Agenda -c0c0n @16October 4-7, 2023
Grand Hyatt, Kochi, India
Day 3 - ( 06 Oct, 2023 )
Management, GRC, Policy, Strategy, Legal
Technology | Innovation | Research
Activity Villages and Capture the Flag Competitions
inauguration Ceremony & Keynote
Subduing Adversaries with Information Superiority
Lt. Cdr. Antony KM (Retd.)
Vice President (Internal Audits - Cyber Security)
NAB Innovation Centre
Lt Commander Antony KM is a senior Auditor in NAB India looking after cyber security and payments technology Internal Audit. He has over 15 years of varied experience both from corporate and military in Information Security and Cyber Warfare. He is vertically specialized in Cyber Security domains having hands-on experience in Offensive Cyber Operations. He worked as a Director for Cyber Risk Advisory business in PWC India, looking after the Threat and Vulnerability Management portfolio. He has experience in consulting multiple high domestic and international clients in areas like Red Team Operations, Purple Teaming, Vulnerability Assessment & Penetration Testing, and security compliance audits. He has advised CIOs, CISOs, and different stakeholders of many leading IT and non IT corporates on Design, Implementation, and Governance of critical information & cyber assets. Prior to this role, as a Senior Manager of General Electric, Antony has headed the Identity Access Management Operations of India.
He served for over a decade in the Indian Navy, he was a Naval Information Warfare (IW) Expert involved in securing complete spectrum of information and cyber assets of the Navy. He is an almanac of the prestigious Indian Naval academy and specialized in Advanced Information Warfare from the meritorious Signal School of Indian Navy situated in Southern Naval Command, Kochi. He held many operational, technical, managerial and leadership positions covering a wide array of Information and Cyber Operations. He has been part of the erstwhile IW Cell (presently called as the Navy Cyber Group). He has been instrumental in many deterrence operations, red team assessment, and external audits in the Navy.
Jaydev Joshi is currently working as Cyber Threat Researcher at ForƟnet. He specialises in HUMINT and Dark Web Analysis, along with a keen interest in the research of APT groups and their dynamics. He had the honour of being a Senior member at the NaƟonal Cadet Corps (NCC - Army Wing) and has volunteered and judged mulƟple CTFs. He is also an operaƟonal member of the Hackers Meet-up and Null Pune Chapter.
Sr. Cyber Threat Analyst
Simran Kothari is working as Senior Cyber Threat Analyst at ForƟnet. She has a deep passion for understanding and navigaƟng the complex world of geo-poliƟcal issues. With extensive experience and experƟse in this field, she has had the privilege of collaboraƟng with esteemed organizaƟons such as the Ministry of Cultural Affairs, the Ministry of External Affairs (MEA), and the Embassy of Afghanistan. Notably, she contributed significantly to the implementaƟon of their 'Neighbourhood First Policy', which aims to foster stronger relaƟonships and promote cooperaƟon among neighbouring naƟons.
Securing the Future: Addressing Cybersecurity Challenges in the Age of 5G
Dr. Altaf Shaik
Senior Security Researcher
Technische Universität Berlin
Dr. Altaf Shaik is a senior research scientist at the Technische Universität Berlin in Germany, and conducts advanced research in telecommunications esp., in 6G security architecture, OpenRAN, and 5G radio access and core network security. He holds more than 11 years of experience in Telecom security and combines a professional background in embedded programming, wireless communications, and offensive network security. Dr. Shaik spent his career as a security engineer and expert at various leading telecommunication companies including Gemalto (currently Thales), Deutsche Telekom (Germany), and Huawei Technologies (Sweden).
His PhD research assisted in improving the 3GPP 4G security standards and also exposed several vulnerabilities in commercial mobile networks affecting millions of base stations, networks, and handsets worldwide.
His post-doctoral research exposed vulnerable API designs in latest 5G networks and slicing vulnerabilities in the 5G security specifications leading to serious attacks.
