mlns='http://www.w3.org/1999/xhtml'>

 
Black Hat Webcasts | Register Now
PLEASE JOIN US FOR THE NEXT INSTALLMENT IN THE BLACK HAT WEBCAST SERIES
Don’t Let Your Mainframe Passwords be the Weakest Link in Your Enterprise
Thursday, June 20, 2019
11:00AM - 12:00PM PDT  //  60 MINUTES, INCLUDING Q&A
  Sponsored By:
Carbon Black
Most massive financial institutions rely on the IBM Mainframe platform for their day-to-day business. Without this critical platform, those businesses would cease to function. At the heart of securing any system, no less the venerable IBM mainframe, are the authentication methods used to verify users. We will examine the various password storage options for IBM’s RACF (Resource Access Control Facility) as implemented in z/OS.

Could a breach of your mainframe lead to a breach of the rest of your network? If you synchronize passwords and use one of the legacy algorithms for RACF, the answer may be: yes!

Depending on how your z/OS system is configured, the passwords may be stored using algorithms ranging from what basically amounts to cleartext, all the way up to world-class password encryption. Did you know the mainframe supports long passphrases, Multi-Factor Authentication and can also generate passtickets? If your enterprise uses RACF to secure its mainframe, you should register.

This talk is geared for technical decision makers, mainframe security personnel that want to learn more, or anyone with an interest in how z/OS stores its passwords / passtickets. You will learn how RACF stores its password information; the different types of password storage algorithms — with weaknesses / strengths in each - and also how to implement passtickets properly to avoid compromise.
 
Webcast Presenters
Chad Rikansrud - Guest Presenter
Chad Rikansrud is the Director of North American Operations for RSM Partners - a world leader in IBM mainframe security consulting services. Most of Chad's 20-year career has been in technology leadership for the financial services industry.
David Balcar - Sponsor Presenter
David Balcar, Security Strategist at Carbon Black, has over 18 years' experience in conducting Security Research, Network Penetration testing, Incident Response and Computer Forensics. David is a regular presenter on subjects including security trends, penetration testing, top threats and network security hardening.
 

Upcoming Black Hat Events

 
BLACK HAT USA 2019
August 3-8, 2019 | Mandalay Bay, Las Vegas
 
BLACK HAT EUROPE 2019
December 2-5, 2019 | Excel London, United Kingdom