Loading…
April 16-18, 2024
Seattle, Washington
View More Details & Registration
Note: The schedule is subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit North America 2024 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Pacific Daylight Time (UTC/GMT -8). To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date."

IMPORTANT NOTE: Timing of sessions and room locations are subject to change.

Wednesday, April 17 • 2:00pm - 2:40pm
Network Intrusion Detection 101 with OpenWrt and OpenCanary - Tamas Lengyel, Intel

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.


Our homes are now littered with devices that have questionable security practices and are controlled by the cloud: smart TVs, doorbells, LED lights, garage doors, even toys! These cloud-controlled devices provide direct access to our network and if we want to use them, we don't have much choice but to treat them as trusted. What if they can't be trusted? How would we know? Tinkering with firewall rules and packet sniffing is way too much effort. But there is a solution! What would an attacker do once they are on the LAN? They would explore and try to break into other systems! So, let's use this to our advantage. By deploying fake systems that are tempting targets for an attacker to access we can get an early warning when someone is poking around on our network! In this presentation we'll learn how to deploy such a network intrusion detection system on our home networks with the open-source router OS OpenWrt and the open-source honeypot system OpenCanary. With a modern router, or even just a Raspberry Pi, we can deploy sophisticated network honeypots that appear on the network as juicy targets and trip up an attacker before they can burrow their way through our network.

Speakers
avatar for Tamas Lengyel

Tamas Lengyel

Sr Security Researcher, Intel
Tamas is maintainer of several open-source projects, including the Xen hypervisor, DRAKVUF and LibVMI.



Wednesday April 17, 2024 2:00pm - 2:40pm PDT
435-436 (Level 4)
  Open Source 101
  • Content Experience Level Beginner
  • Session Slides Attached Yes