Difference between revisions of "Brisbane"

From OWASP
Jump to: navigation, search
(26 intermediate revisions by 2 users not shown)
Line 1: Line 1:
{{Chapter Template|chaptername=Brisbane|extra=The chapter leader are [mailto:anne.luk@owasp.org Anne Luk], [mailto:wade@bindshell.net Wade Alcorn], and [mailto:glyng@owasp.org Glyn Geoghagen]||mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-brisbane|emailarchives=http://lists.owasp.org/pipermail/owasp-brisbane}}  
+
{{Chapter Template|chaptername=Brisbane|extra=The chapter leaders are [mailto:anne.luk@owasp.org Anne Luk], [mailto:wade@bindshell.net Wade Alcorn], [mailto:glyng@owasp.org Glyn Geoghegan] and [mailto:djorm@redhat.com David Jorm]||mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-brisbane|emailarchives=http://lists.owasp.org/pipermail/owasp-brisbane}}  
 +
<paypal>Brisbane</paypal>
  
==== Local News  ====
+
== Local News  ==
 +
==== Presenters and Presentations ====
 +
We are forever looking for volunteers to present at the chapter meetings, so if you've seen something interesting or you have something to say, please let us know.
  
In May's OWASP Brisbane Chapter meeting, Matthew de Carteret will present a session titled "Ghost in the Shell(code)" .
+
Often, when we approach potential presenters, we tend to get the following response – “I don’t think my topic is interesting enough”.  We just want to stress that as long as the topic is security related – we’re all ears!  We’re just a bunch of nice people wanting to learn/share our knowledge of the security domain.  So if you would like to present or know of someone that does, please contact us.
  
<br>
+
Presentations must be vendor agnostic (no selling of products or services), and please review the Speaker Agreement linked above.
  
Shellcode is the crux of any exploit being run today. It dictates what the exploit aims to gain from its use — without shellcode the exploit does nothing. Understanding what shellcode does can be a major step in the incident handling process. Shellcode can do anything you can imagine code could do. Not every shellcode used in an exploit downloads malware or spawns a shell.
+
== Chapter Meetings  ==
  
Times have changed and the targets have updated their protection. Shellcode today could be a straight forward API call to download a file and execute it or it could be code to just disable/create a firewall rule on your windows server.
+
'''Next Brisbane Chapter Meeting - Tuesday October 8, 2013'''
  
Catching an exploit is a great step in understanding the purpose of an attack. Extracting and reviewing the shellcode will allow you to streamline your incident handlers to collect malware and focus their reviews on particular services or applications.
 
  
This talk will demonstrate methods on captured exploits for extracting shellcode and understanding its purpose.
+
In October's meeting, Mark Phillips will present on the topic of "RF Hacking using GNURadio - An Introduction".
  
Matt is a Senior Threat Analysis escalation engineer located in the Brisbane SOC. He is working on getting his SANS GIAC Reverse Engineering Malware certification (and hopes to have this cert prior to presenting ). Working in the SOC gives Matt a great perspective on active exploitation in the wild and the techniques used by malware authors and pentesters. Matt has a considerable employment history including deployment, pentesting and network administration.
+
RF hacking and analysis has been gaining coverage in the security press over the past 18 months. This session will introduce you to the concepts of RF, "software defined radio" and the GNURadio framework:
  
+
* RF fundamentals
<br>
+
* GNURadio Framework
<br>
+
* Demo - Flowgraphs, signal capture and analysis
Venue: <b>CERT Australia Offices, Level 11, 301 Coronation Drive, Milton.</b>
+
  
Time: <b>5:30pm (Pizza) for a 6pm start.  Lifts will be locked at 6pm, so please arrive before then!  </b>
+
This will be an introductory session designed to give you enough knowledge to start playing with these tools, and to help you better understand the advanced RF hacking demos you will start to see at conferences like Ruxcon / Blackhat etc.
 
+
Date: <b>Tuesday 3rd May </b>
+
 
+
Close: Session is expected to be completed by 7:30pm.
+
 
+
There will be a social gathering at the local pub afterwards.  Everyone is welcome to attend!
+
 
+
RSVP: <b>Online at http://owasp-brisbane.eventbrite.com</b>
+
 
+
<br>
+
<br>
+
 
+
 
+
<paypal>Brisbane</paypal>
+
  
==== Chapter Meetings  ====
+
Mark has worked as an IT security consultant in the financial services industry for many years, however this presentation draws upon his long term interest in RF as an Amateur Radio operator.
  
