Click to return home

Site Map  |  Privacy Policy  |  Advisories

About Us

Services

News

Resources

Contact

 
greybar

Webcasts
greybar

Upcoming Webcasts

Currently there are no upcoming webcasts; please check back at a later time.

Previously Recorded Webcasts

When Tools Are Not Enough: Best Practices for Securing Web Applications.
The demands of regulatory compliance may have you looking to vulnerability scanning tools in the hopes of finding a silver bullet to examine your web applications. However, it is not realistic to expect scanners alone to accurately determine the impact of the web application vulnerabilities they detect. In this presentation, Walter Pearce and Wade Winright will discuss best practices for securing web applications, including how to effectively utilize tools in conjunction with penetration testing.

Cyber Security Offensive and Defensive Strategies.
Join Intelligent Utility vice president and editor-in-chief H. Christine Richards, along with a group of security experts including IOActive's Mike Davis, who will open up about their work to ensure the security of a smarter grid and a more intelligent utility. Watch this free webcast that pries into the rapidly changing world of cyber security in the utility industry.

  • Gain insight into the latest cyber security tactics on the offensive and defensive sides of the battle.
  • Identify the key items to consider when looking at cyber security efforts for your company.
  • Learn how other industries are securing their critical infrastructure and how those efforts can apply to the utility industry.

Compliance in the Cloud, a Roundtable Discussion
Ward Spangenberg moderates a panel discussion that includes Jim Tiller, VP of Security at BT Global Services; Justin Steinman, VP at Novell; and Russell Dietz, CTO of SafeNet.

Compliance in the Cloud: Possibility or White Fluff?
With so many companies transitioning into cloud computing (or at least considering the transition) it is increasingly important for stakeholders to understand how security and compliance fit into the picture. IOActive's Director of PCI, Ward Spangenberg, will discuss how organizations can leverage the benefits of cloud computing without jeopardizing compliance or security. Spangenberg is a founding member of the Cloud Security Alliance and has extensive experience helping organizations achieve and maintain PCI compliance.

Smart Grid Device Security
If you missed Mike Davis' presentation at Black Hat USA, you can now watch his recorded Smart Grid Device Security webcast, where he will:

  • Discuss vulnerabilities found in the Smart Grid infrastructure.
  • Simulate a possible worm attack.
  • Recommend strategies to better secure the Smart Grid infrastructure.

Black Hat Webcast Series: Mac OS X Security
As Apple's OS gains popularity, it also becomes a larger target for attacks, and this increasing interest is reflected in a greater number of OS X submissions and Black Hat presentations. Black Hat Founder and Director Jeff Moss, and researchers Tiller Beauchamp and Jesse D'Aguanno conduct a lively and interactive discussion of OS X security.

Debunking 12 Common Myths in PCI
Ward Spangenberg, Director of PCI and Compliance, will cover many misperceptions people have about achieving and maintaining PCI compliance. By dispelling these myths, viewers will gain a better understanding of how their organizations can achieve PCI compliance and the economic benefits of being compliant.

Application Security Overview
Ted Ipsen's presentation introduces the basics of application security, and highlights vulnerabilities and attack techniques commonly used to steal data including cross-site scripting, SQL injection, and cross-site request forgery. The presentation also addresses the result of security breaches.

PCI Standards Version 1.2: How will this impact your company?
Ward Spangenberg, Director of PCI and Compliance, discusses changes brought about by the introduction of PCI Standards Version 1.2 and explains the effects it will have on organizations, how it will change PCI audits, and the benefits PCI service companies can provide.

Infosecurity Europe 2009 IT Voices interviews Dan Kaminsky

Toorcon 2007 Black Ops: Design Reviewing the Web
This installation of Dan Kaminsky's famous Black Ops series discusses Web 2.0 and its inherent design vulnerabilities including compromising web browsers, DNS rebinding attacks, passing fingerprints of web content frameworks, and the weakness of CAPTCHAs.

RSA 2007  Door Cards: The Enterprise's Weakest Link
Chris Paget demonstrates a homemade gadget that hacks and clones a common brand of door access cards. View the video here.


 
greybar

More Information


Need more information?
Contact IOActive today.



IOActive Profile:
Established: 1998
Headquarters: Seattle, WA and London, UK
Privately held and self-funded
 
IOActive Services:
Application Security, SCADA and Smart Grid, PCI and Compliance, Security Development Lifecycle, Infrastructure Audit, Incident Response and Training.
 
Customers:
Global 500 companies including power and utility, game, hardware, retail, financial, media, travel, aerospace, healthcare, high-tech, social networking, and software development organizations.
 



Visit our Facebook page Visit our Twitter page Visit our LinkedIn page Visit us on Flickr