Next Generation Red Teaming - Robert Wood
488 views · Published 3 February 2014 · 46:05 · Indexed 29 September 2026
Channel: OWASP Foundation · 2014 · Science & Technology
Too often organizations conduct assessments within a vacuum: physical, network, social, or application-layer. Attackers do not confine themselves similarly and avail themselves of whatever combination of techniques most effectively achieves their desired impact. Red team assessments aim to simulate these attacks more realistically and identify risk through composite, cross-domain attack vectors. This talk will cover several shortcomings with the current "model" of red teaming across the industry and how we can more effectively incorporate the application-specific attack surface into a red team effort. War stories will be shared to show the effectiveness of application-centric composite attacks in this new approach. - Managed by the official OWASP Media Project https://www.owasp.org/index.php/OWASP_Media_Project
More from this channel
-
35:56
HTML5 JS Security - maty siman
-
17:39
detecting and defending against state actor surveillance: robert r
-
50:12
OWASP Global Webinar - OWASP HIVE Project - Welcome to the Grid
-
50:42
OWASP Global Webinar - Initiatives OWASP Projects
-
42:16
Alvaro Muoz - Automatic Detection of Inadequate Authorization Checks in Web Applications
-
40:10
Tin Zaw Scott Matsumoto - Threat Modeling A Brief History and the Unified Approach at Intuit
-
2:26:27
OWASP AppSecUSA 2014 - Breakers Track - Friday
-
53:26
OWASP AppSecUSA 2014 - Keynote: OWASP Global Board