Dr. Shaik is a frequent speaker at various prestigious international security conferences such as Blackhat USA & Europe, T2, SECT, Nullcon, Hardware.io and HITB, and many others. His accomplishments landed him in the hall of fame of organizations like Google, Qualcomm, Huawei, and GSMA. He is also the founder of Kaitiaki labs and FastIoT that trains internationally various companies and governmental organizations in exploit development and also building secure mobile and IoT networks including their testing and security assessment.
[PANEL DISCUSSION] ELITE CISO
Moderator : Nisheeth Dixit
- Pursuing Ph.D. (Part Time -Final stage), IIT Delhi
- MSc. -Cyber Forensics and Information Security
- LL.M - Cyber Law & Cyber Crime
- LL. B
- BSc. -(Hon’s)
- Certificate-Artificial Intelligence and Rule of Law -UNESCO
- Certificate in Legal Regulation of ICTs-IIT Kharagpur
- Certificate –Ethical Hacking and Cyber Security-IIT Roorkee
- Certificate-Criminal Justice Data Analysis-IIT Kanpur
- Certificate in Cyber Law, Cyber Forensics-National Law School of
- India University (NLSIU), Bengaluru
- Certificate in Cyber Law-Indian Law Institute (ILI), New Delhi
- Practicing as an Advocate since 2001 and also taking sessions at various Judicial, Police Academies, Universities and Educational Institutes.
- Specialized in Cyber Laws & Cyber Crimes, handling matters mainly related to Information Technology, Telecom, Corporate Law, Infrastructure and Real Estate, Banking frauds, Electricity Laws, Media and Advertising Laws, Intellectual Property Rights, Money Laundering and others.
- Professional Membership
- Supreme Court Bar Association, New Delhi 
- Rajasthan High Court Bar Association, Jaipur 
- Bar Council of Rajasthan, Jodhpur 
- Cases Handled
- Civil and Criminal Writs, Injunction Suits, Money recovery suits, NI Acts cases, Telecom Radiation matters, Matrimonial, Energy Laws, Arbitration, Consumer, Labor matters, Criminal-Trial, Bail and appeal and other matters.
- Cybercrime Cases
- Data theft/Source Code theft cases, Corporate Espionage, Cyber Defamation, Social Media crimes, Online Banking Frauds, SIM Swap cases, Man in the Middle Attack, Hacking, Ransomware Attack and other Cybercrimes cases.
- Guest Faculty
- National Police Academy, Hyderabad-Senior IPS officers and Probationer -Trainee IPS officers (including Foreign Trainees from Bhutan, Maldives, Mauritius, Nepal), TOT -Judicial officers -Supreme Court E-Committee and I4C
- Central Bureau of Investigation Academy (CBI)Ghaziabad -CBI Officers, Law Enforcement officers of different States, Intelligence officers
- BPRD-Central Detective Training Institute, Jaipur, Ghaziabad, Chandigarh- Judicial, Prosecution, Police officer of different States and Sri Lankan officers
- North East Police Academy, Shillong -Judicial, Prosecution, Police officers of North Eastern States including Bangladesh Police officers
- Rajasthan State Judicial Academy, Jodhpur -Judicial and Prosecution officers
- Delhi Judicial Academy -Judicial and Prosecution officers
- Jammu & Kashmir Judicial Academy-Judicial, Prosecution and Police officers
- Uttarakhand State Judicial Academy-Judicial officers
- Chandigarh Judicial Academy-Judicial officers
- Tripura Judicial Academy-Judicial Officers
- LNJN National Institute of Criminology and Forensics Science, New Delhi (NFSU)-Judicial, Prosecution and Police officers of different States
- Indian Institute of Public Administration, New Delhi -All India Judicial officers and Uttar Pradesh Judicial Academy (Judicial Officers)
- Rajasthan Police Academy, Jaipur-Judicial, Prosecution and Police officers
- Madhya Pradesh Police-Cyber HQ-Bhopal-Prosecution and Police officers
- Delhi-Police Training Center, New Delhi-Police officers
- Uttarakhand Police –STF-Cyber Cell -Prosecution and Police officers
- Mumbai Cyber Cell-BKC-Police officers of Special Crime Branch, Mumbai Cyber Cell
- Chandigarh Police –Police officers of Cyber Cell and others
- Punjab Police Academy, Phillaur-Judicial, Prosecution and Police officers
- Haryana Police, Panchkula- All IG ranges Police officers and CP -Faridabad, Gurugram
- Jharkhand Police-Judicial and Police officers
- Sessions on
- Cyber Laws, Cybercrimes, Cybercrimes Investigation, Digital Forensics, Cyber Terrorism, Cryptocurrency, Online Frauds, Social Media Frauds, PMLA & Economic offences, Legal and Technical Challenges in Cybercrime Investigation, IT Compliances, Data Protection and Privacy issues, Handling Digital Evidence and Admissibility of Electronic Evidence, International investigation Challenges and others.
