UTCS Colloquia/FoCS: "Web Application Security: Seek, Destroy, Repair", David Collins & Patrick Pelanne/HostGator, February 23, 2011

Feb 23, 2011 5:00pm - 6:00pm

Type of Talk: UTCS Colloquia/FoCS


Affiliation: David Collins & Patrick Pelanne/HostGator CTO and DCTO

Date/Time: Wednesday, Feb 23, 2011 5 pm

Location: ACES 2.302

Host: FoCS

Talk Title: Web Application Security: Seek, Destroy, Repair
Repair Talk

Abstract: Hacking and Pizza! A HostGator Demo! The art

of exploitation against modern LAMP based web applications has expanded and
evolved for the past 10 years. It''s up to the system administrators and I

T professionals, both current and future, to protect their infrastructure
against these threats. In this talk we will demonstrate both sides of the

equation by showing a live web application scan, compromise and subsequent
cleanup procedure. We will demonstrate some common methods in which hacker

s frequently compromise websites and use them for their own profit. Finally
we will exhibit the cleanup process system administrators employ to return
a server back to normal operating conditions following a catastrophic root

Speaker Bio: David Collins and Patrick Pelanne are the

CTO and DCTO respectively for HostGator.com. They are personally responsibl

e for the administration of over 10,000 unix servers (primarily CentOS) ho

using over five million websites.