Category: Presentation

  • FERC Testimony: Addressing the Evolving Cybersecurity Threat

    Annual Commissioner-led Reliability Technical Conference FERC HQ I was humbled to be asked to speak to the Commission on the topic of Cyber Threats. I regret that I can’t locate a list of panelists who also participated. Much of my testimony was centered on CRASHOVERRIDE and ELECTRUM activities. Agenda: There is a widespread understanding among…

  • Threat Modeling and Hunting

    GridSecCon Las Vegas, Nevada This was a half day training session built from labs designed for the first version of Dragos 5 Day Advanced ICS class.

  • Industroyer/Crashoverride

    Black Hat USA // Las Vegas, Nevada The first public presentation surrounding the CRASHOVERRIDE malware, the first malware designed to dirupt electric power systems and involved in the Ukraine 2016 cyberattack against a transmission substation. I co-presented with Anton Cherepanov (e-set), Joe Slowik (Dragos), Robert M. Lee (Dragos), and Robert Lipovsky (e-set). I’m unaware of…

  • Exploring the Unknown ICS Threat Landscape

    Industrial Control Systems Working Group (ICSJWG) Minneapolis, Minnesota A Dedux of the MIMICS research as presented at SANS ICS Summit but re-oriented to put into the larger perspective of the known threats around industrial control systems. No recordings exist.

  • MIMICS

    SANS ICS Summit Orlando, Florida This keynote was co-presented with Robert M. Lee. It detailed my MIMICS (Malware In Modern Industrial Control Systems) research project of trolling through virustotal to understand some of the lurking trends and behaviors around ICS from the guise of self propogated malware, poor security behaviors, and data leakages. We also…