Close

HACKING VILLAGE

Tue 21
10:00h
Talk | HACKING VILLAGE

Welcome and Introduction

Martin Vigo
Martin Vigo Triskel Security Founder Speaker
Dasha Diaz
Dasha Diaz itrainsec CEO&Founder Speaker

21-05-2024 10:00 21-05-2024 10:15 Europe/Madrid Welcome and Introduction Hacking Village
10:00h - 10:15h Hacking Village
10:00h
Demo Stand | HACKING VILLAGE

Infohound Demo

Abel Pozo Pujol
Abel Pozo Pujol Fundació i2CAT Cyber Innovation Expert Speaker

21-05-2024 10:00 21-05-2024 17:00 Europe/Madrid Infohound Demo During this demo we will demonstrate live how threat actors can get all kinds of information from a user with just the email, and even more by adding more information about it. Using the infohound tool developed in-house, we will go over the common techniques which exploit multiple OSINT sources during the reconnaissance phase of an attack, focusing on social engineering attacks. Participants will be able to try out the tool and see what information is publicly available about them and discuss how attackers might use this information to craft high interaction attacks. Hacking Village
10:00h - 17:00h Hacking Village
10:15h
Talk | HACKING VILLAGE

GenAI: Transforming Cybersecurity in 2024 and Beyond

Daniel Voicu
Daniel Voicu Accenture Global Director - Security & Identity Strategy Speaker

21-05-2024 10:15 21-05-2024 10:40 Europe/Madrid GenAI: Transforming Cybersecurity in 2024 and Beyond Every year, the cybersecurity area is shaped and disrupted by changes in the technology landscape, the adversarial behavior, the availability of human capital, and the economy outlook. What makes 2024 unique is that advances in AI, specifically GenAI LLMs, is expected to impact all these areas. We are witnessing a veritable gold rush in GenAI adoption. Expectations are high that this new tech can: supplement existing human capital for all kind of business processes, optimize security operations by reducing costs and addressing alert fatigue, and be used in novel ways to both protect and attack targets at scale depending on who wields it. We will discuss the impact and opportunities of this AI revolution for cybersecurity professionals, and how to score some quick wins getting on the bandwagon. We will further cover adversarial behavior and patterns as both consumers and companies adopt new trends such as SaaS, passwordless and, of course, GenAI. Hacking Village
10:15h - 10:40h Hacking Village
10:45h
Talk | HACKING VILLAGE

News from the Front Lines

Roberto Clavero
Roberto Clavero Crowdstrike Presales Engineer Speaker

21-05-2024 10:45 21-05-2024 11:05 Europe/Madrid News from the Front Lines Adversaries are turning over cloud infrastructure to compromise an organization. Our intel reports from the first line are disclosing how them are getting smarter exploiting cloud components and performing lateral movement around. Most of the cloud deployments don’t include the most basic security principals when designed and due to the lack of protections or even visibility they are being breached when hit by an Adversary on their cloud surface. Hacking Village
10:45h - 11:05h Hacking Village
11:05h
CTF | HACKING VILLAGE

Hunting like a Falcon: Cyber-dive into the Realm of Digital Threats

Roberto Clavero
Roberto Clavero Crowdstrike Presales Engineer Speaker

21-05-2024 11:05 21-05-2024 14:00 Europe/Madrid Hunting like a Falcon: Cyber-dive into the Realm of Digital Threats Join the workshop to master detecting, investigating, and halting adversaries using CrowdStrike Falcon. Immerse in simulated attacks, honing skills across EPP, IDP, Cloud, and Intelligence modules, just like Falcon Complete MDR team members. Duration: Approx. 1.5 hours. Takeaways: - Combat advanced threats, fortify your network - Validate Falcon Platform proficiency - Witness CrowdStrike Falcon in action, eradicating blind spots Participant prerequisites: - IT Security or Cybersecurity background (2+ years) - Proficient in technical English (training in Spanish) - Familiarity with security ops, incident management Optional: - SOC practitioners versed in incident response, threat intel, or hunting - Experience with EDR and/or SIEM tech - Basic threat triage, malware analysis skills Register at: https://go.crowdstrike.com/cft-at-bbc-registration-may-2024.html Hacking Village
11:05h - 14:00h Hacking Village
11:20h
Talk | HACKING VILLAGE

