This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "CRAC2017"

From OWASP
Jump to: navigation, search
([ Call For Presentation] OPEN)
 
(28 intermediate revisions by the same user not shown)
Line 46: Line 46:
  
  
==Keynote Speakers==
+
==Keynote & Honor Speakers==
[[Image:jpg|200px]] <br>'''TBA'''
+
[[Image:shamsuri.jpg|200px]] <br>'''Dr. Shamsuri Abdullah -Ketua unit Projek Khas TVET, Politeknik Mersing'''
 +
 
 +
[[Image:shamsul.jpg|200px]] <br>'''Shamsul Bahari Mokmin -CEO Ofisgate / CEO Faculty, Politeknik Mersing'''
 +
 
 +
[[Image:fazli3.jpg|200px]] <br>'''Mohd Fazli Azran - OWASP Malaysia Chapter Leader'''
  
 
=CFP and CFT=
 
=CFP and CFT=
Line 72: Line 76:
 
To make a submission:  
 
To make a submission:  
  
=== [Call For Presentation] '''OPEN''' ===
+
=== Call For Presentation '''CLOSE''' ===
  
 
<br> Each talk should be limited to 40 minutes, followed by a 5 minute question session.  
 
<br> Each talk should be limited to 40 minutes, followed by a 5 minute question session.  
Line 88: Line 92:
 
*Extraction of Internet Artefacts,  an Introduction to Digital Forensics
 
*Extraction of Internet Artefacts,  an Introduction to Digital Forensics
  
=== [ Call For Training] '''OPEN''' ===
+
=== Call For Training '''CLOSE''' ===
  
 
*All the speaker &amp; trainers will be given Speaker Honor Cert from Politeknik Mersing &amp; OWASP Malaysia
 
*All the speaker &amp; trainers will be given Speaker Honor Cert from Politeknik Mersing &amp; OWASP Malaysia
Line 105: Line 109:
 
*Time : 12.00p.m - 12.00 a.m ( 12 Hours)
 
*Time : 12.00p.m - 12.00 a.m ( 12 Hours)
 
*Fee : RM299 per team (3 Person)
 
*Fee : RM299 per team (3 Person)
 +
*Venue : CTF-TECC (Library)
  
 
Gear
 
Gear
Line 114: Line 119:
 
*Extra power sockets / power gangs
 
*Extra power sockets / power gangs
 
*Power converters / adapters
 
*Power converters / adapters
 +
 +
==Hacker Team==
 +
8 Team will join the competition
 +
 +
*Politeknik
 +
*Politeknik
 +
*Politeknik
 +
*Politeknik
 +
*UniKL
 +
*UniKL
 +
*
 +
*
  
 
=Trainers=
 
=Trainers=
Line 122: Line 139:
  
 
<br>'''Maher Adib'''
 
<br>'''Maher Adib'''
 +
 
Packet Analysis geek. Wizard from Ofisgate. Father of 3 superheros!
 
Packet Analysis geek. Wizard from Ofisgate. Father of 3 superheros!
  
 
[[Image:saliman.jpg]]
 
[[Image:saliman.jpg]]
  
<br>'''Saliman Manap'''  
+
<br>'''Saliman Manap'''
 +
 
 
It Security professional, certified and experienced in the fields of Information Technology Security Operation and Management with exposure to local and multinational organization.
 
It Security professional, certified and experienced in the fields of Information Technology Security Operation and Management with exposure to local and multinational organization.
  
Line 132: Line 151:
  
 
<br>'''Mohammed Fadzil Haron'''
 
<br>'''Mohammed Fadzil Haron'''
 +
 
A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you.
 
A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you.
  
Line 140: Line 160:
 
[[Image:zarina.jpg|275x275px]]  
 
[[Image:zarina.jpg|275x275px]]  
  
<br>'''Nor Zarina Zainal Abidin'''  
+
<br>'''Nor Zarina Zainal Abidin'''
 +
 
 
Nor Zarina Zainal Abidin has been involved in more than 500 cases related to digital evidence. Her roles include ensuring the quality of forensic result, the forensic methods, and the equipment as well as overseeing the competency and proficiency of forensics analysts. Being an analyst herself, her past experience includes examination and analysis of digital forensics evidence; provide expert testimonies and present forensic findings and reports to law enforcement agencies. She is also specialized in mobile phone forensics and has attended various training related to digital forensics. Apart from that, she also assists various Malaysia’s Law Enforcement Agencies as a first responder for cases related to digital forensics. She is also responsible to provide digital
 
