How to sink the ducky and other tricks

Presented at Diana Initiative 2020 Virtual, Aug. 21, 2020, 2 p.m. (60 minutes)

Unified logs contain a wealth of information that can be used to detect malicious USB devices like rubber ducky and bash bunny. Unified logs can also help find lateral movement and other malicious activity . . . once you know where to look. This presentation will cover some tips for detection using unified logs, and some gotchas for searching unified logs.


Presenters:

  • Megan Carney - Target
    Megan Carney has been an analyst/bad news giver in several different environments over the past ten years or so. She spends most of her time searching for all the places badness might hide. Can often be found staring into the abyss. It's true the abyss stares back.

Links: