Tentative Program

The FIRST Technical Colloquium (TC) event will be held in Dec 1-2, 2009.

Please note: the program schedule is not in its final version, adjustments still can occur.

Overview

  • December 1st (Tuesday)

    Plenary Sessions

  • December 2nd (Wednesday)

    Hands-on Session 1 ShadowServer

    Hands-on Session 2 presented by JPCERT

    Hands-on Session 3 presented by AusCERT

    Hands-on Session 4 presented by MyCERT

    Hands-on Session 5 presented by David Watson, Honeynet

    Hands-on Session 6 presented by JPCERT

    Hands-on Session 7 presented by Team Cymru

    Hands-on Session 8 presented by TunisCERT

December 1st (Tuesday)Return to overview

Plenary Sessions
09:00 – 09:15

Opening/Welcoming Remarks

CyberSecurity Malaysia & FIRST Rep

09:15 – 10:00
US

State of Health of the Internet and our Networks

Richard Perlotto (Shadowserver Foundation, US)

10:00 – 10:30 Networking Break
10:30 – 11:15
US

Threats to Our Security: Motivations and Targets

Ryan Connolly (Team Cymru, US)

11:15 – 12:00
MY

Analyzing Malicious PDF

Mahmud Ab Rahman (MyCERT — CyberSecurity Malaysia, MY)

12:00 – 12:45
US

The Emperor's New Cloud: An Analysis of the July 2009 RoK/USA DDoS Attacks

Roland Dobbins (Arbor Networks, US)

13:00 – 14:00 Lunch
14:00 – 14:45
ES

VirusTotal Proper Usage

Julio Canto (VirusTotal, ES)

14:45 – 15:30
BR

New Developments on Brazilian Phishing Malware

Jacomo Piccolini (ESR/RNP, BR)

15:30 – 16:00 Networking Break
16:00 – 16:45
AU

Case Study, Database Hack with a Twist

Alex Tilley (AFP - Australia Federal Police, AU)

16:45 – 17:30
DE

Low Interaction Server Honeypot Evolution

Mark Schloesser (Girraffe Honeynet, DE)

17:30 – 17:40

Closing / Administrative

18:00 – 21:00

Dinner (participants & speakers invited)

December 2nd (Wednesday)Return to overview

Hands-on Session 1 ShadowServer Hands-on Session 2 presented by JPCERT Hands-on Session 3 presented by AusCERT Hands-on Session 4 presented by MyCERT Hands-on Session 5 presented by David Watson, Honeynet Hands-on Session 6 presented by JPCERT Hands-on Session 7 presented by Team Cymru Hands-on Session 8 presented by TunisCERT
08:45 – 09:00 FIRST Rep – Brief opening / administrative announcements
09:00 – 10:30

Becoming Criminal - A Botnet Exercise

ShadowServer

JP

Network Monitoring and Traffic Analysis

Keisuke Kamata (JPCERT/CC — JPCERT Coordination Center, JP)

AU

Windows Live Forensics

Jonathan Levine (AusCERT, AU) , Zane Jarvis (AusCERT, AU)

MY

Web Security Hands-on

Adnan Shukor (MyCERT, MY) , Hafiz Mat Tabrani (MyCERT, MY)

 

 

 

 

10:30 – 11:00 Networking Break
11:00 – 12:30

Becoming Criminal - A Botnet Exercise

ShadowServer

JP

Network Monitoring and Traffic Analysis

Keisuke Kamata (JPCERT/CC — JPCERT Coordination Center, JP)

AU

Windows Live Forensics

Jonathan Levine (AusCERT, AU) , Zane Jarvis (AusCERT, AU)

MY

Web Security Hands-on

Adnan Shukor (MyCERT, MY) , Hafiz Mat Tabrani (MyCERT, MY)

 

 

 

 

12:30 – 14:00 Lunch
14:00 – 15:30

 

 

 

 

GB

Hands on with the Honeywall and virtual honeypots

David Watson (Honeynet, GB)

JP

HTTP Protocol and Web Application Security

Shiori Sato (JPCERT/CC, JP)

US

Network Forensics

Ryan Connolly (Team Cymru, US)

TN

Security Informationa and Event Monitoring with OSSIM

Haythem El Mir (Technical Department / NACS, TN)

15:30 – 16:00 Networking Break
16:00 – 17:30

 

 

 

 

GB

Hands on with the Honeywall and virtual honeypots

David Watson (Honeynet, GB)

JP

HTTP Protocol and Web Application Security

Shiori Sato (JPCERT/CC, JP)

US

Network Forensics

Ryan Connolly (Team Cymru, US)

TN

Security Informationa and Event Monitoring with OSSIM

Haythem El Mir (Technical Department / NACS, TN)

17:30 – 17:45 Closing