ISSessions – 2020-06-19

This week’s ISSessions meetup details:

  • Date: 2020-06-19 (Friday)
  • Time: 19:00-21:00
  • Location: VIRTUAL (Discord + YouTube)

Agenda
19:00 – Future of ISSessions- Kurt  ðŸŽ™
19:10 – News Roundup – Adam & Yusef  ðŸ—ž
19:30 – Repo Rundown – Nick  ðŸ’¡
19:40 – Project Den – Louai  ðŸ› 
20:00 – Break  ðŸº 
20:05 – Guest Speaker – Laura Harris  ðŸ‘‘ 

We have a solid ISSessions planned for you all Today! After kicking things off with Kurt’s announcements, and getting up to speed with the biggest news in infosec with Adam & Yusef, Louai will be treating us to a Project Den where he gives us the lowdown on MiniDump. To finish off the night, our guest speaker, Laura Harris, will be breaking down Bloodhound. You do not want to miss this meeting!

Building Detections for MiniDump Using Sysmon & Procmon by Louai Abboud

In an effort to escalate privileges, attackers can create core dumps of processes in memory to steal passwords, ssh keys, and sensitive information. In this Project Den segment, Louai will walk you through his journey studying MiniDump, a simple process dumping technique, all the way from threat research to rule building.

Louai is a Threat Hunting Intern at Bell. He is a former President and the current Vice President of ISSessions, the greatest (and likely only) cybersecurity club in the 7 kingdoms and the free cities.

Bloodhound 101 – Attacking Active Directory by Laura Harris

A tutorial on installing bloodhound, visualizing data, and discovering the shortest path to Domain Admin.

Laura Harris is a Security Consultant at CIBC and also a recent graduate of her Post-graduate Degree in Network and System Security. She has been in security for 3 years, taking on several different roles, some of which include Security Consultant, Security Analyst, and Pre-Sales Engineer. She currently has a keen interest in malware analysis and reverse engineering, but overall, she has a passion for analyzing.

We hope to see you all on Friday for this especially technical meetup!