{"id":4159,"date":"2018-01-22T13:57:27","date_gmt":"2018-01-22T11:57:27","guid":{"rendered":"http:\/\/www.laurentmarot.fr\/wordpress\/?p=4159"},"modified":"2018-01-22T14:37:32","modified_gmt":"2018-01-22T12:37:32","slug":"coriin-2018","status":"publish","type":"post","link":"https:\/\/www.laurentmarot.fr\/wordpress\/?p=4159","title":{"rendered":"CORiIn 2018"},"content":{"rendered":"<p>09h30 \u2013 10h30 \u2013 Accueil \u2013 Caf\u00e9<\/p>\n<p>10h30 \u2013 10h50 \u2013 Introduction, \u00c9ric Freyssinet<\/p>\n<p>250 pax cette ann\u00e9e. amphi complet, changement d&rsquo;ami l&rsquo;an prochain<\/p>\n<p>Environ 1\/3 de r\u00e9sents ne vont pas au FIC, environ 10% son des locaux<\/p>\n<p>10h50 \u2013 11h30 \u2013 L\u2019investigation num\u00e9rique saisie par le droit des donn\u00e9es personnelles, Eve Matringe<\/p>\n<p>Premi\u00e8re intervention par <a class=\"twitter-atreply pretty-link js-nav\" dir=\"ltr\" href=\"https:\/\/twitter.com\/evematringe\" data-mentioned-user-id=\"79685418\"><s>@<\/s><b>evematringe<\/b><\/a> pour des regards crois\u00e9s loi\/judiciaire et technique<\/p>\n<p>RGPD : <i>\u00ab\u00a0R\u00e8glement n\u00b02016\/679 du Parlement Europ\u00e9en et du Conseil du 27 avril 2016 relatif \u00e0 la protection des personnes physiques \u00e0 l\u2019\u00e9gard du traitement des donn\u00e9es \u00e0 caract\u00e8re personnel et \u00e0 la libre circulation de ces donn\u00e9es\u00a0\u00bb<\/i><\/p>\n<p>+ <a href=\"http:\/\/eur-lex.europa.eu\/legal-content\/FR\/TXT\/?uri=CELEX%3A32016L0680\">Directive 2016\/680<\/a> :\u00a0<strong>Directive (UE) 2016\/680 du Parlement europ\u00e9en et du Conseil du 27 avril 2016 relative \u00e0 la protection des personnes physiques \u00e0 l&rsquo;\u00e9gard du traitement des donn\u00e9es \u00e0 caract\u00e8re personnel par les autorit\u00e9s comp\u00e9tentes \u00e0 des fins de pr\u00e9vention et de d\u00e9tection des infractions p\u00e9nales, d&rsquo;enqu\u00eates et de poursuites en la mati\u00e8re ou d&rsquo;ex\u00e9cution de sanctions p\u00e9nales, et \u00e0 la libre circulation de ces donn\u00e9es, et abrogeant la d\u00e9cision-cadre 2008\/977\/JAI du Conseil<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>11h30 \u2013 12h10 \u2013 Full packet capture for the masses, Xavier Mertens &#8211; <a href=\"https:\/\/twitter.com\/xme\">@XMe<\/a><\/p>\n<p>Moloch = Full Packet Capture Framework : https:\/\/github.com\/aol\/moloch<\/p>\n<p>les sondes (sensors) sont install\u00e9es sur les serveurs dans un docker et envoient leur capture via cron over ssh<\/p>\n<p>#balancetonpcap<\/p>\n<p>12h10 \u2013 12h50 \u2013 Analyse des jobs BITS, Morgane Celton et Morgan Delahaye (ANSSI)<\/p>\n<p>https:\/\/github.com\/ANSSI-FR\/bits_parser (bient\u00f4t)<\/p>\n<p>12h50 \u2013 14h00 \u2013 Pause d\u00e9jeuner<\/p>\n<p>14h00 \u2013 14h40 \u2013 CCleaner, Paul Rascagn\u00e8res<\/p>\n<p>14h40 \u2013 15h20 \u2013 Retour d\u2019exp\u00e9rience \u2013 Wannacry &amp; NotPetya, Quentin Perceval et Vincent Nguyen (CERT-W)<\/p>\n<p>15h20 \u2013 16h00 \u2013 Pause Caf\u00e9<\/p>\n<p>16h00 \u2013 16h40 \u2013 Comment ne pas communiquer en temps de crise : une perspective utile pour la gestion d\u2019incident cybers\u00e9curit\u00e9, Rayna Stamboliyska<\/p>\n<p>16h40 \u2013 17h20 \u2013 Wannacry, NotPetya, Bad Rabbit: De l\u2019autre cot\u00e9 du miroir, S\u00e9bastien Larinier<\/p>\n<p>17h20 \u2013 18h00 \u2013 Forensic Analysis in IoT, Fran\u00e7ois Bouchaud<\/p>\n<p>18h00 \u2013 Mot de cl\u00f4ture<\/p>\n\n","protected":false},"excerpt":{"rendered":"<p>09h30 \u2013 10h30 \u2013 Accueil \u2013 Caf\u00e9 10h30 \u2013 10h50 \u2013 Introduction, \u00c9ric Freyssinet 250 pax cette ann\u00e9e. amphi complet, changement d&rsquo;ami l&rsquo;an prochain Environ 1\/3 de r\u00e9sents ne vont pas au FIC, environ 10% son des locaux 10h50 \u2013 11h30 \u2013 L\u2019investigation num\u00e9rique saisie par le droit des donn\u00e9es personnelles, Eve Matringe Premi\u00e8re intervention [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[],"_links":{"self":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts\/4159"}],"collection":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=4159"}],"version-history":[{"count":5,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts\/4159\/revisions"}],"predecessor-version":[{"id":4164,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts\/4159\/revisions\/4164"}],"wp:attachment":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=4159"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=4159"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=4159"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}