{"id":1047,"date":"2015-04-22T15:07:41","date_gmt":"2015-04-22T15:07:41","guid":{"rendered":"http:\/\/triangleappshow.com\/?p=1047"},"modified":"2022-12-15T06:46:34","modified_gmt":"2022-12-15T11:46:34","slug":"rsa-day-2-hacking-the-sessions","status":"publish","type":"post","link":"https:\/\/michaelrowe01.com\/index.php\/blog\/rsa-day-2-hacking-the-sessions\/","title":{"rendered":"RSA Day 2 &#8211; Hacking the sessions"},"content":{"rendered":"<p>As day two of RSA started I was in customer meetings until after lunch time, and then a long (LONG) drive back to the conference. &nbsp;The cool thing about RSA is that the content is seriously overwhelming. &nbsp;I missed a few items on Monday&#8217;s post, so I want to start by talking about a few startups that were in the Sandbox. &nbsp;The Sandbox is a mini-show area where 10 companies show their new innovations and you can vote on the best of show via text messaging. &nbsp; At the end of day on Monday an award was given&#8230; I&#8217;ve not seen the outcome, but I did get a chance to briefly listen to each of the 10 startups talk about their innovation.<\/p>\n<p><a href=\"http:\/\/www.rsaconference.com\/events\/us15\/agenda\/innovation-sandbox-contest\">Innovation Sandbox Agenda<\/a><br \/>\n<a href=\"https:\/\/bugcrowd.com\">BugCrowd<\/a>&nbsp;&#8211; A crowd sourcing platform for PEN testing. &nbsp;They provide both private (small group of select security analysts) and public security testing of your applications. &nbsp;These can be your actually website, or other code provided in VM images. &nbsp;A former TopCoder guy was their asking a ton of good questions on vetting the crowd, and any liability that may be implied by this approach. &nbsp;The speaker did not fully understand the questions, however I do agree that the public crowd approach is no different than people just trying to hack your site today.<\/p>\n<p><a href=\"http:\/\/www.cybereason.com\">CyberReason<\/a>&nbsp;&#8211; A machine learning and algorithms platform to prioritize and identify incidents in real-time. &nbsp;Help your analysts to not only understand an attack is happening, but what is being impacted, etc.<\/p>\n<p><a href=\"http:\/\/www.fortscale.com\">FortScale<\/a>&nbsp;&#8211; A Cyber Incident analytics system. &nbsp;Their tools help identify those events in your SOC that analysts should focus on. &nbsp;They indicated that you don&#8217;t need &#8220;predefined&#8221; rules, so that their algorithms will help you focus on those events that are critical to focus on.<\/p>\n<p><a href=\"http:\/\/www.nexdefense.com\">NexDefense<\/a>&nbsp;&#8211; Security for ICS (Industrail Control Systems), their Sophia system provides a (Patent Pending) set of anomaly detection algorithms for SCADA and other ICS.<\/p>\n<p><a href=\"http:\/\/securitydo.com\">SecurityDo<\/a>&nbsp;&#8211; They are using a term I&#8217;ve not heard before (maybe it&#8217;s just marketing) &#8211; BIEM (Breach Information Event Management) system. &nbsp;Over simplificaiton is they provide a dashboard, search, and reports on breach events, identifying where you need to focus due to a event getting past your defenses.<\/p>\n<p><a href=\"https:\/\/www.sentinelone.com\">SentinelOne<\/a>&nbsp;&#8211; End point protection with algorithms for threat identification, prediction (what will it do), and prevention (stop that predicted activity).<\/p>\n<p><a href=\"http:\/\/ticto.com\/#use-cases\">TicTo<\/a>&nbsp;&#8211; An interesting way of addressing having physical access with additional audit and controls. &nbsp;The company provides a security badge, with an e-ink display to show the level of authority an individual has based on geolocation information. &nbsp;There&#8217;s also a red, yellow, green light that is on the badge to provide a second way of identifying that you are allowed to be where you are.<\/p>\n<p><a href=\"http:\/\/trust-in-soft.com\">Trust In Soft<\/a>&nbsp;&#8211; Source Code analytics to identify potential security problems. &nbsp;This space is interesting to me, I was a long time user of PC-Lint back in the day.<\/p>\n<p><a href=\"http:\/\/www.vectranetworks.com\">Vectra<\/a>&nbsp;&#8211; An APT analytics platform which uses machine learning and correlation to identify, prioritize and provide attack information in context. &nbsp;They claim multiple patents (pending) in this space.<\/p>\n<p><a href=\"http:\/\/www.waratek.com\">WaraTek<\/a>&nbsp;&#8211; Developing and maintaining security for Java Apps. &nbsp;This company not only provides CloudVMs for Java apps, they provide a JVM that addresses the security aspects necessary for Java Apps. &nbsp;WaraTek puts the securirty in the JVM itself, so you can protect legacy Java applications, without rewriting, etc.<\/p>\n<p>I spend the after on Tuesday in a few sessions&#8230; The two most interesting were a session on Mobile security and one on IoT attack vectors. &nbsp;The first was done by a company out of Israel (<a href=\"https:\/\/www.skycure.com\">Skycure<\/a>) which went thru how a security bug in IOS could create a iOS free zone by causing a constant reboot of your iOS device. &nbsp;Cool discussion, and as responsible researchers they have already provided information to Apple on this flaw. &nbsp;The second session was a principal at HP talking about their OWASP project on IoT Security vulnerabilities. &nbsp;Go check it out here at the <a href=\"https:\/\/www.owasp.org\/index.php\/OWASP_Internet_of_Things_Top_Ten_Project\">OWASP<\/a> site.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>As day two of RSA started I was in customer meetings until after lunch time, and then a long (LONG) drive back to the conference. &nbsp;The cool thing about RSA is that the content is seriously overwhelming. &nbsp;I missed a few items on Monday&#8217;s post, so I want to start by talking about a few [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_wp_convertkit_post_meta":{"form":"-1","landing_page":"0","tag":"0","restrict_content":"0"},"hide_page_title":"","_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2},"jetpack_post_was_ever_published":false},"categories":[2],"tags":[],"class_list":["post-1047","post","type-post","status-publish","format-standard","hentry","category-blog"],"aioseo_notices":[],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_shortlink":"https:\/\/wp.me\/p2aMa8-gT","jetpack-related-posts":[],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/posts\/1047","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/comments?post=1047"}],"version-history":[{"count":1,"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/posts\/1047\/revisions"}],"predecessor-version":[{"id":2810,"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/posts\/1047\/revisions\/2810"}],"wp:attachment":[{"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/media?parent=1047"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/categories?post=1047"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/michaelrowe01.com\/index.php\/wp-json\/wp\/v2\/tags?post=1047"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}