<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NovaInfosecPortal.com &#187; the shmoo group</title>
	<atom:link href="http://www.novainfosecportal.com/tag/the-shmoo-group/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.novainfosecportal.com</link>
	<description>News, events, &#38; resources for infosec professionals in NoVA, DC, &#38; MD</description>
	<lastBuildDate>Mon, 06 Feb 2012 18:30:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>ShmooCon 2011 FireTalks – Update 4 (aka – Winners, Videos, &amp; Slides)</title>
		<link>http://www.novainfosecportal.com/2011/02/08/shmoocon-2011-firetalks-%e2%80%93-update-4-aka-%e2%80%93-winners-videos-slides/</link>
		<comments>http://www.novainfosecportal.com/2011/02/08/shmoocon-2011-firetalks-%e2%80%93-update-4-aka-%e2%80%93-winners-videos-slides/#comments</comments>
		<pubDate>Tue, 08 Feb 2011 15:00:34 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[schedule]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=4653</guid>
		<description><![CDATA[Ok, now that I&#8217;ve had a week to recover from ShmooCon, I just wanted to officially wrap up the FireTalks for this year with a quick post announcing the winners and pointing to some other related resources. This year had 12 awesome presentations but only three could come out on top. The judges ranked each talk from 1 to 10. At the end we added them up to determine the winners. For 2011 the ShmooCon FireTalk winners are: Second Runner Up: Lisa “@llorenzin” Lorenzin &#8211; “What I Learned about Security at Burning Man” First Runner Up: Dave Marcus &#8211; “Using Social Networks to Profile, Find andOwn Your Victims” Grand Prize: Schuyler “@Shoebox” Towne &#8211; “We Need to Start Attacking Disc Detainer Locks” Once again congrats to the winners! Schuyler won an iPad provided by Astaro while Dave and Lisa won an Asus netbook and a $100 ThinkGeek gift certificate, respectively. Aplura provided the two runner-up prizes. Also if you are not on Twitter and haven&#8217;t heard @irongeek_adc had the FireTalk videos out on Monday after the con. Wow, what an amazing job to get them out that fast! Thanks Adrien. You can find them here. And for those that were [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+4+%28aka+%E2%80%93+Winners%2C+Videos%2C+%26+Slides%29+http%3A%2F%2Fj.mp%2FnZ6Qek" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/02/08/shmoocon-2011-firetalks-%e2%80%93-update-4-aka-%e2%80%93-winners-videos-slides/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+4+%28aka+%E2%80%93+Winners%2C+Videos%2C+%26+Slides%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>Ok, now that I&#8217;ve had a week to recover from ShmooCon, I just wanted to officially wrap up the FireTalks for this year with a quick post announcing the winners and pointing to some other related resources.</p>
<p>This year had 12 awesome presentations but only three could come out on top. The judges ranked each talk from 1 to 10. At the end we added them up to determine the winners. For 2011 the ShmooCon FireTalk winners are:</p>
<ul>
<li>Second Runner Up: Lisa “@<a href="http://twitter.com/llorenzin">llorenzin</a>” Lorenzin &#8211; “What I Learned about Security at Burning Man”</li>
<li>First Runner Up: Dave Marcus &#8211; “Using Social Networks to Profile, Find andOwn Your Victims”</li>
<li>Grand Prize: Schuyler “@<a href="http://twitter.com/shoebox">Shoebox</a>” Towne &#8211; “We Need to Start Attacking Disc Detainer Locks”</li>
</ul>
<p>Once again congrats to the winners! Schuyler won an iPad provided by <a href="http://www.astaro.com/">Astaro</a> while Dave and Lisa won an Asus netbook and a $100 ThinkGeek gift certificate, respectively. <a href="http://www.aplura.com/">Aplura</a> provided the two runner-up prizes.</p>
<p>Also if you are not on Twitter and haven&#8217;t heard @<a href="http://twitter.com/irongeek_adc">irongeek_adc</a> had the FireTalk videos out on Monday after the con. Wow, what an amazing job to get them out that fast! Thanks Adrien. You can find them <a href="http://www.irongeek.com/i.php?page=videos/shmoocon-firetalks-2011">here</a>. And for those that were able to watch live, please also send a big thank you to @<a href="http://twitter.com/vincentkadmon">vincentkadmon</a>.</p>
<p>I&#8217;ll update the <a href="/2011/01/12/shmoocon-2011-firetalks/">master post</a> with all this information where you should be able to find everything.</p>
<p>Once again I like to thank everyone involved in making FireTalks happen this year. From awesome sponsors (<a href="http://www.aplura.com/">Aplura</a> and <a href="http://www.astaro.com/">Astaro</a>) to the many volunteers (Jack “@<a href="http://twitter.com/jack_daniel">jack_daniel</a>” Daniel, Adrian “@<a href="http://twitter.com/irongeek_adc">irongeek_adc</a>” Crenshaw, Georgia “@<a href="http://twitter.com/vincentkadmon">vincentkadmon</a>” Weidman, Mike “@<a href="http://twitter.com/rybolov">rybolov</a>” Smith, Nathi “@<a href="http://twitter.com/nathiet">nathiet</a>” Thwala, Jason “@<a href="http://twitter.com/jasonmoliver">jasonmoliver</a>” Oliver, &#8220;@<a href="http://twitter.com/DaKahuna2007">DaKahuna2007</a>&#8220;, and Mike &#8220;@<a href="http://twitter.com/theprez98">theprez98</a>&#8221; Schearer), our recruited judges (“@<a href="http://twitter.com/shrdlu">shrdlu</a>”, James “@<a href="http://twitter.com/mycurial">mycurial</a>” Arlen, and Melanie Smith), and especially the ShmooCon team (&#8220;@<a href="http://twitter.com/heidishmoo">heidishmoo</a>&#8220;, &#8220;@<a href="http://twitter.com/gdead">gdead</a>&#8220;, and everyone else involved in Team &#8220;@<a href="http://twitter.com/shmoocon">shmoocon</a>&#8220;). Thanks for a great time and another successful year. See ya!</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+4+%28aka+%E2%80%93+Winners%2C+Videos%2C+%26+Slides%29+http%3A%2F%2Fj.mp%2FnZ6Qek" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/02/08/shmoocon-2011-firetalks-%e2%80%93-update-4-aka-%e2%80%93-winners-videos-slides/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+4+%28aka+%E2%80%93+Winners%2C+Videos%2C+%26+Slides%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/02/08/shmoocon-2011-firetalks-%e2%80%93-update-4-aka-%e2%80%93-winners-videos-slides/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2011 FireTalks – Update 3 (aka – Schedule &amp; Prizes)</title>
		<link>http://www.novainfosecportal.com/2011/01/27/shmoocon-2011-firetalks-%e2%80%93-update-3-aka-%e2%80%93-schedule-prizes/</link>
		<comments>http://www.novainfosecportal.com/2011/01/27/shmoocon-2011-firetalks-%e2%80%93-update-3-aka-%e2%80%93-schedule-prizes/#comments</comments>
		<pubDate>Fri, 28 Jan 2011 03:58:29 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[schedule]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=4603</guid>
		<description><![CDATA[Ok, less than one day until the big event starts. Oh, ShmooCon starts too. And as usual I am waiting until the last minute &#8230; this time to put out the FireTalks speaking schedule. Also if you haven&#8217;t noticed already on the FireTalks master post, we&#8217;ve already listed the top three prizes. Well without further ado, here is the schedule. Friday ~Time Name Title Description 8:00 @Grecs Welcome &#38; Announcements n/a 8:15 Ralph &#8220;@RalphBroom&#8221; Broom &#38; Danny Gottovi Protocol Security: You&#8217;re (Still) Doing It Wrong Despite the wide availability and known advantages of encrypted communications across the Internet, use of these protocols is still not universal. We describe the current threat space impacted including the recent release of FireSheep, and present the findings of our research into secure protocol usage at security conferences DEFCON and ShmooCon, and on the Tor network, which we expect to be higher than the general population. We close with the implications of these numbers applied to the general population and summarize what service providers and end-users can do about it. This is original research. 8:30 Rick &#8220;Zero_Chaos&#8221; Farina Radio Chaos: Why Retired Men Know More about Hacking than You Do This presentation will revolve around [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+3+%28aka+%E2%80%93+Schedule+%26+Prizes%29+http%3A%2F%2Fj.mp%2FmQ1alC" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/27/shmoocon-2011-firetalks-%e2%80%93-update-3-aka-%e2%80%93-schedule-prizes/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+3+%28aka+%E2%80%93+Schedule+%26+Prizes%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>Ok, less than one day until the big event starts. Oh, ShmooCon starts too. And as usual I am waiting until the last minute &#8230; this time to put out the FireTalks speaking schedule. Also if you haven&#8217;t noticed already on the <a href="/2011/01/12/shmoocon-2011-firetalks/">FireTalks master post</a>, we&#8217;ve already listed the top three prizes. Well without further ado, here is the schedule.</p>
<p><strong>Friday</strong></p>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td><strong>~Time</strong></td>
<td><strong>Name</strong></td>
<td><strong>Title</strong></td>
<td><strong>Description</strong></td>
</tr>
<tr>
<td>8:00</td>
<td>@<a href="http://twitter.com/grecs">Grecs</a></td>
<td>Welcome &amp; Announcements</td>
<td>n/a</td>
</tr>
<tr>
<td>8:15</td>
<td>Ralph &#8220;@<a href="http://twitter.com/RalphBroom">RalphBroom</a>&#8221; Broom &amp; Danny Gottovi</td>
<td>Protocol Security: You&#8217;re (Still) Doing It Wrong</td>
<td>Despite the wide availability and known advantages of encrypted communications across the Internet, use of these protocols is still not universal. We describe the current threat space impacted including the recent release of FireSheep, and present the findings of our research into secure protocol usage at security conferences DEFCON and ShmooCon, and on the Tor network, which we expect to be higher than the general population. We close with the implications of these numbers applied to the general population and summarize what service providers and end-users can do about it.  This is original research.</td>
</tr>
<tr>
<td>8:30</td>
<td>Rick &#8220;Zero_Chaos&#8221; Farina</td>
<td>Radio Chaos: Why Retired Men Know More about Hacking than You Do</td>
<td>This presentation will revolve around radios that nearly all businesses use.  Several misconceptions are constantly spread around the hacker community about radio communications such as encryption use and general security.  Curious about what is going on around you? Wonder who the local police are pulling over? Will the local fire department save that cat from the tree? What are the goons doing right now&#8230;. Wonder no more! Learn things that your parents and their retired friends already know such as tone squelch, repeaters, trunking, and digital modes so you will never be left out of the loop again.</td>
</tr>
<tr>
<td>8:45</td>
<td>Lisa &#8220;@<a href="http://twitter.com/llorenzin">llorenzin</a>&#8221; Lorenzin</td>
