This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "CRAC2017"
From OWASP
(→Members) |
(Tag: Visual edit) |
||
(23 intermediate revisions by the same user not shown) | |||
Line 46: | Line 46: | ||
− | ==Keynote Speakers== | + | ==Keynote & Honor Speakers== |
− | [[Image:jpg|200px]] <br>''' | + | [[Image:shamsuri.jpg|200px]] <br>'''Dr. Shamsuri Abdullah -Ketua unit Projek Khas TVET, Politeknik Mersing''' |
+ | |||
+ | [[Image:shamsul.jpg|200px]] <br>'''Shamsul Bahari Mokmin -CEO Ofisgate / CEO Faculty, Politeknik Mersing''' | ||
+ | |||
+ | [[Image:fazli3.jpg|200px]] <br>'''Mohd Fazli Azran - OWASP Malaysia Chapter Leader''' | ||
=CFP and CFT= | =CFP and CFT= | ||
Line 105: | Line 109: | ||
*Time : 12.00p.m - 12.00 a.m ( 12 Hours) | *Time : 12.00p.m - 12.00 a.m ( 12 Hours) | ||
*Fee : RM299 per team (3 Person) | *Fee : RM299 per team (3 Person) | ||
+ | *Venue : CTF-TECC (Library) | ||
Gear | Gear | ||
Line 114: | Line 119: | ||
*Extra power sockets / power gangs | *Extra power sockets / power gangs | ||
*Power converters / adapters | *Power converters / adapters | ||
+ | |||
+ | ==Hacker Team== | ||
+ | 8 Team will join the competition | ||
+ | |||
+ | *Politeknik | ||
+ | *Politeknik | ||
+ | *Politeknik | ||
+ | *Politeknik | ||
+ | *UniKL | ||
+ | *UniKL | ||
+ | * | ||
+ | * | ||
=Trainers= | =Trainers= | ||
Line 122: | Line 139: | ||
<br>'''Maher Adib''' | <br>'''Maher Adib''' | ||
+ | |||
Packet Analysis geek. Wizard from Ofisgate. Father of 3 superheros! | Packet Analysis geek. Wizard from Ofisgate. Father of 3 superheros! | ||
[[Image:saliman.jpg]] | [[Image:saliman.jpg]] | ||
− | <br>'''Saliman Manap''' | + | <br>'''Saliman Manap''' |
+ | |||
It Security professional, certified and experienced in the fields of Information Technology Security Operation and Management with exposure to local and multinational organization. | It Security professional, certified and experienced in the fields of Information Technology Security Operation and Management with exposure to local and multinational organization. | ||
Line 132: | Line 151: | ||
<br>'''Mohammed Fadzil Haron''' | <br>'''Mohammed Fadzil Haron''' | ||
+ | |||
A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you. | A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you. | ||
Line 140: | Line 160: | ||
[[Image:zarina.jpg|275x275px]] | [[Image:zarina.jpg|275x275px]] | ||
− | <br>'''Nor Zarina Zainal Abidin''' | + | <br>'''Nor Zarina Zainal Abidin''' |
+ | |||
Nor Zarina Zainal Abidin has been involved in more than 500 cases related to digital evidence. Her roles include ensuring the quality of forensic result, the forensic methods, and the equipment as well as overseeing the competency and proficiency of forensics analysts. Being an analyst herself, her past experience includes examination and analysis of digital forensics evidence; provide expert testimonies and present forensic findings and reports to law enforcement agencies. She is also specialized in mobile phone forensics and has attended various training related to digital forensics. Apart from that, she also assists various Malaysia’s Law Enforcement Agencies as a first responder for cases related to digital forensics. She is also responsible to provide digital | Nor Zarina Zainal Abidin has been involved in more than 500 cases related to digital evidence. Her roles include ensuring the quality of forensic result, the forensic methods, and the equipment as well as overseeing the competency and proficiency of forensics analysts. Being an analyst herself, her past experience includes examination and analysis of digital forensics evidence; provide expert testimonies and present forensic findings and reports to law enforcement agencies. She is also specialized in mobile phone forensics and has attended various training related to digital forensics. Apart from that, she also assists various Malaysia’s Law Enforcement Agencies as a first responder for cases related to digital forensics. She is also responsible to provide digital | ||
