BEGIN:VCALENDAR
PRODID;X-RICAL-TZSOURCE=TZINFO:-//Calagator//EN
CALSCALE:GREGORIAN
X-WR-CALNAME:Calagator
METHOD:PUBLISH
VERSION:2.0
BEGIN:VTIMEZONE
TZID;X-RICAL-TZSOURCE=TZINFO:America/Los_Angeles
BEGIN:DAYLIGHT
DTSTART:20160313T020000
RDATE:20160313T020000
RDATE:20170312T020000
RDATE:20180311T020000
RDATE:20190310T020000
RDATE:20200308T020000
RDATE:20210314T020000
RDATE:20220313T020000
RDATE:20230312T020000
TZOFFSETFROM:-0800
TZOFFSETTO:-0700
TZNAME:PDT
END:DAYLIGHT
BEGIN:STANDARD
DTSTART:20161106T020000
RDATE:20161106T020000
RDATE:20171105T020000
RDATE:20181104T020000
RDATE:20191103T020000
RDATE:20201101T020000
RDATE:20211107T020000
RDATE:20221106T020000
TZOFFSETFROM:-0700
TZOFFSETTO:-0800
TZNAME:PST
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
CREATED;VALUE=DATE-TIME:20160516T180412Z
DTEND;TZID=America/Los_Angeles;VALUE=DATE-TIME:20160621T193000
DTSTART;TZID=America/Los_Angeles;VALUE=DATE-TIME:20160621T180000
DTSTAMP;VALUE=DATE-TIME:20160516T180412Z
LAST-MODIFIED;VALUE=DATE-TIME:20160616T161427Z
UID:http://calagator.org/events/1250470277
DESCRIPTION:Add TAL\, improve a threat model!&#13\;\n===&#13\;\nTo improv
 e your (threat) modeling career\, you need a better (threat) agent (libr
 ary)! Threat modeling is a process for capturing\, organizing\, and anal
 yzing the security of a system based on the perspective of a threat agen
 t. Threat modeling enables informed decision-making about application se
 curity risk. In addition to producing a model\, typical threat modeling 
 efforts also produce a prioritized list of security improvements to the 
 concept\, requirements\, design\, or implementation. In 2009\, OWASP pos
 ted wiki pages on threat modeling. Although there was the start of a sec
 tion on threat agents\, it has yet to be completed.&#13\;\n&#13\;\nIntel
  developed a unique standardized threat agent library (TAL) that provide
 s a consistent\, up-to-date reference describing the human agents that p
 ose threats to IT systems and other information assets. Instead of picki
 ng threat agents based on vendor recommendations and space requirements 
 in Powerpoint\, the TAL produces a repeatable\, yet flexible enough for 
 a range of risk assessment uses. We will cover both the TAL\, the Threat
  Agent Risk Assessment (TARA)\, how they can be used to improve threat m
 odeling.&#13\;\n&#13\;\nSpeaker&#13\;\n===&#13\;\nEric Jernigan&#13\;\nI
 nformation Security Architect&#13\;\nUmpqua Bank&#13\;\n&#13\;\nEric Jer
 nigan is an Information Security Architect at Umpqua Bank and focuses on
  risk assessment\, Secure project support\, information security governa
 nce\, and security awareness. Prior to this\, Eric He has also served as
  an information security manager and adjunct instructor at PCC. He has a
 lso served as an active duty Information Warfare Analyst in the Air Nati
 onal Guard in support of NORTHCOM/NORAD. He has almost twenty years of i
 ntelligence\, counter-terrorism\, Information warfare\, information secu
 rity\, and compliance experience. His current professional certification
 s include CISM\, CRISC\, and CISSP\, so love him. A staunch privacy advo
 cate\, he hates Facebook.&#13\;\n&#13\;\n&#13\;\nThe Open Web Applicatio
 n Security Project (OWASP) is a 501c3 not-for-profit worldwide charitabl
 e organization focused on improving the security of application software
 . To sign up for future meeting notes and to discuss security topics wit
 h local gurus\, sign up on the OWASP Portland mailing list: https://list
 s.owasp.org/mailman/listinfo/owasp-portland&#13\;\n&#13\;\nMeetings are 
 free and open to the public.\n\nTags: security\, owasp\, TARA\, Risk Ass
 essment\, Threat Agent Risk Assessment\, Threat Model\, intel\, TAL\n\nI
 mported from: http://calagator.org/events/1250470277
URL:https://www.owasp.org/index.php/Portland
SUMMARY:OWASP: Add TAL\, improve a threat model!
