Threats - Inside & Out

 

Education Level: Intermediate

4313 - Building a Web Testing Environment Using a PI Zero

Monday, September 25
3:15 PM - 4:15 PM

When learning how to assess web applications and services, it is challenging to have an environment that contains the needed tools as well as applications with known vulnerabilities that won't impact normal operations or require a lot of overhead to create. We will explain how we created a low-cost environment on a Raspberry PI Zero that includes the following:

  • Known vulnerable web applications
  • Many common assessment tools and services
  • GUI and command line access
  • Connection to the host via USB rather than over the corporate network
  • The ability to completely or partially reset the environment easily.

    Prepared by LLNL under Contract DE-AC52-07NA27344.
    LLNL-ABS-720001

    Learning Objectives:

    • Follow our model to create a self-contained web testing environment with command line and GUI.
    • Leverage provided known vulnerable environments to learn about testing their environment.
    • Leverage the created environment to learn how to operate assessment tools.
  • Lee Neely

    Senior Cyber Analyst
    Lawrence Livermore National Laboratory

    Lee Neely is a senior IT and security professional at Lawrence Livermore National Laboratory (LLNL) with more than 25 years of experience. He has been involved in many aspects of IT, from system integration and quality testing to system and security architecture, since 1986. He has had extensive experience with a wide variety of technology and applications from point implementations to enterprise solutions. He teaches cybersecurity courses, including new manager cybersecurity training and information system security officer training. Lee has a B.S. in computer science from California State University Hayward and holds several security certifications including GMOB, GPEN, GWAPT, GAWN, CISSP, CISA, CISM and CRISC. He is also the technology director for the (ISC)2 East Bay Chapter.

    Presentation(s):

    Send Email for Lee Neely

    Chelle Clements

    Web Mistress
    OMP

    Chelle Clements has been associated with computer science and cybersecurity for more than 20 years. She has an A.A.S. in environmental science from Northern Virginia Community College, and a B.S. and M.S. in information systems management from the University of San Francisco. She is an Army veteran, one of the first women in the Corps of Engineers (she has some great stories!). She spent 30 years at Lawrence Livermore Naional Lab as a researcher in three different fields (chemistry, physics and computer science) and also as a community outreach volunteer. She currently supports several veteran causes with pro bono web development (such as East Bay Stand Down) and serves on her city’s art commission.

    Presentation(s):

    Send Email for Chelle Clements


    Assets

    4313 - Building a Web Testing Environment Using a PI Zero

    MP3 Audio Slides Video

    Attendees who have favorited this

    Please enter your access key

    The asset you are trying to access is locked. Please enter your access key to unlock.

    Send Email for Building a Web Testing Environment Using a PI Zero