- Data Protection Framework for India (Telecom Business Review), Volume 13 Issue 1 ,2020 (www.publishinginndia.com)
- Book (Co-author)
- Cybercrimes and Cyber Hygiene-Awareness for Netizens
- ND Cyberlaw (Law Firm)-www. ndcyberlaw.com
Adv. Prem Kamath
A Lawyer practicing in the High Court of Kerala, with 25 years standing at the Bar. He is passionate about cybercrimes, cyber security, data privacy, e-commerce, social media, digital marketing and the allied.
Clearly, information technology law is a niche practice and he has made an immense impact as an expert with International exposure, in providing Workshops/Training/Lectures contrived based on the targeted audience.
He is a frequent lecturer to Academic Institutions, Law Enforcement Agencies, the IT Industry and Corporates. He has been an invited speaker at various National & International conferences, seminars and workshops related to CYBER LAW and other allied subjects. His experience also includes drafting policies, frameworks and regulations in various aspects of IT Law mainly for the Government and Private sectors.
Special Judge NIA Cases
I entered into the judicial service as a (Munsiff-Magistrate) in 2000. Right now functioning as a special judge for NIA Cases in Ernakulam.
I am also Trainer of trainers under the eCourt project for the state of kerala, and have conducted almost more than 50 training sessions for Judicial officesrs in Kerala, and for judicial officers in the states of chathisgarh, as well as Tamilnadu. Apart from that, many academic sessions have been conducted by me on various topics for advocates, topics ranging from the e initiatives of the the supreme court, the disciplines of digital evidence, gender legislations and other regular legal aspects from the functional area point of view. classes have been conducted by me for various organizations including the bar Council, UGC programs, many academic institutions, statutory organizations, judicial Academies etc.
Dr. Swapnil Bangali
President & Founder Trustee, Vishwaguru Foundation, Vadodara
Honorary Director, Centre for Information Communication Technology and Law, Maharashtra National Law University, Mumbai
Dr. Swapnil Bangali completed his LL.B. from Symbiosis Law School, Pune and enrolled himself as an Advocate in Bar Council of Maharashtra & Goa in 2004. He completed his LL.M. in Constitutional Law and Legal Order in 2006 from Symbiosis Law School, Pune. Simultaneously, he completed his DLL&LW, DTL and DIPL. In 2005, he cleared the examination of Judicial Magistrate in the State of Maharashtra. Dr. Swapnil has a keen interest in academics and research. He is a former Associate Professor from School of Law, Auro University, Surat and also worked as a faculty in Symbiosis Law School, Pune. In 2006, he passed UGC-NET. He completed the Winter School Certificate Program on Cyber Security and Cyber Law at Gujarat National Law University, Gandhinagar and was awarded as the Best Participant for the same in 2012. He was invited in Berlin School of Economics and Law, Berlin (Germany) in 2015 to deliver sessions on Police Law and Constitutional Law. He was awarded with a Doctorate by Symbiosis International University in the field of Information Technology Law in 2016. He has achieved a fit of delivering more than 150 guest lectures and sessions on various platforms in various institutions and universities of high repute in India and abroad.
