n|u Hyderabad Meet - November 2022
Saturday, 19 Nov 2022 · 09:30 IST — 13:30 IST
ServiceNow
About this event
About null:
null is an open security community for ethical hackers, security professionals, and security enthusiasts, born out of the need for:
Promoting advanced security research.Spreading security awareness among the netizens.A Centralized knowledge base for security related information.All our Null Hyderabad meets are Free and Open to all, just register and join us.
Venue Details:
Gate 8, Orwell building, 7th floor, Kaveri room, ServiceNow
Address: ServiceNow Software Development India, Orwell Building, Salarpuria Sattva Knowledge City, Silpa Gram Craft Village, HITEC City, Hyderabad, Telangana 500081
Landmark: Near My Home Abhra, Inorbit Mall Road
Google Maps Location
Note:
Please reach the venue at-least 20 mins early for the security checks.
1. Please carry original government issued ID proof for security checks(Registered Name should match with the ID)
2. Laptops are not allowed, please do not carry them.
3. Parking facility will be provided at B3.
Topics:
1. Introductions.
2. Security NewsBytes by Charan Sai
3. Penetration Tester way of Attacking Thick Client by Manish
In this talk, Manish will cover several types of vulnerabilities within Thick Client application and how it can be exploited along with demonstration. Also, he will be presenting about various tools that a pentester can make use of during testing "plus" how our beloved tool i.e., Burpsuite can be used. Also he will talk and demonstrate about DAST, SAST and Reverse Engineering can be done in any Thick Client application too.
4. Flying under radar - AWS IAM by Bhagavan Bollina
In this talk the author will discuss about IAM introduction, common misconfigurations and exploiting them along with the security best practices.
5. Job Announcements
6. Networking/Snacks Break
7. Security Automation with Python by Surya Subhash
In this talk, Speaker will cover the following topics are expected to be covered as a part of the session:
Basics of Security Automation and its importance
Security Automation 101 of Network Operations, File Operations, OS Operations, Pandas and Selenium
Case studies of Parsing unstructured & Structured data using PyGrok and Automated scraping using Selenium
How to find libraries, continue automation, open source contribution guidelines, etc.
About Speakers:
Charan Sai Anche aka XC is a student pursuing Computer Science with Cyber Security as Elective at SR University, Warangal. He is highly enthusiastic person.He is eager to learn about his passion.He always aims for stars always.
Manish is Security Engineer with ~3 years of experience in Vulnerability Assessment and Penetration Testing which include Network as well as Application Security. He is also winner of Adversary Village CTF (1st place) at c0c0n 2022. Also, loves to participate and Volunteer in Cybersecurity Conferences. Currently pursuing Masters in Computer Science specialization in Cybersecurity.
Bhagavan Bollina is a passionate security researcher who loves to update himself with current advances in security. He is the security engineer at Appsecco. He is also well versed in different flavors of Security such as Application, Network, and Cloud. He also loves doing bug bounty and has submitted his critical vulnerability reports via responsible disclosure programs to True caller, Huawei, Dell, Cambridge University, University of California and Govt. of India.
Subhash P is a Security Engineer with Microsoft. He's interested in Application Security, Incident Response, Security Automation and solving problems at scale.
Please reach out to us for additional information: bheemamahesh [at] gmail [dot] com or vhssunny1 [at] gmail [dot] com or me [at] pavanw3b [dot] com
Event schedule
| Time | Session | Speaker | |
|---|---|---|---|
| Security NewsBytes | Null Hyderabad | ||
| Penetration Tester way of Attacking Thick Client | Null Hyderabad | ||
| Flying under radar - AWS IAM | Null Hyderabad | ||
| Security Automation with Python | Surya Subhash |