News Events

Will Vandevanter Spoke at BSides Las Vegas on Aug 6

Will Vandevanter spoke BSides Las Vegas. This event was held at the Tuscany Suites & Casino on Aug 6-7.

Will Vandevanter presented at BSides Las Vegas 2024! The event this year was held at the Tuscany Suites & Casino in Las Vegas. Will presented "WHOIS the boss? Building Your Own WHOIS Dataset for Reconnaissance". His presentation will be in the Ground Floor room (Florentine E) on Tuesday, August 6 at 3:30 PM PDT.

Abstract

When it comes to OSINT and penetration testing, WHOIS data is among the prime resources for uncovering and examining apex domains. Unfortunately that data is typically locked up behind rate limited systems, third party APIs, and expensive bulk purchases. In this 20 minute technical presentation we give our experience building a 15MM+ WHOIS dataset for recon, setting up notifications on newly acquired domains by companies, the intricacies of WHOIS and RDAP, and hunting for archival WHOIS data. Finally, we will cover open source tools that currently fill in the gaps of this process.

About Will Vandevanter, Senior Staff Security Researcher - Sprocket Security

With 14 years of experience in penetration testing, Will Vandevanter keeps coming back to his original obsession — hacking web apps. He has previously spoken at Blackhat, DEFCON, OWASP and a number of other conferences on web application security. He has also released popular open source tools and trained hundreds through in-person and online courses.

About BSides Las Vegas

https://bsideslv.org/




Media Contact

Marketing, Sprocket Security
marketing@sprocketsecurity.com

Continuous Human & Automated Security

The Expert-Driven Offensive
Security Platform

Continuously monitor your attack surface with advanced change detection. Upon change, testers and systems perform security testing. You are alerted and assisted in remediation efforts all contained in a single security application, the Sprocket Platform.

Watch Demo Request Quote

Expert-Driven Offensive Security Platform

  • Attack Surface Management
  • Continuous Penetration Testing
  • Adversary Simulations