Strategy in the Shadows: Conflicts, Geopolitics, and Cyber Threats

Pablo Bentanachs
Pablo Bentanachs Recorded Future Consultant, Intelligence Advisory Services EMEA Speaker

21-05-2024 11:20 21-05-2024 11:40 Europe/Madrid Strategy in the Shadows: Conflicts, Geopolitics, and Cyber Threats This session explores the relationship between physical and cyber conflicts in geopolitical contexts. Recent cases of military conflicts where physical and cyber attacks have been employed simultaneously to achieve strategic objectives are analyzed. Hacking Village
11:20h - 11:40h Hacking Village
11:45h
Talk | HACKING VILLAGE

AI Game Changer for SOC Operations

Manuel García González
Manuel García González Microsoft Cloud Solution Architect Security Speaker
Lucas Ferrero Ramos
Lucas Ferrero Ramos Inetum Director of SOC Speaker

21-05-2024 11:45 21-05-2024 12:05 Europe/Madrid AI Game Changer for SOC Operations Inetum and Microsoft are teaming up to host a talk on AI capabilities in a SOC. Copilot is transforming Security Operations Center (SOC) operations through advanced artificial intelligence capabilities. It effectively reduces operation times, facilitates timely discovery in security measure optimization, and positively impacts the continuous learning of analysts. This strengthens clients' security posture and enhances the service provided by vendors, ensuring a more efficient and effective response to emerging threats, thereby consolidating a robust and proactive security environment. Hacking Village
11:45h - 12:05h Hacking Village
12:20h
Round Table | HACKING VILLAGE

Enter the Digital Frontier: Educating and Empowering Cyber Guardians

Tom Chapman
Tom Chapman Iceberg Cyber Security Co-Founder & Director Speaker
Muhammad Shuaib Siddiqui
Muhammad Shuaib Siddiqui Fundacio i2cat Director Software Networks - Director Cybersecurity Research Speaker
Maria-Manuela Catrina
Maria-Manuela Catrina National Cyber Security Directorate Deputy Director - Under Secretary of State Speaker
Martin Vigo
Martin Vigo Triskel Security Founder Chair

21-05-2024 12:20 21-05-2024 12:55 Europe/Madrid Enter the Digital Frontier: Educating and Empowering Cyber Guardians In an era where the digital landscape evolves rapidly and cyber threats loom large, the need for cyber guardians has never been more pressing. Our dynamic discussion will delve into the critical importance of cybersecurity education and empowerment in today's digital age. Led by industry experts, thought leaders, and cybersecurity professionals, this panel aims to explore various facets of cybersecurity education and empowerment. Whether you're a professional, educator, student, or simply interested in cybersecurity, gain valuable insights and actionable strategies for navigating the digital frontier. Hacking Village
12:20h - 12:55h Hacking Village
13:00h
Talk | HACKING VILLAGE

Securing the Perimeter: A Deep Dive into Attack Surfaces, Ransomware Threats, and Insurance issues

Marc Rivero Lopez
Marc Rivero Lopez Kaspersky Lead Security Researcher Speaker

21-05-2024 13:00 21-05-2024 13:20 Europe/Madrid Securing the Perimeter: A Deep Dive into Attack Surfaces, Ransomware Threats, and Insurance issues The year 2024 is marked by increased complexity in cyber threats, with ransomware attacks continuing to evolve in sophistication and targeting a wide array of sectors. The costs associated with ransomware incidents vary significantly, highlighting the nuanced outcomes of these attacks. While many incidents do not result in direct financial loss, the overall impact on organizations can be profound, encompassing operational disruptions, reputational damage, and significant recovery expenses. Cyber insurance claims related to ransomware are on the rise, underlining the financial ramifications and the critical role of insurance in the risk management strategy of organizations. Hacking Village
13:00h - 13:20h Hacking Village
13:30h
Talk | HACKING VILLAGE

