CPE Cyber Attack Lab #2
Detecting & Investigating Insider Threats
Mon, July 13 | 3:00 pm EDT
Watch a disgruntled software engineer go rogue!
In a devious attempt to steal sensitive financial info, our insider finds a list of service accounts with admin privileges, performs a Kerberoasting attack to hijack a backup service's credentials, and sends a ZIP full of sensitive info to a personal Gmail account.
We'll show you how the attack is performed and what the corresponding alerts look like in Varonis.
See how Varonis uncovers indicators of compromise at every turn.
Raphael Kelly, GCIH is a Team Lead for the Incident Response and Security Architecture team at Varonis. Raphael has an consulting and automation background with experience in IT infrastructure, Incident Response, and Data Protection. Varonis’ team of security professionals provide complementary Incident Response services to all existing customers. In addition, they work with customers to operationalize the Varonis Data Security Platform and integrate Varonis into the security ecosystem.