Nor Zarina Zainal Abidin has been involved in more than 500 cases related to digital evidence. Her roles include ensuring the quality of forensic result, the forensic methods, and the equipment as well as overseeing the competency and proficiency of forensics analysts. Being an analyst herself, her past experience includes examination and analysis of digital forensics evidence; provide expert testimonies and present forensic findings and reports to law enforcement agencies. She is also specialized in mobile phone forensics and has attended various training related to digital forensics. Apart from that, she also assists various Malaysia’s Law Enforcement Agencies as a first responder for cases related to digital forensics. She is also responsible to provide digital
 
forensics trainings to national law enforcement officers and also has been testifying and appeared as an expert witness in Malaysia court of law.
 
forensics trainings to national law enforcement officers and also has been testifying and appeared as an expert witness in Malaysia court of law.
Line 146: Line 167:
 
[[Image:azri.jpg|209x209px]]   
 
[[Image:azri.jpg|209x209px]]   
  
<br>'''Azri Hafiz A Rahman'''  
+
<br>'''Azri Hafiz A Rahman'''
 +
 
 
Azri is a Head of CyberSecurity Monitoring Services at one of local cyber security company in Malaysia. He is in-charge to lead the daily operation of Cyber Intelligence and Monitoring Center (CIMC) / Security Operation Center (SOC) and provide oversight of analysis activities associated with cyber attack throughout the monitored environment.   
 
Azri is a Head of CyberSecurity Monitoring Services at one of local cyber security company in Malaysia. He is in-charge to lead the daily operation of Cyber Intelligence and Monitoring Center (CIMC) / Security Operation Center (SOC) and provide oversight of analysis activities associated with cyber attack throughout the monitored environment.   
  
 
[[Image:hazrul.jpg|247x247px]]  
 
[[Image:hazrul.jpg|247x247px]]  
  
<br>'''Hazrul Hamzah'''  
+
<br>'''Hazrul Hamzah'''
 +
 
 
An ordinary IT Security guy, experienced too many face palm moments, too long in the industry and drawing is the only mean of maintaining sanity.
 
An ordinary IT Security guy, experienced too many face palm moments, too long in the industry and drawing is the only mean of maintaining sanity.
 
   
 
   
Line 157: Line 180:
  
 
<br>'''Tahrizi Tahreb'''
 
<br>'''Tahrizi Tahreb'''
 +
 
Tahrizi adalah jurutera mekanikal dengan pengkhususan metallurgi. Mendambakan 5 tahun hidupnya sebagai jurutera sistem dan arkitek sistem untuk sebuah syarikat yang membina Sistem Maklumat Bersepadu Hospital (THIS) kepada kerajaan Malaysia. Pelaksanaan ini bermula dari M & E hingga integrasi peranti perubatan. Tidak berkalih pandangan dengan bidang teknologi maklumat khusunya keselamatan siber, beliau telah berkhidmat sebagai juru runding keselamatan IT kepada beberapa negara luar khusus dalam industri pertahanan, komunikasi dan kewangan.
 
Tahrizi adalah jurutera mekanikal dengan pengkhususan metallurgi. Mendambakan 5 tahun hidupnya sebagai jurutera sistem dan arkitek sistem untuk sebuah syarikat yang membina Sistem Maklumat Bersepadu Hospital (THIS) kepada kerajaan Malaysia. Pelaksanaan ini bermula dari M & E hingga integrasi peranti perubatan. Tidak berkalih pandangan dengan bidang teknologi maklumat khusunya keselamatan siber, beliau telah berkhidmat sebagai juru runding keselamatan IT kepada beberapa negara luar khusus dalam industri pertahanan, komunikasi dan kewangan.
  
Line 162: Line 186:
  
 
<br>'''Mohammed Fadzil Haron'''
 
<br>'''Mohammed Fadzil Haron'''
 +
 
A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you.
 
A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you.
  
Line 167: Line 192:
  
 
<br>'''Walter Wong'''
 
<br>'''Walter Wong'''
 +
 
A technical lead and founder of Gain Secure based in Malaysia with more than 15 years of experience in IT industry. The company has built a reputation for creative problem solving, delivering solutions to complex problems in the simplest terms. Walter is Microsoft MVP for Azure and Developer Security. Research on application development security is Walter's personal interest. Walter often speaks at various technical conferences such as TechEd, Microsoft Tech Days, OWASP Day and many others community events.
 
A technical lead and founder of Gain Secure based in Malaysia with more than 15 years of experience in IT industry. The company has built a reputation for creative problem solving, delivering solutions to complex problems in the simplest terms. Walter is Microsoft MVP for Azure and Developer Security. Research on application development security is Walter's personal interest. Walter often speaks at various technical conferences such as TechEd, Microsoft Tech Days, OWASP Day and many others community events.
  
