FIRST - Improving Security Together 17th Annual Conference - June 2005 Singapore

Join the Global Computer Security Network
June 26 — July 1, 2005
Shangri-La Hotel Singapore




Local Host:

IDA



Conference Platinum Sponsor:

Symantec



Corporate Executive Platinum Sponsor:

Diageo



Gold Sponsors:

Merrill Lynch

Radianz



Silver Sponsors:

SAIC

Hitachi

Microsoft

BT

Patchlink

Conference Overview

Sunday

June 26, 2005

Program Committee Meeting
Welcome Icebreaker Reception

Monday

June 27, 2005

Tutorials

Tuesday

June 28, 2005

Tutorials
Pre AGM Discussion (FIRST Members only)
Birds of a Feather Sessions (BOFs)

Wednesday

June 29, 2005

Welcome and Opening Speech
Keynote Address
Invited Speakers
Technical & Business Tracks
Conference Banquet

Thursday

June 30, 2005

Keynote Address
Invited Speakers
Technical & Business Tracks
FIRST Annual General Meeting (FIRST Members only)

Friday

July 1, 2005

Keynote Address
Invited Speakers
Technical & Business Tracks
Closing Speech

Facilities

Registration - Tower Ballroom Foyer

Sunday (in Lobby)

14:00-18:00

Monday - Wednesday

07:30-17:00

Thursday - Friday

08:00-14:00



Terminal Room - Orchid
Sponsored by TBD

Monday - Thursday

08:00-17:00

Friday

08:00-14:00


Continental Breakfast - Island B

Monday - Friday

08:00-09:00


Lunch - Island B

Monday - Wednesday

12:30-14:00

Thursday

Friday

12:45-14:00

13:00-14:00



Conference Draft Program


Sunday - June 26, 2005
18:00-19:00 Program Committee Meeting - Gardenia Red
Yurie Ito, JPCERT/CC &
Mark McPherson, AUSCERT
Program Chairs
19:00-21:00 Welcome Icebreaker Reception - Waterfall Terrace


Monday - June 27, 2005
09:00-09:10 The Day Ahead
Tutorial Track 1 - Tower A Tutorial Track 2 - Tower B
09:10-12:30

( Break :
10:30-11:00 )

TeadDefend-Organizational and Interorganizational Cyber Defense Training
Hart Rossman and Scott Kennedy
SAIC Integrated Security & Systems Solutions
USA
Creating & Managing Computer Security Incident Response Teams (CSIRTs)
Audrey Dorofee, Robin Ruefle, David Mundie
CERT/CC Software Engineering Institute
Carnegie Mellon University
USA
12:30-14:00 Lunch - Island B
14:00-17:30

( Break :
15:30-16:00 )
Artifact Analysis
Kevin Houle
CERT/CC Software Engineering Institute
Carnegie Mellon University
USA
Creating & Managing Computer Security Incident Response Teams (CSIRTs) -- continued


Tuesday - June 28, 2005
09:00-09:10 The Day Ahead
Tutorial Track 1 - Tower A Tutorial Track 2 -Tower B
09:10-12:30

( Break :
10:30-11:00 )

Building a Logging Infrastructure
Abe Singer
San Diego Supercomputer Center
USA
Crisis Communication and Media Management in Security Incident Response
Marie-Dominique Bonardi
France
12:30-14:00 Lunch - Island B
14:00-17:30

( Break :
15:30-16:00 )

Computer Forensics as Part of a Security Incident Response
Raemarie Schmidt
Vice President Digital Intelligence, Inc.
USA
Security Intelligence and the Business Process
Peter Allor
Internet Security Systems (ISS)
USA
Wireless Security
Michael Warfield
Internet Security Systems (ISS)
USA
18:00-19:00 Pre AGM Discussions (FIRST members only) - Tower A
Klaus-Peter Kossakowski
FIRST Steering Committee Chair
19:00-21:00 Birds of a Feather Sessions
BoF Session 1 - Tower A
BoF Session 2 - Tower B
BoF Session 3 - Azalea Pink
BoF Session 4 - Azalea Red
BoF Session 5 - Azalea White


Wednesday - June 29, 2005
Annual Conference, Day 1 - Tower Banyan & Acacia
09:00-09:10 Welcome and Opening Speech
Klaus-Peter Kossakowski, Ph.D.
FIRST Steering Committee Chair
09:10-09:40 Keynote Address
His Excellency Dr. Lee Boon Yang, Minister
Ministry of Information, Communications and the Arts
Singapore
09:40-10:15 Security Challenges on the Road Ahead
Tim Mather
Chief Information Security Officer
Symantec (FIRST Conference Platinum Sponsor)
USA
10:15-11:00 Break
11:00-12:00 Pondering and Patrolling Network Perimeters
Bill Cheswick
Chief Scientist
Lumeta Corporation
USA
12:00-12:30