<td>What I Learned about Security at Burning Man</td>
<td>A brief photographic tour of critical security lessons I&#8217;ve learned over five years as a citizen of Black Rock City. (Warning: contains nudity)</td>
</tr>
<tr>
<td>9:00</td>
<td>Irongeek &#8220;@<a href="http://twitter.com/irongeek_adc">irongeek_adc</a>&#8220;</td>
<td>Intro to I2P</td>
<td>Tor is great, but what about alternatives? This talk will cover installing the I2P darknet client, as well as hosting services. Make your mark on cipherspace.</td>
</tr>
<tr>
<td>9:15</td>
<td>Jimmy &#8220;@<a href="http://twitter.com/shah_jim">shah_jim</a>&#8221; Shah</td>
<td>Mobile Botnets and Rootkits: An Overview</td>
<td>Geinimi-Android botnets? Zeus in the Mobile? Symbian botnets? iPhone Botnets? Millions of phones at risk?  The press coverage on smartphone threats is at times somewhat accurate, distant and occasionally(if unintentionally) misleading.  They tend to raise questions such as: &#8211; how close to PC levels(100K+ to millions of nodes) mobile botnets have reached? &#8211; have mobile rootkits reached the complexity of that on the PC? &#8211; are criminals targeting our bank accounts or our identities through our phones? The talk will be a quick overview the state of rootkits and botnets on smartphones from the perspective of anti-malware researchers, including: &#8211; demystification of the threat from mobile rootkits and mobile botnets &#8211; the differences, if any, between mobile rootkits and mobile botnets vs. their PC counterparts &#8211; up close look[*] at how samples seen in the wild and researcher PoCs function &#8211; coverage of recent mobile botnet and botnet pre-cursors. [*] Short of examining disassemblies or mentioning actual API calls</td>
</tr>
<tr>
<td>9:30</td>
<td>Jack &#8220;@<a href="http://twitter.com/jack_daniel">jack_daniel</a>&#8221; Daniel</td>
<td>Is it better to burn out than fade away?</td>
<td>Is it better to burn out than fade away?  It had better be; based on what I&#8217;m hearing from others in the information security field we are nearing a crisis. Everyone experiences occasional feelings of frustration in their careers, but what can we do for ourselves and peers to minimize the suffering?  Join the conversation as we looks at the questions involved, and maybe even a few answers.</td>
</tr>
</tbody>
</table>
<p><strong>Saturday</strong></p>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td><strong>~Time</strong></td>
<td><strong>Name</strong></td>
<td><strong>Title</strong></td>
<td><strong>Description</strong></td>
</tr>
<tr>
<td>8:00</td>
<td><a href="http://twitter.com/grecs">Grecs</a></td>
<td>Updates &amp; Announcements</td>
<td>n/a</td>
</tr>
<tr>
<td>8:15</td>
<td>Valerie &#8220;@<a href="http://twitter.com/hacktress09">hacktress09</a>&#8221; Thomas</td>
<td>Gurlz Rule and Boys Drool: How a Hacktress Can Take Your Social Engineering to the Next Level</td>
<td>What if I told you that pieces to your social engineering puzzle are missing?   Would you believe me?   For centuries women have served their countries and causes as spies; often infiltrating the most impossible of environments.  In this presentation we’ll explore the role of the hacktress, female based attack vectors, and put some new twists on old tricks.</td>
</tr>
<tr>
<td>8:30</td>
<td>DaveMarcus</td>
<td>Using Social Networks to Profile, Find and Own Your Victims</td>
<td>Social engineering through social networks is one of the most complex threats to deal with and protect against. The more you know about your victims likes, dislikes, hobbies and activities, the better chance you have of successfully social engineering them to do whatever you want. What if there existed a set of tools that told a scammer or cybercriminal everything they wanted to know about their intended targets? What if their intended targets were, in fact, freely sharing this information with the very attackers that sought to steal their data? This presentation will take the audience through the most powerful set of tools ever created for the wily social engineer and cybercriminal: Bing, Twitter, Facebook, TwitScoop, TinyURL and other social media sites. By focusing on how to cleverly mine these sites for key user words, trends and topics and combining these results with an URL shortening service like TinyURL, we will demonstrate how any user can be sent any amount of malware, phishing attacks or any other social engineering-based attack at the cybercriminals command with a lure that will work every time.</td>
</tr>
<tr>
<td>8:45</td>
<td>Schuyler &#8220;@<a href="http://twitter.com/Shoebox">Shoebox</a>&#8221; Towne</td>
<td>We Need to Start Attacking Disc Detainer Locks</td>
<td>Disc Detainer locks have been around for 100+ years, but until recently few in the US were even aware of them. Over the last 5 years low-end disc detainers have flooded the bicycle and motorcycle lock market. Now you can even find cheap disc detainer padlocks at truck stops with &#8220;HIGH SECURITY&#8221; emblazoned on the packaging. There are high security disc detainer locks out there, but that&#8217;s not what we&#8217;re getting from these companies. This talk will cover the basics of how these locks operate, simple picking instructions and I&#8217;ll introduce the early stages of a brute force dialer I&#8217;m building.</td>
</tr>
<tr>
<td>9:00</td>
<td>Raphael &#8220;@<a href="http://twitter.com/armitagehacker">armitagehacker</a>&#8221; Mudge</td>
<td>Armitage: Cyber Attack Management for Metasploit</td>
<td>Armitage is a new interface for the Metasploit framework built around the attack process. It visualizes your sessions and targets, intelligently recommends exploits, manages post-exploitation, and makes it easy to attack using compromised hosts. The goal of the project is to make Metasploit&#8217;s advanced features available to you. This short talk will demonstrate Armitage&#8217;s coolest features and touch on future developments. After this talk, you should visit <a href="http://www.fastandeasyhacking.com">http://www.fastandeasyhacking.com</a> to learn more.</td>
</tr>
<tr>
<td>9:15</td>
<td>Michael &#8220;@<a href="http://twitter.com/theprez98">theprez98</a>&#8221; Schearer</td>
<td>Net Neutrality, the FCC, and the End of the Internet as We Know It (in 15 Minutes or Less)</td>
<td>On December 21, 2010, the FCC adopted &#8220;net neutrality&#8221; rules by a closely-watched 3-2 vote.  But whether or not you support the idea of net neutrality, other questions remain: First, what is broken about the current process that needs fixing? Second, and more importantly, why did the FCC act despite the warnings of Congress and despite the Comcast decision, both of which claimed that that FCC lacked such authority? Third, was the process transparent?  Lastly, what are the future implications of the FCC’s actions?  This lightning-fast discussion will cover the basics of net neutrality, the role of the FCC in regulating the Internet, and the future legal and policy implications of the FCC&#8217;s neutrality rules. Is the future of the Internet really at risk?</td>
</tr>
<tr>
<td>9:30</td>
<td>Gal &#8220;@<a href="http://twitter.com/shpantzer">shpantzer</a>&#8221; Shpantzer</td>
<td>Security Outliers: Cultural Cues from High Risk Professions</td>
<td>What do security officers have in common with airline pilots, surgeons, and special operation teams? This presentation explores factors involved in successful risk management for security leadership, by drawing upon lessons from other high risk professions that have a cultural legacy of dealing with risk. We derive early warning indicators of communication disconnects and provide a list of training objectives to dramatically improve risk management outcomes. Focusing on Layer 8 wetware issues enables strategic change that doesn&#8217;t have to cost an arm and a leg (read, no forklift upgrades), because the focus is not on the hardware/software stack. This talk was successfully delivered at RSA/CSI/DojoCon in 2010 and is updated with new interviews and research on aviation, surgery, military special operations and other fields that infosec could learn from and adapt to our relatively new profession.</td>
</tr>
</tbody>
</table>
<p><strong>Note to the Presenters:</strong> Please <a href="/contact-us/">Contact Us</a> if there are any errors or omissions and we&#8217;ll try to get it updated ASAP.</p>
<p>Finally, all these esteemed speakers have the opportunity to win one of the following prizes.</p>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td><strong>Prizes</strong></td>
<td><strong>Sponsors</strong></td>
</tr>
<tr>
<td>
<p style="text-align: center;">Grand Price: <a href="http://store.apple.com/us/browse/home/shop_ipad/family/ipad">Apple iPad &#8211; 16G with Wi-Fi</a></p>
<p style="text-align: center;"><img class="alignnone size-full wp-image-4594" title="Apple iPad" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/ipad.png" alt="Applie iPad 16G with Wi-Fi" width="245" height="154" /></p>
</td>
<td>
<p style="text-align: center;">Courtesy of <a href="http://www.astaro.com/">Astaro</a></p>
<p style="text-align: center;"><a href="http://www.astaro.com/"><img class="size-medium wp-image-4590 alignnone" title="Astaro" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/astaro-logo-300x110.jpg" alt="Astaro Logo" width="210" height="77" /></a></p>
</td>
</tr>
<tr>
<td style="text-align: center;">1st Runner-Up Prize: <a href="http://www.amazon.com/Acer-AOD255-2509-10-1-Inch-Netbook-Diamond/dp/B0041DZTWG">Acer Aspire One AOD255-2509 10.1-Inch Netbook</a></p>
<p><a href="http://www.amazon.com/Acer-AOD255-2509-10-1-Inch-Netbook-Diamond/dp/B0041DZTWG"><img class="alignnone size-full wp-image-4448" title="Acer Netbook" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/acer-e1294880638802.jpg" alt="Acer Aspire One AOD255-2509 10.1-Inch Netbook" width="186" height="140" /></a></td>
<td style="text-align: center;">Brought to you by <a href="http://www.aplura.com/">Aplura, LLC</a></p>
<p><a href="http://www.aplura.com/"><img class="size-medium wp-image-4542 alignnone" title="Aplura, LLC" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/apluralogo-300x111.png" alt="Aplura Logo" width="210" height="78" /></a></td>
</tr>
<tr>
<td>
<p style="text-align: center;">2nd Runner-Up Prize: <a href="http://www.thinkgeek.com/">$100 Think Geek Gift Certificate</a></p>
<p style="text-align: center;"><a href="http://www.thinkgeek.com/"><img class="alignnone size-full wp-image-3305" title="Think Geek Gift Certificate" src="http://www.novainfosecportal.com/wp-content/uploads/2010/01/thinkgeeklogo.gif" alt="Think Geek Gift Certificate" width="201" height="74" /></a></p>
</td>
<td>
<p style="text-align: center;">Courtesy of <a href="http://www.aplura.com/">Aplura, LLC</a></p>