Line 180: Line 206:
 
! 8.00a.m  
 
! 8.00a.m  
 
! Registration  
 
! Registration  
! TBA
+
! Dewan Permata Marjan
 
|- bgcolor="#66FFFF"
 
|- bgcolor="#66FFFF"
 
! 9.00a.m  
 
! 9.00a.m  
Line 186: Line 212:
 
Recitation of Dua’<br>  
 
Recitation of Dua’<br>  
  
Welcoming Speech by Leftenan Colonel (PA) Haji Rosli  Hamid Director Politeknik Mersing<br>  
+
Welcoming Speech by En. Khamsan Anas Deputy Director Politeknik Mersing<br>  
  
Opening Speech by Mohd Fazli Azran, OWASP Malaysia Chapter Leader <br>
+
Opening Speech Dr. Shamsuri bin Abdullah, Ketua unit Projek Khas TVET<br>
  
Speech by Program Director Politeknik Mersing<br>
+
Ceremony by VVIP<br>  
  
Opening Speech & Ceremony by VVIP<br>
+
Keynote Speaker by - Shamsul Bahari Mokmin -CEO Ofisgate / CEO Faculty, Politeknik Mersing
  
! TBA
+
Honor Speech by Mohd Fazli Azran, OWASP Malaysia Chapter Leader <br>
 +
! Dewan Permata Marjan
 
|- bgcolor="#CCFF66"
 
|- bgcolor="#CCFF66"
 
! 10.00a.m  
 
! 10.00a.m  
Line 204: Line 231:
 
Next Generation Security Operation Center - Azri Hafiz A Rahman  
 
Next Generation Security Operation Center - Azri Hafiz A Rahman  
  
! TBA
+
! Dewan Permata Marjan
 
|- bgcolor="#99FF66"
 
|- bgcolor="#99FF66"
 
! 11.15a.m  
 
! 11.15a.m  
Line 210: Line 237:
 
Know thy enemy before thou attack you using Cyber Threat Intelligence - Mohammed Fadzil Haron
 
Know thy enemy before thou attack you using Cyber Threat Intelligence - Mohammed Fadzil Haron
  
! TBA
+
! Dewan Permata Marjan
 
|- bgcolor="#99FF66"
 
|- bgcolor="#99FF66"
 
! 12.00a.m  
 
! 12.00a.m  
 
!  
 
!  
Asas Penggodaman Peranti Perubatan: Manipulasi Protokol HL7 - Tahrizi Tahreb
+
Ensuring Application Security with Microsoft Azure - Walter Wong
  
! TBA
+
! Dewan Permata Marjan
 
|- bgcolor="#CCFF66"
 
|- bgcolor="#CCFF66"
 
! 1.00  
 
! 1.00  
Line 225: Line 252:
 
! 2.00p.m  
 
! 2.00p.m  
 
!  
 
!  
Nexgen Ransonware - Nor Zarina Zainal Abidin
+
Nexgen Ransonware - Muhammad Zahid bin Ismail
 
+
! Dewan Permata Marjan
! TBA
 
 
|- bgcolor="#99FF66"
 
|- bgcolor="#99FF66"
 
! 2.45p.m  
 
! 2.45p.m  
Line 233: Line 259:
 
In Case Of Emergency - Responding to Zero days/Critical Advisories - Hazrul Hamzah
 
In Case Of Emergency - Responding to Zero days/Critical Advisories - Hazrul Hamzah
  
! TBA
+
! Dewan Permata Marjan
  
 
|- bgcolor="#99FF66"
 
|- bgcolor="#99FF66"
 
! 3.30p.m  
 
! 3.30p.m  
 
!  
 
!  
Ensuring Application Security with Microsoft Azure - Walter Wong
+
Asas Penggodaman Peranti Perubatan: Manipulasi Protokol HL7 - Tahrizi Tahreb
  
! TBA
+
! Dewan Permata Marjan
 
|- bgcolor="#CCFF66"
 
|- bgcolor="#CCFF66"
 
! 4.15p.m  
 
! 4.15p.m  
Line 249: Line 275:
 
! 4.30p.m  
 
! 4.30p.m  
 
!  
 
