DEF CON 27 Packet Hacking Village - Russell Butturini - Phishing Freakonomics

6NuaZjO-VVs/default.jpg

This presentation is the story of the success and failures of building a security awareness program at a Top 20 CPA firm, and finding "the hidden side" of why users fail phishing exercises (both simulated and not!). The presentation will cover how Elasticsearch was used to correlate awareness training, phishing test, and HR data together, examine real results from this work, and the improvements that were made to improve user awareness and reduce phishing related security incidents.

Russell Butturini (Twitter: @tcstoolhax0r) is head of information security for a top 20 CPA and financial services firm. He has authored tools for both red and blue teams with his C- and Python coding skills. His most popular tool, NoSQLMap, was featured in the Hacker Playbook 2.

6NuaZjO-VVs/default.jpg
DEF CON 27 Packet Hacking Village - Russell Butturini - Phishing Freakonomics DEF CON 27 Packet Hacking Village - Russell Butturini - Phishing Freakonomics Reviewed by Anonymous on November 21, 2019 Rating: 5