<p style="text-align: center;"><a href="http://www.aplura.com/"><img class="size-medium wp-image-4542 alignnone" title="Aplura, LLC" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/apluralogo-300x111.png" alt="Aplura Logo" width="210" height="78" /></a></p>
</td>
</tr>
</tbody>
</table>
<p style="text-align: center;">#####</p>
<p style="text-align: center;"><em>Well I think that is about it&#8230; We look forward to seeing everyone tomorrow night. See ya!</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+3+%28aka+%E2%80%93+Schedule+%26+Prizes%29+http%3A%2F%2Fj.mp%2FmQ1alC" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/27/shmoocon-2011-firetalks-%e2%80%93-update-3-aka-%e2%80%93-schedule-prizes/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+3+%28aka+%E2%80%93+Schedule+%26+Prizes%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/01/27/shmoocon-2011-firetalks-%e2%80%93-update-3-aka-%e2%80%93-schedule-prizes/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2011 FireTalks – Update 2 (aka – Speaker Announcement &amp; New Sponsor)</title>
		<link>http://www.novainfosecportal.com/2011/01/25/shmoocon-2011-firetalks-%e2%80%93-update-2-aka-%e2%80%93-speaker-announcemnt-new-sponsor/</link>
		<comments>http://www.novainfosecportal.com/2011/01/25/shmoocon-2011-firetalks-%e2%80%93-update-2-aka-%e2%80%93-speaker-announcemnt-new-sponsor/#comments</comments>
		<pubDate>Wed, 26 Jan 2011 03:34:07 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=4571</guid>
		<description><![CDATA[Well only three days left until the start of ShmooCon 2011 and we are busy putting the final touches on this year&#8217;s FireTalks. We are finally ready to announce the speakers, welcome a new sponsor, and note a minor room change. And as always for all the details in one place, head on over the the FireTalks master post. In no particular order here are the speakers and their talks we&#8217;ve confirmed so far. Ralph &#8220;@RalphBroom&#8221; Broom &#38; Danny Gottovi: Protocol Security: You&#8217;re (Still) Doing It Wrong Irongeek &#8220;@irongeek_adc&#8220;: Intro to I2P Rick &#8220;Zero_Chaos&#8221; Farina: Radio Chaos: Why Retired Men Know More about Hacking than You Do Lisa &#8220;@llorenzin&#8221; Lorenzin: What I Learned about Security at Burning Man DaveMarcus: Using Social Networks to Profile, Find and Own Your Victims Raphael &#8220;@armitagehacker&#8221; Mudge: Armitage: Cyber Attack Management for Metasploit Michael &#8220;@theprez98&#8221; Schearer: Net Neutrality, the FCC, and the End of the Internet as We Know It (in 15 Minutes or Less) Jimmy &#8220;@shah_jim&#8221; Shah: Mobile Botnets and Rootkits: An Overview Gal &#8220;@shpantzer&#8221; Shpantzer: Security Outliers: Cultural Cues from High Risk Professions Valerie &#8220;@hacktress09&#8221; Thomas: Gurlz Rule and Boys Drool: How a Hacktress Can Take Your Social Engineering to the Next Level [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+2+%28aka+%E2%80%93+Speaker+Announcement+%26+New+Sponsor%29+http%3A%2F%2Fj.mp%2FnhT8zP" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/25/shmoocon-2011-firetalks-%e2%80%93-update-2-aka-%e2%80%93-speaker-announcemnt-new-sponsor/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+2+%28aka+%E2%80%93+Speaker+Announcement+%26+New+Sponsor%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><a href="http://www.astaro.com/"><img class="alignright size-medium wp-image-4590" title="Astaro" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/astaro-logo-300x110.jpg" alt="Astaro Logo" width="240" height="88" /></a>Well only three days left until the start of ShmooCon 2011 and we are busy putting the final touches on this year&#8217;s FireTalks. We are finally ready to announce the speakers, welcome a new sponsor, and note a minor room change. And as always for all the details in one place, head on over the the <a href="/2011/01/12/shmoocon-2011-firetalks/">FireTalks master post</a>.</p>
<p>In no particular order here are the speakers and their talks we&#8217;ve confirmed so far.</p>
<ul>
<li>Ralph &#8220;@<a href="http://twitter.com/RalphBroom">RalphBroom</a>&#8221; Broom &amp; Danny Gottovi: <em>Protocol Security: You&#8217;re (Still) Doing It Wrong</em></li>
<li>Irongeek &#8220;@<a href="http://twitter.com/irongeek_adc">irongeek_adc</a>&#8220;: <em>Intro to I2P</em></li>
<li>Rick &#8220;Zero_Chaos&#8221; Farina: <em>Radio Chaos: Why Retired Men Know More about Hacking than You Do</em></li>
<li>Lisa &#8220;@<a href="http://twitter.com/llorenzin">llorenzin</a>&#8221; Lorenzin: <em>What I Learned about Security at Burning Man</em></li>
<li>DaveMarcus: <em>Using Social Networks to Profile, Find and Own Your Victims</em></li>
<li>Raphael &#8220;@<a href="http://twitter.com/armitagehacker">armitagehacker</a>&#8221; Mudge: <em>Armitage: Cyber Attack Management for Metasploit</em></li>
<li>Michael &#8220;@<a href="http://twitter.com/theprez98">theprez98</a>&#8221; Schearer: <em>Net Neutrality, the FCC, and the End of the Internet as We Know It (in 15 Minutes or Less)</em></li>
<li>Jimmy &#8220;@<a href="http://twitter.com/shah_jim">shah_jim</a>&#8221; Shah: <em>Mobile Botnets and Rootkits: An Overview</em></li>
<li>Gal &#8220;@<a href="http://twitter.com/shpantzer">shpantzer</a>&#8221; Shpantzer: <em>Security Outliers: Cultural Cues from High Risk Professions</em></li>
<li>Valerie &#8220;@<a href="http://twitter.com/hacktress09">hacktress09</a>&#8221; Thomas: <em>Gurlz Rule and Boys Drool: How a Hacktress Can Take Your Social Engineering to the Next Level</em></li>
<li>Schuyler &#8220;@<a href="http://twitter.com/Shoebox">Shoebox</a>&#8221; Towne: <em>We Need to Start Attacking Disc Detainer Locks</em></li>
</ul>
<p>Also joining <a href="http://www.aplura.com/">Aplura, LLC</a> we&#8217;d like to welcome <a href="http://www.astaro.com/">Astaro</a> as another FireTalks sponsor! I think we pretty much have the top three prizes covered however if you want a quick mention at the event and be listed on the <a href="/2011/01/12/shmoocon-2011-firetalks/">master FireTalks page</a>, feel free to pass some cash or goodies along our way. I&#8217;m sure we&#8217;ll make good use of it. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  If you are interested just <a href="/contact-us/">Contact Us</a> and we&#8217;ll follow up with you.</p>
<p>Finally, Team Shmoo notified us that due to a last minute room change, we will now be in the International Ballroom &#8211; West instead of the Jefferson rooms. Sounds like we&#8217;re moving up&#8230;</p>
<p style="text-align: center;">#####</p>
<p style="text-align: center;"><em>I hope to get the final schedule out tomorrow so be on the look out for that. Wow, only three more days!!! See ya (soon)!</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+2+%28aka+%E2%80%93+Speaker+Announcement+%26+New+Sponsor%29+http%3A%2F%2Fj.mp%2FnhT8zP" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/25/shmoocon-2011-firetalks-%e2%80%93-update-2-aka-%e2%80%93-speaker-announcemnt-new-sponsor/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+2+%28aka+%E2%80%93+Speaker+Announcement+%26+New+Sponsor%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/01/25/shmoocon-2011-firetalks-%e2%80%93-update-2-aka-%e2%80%93-speaker-announcemnt-new-sponsor/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>ShmooCon Barcode Auction Benefiting Reverse Space</title>
		<link>http://www.novainfosecportal.com/2011/01/25/shmoocon-barcode-auction-benefiting-reverse-space/</link>
		<comments>http://www.novainfosecportal.com/2011/01/25/shmoocon-barcode-auction-benefiting-reverse-space/#comments</comments>
		<pubDate>Tue, 25 Jan 2011 05:15:45 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[reversespace]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=4579</guid>
		<description><![CDATA[One of the guys we reserved a ShmooCon barcode for had to drop out at the last minute and so we thought we would auction their ticket off with all proceeds going to Reverse Space. For those that don&#8217;t know .. Reverse Space is an awesome new a 5,500 sq. ft. hacker space in Herndon, VA just outside of Washington, DC. It has equipment for rapid prototyping, reverse engineering, building, and computing in a group environment. The auction just started and will last 24 hours until midnight on January 25th. So head on over to our eBay listing to get started. ##### Good luck to everyone out there and we hope to see you at ShmooCon this weekend. See ya!]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+Barcode+Auction+Benefiting+Reverse+Space+http%3A%2F%2Fj.mp%2FeOmRVU" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/25/shmoocon-barcode-auction-benefiting-reverse-space/&amp;t=ShmooCon+Barcode+Auction+Benefiting+Reverse+Space" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-4580" title="ShmooCon Barcode / Reverse Space" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/shmootic-300x170.png" alt="Image of ShmooCoc and Reverse Space Logos" width="210" height="119" />One of the guys we reserved a <a href="/events/infosec-conferences/#shmoocon">ShmooCon</a> barcode for had to drop out at the last minute and so we thought we would auction their ticket off with all proceeds going to <a href="/events/nova-meetups/#reverse">Reverse Space</a>. For those that don&#8217;t know .. Reverse Space is an awesome new a 5,500 sq. ft. hacker space in Herndon, VA just outside of Washington, DC. It has equipment for rapid prototyping, reverse engineering, building, and computing in a group environment.</p>
<p>The auction just started and will last 24 hours until midnight on January 25th. So head on over to <a href="http://cgi.ebay.com/ShmooCon-2011-Barcode-Auction-Benefiting-Reverse-Space-/220729714303?pt=US_Tickets_all_in_one&amp;hash=item336484267f">our eBay listing</a> to get started.</p>
<p style="text-align: center;">#####</p>
<p style="text-align: center;">G<em>ood luck to everyone out there and we hope to see you at ShmooCon this weekend. See ya!</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+Barcode+Auction+Benefiting+Reverse+Space+http%3A%2F%2Fj.mp%2FeOmRVU" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/25/shmoocon-barcode-auction-benefiting-reverse-space/&amp;t=ShmooCon+Barcode+Auction+Benefiting+Reverse+Space" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/01/25/shmoocon-barcode-auction-benefiting-reverse-space/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2011 FireTalks &#8211; Update 1 (aka &#8211; Time Change &amp; Sponsors Needed)</title>
		<link>http://www.novainfosecportal.com/2011/01/18/shmoocon-2011-firetalks-update-1-aka-time-change-sponsors-needed/</link>
		<comments>http://www.novainfosecportal.com/2011/01/18/shmoocon-2011-firetalks-update-1-aka-time-change-sponsors-needed/#comments</comments>
		<pubDate>Wed, 19 Jan 2011 02:10:23 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=4540</guid>
