Tag: video

RVAsec 14 Video: Travis Altman – Running a proper Purple Team

RVAsec 2025 Video: Travis Altman
Cybersecurity Leader

Title: Running a proper Purple Team
Some folks within cybersecurity have probably heard the concept of purple teaming but what is it like to actually execute or leverage this type of service? What value does it provide? Where should it exist within the organization? What other challenges might you face when performing purple teaming?

This talk will dive into details on how to go from the concept or infancy of purple teaming to executing at a higher level of maturity and everything in between. I’ll walk thru specific examples of purple team exercises then debrief outcomes and values of those engagements. I’ll also walk thru variations of purple teaming (e.g., simulation vs emulation) and describe when a certain variation might be appropriate and when. Last but not least I’ll explain how to perform purple teaming in various environments (e.g., endpoint, cloud, network) and considerations for operating in those conditions.


RVAsec 14 Video: Stacy Aitken – The Importance of an Incident Response Plan

RVAsec 2025 Video: Stacy Aitken
Security Program Manager – Dragnet

Title: The Importance of an Incident Response Plan
An incident response plan (IRP) is a necessity. It can reduce damage, improve recovery time, reduce costs, comply with regulation, preserve evidence, and improve preparedness.


RVAsec 14 Video: Bruce Potter – Keynote

RVAsec 2025 Video: Bruce Potter
CEO and Founder – Turngate

Title: Keynote
Bio: Bruce Potter has been doing cybersecurity for 30 years, which makes him kind of old. Bruce is currently the CEO and founder of Turngate, a SaaS audit log analysis company. Prior to that Bruce served as CISO at several companies including Clear Street, Expel, and the KeyW Corporation.

Bruce is the founder of The Shmoo Group and assisted with running ShmooCon, a cybersecurity conference that ran for the last 20 years in Washington DC. Bruce has done DARPA research, led red teams, broken large networks (in good and bad ways), and even helped bring Internet service to remote parts of Alaska in the mid-90’s.


RVAsec 14 Video: Mike Bailey – Attacking & Defending ServiceNow: A Hands-on Lab for Red & Blue Teams

RVAsec 2025 Video: Mike Bailey
– Rotas Security

Title: Attacking & Defending ServiceNow: A Hands-on Lab for Red & Blue Teams
ServiceNow is a critical enterprise platform, often integrated with sensitive systems and privileged access. This talk explores how attackers can exploit misconfigurations and privilege escalation paths within ServiceNow to gain a foothold in an environment. We’ll walk through real-world attack techniques, from initial access to lateral movement, and demonstrate how defenders can detect and mitigate these threats.

In addition to offensive tradecraft, we’ll cover how to set up a dedicated lab to safely test these attack vectors, fine-tune detections, and improve defensive strategies. Whether you’re a red teamer looking to sharpen your tactics or a blue teamer aiming to strengthen your defenses, this talk will provide actionable insights and practical steps for securing ServiceNow.


RVAsec 2019 Videos

We’re pleased to announce the immediate availability of the RVAsec 2019 videos!

Click through to watch all presentations on YouTube, and all the slides are now available as well!

 


RVAsec 2017 Videos: Alon Arvatz and Jason Ross

Alon Arvatz
OSINT: The Secret Weapon in Hunting Nation-State Campaigns (Slides)

 

 

Jason Ross
DevOpSec – Killing the Buzz (Slides)


RVAsec 2017 Videos: Barry Kouns and Seth Hanford

Barry Kouns
Can Game Theory Save Us from Cyber Armageddon? (Slides)

 

 

Seth Hanford
Defend the Defenders: Managing and Participating in Excellent Teams (Slides)


RVAsec 2017 Videos: Jay Wonn and Robert Mitchell

Jay Wonn
TIP of the Spear: A Threat Intelligence Platform Acquisition (Slides)

 

Robert Mitchell
Recent Developments in Linkography Based Cyber Security (Slides)


RVAsec 2017 Videos: Daniel Bohannon and Ken Johnson

Daniel Bohannon
Invoke-CradleCrafter: Moar PowerShell obFUsk8tion & Detection (@(‘Tech’,’niques’) -Join ”) (Slides)

 

 

Ken Johnson
AWS Survival Guide 2.0 (Slides)


RVAsec 2017 Videos: Roman Bohuk/Jake Smith and Jeremy Dorrough

Roman Bohuk & Jake Smith
Think of the Children: Preparing the Next Generation of Security Specialists (Slides)

 

 

Jeremy Dorrough
Zero Trust “Lite” Architecture to Securely Future-Proof Your Network (Slides)