CTF Results and Awards

21-05-2024 13:30 21-05-2024 13:50 Europe/Madrid CTF Results and Awards CTF Results and Awards Hacking Village
13:30h - 13:50h Hacking Village
14:00h
Fireside Chat | HACKING VILLAGE

HUGS´n´BEERS: BSides Barcelona Community Chat

Martin Vigo
Martin Vigo Triskel Security Founder Speaker
Luana Pascu
Luana Pascu Getronics Security Analyst & Researcher Speaker
Dasha Diaz
Dasha Diaz itrainsec CEO&Founder Speaker

21-05-2024 14:00 21-05-2024 14:45 Europe/Madrid HUGS´n´BEERS: BSides Barcelona Community Chat We invite all to join us for Hugs'n'Beers in the Hacking Village on May 21 at 2 pm! We want not only to give you an opportunity to network but also to talk about upcoming BSides Barcelona (Barcelona Cybersecurity Congress Ambassador and supporter of the Hacking Village). This friendly conversation with the beers will be dedicated to the vibrant and dynamic cybersecurity community, highlighting the pivotal role of such events as #BCC24 and #BSidesBCN in fostering collaboration, education, and innovation within the field. We'll talk about how these events create a platform for professionals, researchers, and enthusiasts to share knowledge, tackle emerging threats, and promote best practices. Come to the Hacking Village, grab a beer, spend some time with us and gain insights into the community-driven initiatives and events that significantly contribute to the resilience and advancement of the global and local cybersecurity ecosystem. Hacking Village
14:00h - 14:45h Hacking Village
14:55h
Fireside Chat | HACKING VILLAGE

Transforming DevSecOps: Empowering SMEs and Startups with Lazarus

Adriana Freitas
Adriana Freitas Anti-Phishing Working Group (APWG) Dir. Responsible for Research Projects Speaker
Tareq Chihabi
Tareq Chihabi Gruppo Maggioli Project Manager Speaker
Andrei Costin
Andrei Costin Binare Oy CEO/Co-Founder Speaker

21-05-2024 14:55 21-05-2024 15:35 Europe/Madrid Transforming DevSecOps: Empowering SMEs and Startups with Lazarus In the realm of software development, a challenge arises – the scarcity of automated security tools in DevSecOps. This, coupled with a lack of cybersecurity talent, hinders SMEs and startups, making DevSecOps daunting. The interplay between security and development becomes a tightrope walk without support, exposing entities to digital threats. In the domain of software security, Lazarus, a 3-year EU’s Horizon project (Grant Agreement nº 101070303), employs advanced machine learning to fortify defenses against cyber threats. With ML as its cornerstone, presents a multitude of opportunities to bolster security measures for SMEs and developers. We will present user cases and success stories that underscore the tangible impact, portraying a future where digital landscapes are shielded with unwavering precision and resilience. We welcome you to embark on this transformative journey, contribute your insights, and play a role in shaping the future of software security. Hacking Village
14:55h - 15:35h Hacking Village
15:40h
Workshop | HACKING VILLAGE

Learning Path through Malicious PDF

Filipi Pires
Filipi Pires Security Researcher Speaker

21-05-2024 15:40 21-05-2024 16:15 Europe/Madrid Learning Path through Malicious PDF During this workshop I'll demonstrate different kind of structures in PDF(header/ body/cross-reference table/trailer), explaining how each session works within a binary, what are the techniques used such as packers, obfuscation with JavaScript (PDF) and more, explaining too about some anti-disassembly techniques, demonstrating as a is the action of these malware’s and where it would be possible to “include” a malicious code. By the end of this “talk” it will be clear to everyone, differences in binaries structures, how can the researcher should conduct each of these kinds of analyzes, besides of course, it should seek more basic knowledge, with file structures, software architecture, and programming language. Hacking Village
15:40h - 16:15h Hacking Village
15:40h
Workshop | HACKING VILLAGE

Enhancing Cyber Defense through AI: Addressing Scalability Detection and Response