		<description><![CDATA[We just wanted to put out a quick update regarding the FireTalks coming up in less than 10 days at ShmooCon this year. First, we made some slight adjustments to the start times on the master post to sync with the ShmooCon official schedule. So that means that the FireTalks will be starting at 8:00 PM on Friday and Saturday. Although the schedule shows the FireTalks only going an hour, I&#8217;m guessing it&#8217;ll probably go over since we originally planned for two hours. Also we are still in need of some sponsors. Currently we are looking for two more prizes to give away. Price-wise we are looking at anything between $200 and $500. Also if anyone wants to throw some extra cash our way, we&#8217;ll be sure to buy some Think Geek goodies to give out to attendees. As originally stated sponsors get their logo placed on the master FireTalks post and in some of the update posts as well as several mentions during the event. Please contact @jack_daniel if you are interested in sponsoring. As a backup you can Contact Us and I’ll forward the information on to Jack. Regarding current sponsors, we&#8217;d like to thank Aplura, LLC for [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+1+%28aka+%E2%80%93+Time+Change+%26+Sponsors+Needed%29+http%3A%2F%2Fj.mp%2Ffjksxv" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/18/shmoocon-2011-firetalks-update-1-aka-time-change-sponsors-needed/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+1+%28aka+%E2%80%93+Time+Change+%26+Sponsors+Needed%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><a href="http://www.aplura.com/"><img class="alignright size-medium wp-image-4542" title="Aplura, LLC" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/apluralogo-300x111.png" alt="Aplura Logo" width="240" height="89" /></a>We just wanted to put out a quick update regarding the FireTalks coming up in less than 10 days at ShmooCon this year.</p>
<p>First, we made some slight adjustments to the start times on the <a href="/2011/01/12/shmoocon-2011-firetalks/">master post</a> to sync with the <a href="http://www.shmoocon.org/schedule">ShmooCon official schedule</a>. So that means that the FireTalks will be starting at 8:00 PM on Friday and Saturday. Although the schedule shows the FireTalks only going an hour, I&#8217;m guessing it&#8217;ll probably go over since we originally planned for two hours.</p>
<p>Also we are still in need of some sponsors. Currently we are looking for two more prizes to give away. Price-wise we are looking at anything between $200 and $500. Also if anyone wants to throw some extra cash our way, we&#8217;ll be sure to buy some Think Geek goodies to give out to attendees. As originally stated sponsors get their logo placed on the master FireTalks post and in some of the update posts as well as several mentions during the event. Please contact @<a href="http://twitter.com/jack_daniel">jack_daniel</a> if you are interested in sponsoring. As a backup you can <a href="/contact-us/">Contact Us</a> and I’ll forward the information on to Jack.</p>
<p>Regarding current sponsors, we&#8217;d like to thank <a href="http://www.aplura.com/">Aplura, LLC</a> for providing an Acer Aspire One netbook as well as a cash donation for some extras.</p>
<p style="text-align: center;">#####</p>
<p style="text-align: center;"><em>Be on the lookout &#8230; speaker announcements are coming soon. See ya!</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+Update+1+%28aka+%E2%80%93+Time+Change+%26+Sponsors+Needed%29+http%3A%2F%2Fj.mp%2Ffjksxv" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/18/shmoocon-2011-firetalks-update-1-aka-time-change-sponsors-needed/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+Update+1+%28aka+%E2%80%93+Time+Change+%26+Sponsors+Needed%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/01/18/shmoocon-2011-firetalks-update-1-aka-time-change-sponsors-needed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2011 FireTalks</title>
		<link>http://www.novainfosecportal.com/2011/01/12/shmoocon-2011-firetalks/</link>
		<comments>http://www.novainfosecportal.com/2011/01/12/shmoocon-2011-firetalks/#comments</comments>
		<pubDate>Thu, 13 Jan 2011 01:55:28 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=4348</guid>
		<description><![CDATA[We really enjoyed running FireTalks last year. It was a great chance to meet a lot of the online friends we made up to that point. With the completion of the third round of tickets and some coordination calls with the ShmooCon team, we proudly announced the ShmooCon 2011 Firetalks! If you followed the FireTalks in the past, this year&#8217;s was essentially run the same however there were a few differences we noted. First, instead of having four 15-minute sessions each night, we expanded up to six. We hoped to accommodate many of the awesome submissions that the ShmooCon team was not able to accept due to the finite number of speaking slots. Additionally, we ran the CFP a little more like a traditional conference instead of on a first-come-first-serve basis. The goal was to have a nice mix of established and new speakers. But other than those two changes, most everything else remained the same. For all the latest happenings, check back to this post periodically. It was the home for any and all information relating to the ShmooCon 2011 FireTalks. You could have subscribed to our main RSS feed or followed us on Twitter at @novainfosec since we [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+http%3A%2F%2Fj.mp%2FhOK1nT" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/12/shmoocon-2011-firetalks/&amp;t=ShmooCon+2011+FireTalks" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-4393" title="Firetalk" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/firetalk-300x258.jpg" alt="" width="210" height="181" />We really enjoyed running FireTalks last year. It was a great chance to meet a lot of the online friends we made up to that point. With the completion of the third round of tickets and some coordination calls with the ShmooCon team, we proudly announced the ShmooCon 2011 Firetalks!</p>
<p>If you followed the FireTalks <a href="/2010/01/06/shmoocon-2010-firetalks/">in the past</a>, this year&#8217;s was essentially run the same however there were a few differences we noted. First, instead of having four 15-minute sessions each night, we expanded up to six. We hoped to accommodate many of the awesome submissions that the ShmooCon team was not able to accept due to the finite number of speaking slots. Additionally, we ran the CFP a little more like a traditional conference instead of on a first-come-first-serve basis. The goal was to have a nice mix of established and new speakers. But other than those two changes, most everything else remained the same.</p>
<p>For all the latest happenings, check back to this post periodically. It was the home for any and all information relating to the ShmooCon 2011 FireTalks. You could have subscribed to our <a href="http://feeds.feedburner.com/novainfosecportalblog">main RSS feed</a> or followed us on Twitter at @<a href="http://twitter.com/novainfosec">novainfosec</a> since we put out short &#8220;update&#8221; posts with just the new information and a pointer back to this &#8220;master&#8221; post. And as usual &#8230; I regularly updated my Twitter stream at @<a href="http://twitter.com/grecs">grecs</a> with all the information using the #<a href="http://search.twitter.com/search?q=&amp;ands=&amp;phrase=&amp;ors=&amp;nots=&amp;tag=firetalks&amp;lang=all&amp;from=&amp;to=&amp;ref=&amp;near=&amp;within=15&amp;units=mi&amp;since=&amp;until=&amp;rpp=15">firetalks</a> tag. If you need to quickly refer back to this post, you could have also used the longish bit.ly link we created at <a href="http://bit.ly/shmoocon2011firetalks">bit.ly/shmoocon2011firetalks</a>.</p>
<p>Anyway &#8230; here were the logistics for this year&#8217;s FireTalks in traditional NovaInfosecPortal.com form:</p>
<ul>
<li><strong>Who:</strong> ShmooCon/NovaInfosecPortal.com</li>
<li><strong>What:</strong> ShmooCon 2011 FireTalks</li>
<li><strong>When:</strong>
<ul>
<li><strong>CFP Due Date:</strong> 1/23, midnight EST</li>
<li><strong>Event:</strong> 1/28, 8:00 PM &amp; 1/29/2011, 8:00 PM EST</li>
</ul>
</li>
<li><strong>Where:</strong> <a href="http://www1.hilton.com/en_US/hi/hotel/DCAWHHH-Washington-Hilton-District-of-Columbia/index.do">Washington Hilton Hotel</a> (<a href="http://maps.google.com/maps?f=q&amp;source=s_q&amp;hl=en&amp;geocode=&amp;q=1919+Connecticut+Avenue,+NW+Washington,+DC+20009&amp;sll=37.0625,-95.677068&amp;sspn=40.681389,68.027344&amp;ie=UTF8&amp;hq=&amp;hnear=1919+Connecticut+Ave+NW,+Washington,+District+of+Columbia,+20009&amp;z=16">1919 Connecticut Avenue, NW Washington, DC 20009</a>; International Ballroom – West [where the Bring It On track will be])</li>
</ul>
<p>For a historic look at the whole FireTalks idea, please check out the History section of <a href="/2010/01/06/shmoocon-2010-firetalks/">last year&#8217;s post</a>. From @<a href="https://twitter.com/catalyst">catalyst</a>, @<a href="http://twitter.com/mubix">mubix,</a> @<a href="http://twitter.com/carnal0wnage">carnal0wnage</a>, and many others, we are standing on shoulders here. Now onto what happened with this whole FireTalks thing&#8230;</p>
<h2>Speakers/CFP</h2>
<p>We had six 15-minute speaking slots each night. Hopefully, the talks provided a nice mix of established and new speakers. Here was the 2011 schedule.</p>
<h3>Friday</h3>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td><strong>~Time</strong></td>
<td><strong>Name</strong></td>
<td><strong>Title</strong></td>
<td><strong>Description</strong></td>
</tr>
<tr>
<td>8:00</td>
<td>@<a href="http://twitter.com/grecs">Grecs</a></td>
<td>Welcome &amp; Announcements</td>
<td>n/a</td>
</tr>
<tr>
<td>8:15</td>
<td>Ralph &#8220;@<a href="http://twitter.com/RalphBroom">RalphBroom</a>&#8221; Broom &amp; Danny Gottovi</td>
<td>Protocol Security: You&#8217;re (Still) Doing It Wrong</td>
<td>Despite the wide availability and known advantages of encrypted communications across the Internet, use of these protocols is still not universal. We describe the current threat space impacted including the recent release of FireSheep, and present the findings of our research into secure protocol usage at security conferences DEFCON and ShmooCon, and on the Tor network, which we expect to be higher than the general population. We close with the implications of these numbers applied to the general population and summarize what service providers and end-users can do about it.  This is original research.</td>
</tr>
<tr>
<td>8:30</td>
<td>Rick &#8220;Zero_Chaos&#8221; Farina</td>
<td>Radio Chaos: Why Retired Men Know More about Hacking than You Do</td>
<td>This presentation will revolve around radios that nearly all businesses use.  Several misconceptions are constantly spread around the hacker community about radio communications such as encryption use and general security.  Curious about what is going on around you? Wonder who the local police are pulling over? Will the local fire department save that cat from the tree? What are the goons doing right now&#8230;. Wonder no more! Learn things that your parents and their retired friends already know such as tone squelch, repeaters, trunking, and digital modes so you will never be left out of the loop again.</td>
