Program Overview

Amsterdam 2023 FIRST Technical Colloquium

Draft agenda. Times are reflected in the local time of the host city, UTC +1:00.

Monday, April 17th

Training Day
08:00 – 09:45

Registration and Coffee

09:45 – 11:15
 NL

Workshop - Advanced Bloodhound

"JD" Walter Legowski (FalconForce, NL)

11:15 – 11:30

Coffee Break

11:30 – 12:15
 NL

Workshop - Advanced Bloodhound

"JD" Walter Legowski (FalconForce, NL)

12:15 – 13:15

Standing Lunch Buffet

13:15 – 14:00
 NL

Workshop - Advanced Bloodhound

"JD" Walter Legowski (FalconForce, NL)

14:00 – 14:15

Closing Coffee and Networking Break

Tuesday, April 18th

Plenary Day 1
08:00 – 09:30

Registration and Coffee

09:30 – 09:45
 US

Welcome Remarks from Event Organizers

Jeff Bollinger (LinkedIn, US); Matthew Valites (SAP, US)

09:45 – 10:30
 GB

ThreatIntelGPT: Structure from Chaos

David Greenwood (EclecticIQ & Signals Corp, GB)

10:30 – 11:15
 US

Harder, Better, Faster, Locker: Ransomware Groups Flex On Defenders

Lindsay Kaye (HUMAN Security, US)

11:15 – 11:30

Coffee and Networking Break

11:30 – 12:15
 AR

Democratizing Incident Response Tabletop Exercises

Federico Pacheco (BASE4 Security, AR)

12:15 – 13:15

Standing Lunch Buffet

13:15 – 14:00
 GB

Uncovering the Hidden World of Mobile Ad Fraud

Gabriel Cirlig (HUMAN Security, GB)

14:00 – 14:45
 US

Big-Game Stealing: Practical Detection Engineering & Validation for an Underrated Threat

Scott Small (Tidal Cyber, US)

14:45 – 15:00

Coffee and Networking Break

15:00 – 15:45
 IL

Five Easy Ways to Spoof Contributor/Package Reputation

Tzachi "Zack" Zorenshtain (Checkmarx, IL)

15:45 – 16:30
 US

You Are Only Seeing the Tip of the Iceberg

John Stoner (Google Cloud, US)

17:00 – 18:00

Social Event at the W Sponsored by Polsinelli Law Firm

Wednesday, April 19th

Plenary Day 2
08:00 – 09:30

Registration and Coffee

09:30 – 09:45
 US

Welcome and Introduction to FIRST

Gavin Reid (HUMAN Security, US)

09:45 – 10:30
 US

QUIC Transport Protocol: Performance and Security Implications

Dr. Paul Vixie (AWS, US)

10:30 – 11:15
 NL

Another Russian Speaking APT, But Not From Russia

Robert Jan Mora (Volexity, NL)

11:15 – 11:30

Coffee and Networking Break

11:30 – 12:15

Russia’s War on Ukraine: One year of Cyber Operations

George Koutepas (CERT-EU)

12:15 – 13:15

Standing Buffet Lunch

13:15 – 14:00
 US

VASTFLUX: A Takedown of the Sophisticated Ad Fraud Operation

Inna Vasilyeva (HUMAN, US)

14:00 – 14:45
 NL

The Day After: Managing Post-Incident Hardening & Resiliency

Jake Norwood, Tony Gaidhane (Booz Allen Hamilton, NL)

14:45 – 15:00

Coffee and Networking Break

15:00 – 15:45
 US

Think You Understand Risk? Let's Challenge That

Sharon Mudd, Vanessa Rodriguez (Carnegie Mellon University / CERT, US)

15:45 – 16:30
 US

IcedID: Defrosting a Recent Campaign Illustrating Evolving Tactics and Shared Infrastructure

Colin Cowie, Paul Jaramillo (Sophos, US)

17:00 – 18:00

Social Event at the W Sponsored by Recorded Future