Carlos Valderrama
Carlos Valderrama WatchGuard Technologies MDR Manager Speaker

21-05-2024 15:40 21-05-2024 16:15 Europe/Madrid Enhancing Cyber Defense through AI: Addressing Scalability Detection and Response In the contemporary digital landscape, organizations face an escalating threat from sophisticated cyber attackers, necessitating advanced defensive measures. This presentation delves into the critical role of Artificial Intelligence (AI) in fortifying cybersecurity frameworks and countering the increasing volume and complexity of cyber threats. We explore how AI-driven defensive systems can revolutionize cybersecurity by providing real-time threat detection, automated response mechanisms, and predictive analytics to preempt potential attacks. These capabilities are crucial for handling the vast and growing number of security alerts and incidents, which are beyond the capacity of human analysts alone. By automating routine tasks and enhancing decision-making processes, AI not only improves the efficiency and effectiveness of security operations but also allows human experts to focus on more strategic and complex threat analysis. Hacking Village
15:40h - 16:15h Hacking Village
16:20h
Talk | HACKING VILLAGE

Elevating Incident Response: Unleashing Advanced Analytics for the Next Generation

Romana Sachová
Romana Sachová CaixaBank Security Analytics Manager Speaker
David Safont Cervera
David Safont Cervera CaixaBank Cybersecurity Engineer Speaker

21-05-2024 16:20 21-05-2024 16:40 Europe/Madrid Elevating Incident Response: Unleashing Advanced Analytics for the Next Generation Just picture this: A world where every cyber threat is met with swift and precise response, thanks to the power of advanced analytics. How does that sound? In today's rapidly evolving digital landscape, the utilization of advanced analytics methods presents both risks and benefits in enhancing Incident Response capabilities. This presentation explores the intricacies of employing machine learning (ML) techniques for threat detection within IR frameworks. We will dive into the process of how to deploy automatic labelling of cyber incidents and opportunities to add new capabilities to your Incident Response team thought generative AI. Hacking Village
16:20h - 16:40h Hacking Village
16:45h
Talk | HACKING VILLAGE

AI for cybercrime and for protection

Nadezhda Demidova
Nadezhda Demidova Ebay Cybersecurity Researcher, ML expert Speaker

21-05-2024 16:45 21-05-2024 17:05 Europe/Madrid AI for cybercrime and for protection In the rapidly evolving digital landscape, the arms race between cybercriminals and cybersecurity professionals is intensifying. Artificial Intelligence is at the forefront of this battle, offering both new avenues for attacks and innovative defense mechanisms. Our workshop aims to demystify the role of AI in cybersecurity, offering participants an idea of how those algorithms can be harnessed to fortify digital defenses while also examining how they can be exploited for cybercrime. The workshop will commence with a concise overview of Machine Learning, introducing participants to fundamental concepts and algorithms that are reshaping cybersecurity strategies. Further, we will explore the ecosystem of ML-powered anti-phishing solutions, highlighting the integration of Deep Learning techniques. These case studies will serve to not only illustrate the practical utility of ML but also to inspire innovative applications of these technologies in participants' own cybersecurity practices. Hacking Village
16:45h - 17:05h Hacking Village
Wed 22
10:00h
Demo Stand | HACKING VILLAGE

Infohound Demo

Abel Pozo Pujol
Abel Pozo Pujol Fundació i2CAT Cyber Innovation Expert Speaker

22-05-2024 10:00 22-05-2024 17:00 Europe/Madrid Infohound Demo During this demo we will demonstrate live how threat actors can get all kinds of information from a user with just the email, and even more by adding more information about it. Using the infohound tool developed in-house, we will go over the common techniques which exploit multiple OSINT sources during the reconnaissance phase of an attack, focusing on social engineering attacks. Participants will be able to try out the tool and see what information is publicly available about them and discuss how attackers might use this information to craft high interaction attacks. Hacking Village
10:00h - 17:00h Hacking Village
10:00h
Talk | HACKING VILLAGE

Welcome and Introduction of Day 2

Martin Vigo
Martin Vigo Triskel Security Founder Speaker
Dasha Diaz
Dasha Diaz itrainsec CEO&Founder Speaker

22-05-2024 10:00 22-05-2024 10:10 Europe/Madrid Welcome and Introduction of Day 2 Hacking Village
10:00h - 10:10h Hacking Village
10:10h
CTF | HACKING VILLAGE

CaixaBankTech Capture The Flag Challenge: Unleash Your Hacking Skills!

