Automated perimeter mapping and drift detection |
Abstract
Recent Security Incidents have featured exfiltration of sensitive data from APIs that the Victim Company hadn’t realised were exposed publicly. I set out to build a tool that would help thwart a similar threat. In this presentation I will present the threat modelling, the tool (which I would propose to open source for the purposes of the presentation) and some observations from having run it since Nov 2022. Speaker Bio: I am an experienced IT&T Manager, and I'm currently leading some of our operational functions within nbn. I am passionate about the application of IT to the challenges faced by telecommunications companies. Building and leading teams to address these challenges is what I enjoy doing. Pete Wills works for nbn, leading IT Incident Response for the past 6 years. |