Upcoming Presentation

At our next meeting, Tony will be giving his presentation titled:

Stupid Things Pentesters Do: Frustrations of an Internal Security Guy.

Many of us have heard about point n click pentesters and firms that deliver Nessus reports as penetration tests. That is not what this talk is about. It is about penetration testers not only failing to deliver value but also creating scenarios that create additional risk for their customers. Testing often creates availability concerns but far more importantly, improper testing activities and ignorance of data handling can generate significant exposure of sensitive information. Even worse, customers don’t know what to expect from their consultants and this disconnect creates a scenario where the business value they were hoping to realize never materializes and they never realize how badly they just got punk’d. And paid for the privilege. But at least the auditor is happy. Join us as we explore some of these issues and identify how customers can become smarter consumers, consultants can build a stronger brand and protect their customers interests. Truly, unicorns will fart rainbows and kittens and shellcode.

DC407 at DEFCON

Yes, we’re here. Corq and I are already in Vegas; g3k and f00bard are on the way. We come bearing gifts and wares…

When you see it, you will pwn bricks.

Catch us on twitter, IRC at freenode #familab, or ping me (@abyssknight) to join the SMS bridge on groupme.

DC407 – First Meeting

Let’s get a meeting together for February 2010. Feel free to suggest venues, dates and times. If you’re in the Orlando area and even remotely interested, drop me a PM or post here.

I’ve gone ahead and emailed the dcgroups admins to get our group reactivated, and begun work on the DC407 site. I have email and calendars set up and I’m working on getting the actual site set up. If you’d like a DC407 email/apps account just let me know. We have 50 to hand out with the free version of Google Apps.

I’ll start PMing, emailing and otherwise bothering the people I know here in town who might be interested. DC407 has been inactive since 2006, let’s make sure that changes in 2010.

As far as time and place, I’m near downtown Orlando so Stardust, Red Light Red Light, as well as Blue Jacket Park would be close by. For times, I’m a working stiff, so it’d have to be after 5:30pm on weekdays, but my Saturdays are pretty open. I’d like to avoid conflicts with the other user groups (i.e. 2600, OPUG, ORUG, CocoaHeads, etc.) if possible.

https://forum.defcon.org/showthread.php?t=11049