forensics trainings to national law enforcement officers and also has been testifying and appeared as an expert witness in Malaysia court of law. | forensics trainings to national law enforcement officers and also has been testifying and appeared as an expert witness in Malaysia court of law. | ||
Line 146: | Line 167: | ||
[[Image:azri.jpg|209x209px]] | [[Image:azri.jpg|209x209px]] | ||
− | <br>'''Azri Hafiz A Rahman''' | + | <br>'''Azri Hafiz A Rahman''' |
+ | |||
Azri is a Head of CyberSecurity Monitoring Services at one of local cyber security company in Malaysia. He is in-charge to lead the daily operation of Cyber Intelligence and Monitoring Center (CIMC) / Security Operation Center (SOC) and provide oversight of analysis activities associated with cyber attack throughout the monitored environment. | Azri is a Head of CyberSecurity Monitoring Services at one of local cyber security company in Malaysia. He is in-charge to lead the daily operation of Cyber Intelligence and Monitoring Center (CIMC) / Security Operation Center (SOC) and provide oversight of analysis activities associated with cyber attack throughout the monitored environment. | ||
[[Image:hazrul.jpg|247x247px]] | [[Image:hazrul.jpg|247x247px]] | ||
− | <br>'''Hazrul Hamzah''' | + | <br>'''Hazrul Hamzah''' |
+ | |||
An ordinary IT Security guy, experienced too many face palm moments, too long in the industry and drawing is the only mean of maintaining sanity. | An ordinary IT Security guy, experienced too many face palm moments, too long in the industry and drawing is the only mean of maintaining sanity. | ||
Line 157: | Line 180: | ||
<br>'''Tahrizi Tahreb''' | <br>'''Tahrizi Tahreb''' | ||
+ | |||
Tahrizi adalah jurutera mekanikal dengan pengkhususan metallurgi. Mendambakan 5 tahun hidupnya sebagai jurutera sistem dan arkitek sistem untuk sebuah syarikat yang membina Sistem Maklumat Bersepadu Hospital (THIS) kepada kerajaan Malaysia. Pelaksanaan ini bermula dari M & E hingga integrasi peranti perubatan. Tidak berkalih pandangan dengan bidang teknologi maklumat khusunya keselamatan siber, beliau telah berkhidmat sebagai juru runding keselamatan IT kepada beberapa negara luar khusus dalam industri pertahanan, komunikasi dan kewangan. | Tahrizi adalah jurutera mekanikal dengan pengkhususan metallurgi. Mendambakan 5 tahun hidupnya sebagai jurutera sistem dan arkitek sistem untuk sebuah syarikat yang membina Sistem Maklumat Bersepadu Hospital (THIS) kepada kerajaan Malaysia. Pelaksanaan ini bermula dari M & E hingga integrasi peranti perubatan. Tidak berkalih pandangan dengan bidang teknologi maklumat khusunya keselamatan siber, beliau telah berkhidmat sebagai juru runding keselamatan IT kepada beberapa negara luar khusus dalam industri pertahanan, komunikasi dan kewangan. | ||
Line 162: | Line 186: | ||
<br>'''Mohammed Fadzil Haron''' | <br>'''Mohammed Fadzil Haron''' | ||
+ | |||