LOCATION:WebMD: 2701 Northwest Vaughn Street\, Portland OR 97210 US
SEQUENCE:3
END:VEVENT
BEGIN:VEVENT
CREATED;VALUE=DATE-TIME:20170522T160032Z
DTEND;TZID=America/Los_Angeles;VALUE=DATE-TIME:20170619T200000
DTSTART;TZID=America/Los_Angeles;VALUE=DATE-TIME:20170619T180000
DTSTAMP;VALUE=DATE-TIME:20170522T160032Z
LAST-MODIFIED;VALUE=DATE-TIME:20170522T160032Z
UID:http://calagator.org/events/1250471956
DESCRIPTION:Abstract&#13\;\n&#13\;\nAll modern software\, but the most tr
 ivial one\, relies on common libraries to perform routine work. Your sof
 tware may be bastion of security\, exhaustively tested and evaluated\, b
 ut once a vulnerability is discovered in a library you depend on\, all b
 ets are off.  These large and pervasive vulnerabilities quickly become p
 opular targets\, exploited by everybody from script kiddies\, to profess
 ional hackers\, to state actors. It is no surprise that the use of vulne
 rable libraries is included in the OWASP Top 10 list. The Australian Sig
 nals Directorate (ASD) lists patching operating systems and applications
  as two of their top four strategies to mitigate security incidents!&#13
 \;\n&#13\;\nDuring a recent hacking game\, we've identified and exploite
 d a vulnerability not anticipated by the developers. One little crack in
  a widely used library gave us the footing we needed to construct an att
 ack chain of remote code execution\, file upload\, data exfil\, source c
 ode disassembly\, and branching into a private network\, all despite ext
 remely high level of hardening on the target from unintended attacks. We
 'll share with you how a safe and fun library exploitation can be in the
  confines of a hacking game\, and how there are serious implications for
  your corporate applications where the stakes are much higher.&#13\;\n&#
 13\;\nSpeakers:&#13\;\n&#13\;\nAlexei Kojenov is a Senior Application Se
 curity Engineer with years of prior software development experience. Dur
 ing his career with IBM\, he gradually moved from writing code to breaki
 ng code. Since late 2016\, Alexei has been working as a consultant at As
 pect Security\, helping businesses identify and fix vulnerabilities and 
 design secure applications.&#13\;\n&#13\;\nAlex Ivkin is a senior securi
 ty architect with experience in a broad array of computer security domai
 ns\, focusing on Identity and Access Governance (IAG/IAM)\, Application 
 Security\, Security Information and Event management (SIEM)\, Governance
 \, Risk and Compliance (GRC). &#13\;\nThroughout his consulting career A
 lex has worked with large and small organizations to help drive security
  initiatives and deploy various types of enterprise-class identity manag
 ement and application security systems. Alex is an established and recog
 nized security expert\, a speaker at various industry conferences\, hold
 s numerous security certifications\, including CISSP and CISM\, two bach
 elor’s degrees and a master’s degree in computer science with a minor in
  psychology.&#13\;\n\n\nTags: owasp\, security\n\nImported from: http://
 calagator.org/events/1250471956
URL:https://www.owasp.org/index.php/Portland
SUMMARY:OWASP: Cheating a Hacking Game for Fun and Profit
LOCATION:WebMD: 2701 Northwest Vaughn Street\, Portland OR 97210 US
SEQUENCE:1
END:VEVENT
BEGIN:VEVENT
CREATED;VALUE=DATE-TIME:20180528T153946Z
DTEND;TZID=America/Los_Angeles;VALUE=DATE-TIME:20180618T200000
DTSTART;TZID=America/Los_Angeles;VALUE=DATE-TIME:20180618T180000
DTSTAMP;VALUE=DATE-TIME:20180528T153946Z
LAST-MODIFIED;VALUE=DATE-TIME:20180612T204643Z
UID:http://calagator.org/events/1250473819
DESCRIPTION:Machine Learning vs Cryptocoin Miners  &#13\;\nDescription:&#
 13\;\nWith the advent of cryptocurrencies as a prevalent economic entity
 \, attackers have begun turning compromised boxes and environments into 
 cash via cryptocoin mining. This has given rise for the opportunity to d
 etect compromised environments by analyzing network traffic logs for evi
 dence of cryptocoin miners. Specifically\, I'll be reviewing various ML 
 and statistical analysis techniques leveraged against VPC Flow Logs. Thi
 s talk will not be a deep dive of the math involved but instead a genera
 l discussion of these techniques and why I chose them.&#13\;\nSpeaker's 
 Bio:&#13\;\nJonn Callahan is a principal appsec consultant at nVisium. J
 onn was previously heavily involved in the OWASP DC and NoVA chapters. H
