interest Group on July 14, 2008. Details here .
Russ presented Malcode Analysis Techniques for Incident Handlers at the 20th Annual FIRST Conference in Vancouver, B.C. on June 25th, 2008. Details here. Slides here .
Presented The XSS Epidemic: Discovery, Disclosure, and Remediation at the 2008 ISSA NW Regional Security Conference on April 23rd, 2008, in Olympia, WA. This presentation was the result of a great deal of research for the April 2008 toolsmith of the same approximate title. The most disturbing finding during this process was the discovery of yet another batch of Hacker Safe branded sites that are certainly not. Refer to the blog post and video for more information.
Russ gave an overview of RAPIER during a SANS Ask The Expert Webcast, Malcode Analysis and Response: Proficiency vs. Complexity on March 20th, 2008.
Russ offered Malcode Analysis Techniques for Incident Handlers at SecureWorld Expo Seattle 2007 : The threat landscape changes constantly, driven in part by the "bot economy" and changing malcode techniques. In response, incident handler techniques must keep pace. This presentation will cover tools and methodology useful to handlers, analysts, and administrators. From detection and discovery, capture and containment, count on a useful discussion meant to further your understanding of the information security practitioner's greatest bane.Slides available below.
Russ taught SANS Stay Sharp Google Hacking and Defense on July 19th, 2007 in Bellevue, WA. SSP-GHD offers a "fundamental understanding of technical defense measures to uncover unintended information disclosures, close common holes in web servers and Internet connected devices as well as clean up the exposures discovered."
Guest Blog Posts
Microsoft Internet Explorer Blog: Statistical Validation of the IE8 XSS Filter Microsoft Malware Protection Center Threat Research & Response Blog: Another Reason to Avoid Piracy
Presentations
Malcode Analysis for Incident Handlers is being updated for the 20th Annual FIRST Conference. |
| < Prev | Next > |
|---|







