Public Talks & Presentations

Conference presentations, summits, and community talks on Active Directory security, incident response, and threat hunting.

BSides Canberra 2025

Modern Identity Providers Under Attack: Tactics, Techniques, and Mitigations

September 26, 2025
BSides Ballarat 2025

How Attackers keep Outsmarting Defenders - Wisdom from the Trenches

May 03, 2025
BSides Canberra 2024

The Rise and Rise of Advanced eCrime Threat: Incident Response Edition

September 28, 2024
SANS Community Talk

Storm in the Mailbox - 46 Hypotheses and an Unresolved Mystery

May 09, 2024
SANS Community Talk

Active Directory - Kerberos Attacks

February 17, 2024
Materials coming soon
SANS DFIR Summit 2023

Defending and Investigating Hypervisors

August 03, 2023

Co-presented with @Th1rum

SANS Talk

Battling Ransomware

May 22, 2023
RSA Conference Podcast

Ransomware Operators Can Circle Defenses: Proactive Defense Strategies

November 23, 2022

Co-presented with @Th1rum

SANS Blue Team Summit 2022

Responding to Advanced Attackers

October 04, 2022
SANS DFIR Summit 2022

Threat Hunting in Microsoft 365 Environment

August 15, 2022

Co-presented with @Th1rum

VB2021 Localhost

Who owns your hybrid Active Directory? Hunting for adversary techniques!

October 08, 2021

Co-presented with @Th1rum

SANS Threat Hunting Summit & Training 2021

Hunting backdoors in Active Directory Environment

October 07, 2021

Co-presented with @Th1rum

BSides Singapore 2021

Attacking and Defending Hybrid Active Directory Environments

September 24, 2021

Co-presented with @Th1rum

SANS Blue Team Summit 2021

Battling Ransomware - Ransomware Preparation, Containment and Recovery Strategies

September 09, 2021
Blackhat Asia 2021

Threat Hunting in Active Directory Environment

May 06, 2021

Co-presented with @Th1rum

SANS @MIC Talk

$find_evil - Part II Threat hunting for "Lateral movement"

May 20, 2020
SANS @MIC Talk

$find_evil - Threat Hunting

August 19, 2020
SANS Evening Talk

Responding to Incidents

2018