BH2021 #2

This episode is sponsored by
Full Show Notes
Segment One

Automate Hacker Knowledge – Carolin Solskär – BH21 #2

Guest
Community Manager, Detectify Crowdsource at Detectify

Carolin is the Community Manager for Detectify Crowdsource; an invite-only platform for ethical hackers. Detectify Crowdsource works differently from most bug bounty platforms; instead of hacking one company at a time, we focus on commonly used technologies, so that all companies using that technology can be protected.

Segment Two

Dradis Community Edition BHUS21 Arsenal – Tabatha DiDomenico – BH21 #2

Guest
Product Marketer at Dradis Framework / Security Roots

Tabatha DiDomenico leads marketing at the Dradis Framework and is a grad student studying Cybersecurity at the University of South Florida. Tabatha is engaged in the infosec community serving on staff with The Diana Initiative, Board Member with B-Sides Orlando, a serial infosec conference volunteer, advocate for diversity and inclusion in the industry, and has presented most recently at IntroSecCon 2021.

Segment Three

Attacking & Defending Kubernetes Cluster – Eviatar Gerzi – BH21 #2

Guest
Senior Security Researcher at CyberArk

Eviatar Gerzi is a Sr. Security Researcher at CyberArk. He worked in a range of professions in the security industry (malware analysis, mobile hacking, etc.). During this time, he developed open-source projects (security tools). His projects include: Ketshash, Manifesto, KubiScan, Kubeltctl, and Kubesploit. His current research is on DevOps security, focusing on Docker and Kubernetes.

Segment Four

PurpleSharp: Automated Adversary Simulation – Mauricio Velazco – BH21 #2

Guest
Principal Threat Research Engineer at Splunk

Mauricio Velazco (@mvelazco) is a Peruvian, information security professionalwith more than a decade of work experience across different roles on both offensive and defensive security. In his current role as a Principal Threat Researcher on Splunk’s Threat Research Team, Mauricio focuses on adversary simulation and threat detection. Prior to Splunk, he led the Threat Management team at a Fortune 500 organization. Mauricio has presented/hosted workshops at conferences like Defcon, BlackHat, Derbycon, BSides, SANS, etc.

Segment Five

Supply Chain Perils, Death by Security Alerts, SolarWinds & BlackHat 2021 – BH21 #2

Guest
Senior Reporter at SC Media

Derek covers the federal government and its intersection with critical infrastructure and the private sector for SC Media. Prior to that he spent three years covering the intersection of cybersecurity policy and government for FCW.

Stay in the Know, No Smoke and Mirrors – Join Our Newsletter

You can skip this ad in 5 seconds