 e has been working in appsec for half a decade now\, initially within th
 e DoD and now commercially with many high-visibility companies. Recently
 \, Jonn has been digging into ML to find ways to bridge it and the secur
 ity industry in an intelligent and usable fashion.&#13\;\n&#13\;\n\n\nTa
 gs: cryptocurrency\, machine learning\, security\, owasp\n\nImported fro
 m: http://calagator.org/events/1250473819
URL:http://www.owasp.org
SUMMARY:OWASP Portland Chapter Meeting - Machine Learning vs Cryptocoin M
 iners
LOCATION:WebMD: 2701 Northwest Vaughn Street\, Portland OR 97210 US
SEQUENCE:5
END:VEVENT
BEGIN:VEVENT
CREATED;VALUE=DATE-TIME:20230425T195233Z
DTEND;TZID=America/Los_Angeles;VALUE=DATE-TIME:20230525T190000
DTSTART;TZID=America/Los_Angeles;VALUE=DATE-TIME:20230525T173000
DTSTAMP;VALUE=DATE-TIME:20230425T195233Z
LAST-MODIFIED;VALUE=DATE-TIME:20230425T195614Z
UID:http://calagator.org/events/1250480490
DESCRIPTION: ***Registration is required to attend this event. Please reg
 ister at: https://www.eventbrite.com/e/pdxwit-present-fill-your-cup-grac
 e-community-at-pdxwit-tickets-622884663797*** &#13\;\n&#13\;\nIn support
  of Mental Health Awareness Month\, Lori Eberly\, LCSW is curating a pan
 el to explore: &#13\;\n&#13\;\n* How arts and creativity support our men
 tal health&#13\;\n* The importance of building and maintaining boundarie
 s&#13\;\n* Simple tools to regulate our nervous system&#13\;\n* Ways to 
 cultivate Grace &amp\; Community&#13\;\n&#13\;\nOur conversation is root
 ed in the complexities of our time\, acknowledging how collective trauma
 \, oppressive systems\, COVID grief\, and layoffs threaten our wellbeing
 .&#13\;\n&#13\;\nAgenda:&#13\;\n&#13\;\n* 5:00pm	Doors Open &#13\;\n* 5:
 30pm	Welcome\, Announcements\, Introductions&#13\;\n* 5:45pm	Panel Begin
 s&#13\;\n* 6:30pm	Networking&#13\;\n* 7:00pm	Event Ends&#13\;\n&#13\;\n&
 #13\;\n&#13\;\nPDXWIT is building a better tech industry by creating acc
 ess\, dismantling inequities and fueling belonging. Our events are inclu
 sive. ALL people who support our purpose are welcome.&#13\;\n&#13\;\n&#1
 3\;\nCOVID Safety FAQ:&#13\;\n&#13\;\nQ: Will masks be required in indoo
 r spaces? Will masks be required outside? Will hand sanitizer be provide
 d and plentiful?&#13\;\nA: Masks are strongly encouraged and our host wi
 ll provide hand sanitizer. We will ask all attendees to show proof of va
 ccination OR have a negative COVID test within 48 hours of the event. If
  you are not feeling well\, we encourage you to stay at home. &#13\;\n&#
 13\;\nEvent FAQ&#13\;\n&#13\;\nQ: What is the in-person event capacity? 
  A: 130&#13\;\n&#13\;\n&#13\;\nQ: Will there be gender neutral restrooms
 ?  A: Yes&#13\;\n&#13\;\n&#13\;\nQ: Is the space ADA accessible?  A: Yes
 &#13\;\n&#13\;\n&#13\;\nQ: Will there be food and drink at this event?  
 A: Yes.&#13\;\n&#13\;\n&#13\;\nQ: What is the parking situation?&#13\;\n
 &#13\;\nA: There is free 2-hour parking located in the Montgomery Park p
 arking lot. &#13\;\n&#13\;\n&#13\;\nQ: Is there any special information 
 that might help me find the entrance?&#13\;\n&#13\;\nA: The event will b
 e located at WebMD Health Services located in the Montgomery Park buildi
 ng on the 7th floor. Attendees will need to take the elevators in the mi
 ddle of the lobby to the 7th floor. Attendees will be asked to check-in 
 with PDXWIT for their name tag and sign-in with WebMD in order to receiv
 e a guest badge. Guest badges must be returned upon exit.  &#13\;\n&#13\
 ;\n&#13\;\nQ: Is there secured bike parking?&#13\;\n&#13\;\nA: Yes. Ther
 e is an indoor bike rack on the North side of the building and there are
  bike racks outside the front entrance. &#13\;\n&#13\;\n&#13\;\nQ: Shoul
 d I consider using public transportation?&#13\;\n&#13\;\nA: Public trans
 portation is available via TriMet bus. Please use the TriMet Trip Planne
 r if you plan to use public transportation. &#13\;\n&#13\;\n&#13\;\nQ: C
 an I bring my dog?&#13\;\nA: Sadly\, no.&#13\;\n&#13\;\n&#13\;\nQ: Are t
 he exits clearly marked? &#13\;\nA: Yes. \n\nTags: #technology\, #commun
 ity\, #openforum\, #women\, #empowerment\, #networking\, #womenintech\n\
 nImported from: http://calagator.org/events/1250480490
URL:http://pdxwit.org/events
SUMMARY:PDXWIT Present:  Fill Your Cup: Grace & Community at PDXWIT 
LOCATION:WebMD: 2701 Northwest Vaughn Street\, Portland OR 97210 US
SEQUENCE:4
END:VEVENT
END:VCALENDAR