</tr>
<tr>
<td>8:45</td>
<td>Lisa &#8220;@<a href="http://twitter.com/llorenzin">llorenzin</a>&#8221; Lorenzin</td>
<td>What I Learned about Security at Burning Man</td>
<td>A brief photographic tour of critical security lessons I&#8217;ve learned over five years as a citizen of Black Rock City. (Warning: contains nudity)</td>
</tr>
<tr>
<td>9:00</td>
<td>Irongeek &#8220;@<a href="http://twitter.com/irongeek_adc">irongeek_adc</a>&#8220;</td>
<td>Intro to I2P</td>
<td>Tor is great, but what about alternatives? This talk will cover installing the I2P darknet client, as well as hosting services. Make your mark on cipherspace.</td>
</tr>
<tr>
<td>9:15</td>
<td>Jimmy &#8220;@<a href="http://twitter.com/shah_jim">shah_jim</a>&#8221; Shah</td>
<td>Mobile Botnets and Rootkits: An Overview</td>
<td>Geinimi-Android botnets? Zeus in the Mobile? Symbian botnets? iPhone Botnets? Millions of phones at risk?  The press coverage on smartphone threats is at times somewhat accurate, distant and occasionally(if unintentionally) misleading.  They tend to raise questions such as: &#8211; how close to PC levels(100K+ to millions of nodes) mobile botnets have reached? &#8211; have mobile rootkits reached the complexity of that on the PC? &#8211; are criminals targeting our bank accounts or our identities through our phones? The talk will be a quick overview the state of rootkits and botnets on smartphones from the perspective of anti-malware researchers, including: &#8211; demystification of the threat from mobile rootkits and mobile botnets &#8211; the differences, if any, between mobile rootkits and mobile botnets vs. their PC counterparts &#8211; up close look[*] at how samples seen in the wild and researcher PoCs function &#8211; coverage of recent mobile botnet and botnet pre-cursors. [*] Short of examining disassemblies or mentioning actual API calls</td>
</tr>
<tr>
<td>9:30</td>
<td>Jack &#8220;@<a href="http://twitter.com/jack_daniel">jack_daniel</a>&#8221; Daniel</td>
<td>Is it better to burn out than fade away?</td>
<td>Is it better to burn out than fade away?  It had better be; based on what I&#8217;m hearing from others in the information security field we are nearing a crisis. Everyone experiences occasional feelings of frustration in their careers, but what can we do for ourselves and peers to minimize the suffering?  Join the conversation as we looks at the questions involved, and maybe even a few answers.</td>
</tr>
</tbody>
</table>
<p>For those that missed it, here was the video for Friday night&#8230;</p>
<p><iframe src="http://player.vimeo.com/video/19410413" width="576" height="288" frameborder="0"></iframe></p>
<h3>Saturday</h3>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td><strong>~Time</strong></td>
<td><strong>Name</strong></td>
<td><strong>Title</strong></td>
<td><strong>Description</strong></td>
</tr>
<tr>
<td>8:00</td>
<td><a href="http://twitter.com/grecs">Grecs</a></td>
<td>Updates &amp; Announcements</td>
<td>n/a</td>
</tr>
<tr>
<td>8:15</td>
<td>Valerie &#8220;@<a href="http://twitter.com/hacktress09">hacktress09</a>&#8221; Thomas</td>
<td>Gurlz Rule and Boys Drool: How a Hacktress Can Take Your Social Engineering to the Next Level</td>
<td>What if I told you that pieces to your social engineering puzzle are missing?   Would you believe me?   For centuries women have served their countries and causes as spies; often infiltrating the most impossible of environments.  In this presentation we’ll explore the role of the hacktress, female based attack vectors, and put some new twists on old tricks.</td>
</tr>
<tr>
<td>8:30</td>
<td>DaveMarcus</td>
<td>Using Social Networks to Profile, Find and Own Your Victims (<a href="http://mcaf.ee/1798d">slides</a>)</td>
<td>Social engineering through social networks is one of the most complex threats to deal with and protect against. The more you know about your victims likes, dislikes, hobbies and activities, the better chance you have of successfully social engineering them to do whatever you want. What if there existed a set of tools that told a scammer or cybercriminal everything they wanted to know about their intended targets? What if their intended targets were, in fact, freely sharing this information with the very attackers that sought to steal their data? This presentation will take the audience through the most powerful set of tools ever created for the wily social engineer and cybercriminal: Bing, Twitter, Facebook, TwitScoop, TinyURL and other social media sites. By focusing on how to cleverly mine these sites for key user words, trends and topics and combining these results with an URL shortening service like TinyURL, we will demonstrate how any user can be sent any amount of malware, phishing attacks or any other social engineering-based attack at the cybercriminals command with a lure that will work every time.</td>
</tr>
<tr>
<td>8:45</td>
<td>Schuyler &#8220;@<a href="http://twitter.com/Shoebox">Shoebox</a>&#8221; Towne</td>
<td>We Need to Start Attacking Disc Detainer Locks</td>
<td>Disc Detainer locks have been around for 100+ years, but until recently few in the US were even aware of them. Over the last 5 years low-end disc detainers have flooded the bicycle and motorcycle lock market. Now you can even find cheap disc detainer padlocks at truck stops with &#8220;HIGH SECURITY&#8221; emblazoned on the packaging. There are high security disc detainer locks out there, but that&#8217;s not what we&#8217;re getting from these companies. This talk will cover the basics of how these locks operate, simple picking instructions and I&#8217;ll introduce the early stages of a brute force dialer I&#8217;m building.</td>
</tr>
<tr>
<td>9:00</td>
<td>Raphael &#8220;@<a href="http://twitter.com/armitagehacker">armitagehacker</a>&#8221; Mudge</td>
<td>Armitage: Cyber Attack Management for Metasploit</td>
<td>Armitage is a new interface for the Metasploit framework built around the attack process. It visualizes your sessions and targets, intelligently recommends exploits, manages post-exploitation, and makes it easy to attack using compromised hosts. The goal of the project is to make Metasploit&#8217;s advanced features available to you. This short talk will demonstrate Armitage&#8217;s coolest features and touch on future developments. After this talk, you should visit <a href="http://www.fastandeasyhacking.com">http://www.fastandeasyhacking.com</a> to learn more.</td>
</tr>
<tr>
<td>9:15</td>
<td>Michael &#8220;@<a href="http://twitter.com/theprez98">theprez98</a>&#8221; Schearer</td>
<td>Net Neutrality, the FCC, and the End of the Internet as We Know It (in 15 Minutes or Less)</td>
<td>On December 21, 2010, the FCC adopted &#8220;net neutrality&#8221; rules by a closely-watched 3-2 vote.  But whether or not you support the idea of net neutrality, other questions remain: First, what is broken about the current process that needs fixing? Second, and more importantly, why did the FCC act despite the warnings of Congress and despite the Comcast decision, both of which claimed that that FCC lacked such authority? Third, was the process transparent?  Lastly, what are the future implications of the FCC’s actions?  This lightning-fast discussion will cover the basics of net neutrality, the role of the FCC in regulating the Internet, and the future legal and policy implications of the FCC&#8217;s neutrality rules. Is the future of the Internet really at risk?</td>
</tr>
<tr>
<td>9:30</td>
<td>Gal &#8220;@<a href="http://twitter.com/shpantzer">shpantzer</a>&#8221; Shpantzer</td>
<td>Security Outliers: Cultural Cues from High Risk Professions</td>
<td>What do security officers have in common with airline pilots, surgeons, and special operation teams? This presentation explores factors involved in successful risk management for security leadership, by drawing upon lessons from other high risk professions that have a cultural legacy of dealing with risk. We derive early warning indicators of communication disconnects and provide a list of training objectives to dramatically improve risk management outcomes. Focusing on Layer 8 wetware issues enables strategic change that doesn&#8217;t have to cost an arm and a leg (read, no forklift upgrades), because the focus is not on the hardware/software stack. This talk was successfully delivered at RSA/CSI/DojoCon in 2010 and is updated with new interviews and research on aviation, surgery, military special operations and other fields that infosec could learn from and adapt to our relatively new profession.</td>
</tr>
</tbody>
</table>
<p>And here was the video for Saturday night&#8230;</p>
<p><iframe src="http://player.vimeo.com/video/19410439" width="576" height="288" frameborder="0"></iframe></p>
<p>To ease our submission load, we used the free EasyChair Conferencing System. We used it to handle submissions for <a href="http://appsecdc.org/">AppSecDC</a> this year and it worked nicely. It just required that you create an account, login, and select Submissions from the top menu. From there just fill out as much information as you can and hit the submission button. To get started head on over to the <a href="http://bit.ly/nispsc2011ft">EasyChair SC2011FT portal</a>. <strong>Note that the CFP closed 1/23 at midnight.</strong></p>
<h2>Prizes/Sponsors</h2>
<p>Similar to last year we had prizes for the top 3 presentations provided by some awesome  sponsors. The top speakers were based on a 3-person panel scoring each presentation from 1 to 10. In case of a tie, we had a secret forth person pick the final winner.</p>
<p>Here were the sponsors for this years event&#8230;</p>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td><strong>Prizes</strong></td>
<td><strong>Sponsors</strong></td>
</tr>
<tr>
<td>
<p style="text-align: center;">Grand Price: <a href="http://store.apple.com/us/browse/home/shop_ipad/family/ipad">Apple iPad &#8211; 16G with Wi-Fi</a></p>
<p style="text-align: center;"><a href="http://store.apple.com/us/browse/home/shop_ipad/family/ipad"><img class="alignnone size-full wp-image-4594" title="Apple iPad" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/ipad.png" alt="Applie iPad 16G with Wi-Fi" width="221" height="139" /></a></p>
</td>
<td>
<p style="text-align: center;">Courtesy of <a href="http://www.astaro.com/">Astaro</a></p>
<p style="text-align: center;"><a href="http://www.astaro.com/"><img class="size-medium wp-image-4590 alignnone" title="Astaro" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/astaro-logo-300x110.jpg" alt="Astaro Logo" width="210" height="77" /></a></p>
</td>
</tr>
<tr>