Marc Palau Marti
Marc Palau Marti CaixaBankTech Cybersecurity Manager Speaker

22-05-2024 10:10 22-05-2024 10:25 Europe/Madrid CaixaBankTech Capture The Flag Challenge: Unleash Your Hacking Skills! Welcome to the ultimate test of your hacking prowess! CaixabankTech CTF Challenge is a thrilling cybersecurity competition where participants dive into a world of digital puzzles, cryptic codes, and intricate challenges. -What to Expect Engage in a series of mind-bending challenges designed to push your hacking skills to the limit Collaborate with fellow participants, share insights, and learn from each other's strategies Showcase your problem-solving abilities in various domains, including cryptography, reverse engineering, web exploitation, and more Compete for cash prizes awarded to the top three participants -Who Should Participate? Whether you're a seasoned cybersecurity expert, a curious novice, or simply someone with a passion for cracking codes and unraveling mysteries CaixabankTech CTF Challenge welcomes participants of all levels. Come join us and embark on an exhilarating journey into the heart of cybersecurity! -Connect with Us Stay updated on CaixabankTech CTF Challenge visiting our booth during the conference. Hacking Village
10:10h - 10:25h Hacking Village
10:30h
Talk | HACKING VILLAGE

Inside the Shadows: Decrypting the Data Black Market & Crafting Strategic Defenses

Jose de la Cruz
Jose de la Cruz TrendMicro Iberia Technical Director Speaker

22-05-2024 10:30 22-05-2024 10:50 Europe/Madrid Inside the Shadows: Decrypting the Data Black Market & Crafting Strategic Defenses There has been considerable coverage of stolen data, but this session will explore the data black market by delving inside the criminal data shops where it is being sold. Attendees will be presented with detailed risk matrices with comparative risks for each data type and to help prioritize defense strategies. Hacking Village
10:30h - 10:50h Hacking Village
10:55h
Talk | HACKING VILLAGE

Threat Detection in Xot environments with MDR

Santiago Urbano
Santiago Urbano S21sec OT Security Product Line Manager Speaker

22-05-2024 10:55 22-05-2024 11:15 Europe/Madrid Threat Detection in Xot environments with MDR Threats in industrial environments are on the rise. Visibility over industrial environments is one of the biggest concerns for organizations, according to CISA's 2024 report. We will show you how we detect threats in hybrid IT/OT environments in industrial elements. Hacking Village
10:55h - 11:15h Hacking Village
11:20h
Talk | HACKING VILLAGE

Navigating the Post-Quantum Cryptography Frontier: Assessing Risks and Readiness Strategies for Today

Pau Serra Jensen
Pau Serra Jensen CaixaBank Cybersecurity Architect Speaker
Marc Palau Marti
Marc Palau Marti CaixaBankTech Cybersecurity Manager Speaker

22-05-2024 11:20 22-05-2024 11:40 Europe/Madrid Navigating the Post-Quantum Cryptography Frontier: Assessing Risks and Readiness Strategies for Today What are the potential vulnerabilities quantum computing poses to current cryptographic systems? How can organizations prepare for the inevitable shift towards quantum-safe solutions? This presentation is an in-depth exploration of post-quantum cryptography, delving into the current landscape, associated risks, and readiness strategies. We'll talk about the challenges posed by quantum threats and actionable steps to fortify security posture. We'll also share a practical guidance on transitioning to quantum-resistant solutions and safeguarding data for future resilience. Join us for practical wisdom and proactive measures to stay ahead in the age of quantum uncertainty! Hacking Village
11:20h - 11:40h Hacking Village
11:45h
Talk | HACKING VILLAGE

