Skip navigation
  • RSA Conference Twitter
  • RSA Conference Facebook
  • RSA Conference RSS
  • RSA Conference Youtube
  • RSA Conference Flickr
  • RSA Conference LinkedIn
  • RSA Conference iTunes
RSA Conference > Connect > Blog > Tags > rsa_conference_2012

Connect

2 Posts tagged with the rsa_conference_2012 tag
0

Mitja Kolsek, Chief Executive Officer, Acros Security

 

Mitja Kolsek.bmpThose of you familiar with binary planting and DLL hijacking already know that hundreds of applications can be tricked into executing DLLs and executables from remote servers. However, there’s much misunderstanding when it comes to hard technical details. This session will provide concrete instructions and tips for developers, researchers and whitehats with exploit scenarios.

 

In over 12 years of security addiction, Mitja Kolsek has perforated an array of business-critical products, computer systems and protocols by leading software vendors, searching for atypical vulnerabilities and effective ways of fixing them. Kolsek’s passion is security research, discovering new types of security problems, such as “session fixation”, and new twists on the known ones, such as “binary planting”.

 

Download <05:30>

0

Dawn Cappelli, Technical Manager, CERT Insider Threat Center, Carnegie Mellon SEI CERT Program

 

Dawn_Cappelli.JPGThe CERT Insider Threat Center has studied insider threat for ten years. We have worked with federal law enforcement, psychologists, cyber analysts, visionary sponsors, academics and practitioners in government and industry. This session will present the top 10 list for winning the battle against malicious insiders based on a decade of work and the nearly 700 actual insider attacks we have examined.

 

Dawn Cappelli, CISSP, is Technical Manager of CERT’s Enterprise Threat & Vulnerability Management Team and the Insider Threat Center at Carnegie Mellon’s Software Engineering Institute. Her teams research technical threat areas; develop and conduct assessments; and provide solutions and training for preventing, detecting, and responding to illicit activity. Dawn is often an invited speaker at national and international venues, is adjunct professor in Carnegie Mellon’s Heinz College, Vice-Chair for the CERT CSIH Certification Advisory Board, on the program committee for RSA and HICSS conferences, and was awarded the 2011 Software Engineering Institute Director's Office Award of Excellence. Before joining CMU she worked at Westinghouse as a software engineer developing nuclear power systems.

 

Download <09:35>