<td style="text-align: center;">1st Runner-Up Prize: <a href="http://www.amazon.com/Acer-AOD255-2509-10-1-Inch-Netbook-Diamond/dp/B0041DZTWG">Acer Aspire One AOD255-2509 10.1-Inch Netbook</a></p>
<p><a href="http://www.amazon.com/Acer-AOD255-2509-10-1-Inch-Netbook-Diamond/dp/B0041DZTWG"><img class="alignnone size-full wp-image-4448" title="Acer Netbook" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/acer-e1294880638802.jpg" alt="Acer Aspire One AOD255-2509 10.1-Inch Netbook" width="186" height="140" /></a></td>
<td style="text-align: center;">Brought to you by <a href="http://www.aplura.com/">Aplura, LLC</a></p>
<p><a href="http://www.aplura.com/"><img class="size-medium wp-image-4542 alignnone" title="Aplura, LLC" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/apluralogo-300x111.png" alt="Aplura Logo" width="210" height="78" /></a></td>
</tr>
<tr>
<td>
<p style="text-align: center;">2nd Runner-Up Prize: <a href="http://www.thinkgeek.com/">$100 Think Geek Gift Certificate</a></p>
<p style="text-align: center;"><a href="http://www.thinkgeek.com/"><img class="alignnone size-full wp-image-3305" title="Think Geek Gift Certificate" src="http://www.novainfosecportal.com/wp-content/uploads/2010/01/thinkgeeklogo.gif" alt="Think Geek Gift Certificate" width="201" height="74" /></a></p>
</td>
<td>
<p style="text-align: center;">Courtesy of <a href="http://www.aplura.com/">Aplura, LLC</a></p>
<p style="text-align: center;"><a href="http://www.aplura.com/"><img class="size-medium wp-image-4542 alignnone" title="Aplura, LLC" src="http://www.novainfosecportal.com/wp-content/uploads/2011/01/apluralogo-300x111.png" alt="Aplura Logo" width="210" height="78" /></a></p>
</td>
</tr>
<tr>
<td><strong>Props</strong></td>
<td></td>
</tr>
<tr>
<td>AV/Space</td>
<td><a href="http://www.shmoocon.org/">ShmooCon Team</a></td>
</tr>
<tr>
<td>Session Recordings</td>
<td><a href="http://www.irongeek.com/">Adrian “IronGeek” Crenshaw</a> for the main recording; <a href="http://www.grmn00bs.com/">Georgia Weidman</a> for backup &amp; streaming</td>
</tr>
<tr>
<td>Fake Cardboard Fireplace (yes, the same one from last year)</td>
<td><a href="http://www.guerilla-ciso.com/">Mike Smith</a></td>
</tr>
</tbody>
</table>
<p>This year had 12 awesome presentations but only three could come out on top. For 2011 the ShmooCon FireTalk winners were:</p>
<ul>
<li>Second Runner Up: Lisa “@<a href="http://twitter.com/llorenzin">llorenzin</a>” Lorenzin &#8211; “What I Learned about Security at Burning Man”</li>
<li>First Runner Up: Dave Marcus &#8211; “Using Social Networks to Profile, Find andOwn Your Victims”</li>
<li>Grand Prize: Schuyler “@<a href="http://twitter.com/shoebox">Shoebox</a>” Towne &#8211; “We Need to Start Attacking Disc Detainer Locks”</li>
</ul>
<p>Once again congrats to the winners!</p>
<h2>Volunteers</h2>
<p>Of course this event would have been nothing without all the people that helped us put this thing on. Please give a big shout out to the following folks.</p>
<ul>
<li>Jack &#8220;@<a href="http://twitter.com/jack_daniel">jack_daniel</a>&#8221; Daniel (sponsorship)</li>
<li>Adrian “@<a href="http://twitter.com/irongeek_adc">irongeek_adc</a>” Crenshaw (session recordings)</li>
<li>Georgia &#8220;@<a href="http://twitter.com/vincentkadmon">vincentkadmon</a>&#8221; Weidman (backup session recordings; streaming)</li>
<li>Mike “@<a href="http://twitter.com/rybolov">rybolov</a>” Smith (fireplace; judging panel)
<ul>
<li>“@<a href="http://twitter.com/shrdlu">shrdlu</a>”</li>
<li>James “@<a href="http://twitter.com/mycurial">mycurial</a>” Arlen</li>
<li>Melanie Smith</li>
</ul>
</li>
<li>Nathi &#8220;@<a href="http://twitter.com/nathiet">nathiet</a>&#8221; Thwala (TBD)</li>
<li>Jason &#8220;@<a href="http://twitter.com/jasonmoliver">jasonmoliver</a>&#8221; Oliver (security &#8211; the physical kind)</li>
<li>DaKahuna &#8220;@<a href="http://twitter.com/DaKahuna2007">DaKahuna2007</a>&#8221; (A/V coordination)</li>
<li>Mike &#8220;@<a href="http://twitter.com/theprez98">theprez98</a>&#8221; Schearer (timer)</li>
</ul>
<h2>Related Posts</h2>
<ul>
<li><a href="/2011/01/01/shmoocon-2011-firetalks-cfp-sponsor-support/">CFP / Sponsor Support</a></li>
<li><a href="/2011/01/18/shmoocon-2011-firetalks-update-1-aka-time-change-sponsors-needed/">Update 1 (aka – Time Change &amp; Sponsors Needed)</a></li>
<li><a href="/2011/01/25/shmoocon-2011-firetalks-%e2%80%93-update-2-aka-%e2%80%93-speaker-announcemnt-new-sponsor/">Update 2 (aka – Speaker Announcement &amp; New Sponsor)</a></li>
<li><a href="/2011/01/27/shmoocon-2011-firetalks-–-update-3-aka-–-schedule-prizes/">Update 3 (aka – Schedule &amp; Prizes)</a></li>
<li><a href="/2011/02/08/shmoocon-2011-firetalks-–-update-4-aka-–-winners-videos-slides/">Update 4 (aka &#8211; Winners, Videos, &amp; Slides)</a></li>
</ul>
<p style="text-align: center;">#####</p>
<p style="text-align: center;"><em>Well that is pretty much it&#8230;. Thanks for all the support. See ya!</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+http%3A%2F%2Fj.mp%2FhOK1nT" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/12/shmoocon-2011-firetalks/&amp;t=ShmooCon+2011+FireTalks" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/01/12/shmoocon-2011-firetalks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2011 FireTalks &#8211; CFP / Sponsor Support</title>
		<link>http://www.novainfosecportal.com/2011/01/01/shmoocon-2011-firetalks-cfp-sponsor-support/</link>
		<comments>http://www.novainfosecportal.com/2011/01/01/shmoocon-2011-firetalks-cfp-sponsor-support/#comments</comments>
		<pubDate>Sat, 01 Jan 2011 16:46:15 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[cfp]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=4365</guid>
		<description><![CDATA[Although many of the details are still being worked out we wanted to put out a quick post to announce the ShmooCon 2011 FireTalks CFP and solicit sponsors. This year we are planning on having up to eight 15-minute speaking slots each night depending on the final discussions the ShmooCon team is having with the conference hotel. We are hoping to accommodate many of the awesome submissions that ShmooCon was not able to accept due to the finite number of speaking slots. If you are already speaking at ShmooCon, please be considerate and leave submissions open to others. Other than that &#8230; the only thing we are looking for is a nice mix of established and new speakers. To ease our submission load, we will be using the free EasyChair Conferencing System. We used it to handle submissions for AppSecDC this year and it worked nicely. It just requires that you create an account, login, and select Submissions from the top menu. From there just fill out as much information as you can and hit the submission button. To get started head on over to the EasyChair SC2011FT portal. Similar to last year we will have prizes for the top [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+CFP+%2F+Sponsor+Support+http%3A%2F%2Fj.mp%2FgYiNg8" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/01/shmoocon-2011-firetalks-cfp-sponsor-support/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+CFP+%2F+Sponsor+Support" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>Although many of the details are still being worked out we wanted to put out a quick post to announce the ShmooCon 2011 FireTalks CFP and solicit sponsors.</p>
<p>This year we are planning on having up to eight 15-minute speaking slots each night depending on the final discussions the ShmooCon team is having with the conference hotel. We are hoping to  accommodate many of the awesome submissions that ShmooCon was  not able to accept due to the finite number of  speaking slots. If you are  already speaking at ShmooCon, please be considerate and leave  submissions open to others. Other than that &#8230; the only thing we are  looking for is a nice mix of established and new speakers.</p>
<p>To ease our submission load, we will be using the free EasyChair Conferencing System. We used it to handle submissions for <a href="http://appsecdc.org/">AppSecDC</a> this year and it worked nicely. It just requires that you create an account, login, and select Submissions from the top menu. From there just fill out as much information as you can and hit the submission button. To get started head on over to the <a href="http://bit.ly/nispsc2011ft">EasyChair SC2011FT portal</a>.</p>
<p>Similar to last year we will have prizes for the top 3 presentations and are looking for sponsors willing to put forward some awesome contributions (maybe a few iPads &#8230; one for the organizer too <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  ). You&#8217;ll get your logo placed on the master ShmooCon 2011 Firetalks post, some of the update posts, and several mentions during the  two night event. Use the <a href="../contact-us/">Contact Us</a> link above or mention @<a href="http://twitter.com/grecs">grecs</a> on Twitter to get in touch with us if you are interested in sponsoring.</p>
<p style="text-align: center;">#####</p>
<p style="text-align: center;"><em>Stay tuned for more details on the ShmooCon 2011 Firetalks. Further posts will provide all the necessary details. See ya!</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2011+FireTalks+%E2%80%93+CFP+%2F+Sponsor+Support+http%3A%2F%2Fj.mp%2FgYiNg8" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/01/01/shmoocon-2011-firetalks-cfp-sponsor-support/&amp;t=ShmooCon+2011+FireTalks+%E2%80%93+CFP+%2F+Sponsor+Support" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/01/01/shmoocon-2011-firetalks-cfp-sponsor-support/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2010 Firetalks &#8211; Update 5 (aka &#8211; the Wrap-Up)</title>
		<link>http://www.novainfosecportal.com/2010/02/24/shmoocon-2010-firetalks-update-5-aka-the-wrap-up/</link>
		<comments>http://www.novainfosecportal.com/2010/02/24/shmoocon-2010-firetalks-update-5-aka-the-wrap-up/#comments</comments>
		<pubDate>Wed, 24 Feb 2010 16:00:17 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=3355</guid>
