← All Events
Monthly Meet

n|u Hyderabad Meet - December 2022

Saturday, 17 Dec 2022 · 09:30 IST — 14:00 IST

Venue TBA

About this event

Venue:

Gainsight

Divyashree Trinity, 6th Floor, Plot No 5 and 6, Hitech City Main Rd, Madhapur, Telangana State 500081

Google Maps Location

Topics:

Introductions

Security NewsBytes by S. Gowtham and Ganesh Chandu

Gowtham and Ganesh will cover the latest security news since the last month.

ML for Security | Security for ML by Sagar Bhure

Flying under radar - AWS IAM Part 2 by Bhagavan Bollina

Bhagavan will provide a recap on part 1 and speak about using OSINT as a catalyst, defending against leaked keys and mention the Arsenal tools that I use for auditing. He will also provide some final thoughts on IAM security.

The Egg Series: How Eggxactly SOP, CORS & CSRF work by Pavan Mohan

Pavan will describe the Same Origin Policy, how CORS can be used to work around the restrictions of SOP and how overly permissive CORS can lead to CSRF vulnerabilities. All these are explained with a practical example of a deliberately built application.

Note:

Please reach the venue at least 20 mins early for the security checks.

1. Please carry original government-issued ID proof for security checks(The Registered Name should match the ID)

2. Laptops are not allowed for people other than speakers, please do not carry them.

About Speakers:

Gowtham is a Student Of GRIET college Pursuing 2nd year who is a tech geek and explores a lot about different technologies. Isn’t a Professional in Cybersecurity but wants to have a basic overview of the different domains present in it.

Ganesh Chandu is also from the same College, GRIET pursuing 2nd Year in Artificial Intelligence and Machine Learning. He is an Esthusiest whose primary goal is to be an Entrepreneur. He has also an Interset into Digital Forensics and Bug Bounty who kind of knows Networking and Pentesting Tools.

Sagar Bhure is working as a Software Security Engineer with working experience in Product Security and Product Development for more than 5 years and contributions towards various open source communities. Also, an active member of global OWASP CFP/CFT Review team. He is passionate about ML Security, DevSecOps and Application Security. He also loves doing bug bounty and CTF has submitted his critical vulnerability reports via responsible disclosure programs.

Bhagavan Bollina is a passionate security researcher who loves to update himself with current advances in security. He is the security engineer at Appsecco. He is also well versed in different flavors of Security such as Application, Network, and Cloud. He also loves doing bug bounty and has submitted his critical vulnerability reports via responsible disclosure programs to True caller, Huawei, Dell, Cambridge University, University of California and Govt. of India.

Pavan Mohan aka pavanw3b is a developer turned bug hunter and leads the Product Security team at ServiceNow. He is one of the core members of the Null Hyderabad chapter and he has been contributing to the infosec community by presenting at Defcon and null events. He leads an open-source security tool: Sh00t. He tries his luck in bug bounty programs when he goes out of T-Shirts and made it to some Hall of Fame.

About null:

null is an open security community for ethical hackers, security professionals, and security enthusiasts, born out of the need for:

Promoting advanced security research. Spreading security awareness among the netizens. A Centralized knowledge base for security-related information. All our Null Hyderabad meets are Free and Open to all, just register and join us.

Please reach out to us for additional information: bheemamahesh [at] gmail [dot] com or vhssunny1 [at] gmail [dot] com or me [at] pavanw3b [dot] com

Event schedule