Incident First Golden Hour – Elite SOC Performance on the razor’s edge

Steve Benton
Steve Benton Anomali VP, Anomali Threat Research, Former CSO BT Group Speaker
Jean-Luc Labbe
Jean-Luc Labbe Anomali Technical Lead, Southern Europe Speaker

22-05-2024 11:45 22-05-2024 12:05 Europe/Madrid Incident First Golden Hour – Elite SOC Performance on the razor’s edge Organizations must be prepared to respond swiftly and decisively to cyber incidents. The "Incident First Golden Hour" represents a critical window of opportunity for elite Security Operations Centers (SOCs) to effectively disrupt attacks and minimise harm. This workshop outlines crucial steps for elite Security Operations Centers (SOCs) during the "Incident First Golden Hour," a critical period for responding to cyber threats. From briefing key stakeholders and assembling response teams to identifying affected systems and potential business impacts. Participants learn to assess vulnerabilities and detect compromises, while maintaining real-time awareness of unfolding events. See the strategies in operation that make the difference - swift reaction, threat intelligence enrichment, and continuous attack surface reduction. Sounds like a lot to achieve in the 'Golden Hour' right? You’ll be astounded! Be different. Be the Anomali! Hacking Village
11:45h - 12:05h Hacking Village
12:10h
Workshop | HACKING VILLAGE

Unveiling the Shadow: Advanced Evasion Techniques in APT Operations

Antonio Perez Sanchez
Antonio Perez Sanchez NTT Data Cybersecurity Expert Analyst Speaker

22-05-2024 12:10 22-05-2024 12:50 Europe/Madrid Unveiling the Shadow: Advanced Evasion Techniques in APT Operations On a world that is becoming more interconnected and digitized, cybersecurity has become a top priority for organizations. However, as defense technologies evolve, so do the tactics used by adversaries. The techniques used by advanced threat actors (APTs) to evade implemented countermeasures will be explored through analysis of different adversaries and examples covering everything from obfuscation strategies, dynamic API resolution, API hashing, and direct and indirect system calls. Join us in this analysis and discover how to face the new challenges raised by adversaries to protect the organization in a constantly evolving digital world. Hacking Village
12:10h - 12:50h Hacking Village
12:55h
Talk | HACKING VILLAGE

Lessons Learned from Incident Response

Jan Kaastrup
Jan Kaastrup CSIS Security Group Chief Innovation Officer Speaker
Anton Kalinin
Anton Kalinin CSIS Security Group Principal Security Engineer Speaker

22-05-2024 12:55 22-05-2024 13:15 Europe/Madrid Lessons Learned from Incident Response This talk will explore examples from real IR cases. You will learn how threat actors can avoid AV/EDR detection, combat AD tiering, and bypass MFA authentication. The presentation will also explain how data exfiltration can be contained and how encrypted data can be recovered (without a decryptor). Hacking Village
12:55h - 13:15h Hacking Village
13:20h
Workshop | HACKING VILLAGE

OSINT investigations with Maltego

Carlos Fragoso
Carlos Fragoso Maltego Principal Subject Matter Expert Speaker
Mathieu Gaucheler
Mathieu Gaucheler Maltego Senior Subject Matter Expert Speaker

22-05-2024 13:20 22-05-2024 14:00 Europe/Madrid OSINT investigations with Maltego Through these 40 minutes we will explore the contribution of Open Source Intelligence (OSINT) to carry out a wide range of investigations. How it could bolster your investigations from cyber threat intelligence to social media intelligence. We will underline how the combination of different data sources can be used in efficient investigative workflows. These workflows will be presented in details during the course of the session. We will focus on CTI and SOCMINT. Hacking Village
13:20h - 14:00h Hacking Village
14:00h
Lunch | HACKING VILLAGE

LUNCH

22-05-2024 14:00 22-05-2024 14:45 Europe/Madrid LUNCH LUNCH/Estrella Damm Fireside Chat Hacking Village
14:00h - 14:45h Hacking Village
15:00h
Fireside Chat | HACKING VILLAGE

Disrupting attacks while fighting the cybersecurity poverty line

Marc Rogers
Marc Rogers nbhd.ai CTO Speaker
Martin Vigo
Martin Vigo Triskel Security Founder Speaker