		<description><![CDATA[So I&#8217;m finally getting around to getting this post out&#8230; I just wanted to close this whole series by announcing the winners and again thanking everyone for helping make it a success. As you can see below, I&#8217;ve only gotten links to a few presentations. If you still need to post your presentation, please let me know via Contact Us or mention @grecs on Twitter and I&#8217;ll update this post as I get them. Presentation Summaries First, I like to put up some short synopses of the talks written by Justin Monroe and Chris Wheeler. They were a tremendous help both nights paying attention to the actual content while I coordinated everything. Social Engineering Toolkit v0.4 Overview (David “ReL1K” Kennedy) ReL1K released the newest version of his &#8220;Social Engineer&#8217;s Toolkit.&#8221; Version 4, codenamed &#8220;Pink Pirate&#8221; was released Saturday in the BackTrack4 repository as well as his website, secmaniac.com. The framework is a python driven open source suite which makes use of Metasploit Framework&#8217;s client-side attacks (PDF, Aurora, etc), and has the ability to auto-target a client operating system. It also integrates with G-Mail and sendmail to streamline sending phishing e-mails to targets. SHODAN for Penetration Testers (Michael “theprez98&#8243; Schearer) SHODAN, [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2010+Firetalks+%E2%80%93+Update+5+%28aka+%E2%80%93+the+Wrap-Up%29+http%3A%2F%2Fj.mp%2FaOxjkD" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2010/02/24/shmoocon-2010-firetalks-update-5-aka-the-wrap-up/&amp;t=ShmooCon+2010+Firetalks+%E2%80%93+Update+5+%28aka+%E2%80%93+the+Wrap-Up%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>So I&#8217;m finally getting around to getting this post out&#8230; I just wanted to close this whole series by announcing the winners and again thanking everyone for helping make it a success.</p>
<p>As you can see below, I&#8217;ve only gotten links to a few presentations. If you still need to post your presentation, please let me know via <a href="/contact-us/">Contact Us</a> or mention @<a href="http://twitter.com/grecs">grecs</a> on Twitter and I&#8217;ll update this post as I get them.</p>
<h2>Presentation Summaries</h2>
<p>First, I like to put up some short synopses of the talks written by Justin  Monroe and Chris Wheeler. They were a tremendous help both nights  paying attention to the actual content while I coordinated everything.</p>
<h3>Social Engineering Toolkit v0.4 Overview (David “ReL1K” Kennedy)</h3>
<p><em>ReL1K released the newest version of his &#8220;Social Engineer&#8217;s Toolkit.&#8221; Version 4, codenamed &#8220;Pink Pirate&#8221; was released Saturday in the  BackTrack4 repository as well as his website, <a href="http://www.secmaniac.com/">secmaniac.com</a>. The framework is a  python driven open source suite which makes use of Metasploit Framework&#8217;s  client-side attacks (PDF, Aurora, etc), and has the ability to auto-target a client operating system. It also integrates with G-Mail and sendmail to  streamline sending phishing e-mails to targets.</em></p>
<h3>SHODAN for Penetration Testers (Michael “theprez98&#8243; Schearer)</h3>
<p><em><a href="http://shodan.surtri.com">SHODAN</a>,  a meta-data search engine for application banners was presented by theprez98, who showed several demonstrations of  its usefulness. The engine stores OS version, country, open ports (currently  only 21, 22 and 80), and makes the data easily searchable. As the engine  stores banners from each service, it is not uncommon to find default  configuration information in the header (such as a default password), as well as the  version information of the service. At the time of the presentation, there were apparently 136 machines still running Windows NT 3.9.</em> (<a href="http://www.scribd.com/doc/26526911/SHODAN-for-Penetration-Testers">slides</a>)</p>
<h3>Influencing Security (Marcus J. Carey)</h3>
<p><em>In a presentation about influencing security, Marcus J. Carey took a philosophic approach to solving security issues. Likening the decrease in HIV infections in Thailand by means of peer pressure, he suggested that security professionals persistently teach users about information security, instead of doing training once a year. He also stressed a non-adversarial role with the people the policy is designed to protect, and instead of treating them poorly when the policy was broken.</em></p>
<h3>Funnypots and Skiddy Baiting (Adrian “IronGeek” Crenshaw)</h3>
<p><em>IronGeek presented some of his endeavors in &#8220;Funny Pots and Skiddy  Baiting,&#8221; loosely defined as &#8220;messing with the people trying to break into your  machines.&#8221; He suggested mapping loopback addresses (127/8) to a subdomain on your  network, and then encouraging them to break into the machine at that hostname.  If they manage to get in, they may own their own machine. Other fun endeavors  included mapping your hostname to that of another website (say, 12.120.54.169), &#8220;lemon&#8221; wiping a drive with an arbitrary pattern of data for forensic investigators to find (coined from the &#8220;lemon party&#8221; shock site). He  also demonstrated a robots.txt redirect, where snooping users would get  redirected to shock sites when they visited the &#8220;Disallow&#8221; directories. His final  and perhaps most humorous website involved using php-ids to detect attacks  against a website and have Clippy pop up to help with their failed attempts.</em> (<a href="/wp-content/uploads/2010/02/skiddybaiting.pdf">slides</a>)</p>
<h3>Browser Fingerprinting Using a Stopwatch (Nicholas “aricon” Berthaume)</h3>
<p><em>Aricon demonstrated how to more accurately fingerprint browsers based on more than the user-agent, HTTP headers, and Javascript. WebApp scanners  often spoof headers, making it useless to fingerprint an attack. The timing  and download order of images can be used to accurately fingerprint a browser  using some custom mod_security rules. Differences start to show with basic  HTML, but adding images and more content gives a much more accurate result. He did  mention that plugins such as Greasemonkey, AdBlock Plus, and NoScript skew the  results, as do VPNs, SSH tunnels and other proxies. He plans to release the  mod_security ruleset and his fingerprinting scripts on his website.</em> (<a href="https://www.bordergatewayprotocol.net/aricon/presentations/Browser_fingerprinting_with_a_stopwatch.pdf">slides</a>)</p>
<h3>Pentoo (Zero Chaos)</h3>
<p><em>Zero Chaos, a Pentoo developer, was met with a barrage of Shmoo balls at   the start of his presentation. Pentoo is a lightweight penetration  testing  distro based on Gentoo. It can be run from a Live CD and uses  only 200MB of  RAM. Pentoo is updated with the latest utilities and  kernel configurations.  Pentoo also has 13 users worldwide ( <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  ), and began  development before BackTrack.</em></p>
<h3>Sleephacking 101 – How to Stay Awake for 20 Hours a Day without Turning into a Zombie (Benny “security4all” ???)</h3>
<p><em>@Security4All gave a presentation on &#8220;sleep hacking,&#8221; discussing human  sleep cycles and how to get more energy out of sleep. Although monophasic,  humans are better suited to a polyphasic sleep cycle. Biphasic sleep involves  getting 6-7 hours of sleep per night, and a nap at noon. Spain has  institutionalized this cycle through siestas. For those who wish to get more out of their  day, the everyman cycle provides 4 thirty minute naps, and a 2-3 hour block  of sleep at night. Those looking to gain a sickening about of extra time in their  day can try the uberman, characterized by 6 twenty minute naps per day, and separated by a four hour period of being awake. Also, for those who need  the extra kick, drinking coffee before taking a nap increases the nap&#8217;s effectiveness, so long as the nap is kept to twenty minutes. There are  also sleep cycle apps in the iTunes store to help adjust to the different  sleep cycles.</em> (<a href="http://www.slideshare.net/security4all/sleephacking-101">slides</a>)</p>
<h3>Payment Application – Don’t Secure Sh!t (PA-DSS) (Christian “cmlh” Heinrich)</h3>
<p><em>Christian Heinrich gave a presentation entitled &#8220;Payment Application &#8211; Don&#8217;t Secure Sh!t.&#8221; The presentation characterized the differences  between the PA-DSS, PCI-DSS and PCI-PTS standards, focusing primarily on the  strengths and weaknesses of PA-DSS. Visa has mandated compliance of all machines with  this standard by 12 July 2012. The PA-DSS standard also depends on the  PCI-DSS standard, as there is no sense in reinventing the wheel. It does contain  a sunset clause for securing wireless data with WEP, as the newest  revision mandates WPA, as well as mandates secure remote software updates through  a system like SSL, although the most recent attacks on SSL have not been considered.</em> (<a href="http://www.slideshare.net/cmlh/padss">slides</a>)</p>
<p>Wow, excellent summaries from Justin and Chris. Thanks again guys! Additionally, every one of the speakers should have gotten a parting gift sponsored by <a href="http://trustedsignal.com/">Trusted Signal</a>. And if you want to relive the excitement of the Firetalks, be sure to check out IronGeek&#8217;s <a href="http://www.irongeek.com/i.php?page=videos/shmoocon-firetalks-2010">FireTalks from Shmoocon 2010</a> page. One of the things you may notice in the videos is the beautiful fireplace that helped cozy up this event. Mrs. Rybolov was kind enough to make this piece from scratch &#8230; and speaking of <a href="http://www.guerilla-ciso.com/">Rybolov</a>, he himself provided a tremendous amount of coordination throughout both nights. Before moving on to announcing the winners, I&#8217;d also like to thank the ShmooCon team (go Heidi &amp; Bruce and the rest of <a href="http://www.shmoo.com/">The Shmoo Group</a>!) for allowing us to host this event in conjunction with ShmooCon and providing space, a projector, and audio!</p>
<h2>Prize Winners</h2>
<p>Now on to the prize winners &#8230;</p>
<h3>3: Sleephacking 101 – How to Stay Awake for 20 Hours a Day without Turning into a Zombie</h3>
<p>security4all won at $75 Think Geek Gift Certificate from <a href="http://nvisiumsecurity.com/">nVisium Security</a>.</p>
<h3>2: Social Engineering Toolkit v0.4 Overview</h3>
<p>ReL1K received a 32GB Kanguru e-Flash brought to you by <a href="http://nvisiumsecurity.com/">nVisium Security</a>.</p>
<h3>1: SHODAN for Penetration Testers</h3>
<p>thePrez98 won the grand prize of a Acer Aspire One D250 Netbook provided by <a href="http://www.hurricanelabs.com/">Hurricane Labs</a>.</p>
<p>Congrats to everybody!</p>
<p style="text-align: center;">///</p>
<p>For all information regarding this year&#8217;s Firetalks and links to related posts, see the <a href="/2010/01/06/shmoocon-2010-firetalks/">ShmooCon 2010 Firetalks master post</a>. On a personal note I had a lot of fun pulling this whole thing together and it was great to meet so many awesome people that I&#8217;ve only previously chatted with on mailing lists, Twitter, etc. I look forward to trying to keep up with everyone throughout the year and maybe (if  I get lucky in the ShmooCon ticket lottery <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ) next year at ShmooCon. See ya!</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2010+Firetalks+%E2%80%93+Update+5+%28aka+%E2%80%93+the+Wrap-Up%29+http%3A%2F%2Fj.mp%2FaOxjkD" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2010/02/24/shmoocon-2010-firetalks-update-5-aka-the-wrap-up/&amp;t=ShmooCon+2010+Firetalks+%E2%80%93+Update+5+%28aka+%E2%80%93+the+Wrap-Up%29" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/02/24/shmoocon-2010-firetalks-update-5-aka-the-wrap-up/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2010 Firetalks &#8211; Update 4</title>