A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you. | A 21 years information security veteran with experiences in the USA and Malaysia, highly certified with GSEC(Gold), GCIA(Gold), GCIH, GCED, GPEN, GCFA and CISSP. He is the Chairman of PPKS a.k.a CREST Malaysia Chapter. He is the only one in Malaysia who used to be SANS Community Instructor and SANS Incident Storm Center Analyst volunteer. Currently SANS Advisory Board member, GIAC Gold Certification Advisor, SANS OnDemand Exam Writer/Auditor and Course Reviewers. His specialties includes Cyber Threat Intelligence, Digital Forensics and Investigation, Security Monitoring, Malware Analysis, Data Protection, Penetration Testing, Risk Assessment, Security Architecture and many others. His passion in infosecurity brought him to teach and present at conferences all over the world. He is here to share knowledge with those security enthusiast among you. | ||
Line 167: | Line 192: | ||
<br>'''Walter Wong''' | <br>'''Walter Wong''' | ||
+ | |||
A technical lead and founder of Gain Secure based in Malaysia with more than 15 years of experience in IT industry. The company has built a reputation for creative problem solving, delivering solutions to complex problems in the simplest terms. Walter is Microsoft MVP for Azure and Developer Security. Research on application development security is Walter's personal interest. Walter often speaks at various technical conferences such as TechEd, Microsoft Tech Days, OWASP Day and many others community events. | A technical lead and founder of Gain Secure based in Malaysia with more than 15 years of experience in IT industry. The company has built a reputation for creative problem solving, delivering solutions to complex problems in the simplest terms. Walter is Microsoft MVP for Azure and Developer Security. Research on application development security is Walter's personal interest. Walter often speaks at various technical conferences such as TechEd, Microsoft Tech Days, OWASP Day and many others community events. | ||
Line 180: | Line 206: | ||
! 8.00a.m | ! 8.00a.m | ||
! Registration | ! Registration | ||
− | ! | + | ! Dewan Permata Marjan |
|- bgcolor="#66FFFF" | |- bgcolor="#66FFFF" | ||
! 9.00a.m | ! 9.00a.m | ||
Line 186: | Line 212: | ||
Recitation of Dua’<br> | Recitation of Dua’<br> | ||
− | Welcoming Speech by | + | Welcoming Speech by En. Khamsan Anas Deputy Director Politeknik Mersing<br> |
− | Opening Speech | + | Opening Speech Dr. Shamsuri bin Abdullah, Ketua unit Projek Khas TVET<br> |
− | + | Ceremony by VVIP<br> | |
− | + | Keynote Speaker by - Shamsul Bahari Mokmin -CEO Ofisgate / CEO Faculty, Politeknik Mersing | |
− | ! | + | Honor Speech by Mohd Fazli Azran, OWASP Malaysia Chapter Leader <br> |
+ | ! Dewan Permata Marjan | ||
|- bgcolor="#CCFF66" | |- bgcolor="#CCFF66" | ||
! 10.00a.m | ! 10.00a.m | ||
Line 204: | Line 231: | ||
Next Generation Security Operation Center - Azri Hafiz A Rahman | Next Generation Security Operation Center - Azri Hafiz A Rahman | ||
− | ! | + | ! Dewan Permata Marjan |
|- bgcolor="#99FF66" | |- bgcolor="#99FF66" | ||
! 11.15a.m | ! 11.15a.m | ||
Line 210: | Line 237: | ||
Know thy enemy before thou attack you using Cyber Threat Intelligence - Mohammed Fadzil Haron | Know thy enemy before thou attack you using Cyber Threat Intelligence - Mohammed Fadzil Haron | ||
− | ! | + | ! Dewan Permata Marjan |
|- bgcolor="#99FF66" | |- bgcolor="#99FF66" | ||
! 12.00a.m | ! 12.00a.m | ||
! | ! | ||
− | + | Ensuring Application Security with Microsoft Azure - Walter Wong | |
− | ! | + | ! Dewan Permata Marjan |
|- bgcolor="#CCFF66" | |- bgcolor="#CCFF66" | ||
! 1.00 | ! 1.00 | ||
Line 225: | Line 252: | ||
! 2.00p.m | ! 2.00p.m | ||
! | ! | ||
− | Nexgen Ransonware - | + | Nexgen Ransonware - Muhammad Zahid bin Ismail |
− | + | ! Dewan Permata Marjan | |
− | ! | ||
|- bgcolor="#99FF66" | |- bgcolor="#99FF66" | ||
! 2.45p.m | ! 2.45p.m | ||
Line 233: | Line 259: | ||
In Case Of Emergency - Responding to Zero days/Critical Advisories - Hazrul Hamzah | In Case Of Emergency - Responding to Zero days/Critical Advisories - Hazrul Hamzah | ||