<b>May 2011 Brisbane Chapter Meeting - Tuesday 3 May</b>
 
  
Venue: <b>CERT Australia Offices, Level 11, 301 Coronation Drive, Milton.</b>
 
  
Time: <b>5:30pm (Pizza) for a 6pm start.  Lifts will be locked at 6pm, so please arrive before then!  </b>
+
''Venue:'' Red Hat Offices, Level 1, 193 North Quay, Brisbane.
  
Close: Session is expected to be completed by 7:30pm.
+
''Time:'' 5:30pm for a 6pm start.  Lifts to Level 1 will be locked after 6pm. Please arrive before then! 
  
There will be a social gathering at the local pub afterwards.  Everyone is welcome to attend!
+
''Date:'' Tuesday 8th October
  
RSVP: <b>Online at http://owasp-brisbane.eventbrite.com</b>
+
''Close:'' Session is expected to be completed by 7:00pm.  
  
<br>
+
''RSVP:'' There are limited seats. Please RSVP at http://owasp-brisbane.eventbrite.com
<br>
+
  
  
 +
There will be a social gathering at a local hostelry afterwards. Everyone is welcome to attend!
  
 
==== Brisbane OWASP Chapter Leaders  ====
 
==== Brisbane OWASP Chapter Leaders  ====
  
The chapter leader is [mailto:anne.luk@gmail.com Anne Luk], [mailto:wade@bindshell.net Wade Alcorn], and [mailto:owasp@moiler.com Glyn Geoghagen] __NOTOC__ <headertabs />  
+
The chapter leaders are [mailto:anne.luk@owasp.org Anne Luk], [mailto:wade@bindshell.net Wade Alcorn], [mailto:glyng@owasp.org Glyn Geoghegan] and [mailto:djorm@redhat.com David Jorm] __NOTOC__ <headertabs />
  
 
[[Category:Australia]]
 
[[Category:Australia]]

Revision as of 22:55, 18 September 2013

OWASP Brisbane

Welcome to the Brisbane chapter homepage. The chapter leaders are Anne Luk, Wade Alcorn, Glyn Geoghegan and David Jorm
Click here to join the local chapter mailing list.

Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is and open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter.

Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG

funds to OWASP earmarked for Brisbane.

Local News

Presenters and Presentations

We are forever looking for volunteers to present at the chapter meetings, so if you've seen something interesting or you have something to say, please let us know.

Often, when we approach potential presenters, we tend to get the following response – “I don’t think my topic is interesting enough”. We just want to stress that as long as the topic is security related – we’re all ears! We’re just a bunch of nice people wanting to learn/share our knowledge of the security domain. So if you would like to present or know of someone that does, please contact us.

Presentations must be vendor agnostic (no selling of products or services), and please review the Speaker Agreement linked above.

Chapter Meetings

Next Brisbane Chapter Meeting - Tuesday October 8, 2013


In October's meeting, Mark Phillips will present on the topic of "RF Hacking using GNURadio - An Introduction".

RF hacking and analysis has been gaining coverage in the security press over the past 18 months. This session will introduce you to the concepts of RF, "software defined radio" and the GNURadio framework:

  • RF fundamentals
  • GNURadio Framework
  • Demo - Flowgraphs, signal capture and analysis

This will be an introductory session designed to give you enough knowledge to start playing with these tools, and to help you better understand the advanced RF hacking demos you will start to see at conferences like Ruxcon / Blackhat etc.

Mark has worked as an IT security consultant in the financial services industry for many years, however this presentation draws upon his long term interest in RF as an Amateur Radio operator.


Venue: Red Hat Offices, Level 1, 193 North Quay, Brisbane.

Time: 5:30pm for a 6pm start. Lifts to Level 1 will be locked after 6pm. Please arrive before then!

Date: Tuesday 8th October

Close: Session is expected to be completed by 7:00pm.

RSVP: There are limited seats. Please RSVP at http://owasp-brisbane.eventbrite.com


There will be a social gathering at a local hostelry afterwards. Everyone is welcome to attend!

Brisbane OWASP Chapter Leaders

The chapter leaders are Anne Luk, Wade Alcorn, Glyn Geoghegan and David Jorm