22-05-2024 15:00 22-05-2024 15:30 Europe/Madrid Disrupting attacks while fighting the cybersecurity poverty line Join renowned cybersecurity expert Marc Rogers in a fireside chat with Martin Vigo to delve into the critical issue of combating cyber threats amidst the cybersecurity poverty line. In this discussion they will explore innovative strategies and technologies aimed at disrupting attacks, bolstering defenses, and leveling the playing field against cyber adversaries. From leveraging threat intelligence to fostering collaboration within the cybersecurity community, this conversation promises invaluable insights for organizations and individuals alike in their quest to stay ahead of evolving cyber threats. Hacking Village
15:00h - 15:30h Hacking Village
15:35h
Talk | HACKING VILLAGE

Solving the mystery: Applying intelligence to anticipate threats

Jesus Tejedor
Jesus Tejedor Telefonica Tech Cyber ​​Threat Intelligence Analyst Speaker

22-05-2024 15:35 22-05-2024 15:55 Europe/Madrid Solving the mystery: Applying intelligence to anticipate threats The threat intelligence plays a significant role in incident prevention and resolution. We will explore how Threat Intelligence solves unknowns and generates hypotheses about the potential threats detected. Using detailed case studies, we will delve into how threat actors employ all kinds of strategies against companies and how they use deceptive tactics to achieve their goals. The role of a Threat Intelligence team allows us to move beyond the details and analyze whether a real threat exists and collaborate with the rest of the organization's teams. The value of information allows us to stay ahead of the latest crime trends and prevent possible attacks, determining if we are being targeted by a specific campaign or if it is all a lie. Hacking Village
15:35h - 15:55h Hacking Village
16:00h
Talk | HACKING VILLAGE

Unplugging PlugX : Sinkholing the PlugX USB worm botnet

Alvaro Rodriguez
Alvaro Rodriguez Sekoia Speaker

22-05-2024 16:00 22-05-2024 16:20 Europe/Madrid Unplugging PlugX : Sinkholing the PlugX USB worm botnet In March 2023, Sophos published an article entitled “A border-hopping PlugX USB worm takes its act on the road” putting the light on a PlugX variant with worming capabilities. According to the Sophos blogspot, all of these PlugX samples communicate to only one IP address. In September 2023, we managed to take ownership of this IP address to sinkhole that botnet. Hundreds of thousands of unique IP addresses sent PlugX distinctive requests to our sinkhole server in the first weeks of sinkholing. Even if the botnet can be considered as “dead”, anyone with interception capabilities or taking the ownership of this server can send arbitrary commands to the infected computers, repurposing the botnet for malicious activities. This presentation aims to explain the roots of this campaign, our sinkholing methodology, the PlugX internals with some reversing and the legal issues of disinfection leading us to think about the sovereign disinfection concept. Hacking Village
16:00h - 16:20h Hacking Village
Thu 23
10:00h
Talk | HACKING VILLAGE

ECC Access 2 Market Matchmaking event

23-05-2024 10:00 23-05-2024 16:00 Europe/Madrid ECC Access 2 Market Matchmaking event The ECCC Access 2 Market matchmaking event, organized jointly by The European Cybersecurity Competence Center (ECCC), the Agència de Ciberseguretat de Catalunya and the Instituto Nacional de Ciberseguridad de España (INCIBE) and promoted by the European Community Cybersecurity Project (ECCO ), will take place on May 23, 2024 from 10 a.m. to 2 p.m. in the Hacking Village area of the Barcelona Cybersecurity Congress. Hacking Village
10:00h - 16:00h Hacking Village

Pedro Mier

Pedro Mier holds a degree in Telecommunications Engineer ing from the Polytechnic University of Catalonia, MBA from ESADE and PADE from IESE. He is currently President of AMETIC (Association of Electronics, Information Technology and Telecommunications Companies of Spain), Shareholder and Chairman of the Board of Directors of TRYO Aerospace & Electronics, Board Member of the Premo Group and Committee of CTTC. member of Space Angels Network and Member of the Sc ientific Advisory

Close