		<link>http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-firetalks-update-4/</link>
		<comments>http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-firetalks-update-4/#comments</comments>
		<pubDate>Wed, 03 Feb 2010 16:00:10 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[firetalks]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=3307</guid>
		<description><![CDATA[Not too much has happened since last week &#8230; just tons of small stuff. We are still looking for some &#8220;prop&#8221; sponsors as well as alternate speakers. Also there are a few logistical changes we wanted to announce. Read on for all the details&#8230; Sponsors Most of the sponsorship opportunities have been covered however we are still looking for a few of the props. Specifically, there is a Countdown Timer, Gong, and Logo (see the master ShmooCon 2010 Firetalks post for more information on these items). Out of these, I&#8217;d say the most important one is a Countdown timer. So if you don&#8217;t have a big budget but would like to help out, you can always volunteer to bring one of the above items. If you are interested, either contact us or mention @grecs on Twitter. Speakers Although all the official speaking spots are full as reported three weeks ago, we are still seeking people to add to our Alternates List just in case any of the confirmed presenters are unavailable. If any of the speakers are not present, we’ll just start calling people from the top of the list. At a minimum you&#8217;ll get some PR with your name [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2010+Firetalks+%E2%80%93+Update+4+http%3A%2F%2Fj.mp%2FpjAOjD" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-firetalks-update-4/&amp;t=ShmooCon+2010+Firetalks+%E2%80%93+Update+4" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>Not too much has happened since last week &#8230; just tons of small stuff. We are still looking for some &#8220;prop&#8221; sponsors as well as alternate speakers. Also there are a few logistical changes we wanted to announce. Read on for all the details&#8230;</p>
<h2>Sponsors</h2>
<p>Most of the sponsorship opportunities have been covered however we are still looking for a few of the props. Specifically, there is  a <strong>Countdown Timer</strong>, <strong>Gong</strong>, and <strong>Logo</strong> (see the <a href="/2010/01/06/shmoocon-2010-firetalks/">master ShmooCon 2010 Firetalks</a> post for more information on these items). Out of these, I&#8217;d say the most important one is a Countdown timer. So if you don&#8217;t have a big budget but would like to help out, you can always volunteer to bring one of the above items. If you are interested,  either <a href="/contact-us/">contact us</a> or mention @<a href="http://twitter.com/grecs">grecs</a> on Twitter.</p>
<h2>Speakers</h2>
<p>Although all the official speaking spots are full as <a href="/2010/01/13/shmoocon-2010-firetalks-update-1/">reported three weeks ago</a>, we are <em>still </em>seeking people to add to our <strong>Alternates List</strong> just in case any of the confirmed presenters are unavailable. If any of the speakers are not present, we’ll just start calling people from the top of the list. At a minimum you&#8217;ll get some PR with your name and presentation title on the <a href="/2010/01/06/shmoocon-2010-firetalks/">master ShmooCon 2010 Firetalks</a> post.</p>
<p>To submit a talk, use the <a href="/contact-us/">Contact Us</a> link above. Enter your <strong>name </strong>as you want it to appear and use <strong>FireTalks </strong>as the subject. In the Message area please include the <strong>title </strong>of your talk as well as a <strong>one paragraph summary</strong> of your presentation. You can also include a <strong>link to your website</strong> or preferred social networking profile and we’ll link your name off to this site/profile.</p>
<h2>General Logistics</h2>
<p>CapSecDC is organizing a <strong>Bar Crawl</strong> for sometime on Friday night. Based on discussions with them, they&#8217;ll probably be starting before the Firetalks. Instead of having to choose between the Firetalks and the Bar Crawl,  we are working with them so FireTalk attendees can easily join up with the crawl midway. The general idea would be that they would be at a specific location around 10:30. That way anyone from the Firetalk session could just meet up with them to continue to enjoying the evening.</p>
<p>CapSecDC aren&#8217;t the only ones we&#8217;ve been working with. It just so happens that the <strong>Podcasters Meetup</strong> was originally scheduled to start the same time as the Firetalks on Saturday at 8:00 PM. After a few email exchanges we&#8217;ve realigned our start times to benefit all! The new plans are that the Podcasters Meetup will start at 7:30 instead of 8:00 and the Firetalks will start at 8:30. This will allow attendees to take part in both events. It does push the Firetalks a bit far into the Saturday night party &#8230; but you should still have plenty of time to enjoy it (assuming you can make it there with all the snow <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ).</p>
<p>In other logistical news we&#8217;ll be having several helpers run the Firetalks. <a href="http://www.guerilla-ciso.com/">Mike &#8220;rybolov&#8221; Smith</a> will be assisting us as well as a pair of interns, Justin Monroe and Chris Wheeler. Thanks guys! Additionally, we are still finalizing the exact location but we previously heard we&#8217;ll be in one of the Wilson rooms.</p>
<p>And the big news is that <a href="http://dualcoremusic.com/">Dual Core</a> will be providing some entertainment to get the Firetalks started as well as playing some good nerdcore in-between the speakers on Friday. We&#8217;ll have to spin our own on Saturday as they&#8217;ll be getting ready at Heaven &amp; Hell. Any volunteers?</p>
<p style="text-align: center;">///</p>
<p>This will be our final post &#8230; so from here on out, please check the <a href="/2010/01/06/shmoocon-2010-firetalks/">ShmooCon 2010 Firetalks master post</a> for the most up to date information or follow @<a href="http://twitter.com/grecs">grecs</a> on Twitter looking for the #<a href="http://search.twitter.com/search?q=&amp;ands=&amp;phrase=&amp;ors=&amp;nots=&amp;tag=shmoocon&amp;lang=all&amp;from=&amp;to=&amp;ref=&amp;near=&amp;within=15&amp;units=mi&amp;since=&amp;until=&amp;rpp=15">shmoocon</a> and #<a href="http://search.twitter.com/search?q=&amp;ands=&amp;phrase=&amp;ors=&amp;nots=&amp;tag=firetalks&amp;lang=all&amp;from=&amp;to=&amp;ref=&amp;near=&amp;within=15&amp;units=mi&amp;since=&amp;until=&amp;rpp=15">firetalks</a> tags. As usual, we’d like to thank the community for getting the word out and can&#8217;t wait to see everyone on Friday.  See ya!</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2010+Firetalks+%E2%80%93+Update+4+http%3A%2F%2Fj.mp%2FpjAOjD" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-firetalks-update-4/&amp;t=ShmooCon+2010+Firetalks+%E2%80%93+Update+4" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-firetalks-update-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ShmooCon 2010 Cheat Sheet</title>
		<link>http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-cheat-sheet/</link>
		<comments>http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-cheat-sheet/#comments</comments>
		<pubDate>Wed, 03 Feb 2010 05:41:45 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[event]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[the shmoo group]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=3322</guid>
		<description><![CDATA[With ShmooCon only a few days away and things getting announced left and right, we thought we&#8217;d put together a little plan of what we wanted to focus on. It didn&#8217;t take long to figure out that since there was just so much going on, we should probably create a little one page cheat sheet for the conference. Now this isn&#8217;t anything too amazing but we find it useful and thought we&#8217;d share it out with everyone else. We started with a simple matrix and then populated it with the different talks and other official activities. Then we hit Twitter and some mailing lists and pulled together a good little list of &#8220;Side Activities.&#8221; As part of this we also found some other interesting things going on, so we created an area called &#8220;Interesting Things.&#8221; We also came across a bunch of various Twitter users or tags being used for certain events so we threw them in and provided some structure. I&#8217;m sure you get the point by now. Anyway, check it out here &#8211; ShmooCon 2010 Cheat Sheet. I&#8217;m sure we missed a bunch of things so please comment below for updates we should make. We are in particular [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2010+Cheat+Sheet+http%3A%2F%2Fj.mp%2Fr4dQae" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-cheat-sheet/&amp;t=ShmooCon+2010+Cheat+Sheet" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>With ShmooCon only a few days away and things getting announced left and right, we thought we&#8217;d put together a little plan of what we wanted to focus on. It didn&#8217;t take long to figure out that since there was just so much going on, we should probably create a little one page cheat sheet for the conference. Now this isn&#8217;t anything too amazing but we find it useful and thought we&#8217;d share it out with everyone else.</p>
<p>We started with a simple matrix and then populated it with the different talks and other official activities. Then we hit Twitter and some mailing lists and pulled together a good little list of &#8220;Side Activities.&#8221; As part of this we also found some other interesting things going on, so we created an area called &#8220;Interesting Things.&#8221; We also came across a bunch of various Twitter users or tags being used for certain events so we threw them in and provided some structure.  I&#8217;m sure you get the point by now.</p>
<p>Anyway, check it out here &#8211; <a href="http://www.novainfosecportal.com/wp-content/uploads/2010/02/shmooconcheatsheet.pdf">ShmooCon 2010 Cheat Sheet</a>.</p>
<p>I&#8217;m sure we missed a bunch of things so please comment below for updates we should make. We are in particular need of information pertaining to other &#8220;Side Activities,&#8221; &#8220;Vendor Contests,&#8221; &#8220;Interesting Things,&#8221; and &#8220;Suggested Twitter Tags.&#8221; Also, there is also a lot white space left &#8230; so let us know of any new areas we should add. See ya!</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=ShmooCon+2010+Cheat+Sheet+http%3A%2F%2Fj.mp%2Fr4dQae" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-cheat-sheet/&amp;t=ShmooCon+2010+Cheat+Sheet" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/02/03/shmoocon-2010-cheat-sheet/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

