FRIDAY 3 NOVEMBER
The Unlock workshops
IMPROVING ONE'S SECURITY BY LEVERAGING THE CROWD
English
Intermediate
11.45AM – 1.15PM
Manuel SABBAN
As of today information security is known to be a main concern for many decision-makers. We will demonstrate how CrowdSec Security Engine could help security teams. CrowdSec Security Engine defends against intrusions by analyzing logs to identify and block offending IPs. Flagged IPs are then sent to the community blocklist to protect the Crowd.
Crowdsec is an open-source tool suite built upon the Security Engine and specialized remediation tools we call bouncer. We will cover the following topics:
- install and configure CrowdSec ;
- crowdsec can perform on cold logs ;
- notifications on specific alerting ;
- demonstrate remediation ;
- analyze metrics with the provided saas tool.
discover your attack surface with onyphe
French
Intermediate
9.30 – 11.30AM
Patrice AUFFRET
In this workshop, we propose you to discover a repeatable methodology to identify your attack surface starting from a simple domain name. We will see that it is possible to pivot to other sources of information in order to unravel the links between these sources to create an inventory of your attack surface that is as complete as possible.
Next, we'll be able to analyze your attack surface to identify weaknesses in internet-exposed assets, and we'll also look at how to create visualizations and dashboards with Kibana to keep an up-to-date view of your internet exposure.
À propos de l'intervenant :
- More than 20 years of experience in cybersecurity, in both offensive and defensive fields.
- Founder, CEO and CTO of ONYPHE, a company specialising in attack surface management.
NATURAL LANGUAGE PROCESSING (NLP) FOR THREAT INTELLIGENCE
English
Beginner
9.30 – 11.30AM
Pauline BOURMEAU
Natural language processing is a subfield of AI. It is at the core of large language models. In this workshop you learn how to break AI into tools and build your first NLP program. You learn to use natural language processing to extract knowledge and uncover patterns in text data. This workshop provides you with practical knowledge and skills that you can apply in your daily practice as a security professional. It is designed for beginners, you will be introduced to the foundations of NLP and gain practical experience in text pre-processing, representation, and classification.
Goals:
- Learn how to leverage natural language processing for Threat Intelligence and investigation in cybersecurity.
- Acquire practical skills to allow you to build your own pipelines.
- Guide you to an intuitive path for learning NLP and integrate it progressively to your daily tasks.
Program:
Building a sentiment analysis pipeline using pre-trained models and industry-standard libraries.
- Learn the essential steps of text pre-processing by practicing on a real dataset.
- Explore different methods of representing text data.
- Build a simple text classifier using popular techniques.
- Learn to measure accuracy of your model.
- Discussions and resources to go further.
To conclude:
We quickly discuss diverse ranges of applications of NLP, including Open-Source Intelligence (OSINT), Security research and Incident Response.
And finally, we highlight the significance of working with structured and unstructured data.
Requirements: Knowledge in Python, no prior experience in AI is required.
_______________
About the speaker: Cookie has spent a long-time fixing languages and bikes with very little money and great ingenuity, squatting university benches and corrupting teachers for beer. Working for the past four years as a Threat Analyst, she is also a trained linguist and former teacher who brings a unique perspective to her work by exploring and exploiting threats through criminology, social anthropology, philosophy, and psychology. She actively participates in the open-source community and promotes defensive security practices by training industry practitioners.
CREATE YOUR CUSTOM COMMAND & CONTROL
French
Advanced
9.30 – 11.30AM
Guillaume PRIGENT and Adrien BARCHAPT-PERROT
Un serveur de Commande & Contrôle (Command & Control) est un élément clé de l’infrastructure de tout attaquant, qu’il s’agisse d’acteurs étatiques ou assimilés (APT), de cybercriminels ou d’opérateurs légitimes « Red Team ». « Créez votre C&C sur mesure » est un atelier de 3 heures 30 destiné à ceux qui souhaitent se lancer rapidement dans le domaine de la conception et de l’architecture de C&C et qui ont l’intention de développer leur propre implant à l’aide d’un framework open source renommé.
In this workshop, participants, equipped with their own laptop, will have the opportunity to learn the architecture and design of a well-known open source framework, by way of example, and benefit from a comprehensive hands-on introduction to designing a simple custom implant. They will work with two already prepared virtual machines and conclude by writing their own integrated x64 implant (using a C++/Python wrapper).
________
About the speakers:
Guillaume Prigent is a digital freethinker and cybersecurity expert.
Co-fondateur de DIATEAM, Guillaume a commencé comme ingénieur en sécurité des systèmes d'information et travaille dans le domaine de la sécurité numérique depuis 25 ans. Il a développé de nombreuses "preuves de concept" et des outils tels que netglub, ipmorph, hynesim et donne également des conférences et des cours dans de nombreuses écoles d'ingénieurs (ENIB, ENSIETA, ESM Saint-Cyr). Il est l'auteur de plusieurs articles sur la sécurité et participe fréquemment à des conférences sur la sécurité et les tests telles que SSTIC, HITB, HACK.LU, FRHACK.
Adrien BARCHAPT-PERROT is the leader of the RedTeam at DIATEAM. Working in the field of offensive cybersecurity for 10 years, he is particularly interested and involved in the development of custom implants and the circumvention of defense systems.
HOW THE MONERO CRYPTOCURRENCY PROTECTS PRIVACY
French
Beginner
2.00 – 5.30 PM
Mathias HERBERTS
Monero is the leading cryptocurrency, standing out for its commitment to preserving privacy. During this workshop, Mathias Herberts will detail its features, the practical aspects of its implementation and daily use, while addressing its future prospects.
This workshop includes a practical part to familiarize participants with the use of Monero. A mobile phone running Android or iOS or a computer running Linux/MacOS/Windows will be required to receive some Monero and participate in the practical aspects.
________
About the speaker: protecting his privacy since the 20th century.
The NIS V2 DIRECTIVE WITHOUT PÉRIDURALE
French
Beginner
2.00 – 5.30 PM
Marc-Antoine LEDIEU
The NISv2 Directive is a major development in the European cybersecurity landscape. It aims to strengthen the security of networks and information systems across the European Union, widening the scope compared to the original NIS Directive, including more entities and strengthening security requirements.
We thus go from 300 organisations to more than 10,000 affected. Together we will therefore discuss how to draw up a roadmap calmly by clarifying the most striking buzzwords of the text: state of the art, hygiene, risk analysis, charters, security assurance plan, logging.
In joy and good humor, armed with a few well-prepared floodgates, we will spend together the most delectable moments around an unmissable text!
________
À propos de l'intervenant :
After five years as a litigator in business law, Marc-Antoine Ledieu specialized in digital law and BtoB contractual engineering.
His areas of practice cover the law of software and SaaS services, databases, personal data, the web, electronic communications and encryption.
Since 1999, Marc-Antoine Ledieu has been teaching digital contract law in the Master 2 PRO "Digital Law" at the University of Paris II Panthéon-Assas.