Passive DNS Replication
Florian Weimer
Germany
12:30-14:00 Lunch - Island B
12:30-13:30
Lunch session: New Teams Introduction / Activity Update Panel
Technical Track - Tower Banyan & Acacia Business Track -Tower Casuarina
14:00-14:30 Mitigating Rogue Access Points in Corporate Environments
Laurent Butti
France Telecom R&D
France
Dynamics of CSIRT Management
Johannes Wiik
Agder University College
Norway
Klaus-Peter Kossakowski
PRESECURE Consulting
Germany
14:30-15:00 Proposal of the Experimental Environment for Network Worm Infection
Masato Terada
Hitachi
Japan
Framework for CERTs
Thomas Klingmüller
CERT-Bund
Germany
15:00-15:30 Spyware
Aaron T. Hackworth
CERT/CC Software Engineering Institute
Carnegie Mellon University
USA
Security Bulletin Publication at AusCERT using "EzESB"
Matthew Braid & Robert Lowe
AusCERT
Australia
15:30-16:00 Break
16:00-16:30 Network Monitoring on Large Networks
Yao Chuan Han
Taiwan Computer Emergency Response Team / Coordination Center
Taiwan
EWIS in a BOX -or- How to build a national early warning information system in 80 days!
Klaus-Peter Kossakowski
PRESECURE Consulting
Germany
16:30-17:00 A Distributed Intrusion Alert System
Chih-Yao Lin
Taiwan National Computer Emergency Response Team
Taiwan
CVE,CME, ... CMSI? Standardizing System Information
Bernd Grobauer
Siemens CERT
Germany
17:00-17:30



A National Early Warning Capability Based on a Network of Distributed Honeypots -- Detailed Synthesis
Cristine Hoepers
NBSO/Brazilian CERT
Brazil
Vulnerabilities in Consumer Electrics -- DVD Players, Cell Phones Attack Your System?
Keisuke Kamata & Masaki Kubo
JPCERT/CC
Japan
19:00-23:00 Conference Banquet - Island A


USA

Thursday - June 30, 2005
Annual Conference, Day 2 - Tower Banyan & Acacia
09:00-09:10 The Day Ahead
Program Chair
09:10-10:00 Defining the Rules for Trusted Computing: The Global Action Agenda
Jeffrey B. Ritter
Kirkpatrick & Lockhart Nicholson Graham
USA
10:00-10:45 Sharing Incident Data: History, Perspective and a View for the Future
Patrick Cain
President, the Cooper-Cain Group, Inc.
USA
10:45-11:15 Break
11:15-12:00 Backstabbed � Abusing Disaster Recovery Systems
H.D. Moore
Director of Vulnerability Research
Digital Defense, Inc.
USA
12:00-12:45


How to Reduce Incidents by Employing Pro-Active Preventions
Howard Schmidt
Former White House Cyber Security Advisor and Chief Security Strategist, USCERT
12:45-14:00 Lunch - Island B
Technical Track - Tower Banyan & Acacia Business Track -Tower Casuarina
14:00-14:30 Trends in malware enabled fraud
Matthew McGlashan & Rob Lowe
AusCERT
Australia
Neighbourhood Watch - Centralised and Automated Pen-Testing
Till Dörges
PRESECURE Consulting
Germany
14:30-15:00 A Common Vulnerability Scoring System (CVSS)
Art Manion
CERT/CC Software Engineering Institute
Carnegie Mellon University
USA
Strategies for Achieving Network Intelligence
Adam d'Amico
Zanshin Security
Massachusetts Institute of Technology
USA
15:00-15:30 Break
15:30 - appx. 17:30 FIRST Annual General Meeting - Tower A
Attendance at the FIRST Annual General Meeting is limited to FIRST team members and liaisons.


Friday - July 1, 2005
Annual Conference, Day 3 - Tower Banyan & Acacia
09:00-09:10 The Day Ahead
Program Chair
09:10-09:50 Keynote Address
Dr. Suguru Yamaguchi
Nara Institute of Science Technology / Advisor on Information Security
National Information Security Center, Cabinet Secretariat
Japan
09:50-10:30 Key Strategies for defeating Crime Online
John Lyons
The Security Company (International) Ltd.
UK
10:30-11:00 Break
11:00-11:30 How Critical Shifts in Vulnerability Research will affect our Community
Greg Shipley
CTO, Neohapsis, Inc.
USA
11:30-12:15 Getting ahead: Integrating Development and Response for Improved Security
Steven Lipner
Director of security engineering Strategy
Microsoft
USA
12:15-13:00

CSIRT Regional Update
  • ASEAN CERT
    Representatives from BruCERT, MyCERT, SingCERT, ThaiCERT
    Asia&Pacific
  • TF-CSIRT, TI, E-COAT and ENISA
    Gorazd Bozic (SI-CERT) & Don Stikvoort (S-CURE)
    Europe
  • CLARA: Security in Latin American Academic Networks
    Liliana V. Solha (CAIS/RNP) & Juan Carlos Guel Lopes (UNAM-CERT)
    Latin America
13:00-14:00 Lunch - Island B
Technical Track - Tower Banyan & Acacia Business Track -Tower Casuarina
14:00-14:30 IEE 802.16 WiMAX Security
Kitti Wongthavarawat
ThaiCERT
Thailand
Fighting Phishing Sites at the Front Line --- CNCERT/CC 2004 Anti Phishing Activities Review
Larry Yang Liu
CNCERT/CC
China
14:30-15:00 New Security Features in Solaris 10 and dtrace
B.N. Chandan
Sun Microsystems
USA
Bridging the Gap between Incident Handling and Software Security
Kenneth R. van Wyk
KRvW Associates
USA
15:00-15:30 Risk Triage and Prototyping in Information Security Engagements
Catherine Nelson
Rakesh Bharania
Cisco Systems, Inc.
USA
The looming Privacy Rights Debacle: how Data Protection Law will shape Incident Response Team Activities around the World
Thomas Daemen
Covington & Burling
Belgium
15:30-16:00 Closing Speech - Tower Banyan & Acacia
FIRST Steering Committee Chair