"... the ability to reduce the time to true incident identification to a number that is measured in seconds, versus minutes, hours or even longer"
— Rocky DeStefano, CEO, Decurity
 
 

Wed, July 29 at Blackhat 2009, during the session breaks (11am, 12:30, 3pm, 4:30pm)

Caesar's Palace, Las Vegas, in booths #43 and #56

(Can't make the fight, but still want to join the party? Click Here to to enter our drawing — 20 invitations will be awarded!)


The Contestants



In the left-hand corner ... Foreground Security!

Those ethical hacking experts are at it again, and this time they're out to demonstrate just how easy it can be to crack a virtual network full of virtual cyber-booty. Foreground Security was founded by information security professionals with over 20 years of experience with the mission to assist organizations with overall information and network security policy development, patch management program development and other process related program development projects.

(In other words, these are some tough fellows).




In the right-hand corner ... NitroSecurity!

They're going to be demonstrating tactics for threat detection and remediation at the same time, and are hoping to keep Foreground from stealing that virtual prize.

Founded in 1999 and based in Portsmouth, NH, NitroSecurity develops security information and compliance management solutions that protect business information and infrastructure. NitroSecurity engineers have devoted decades of research and development specifically to address data storage, retrieval and analysis performance issues; just what they'll need to stop Foreground.



The Details


Attack #1 — Insider Theft

At 11:00am and 3:00pm, we'll be using a number of techniques to steal information from the inside. In this example, we're disgruntled virtual employees and we're planning on stealing whatever we can get, including:

  • A social, yet malicious, web attack
  • Stealing sensitive data and moving the information offsite

Counter-Attack #1

How do you stop such a tenacious virtual user, who'se gone rogue? Log analysis isn't going to do it here ... but by monitoring data access, application content, and network activity we just might be able to survive long enough for Attack #2 ...

Attack #2 — Coming from Outside

At 12:30pm and 4:30pm, Foreground will pretend to be evil hackers, and come at us from outside of our corporate firewall. We'll demonstrate:

  • An attack against network servers
  • An attack against one of our super-useful web applications

Counter-Attack #2

We'll just use an IPS, right? ... wrong. These guys are smart enough to evade singular defensive strategy, but we'll get them by expanding visibility to several areas of our tiered defenses. This is going to be a great way to prove the value of event correlation. But wait! They know all about correlation! What if they use something new ...? Don't worry, we'll be ready to show you how to react to unknown threats using "zero day correlation" techniques.

The Payback


Stop by and watch our uber-informative event, and you'll get to better yourself, and you'll get an invitation to our post-fight party at the Shadow Bar in Caesar's Palace, the 29th of July at 7pm

The bar is open, but the party isn't — you need an invitation to get in. Can't make the fight but still want to party? Click Here to to enter our drawing.

Invitations are limited and will only be awarded while supplies last. Total occupancy of the Shadow Bar may not be exceeded. Please, drink (and hack) responsibly.



These icons link to social bookmarking sites to help share this content.
  • share this page:
  • bodytext
  • del.icio.us
  • Reddit
  • Slashdot
  • Technorati
  • Propeller
  • TwitThis
 

Search NitroSecurity.com