− | ! | + | ! Dewan Permata Marjan |
|- bgcolor="#99FF66" | |- bgcolor="#99FF66" | ||
! 3.30p.m | ! 3.30p.m | ||
! | ! | ||
− | + | Asas Penggodaman Peranti Perubatan: Manipulasi Protokol HL7 - Tahrizi Tahreb | |
− | ! | + | ! Dewan Permata Marjan |
|- bgcolor="#CCFF66" | |- bgcolor="#CCFF66" | ||
! 4.15p.m | ! 4.15p.m | ||
Line 249: | Line 275: | ||
! 4.30p.m | ! 4.30p.m | ||
! | ! | ||
− | + | From General IT to Cyber-security Professional: Transform`s - Mohd Fazli Azran | |
− | ! | + | ! Dewan Permata Marjan |
|- bgcolor="#CC00FF" | |- bgcolor="#CC00FF" | ||
| '''5.30p.m''' | | '''5.30p.m''' | ||
Line 266: | Line 292: | ||
|- bgcolor="#FF6600" | |- bgcolor="#FF6600" | ||
| width="73" height="43" | <span class="style5">Time</span> | | width="73" height="43" | <span class="style5">Time</span> | ||
− | | width="153" | <div align="center" class="style2">SYN, SYN-ACK, ACK: Essential skills for IT Security by Maher Adib</div> | + | | width="153" | <div align="center" class="style2">SYN, SYN-ACK, ACK: Essential skills for IT Security by Maher Adib |
− | | width="153" | <div align="center" class="style2">Understand Intrusion Prevention System Challenge, What is IPS, How to setup and optimized it for one of network security Protection by Saliman Manap</div> | + | |
− | | width="153" | <div align="center" class="style2">Extraction of internet artefacts, an introduction to digital forensics by Mohammed Fadzil Haron</div> | + | Lab FIS (Cyber Range) |
+ | </div> | ||
+ | | width="153" | <div align="center" class="style2">Understand Intrusion Prevention System Challenge, What is IPS, How to setup and optimized it for one of network security Protection by Saliman Manap | ||
+ | |||
+ | Lab FIT2 | ||
+ | </div> | ||
+ | | width="153" | <div align="center" class="style2">Extraction of internet artefacts, an introduction to digital forensics by Mohammed Fadzil Haron | ||
+ | |||
+ | Lab FIT1 | ||
+ | </div> | ||
|- bgcolor="#99CC99" | |- bgcolor="#99CC99" | ||
| height="37" | 8.00a.m | | height="37" | 8.00a.m | ||
Line 338: | Line 373: | ||
=== TEAM MEMBERS === | === TEAM MEMBERS === | ||
− | =='''''OWASP | + | =='''''OWASP Malaysia Representative'''''== |
*[mailto:fazli@owasp.org Mohd Fazli Azran (Chapter Leader)] | *[mailto:fazli@owasp.org Mohd Fazli Azran (Chapter Leader)] | ||
*[mailto:linuxmalaysia@gmail.com Harisfazillah Jamel] | *[mailto:linuxmalaysia@gmail.com Harisfazillah Jamel] | ||
− | *[mailto:norzaidi@rmp.gov.my Norzaidi Baharudin(CTF Judge)] | + | *[mailto:norzaidi@rmp.gov.my Norzaidi Baharudin(CTF Judge)] |
+ | =='''''CTF Team'''''== | ||
+ | *Mohd Amri Razlan | ||
+ | *Ahmad Maher Che Mohd. Adib | ||
+ | *Muhammad Fahmi Muhammad Abu Nangim | ||
+ | *Zul Azri Saadon | ||
+ | *Muhammad Syahir Sidek | ||
− | ==''''' | + | =='''''Politeknik Mersing Representative'''''== |
'''Advisor''' | '''Advisor''' | ||
*ROSLI BIN HAMID | *ROSLI BIN HAMID | ||
*LAJIM BIN MOLAH | *LAJIM BIN MOLAH | ||
+ | *KHAMSAN BIN ANAS | ||
'''Chairman''' | '''Chairman''' | ||
Line 439: | Line 481: | ||
*MASURIA BINTI MOHD TAHAR | *MASURIA BINTI MOHD TAHAR | ||
*TEO HONG CHUN | *TEO HONG CHUN | ||
+ | *MOHD FAUZI BIN MOHD SANI | ||
'''Traffic Team''' | '''Traffic Team''' | ||
Line 452: | Line 495: | ||
*MOHD RAZI BIN RAIB | *MOHD RAZI BIN RAIB | ||
− | ==''''' | + | =='''''Student Representative (Brute Force Team)'''''== |
*MOHD SALIHIN BIN ABAS (Leader) | *MOHD SALIHIN BIN ABAS (Leader) | ||
*NUR SARAH BINTI JAMALUDIN (Asistant Leader) | *NUR SARAH BINTI JAMALUDIN (Asistant Leader) |
Latest revision as of 09:07, 23 January 2018
|
|
---|---|
|