!  
BiDefender
+
From General IT to Cyber-security Professional: Transform`s - Mohd Fazli Azran
  
! TBA
+
! Dewan Permata Marjan
 
|- bgcolor="#CC00FF"
 
|- bgcolor="#CC00FF"
 
| '''5.30p.m'''  
 
| '''5.30p.m'''  
Line 266: Line 292:
 
|- bgcolor="#FF6600"
 
|- bgcolor="#FF6600"
 
| width="73" height="43" | <span class="style5">Time</span>  
 
| width="73" height="43" | <span class="style5">Time</span>  
| width="153" | <div align="center" class="style2">SYN, SYN-ACK, ACK: Essential skills for IT Security by Maher Adib</div>  
+
| width="153" | <div align="center" class="style2">SYN, SYN-ACK, ACK: Essential skills for IT Security by Maher Adib
| width="153" | <div align="center" class="style2">Understand Intrusion Prevention System Challenge, What is IPS, How to setup and optimized it for one of network security Protection by Saliman Manap</div>  
+
 
| width="153" | <div align="center" class="style2">Extraction of internet artefacts, an introduction to digital forensics by Mohammed Fadzil Haron</div>
+
Lab FIS (Cyber Range)
 +
</div>  
 +
| width="153" | <div align="center" class="style2">Understand Intrusion Prevention System Challenge, What is IPS, How to setup and optimized it for one of network security Protection by Saliman Manap
 +
 
 +
Lab FIT2
 +
</div>  
 +
| width="153" | <div align="center" class="style2">Extraction of internet artefacts, an introduction to digital forensics by Mohammed Fadzil Haron
 +
 
 +
Lab FIT1
 +
</div>
 
|- bgcolor="#99CC99"
 
|- bgcolor="#99CC99"
 
| height="37" | 8.00a.m  
 
| height="37" | 8.00a.m  
Line 336: Line 371:
 
*[mailto:fazli@owasp.org Contact us]
 
*[mailto:fazli@owasp.org Contact us]
  
=== Members ===
+
=== TEAM MEMBERS ===
  
'''''OWASP MALAYSIA REPRESENTATIVE:'''''  
+
=='''''OWASP Malaysia Representative'''''==
  
 
*[mailto:fazli@owasp.org Mohd Fazli Azran (Chapter Leader)]
 
*[mailto:fazli@owasp.org Mohd Fazli Azran (Chapter Leader)]
 
*[mailto:linuxmalaysia@gmail.com Harisfazillah Jamel]
 
*[mailto:linuxmalaysia@gmail.com Harisfazillah Jamel]
*[mailto:norzaidi@rmp.gov.my Norzaidi Baharudin(CTF Judge)]  
+
*[mailto:norzaidi@rmp.gov.my Norzaidi Baharudin(CTF Judge)]
  
 +
=='''''CTF Team'''''==
 +
*Mohd Amri Razlan
 +
*Ahmad Maher Che Mohd. Adib
 +
*Muhammad Fahmi Muhammad Abu Nangim
 +
*Zul Azri Saadon
 +
*Muhammad Syahir Sidek
  
'''''POLITEKNIK MERSING REPRESENTATIVE:'''''  
+
=='''''Politeknik Mersing Representative'''''==
  
 
'''Advisor'''
 
'''Advisor'''
 
*ROSLI BIN HAMID
 
*ROSLI BIN HAMID
 
*LAJIM BIN MOLAH
 
*LAJIM BIN MOLAH
 +
*KHAMSAN BIN ANAS
  
 
'''Chairman'''
 
'''Chairman'''
Line 439: Line 481:
 
*MASURIA BINTI MOHD TAHAR
 
*MASURIA BINTI MOHD TAHAR
 
*TEO HONG CHUN
 
*TEO HONG CHUN
 +
*MOHD FAUZI BIN MOHD SANI
  
 
'''Traffic Team'''
 
'''Traffic Team'''
Line 452: Line 495:
 
*MOHD RAZI BIN RAIB
 
*MOHD RAZI BIN RAIB
  
'''''STUDENT POLITEKNIK REPRESENTATIVE (Brute Force Team)'''''
+
=='''''Student Representative (Brute Force Team)'''''==
 
*MOHD SALIHIN BIN ABAS (Leader)
 
*MOHD SALIHIN BIN ABAS (Leader)
 
*NUR SARAH BINTI JAMALUDIN (Asistant Leader)
 
*NUR SARAH BINTI JAMALUDIN (Asistant Leader)

Latest revision as of 09:07, 23 January 2018




Crac2017.jpg


Cyber Range Academy Conference 2017 - Malaysia

Politeknik Mersing will host Cyber Range Academy Conference 2017 in Mersing, Malaysia from Sept. 26 to Sept. 27, 2017 with collaboration OWASP Malaysia. The events will gather student, lecturer, leaders, security experts, executives, technical thought leaders, developers, scientists and researchers all Politeknik around Malaysia for in-depth discussions of cutting-edge application security issues. About 500 people are expected to attend the events. exhibition and lunch will be held at the summit, providing sufficient networking opportunities.

Theme "BE VIGILANT BE SMART"