He authored a book on “Law Relating to Contraventions under the Information Technology Act, 2000” which is forwarded by Adv. Ujjwal Nikam, Special Public Prosecutor, Government of Maharashtra. He had presented many papers on contemporary issues in law in various national and international seminars and conferences. He is Invitee Reviewer for the International Journal for Public Policy which is a scopus journal published by Inderscience and the Editorial Board Member for Journal of Army Law College and External Peer Reviewer for Alliance Journal of Corporate and Commercial Laws. Dr. Swapnil has published numerous articles in various refereed and reputed National and International Journals.
He is currently Honorary Director, Centre for Information Communication Technology and Law, Maharashtra National Law University Mumbai. He is also Member of General Council, Standing Committee, Executive Council, Finance Committee, Research Council and Academic Council for Maharashtra National University Mumbai. He is member of Centre for Post Graduate Legal Studies in Maharashtra National Law University Mumbai.
Adv. (Dr.) Swapnil Bangali is instrumental in training the accredited agencies such as IRS Officers, Central Bureau of Investigation and Enforcement Directorate in National Academy of Direct Taxes, Nagpur for the Digital Evidence and legal issues for last one decade. He was involved in training IDAS officers in National Academy for Defense Financial Management, Pune. He has trained various stock market experts, Grievance Redressal Committees of Bombay Stock Exchange and National Stock Exchange in National Institute of Securities Management. He is involved in the training of CGST, Customs and police officers in the Police Training Centre at Khandala, National Academy of Customs, Indirect Tax and Narcotics Zonal Campus Vadodara and the Police Officers and Public Prosecutors in State of Maharashtra in Maharashtra Police Academy, Nashik.
The Perspective & Grade Ace
Rahul is founder – The PerspectiveTM & Grade AceTM with more than fourteen years experience working in Technology, Public Policy, Cyber Security & Privacy space, engaging with a range of stakeholder locally and globally to address the challenges in the evolving cyber ecosystem & value add as a Trusted Advisor. He recently worked as Cyber Security Liaison – Partner in International Business, Hague Security Delta, Netherlands in India & as Country Leader- India for International Association of Privacy Professionals (IAPP). Rahul also worked as ‘Senior non key Expert’ on 'International Digital Cooperation-Enhanced Data Protection and Data Flows' project with Directorate – General for Justice and Consumers (DG JUST) European Commission.
Rahul is member of Working Group (WG) on “Anonymization of Data" set forth by the Ministry of Electronics and Information Technology (MeitY), Government of India and member of Bureau of Indian Standards (BIS) WG that developed Indian Standard on Data Privacy (IS 17428). In his past role, Rahul has worked with Data Security Council of India (DSCI) anchored its policy, privacy, standards, government and international relations functions. Rahul undertakes various sessions for corporates and govt agencies such as iCISA (CAG of India), NLU and NLIU, Sardar Vallabhbhai Patel National Police Academy, CBI Academy on Cyber Security, Data Protection, Cyber Laws, Internet Governance etc. He has authored various articles and talks frequently on the subject.
Previously, he worked as a senior security analyst with HCL Technologies and as a telecom engineer with Nokia Siemens Network. He holds Engineering degree in Electronics and Communication from Indraprastha University in New Delhi.
Rahul has been fellow:
a) International Visitor Leadership Program (IVLP)- Dept. of State, US Govt, 2018
b) Global Governance Futures - Data Governance (GGF 2027) – Global Public Policy Institute (GPPi), Berlin, Germany, 2017
c) Internet Corporation for Assigned Names and Numbers (ICANN) – 2013 and 2014
Dinesh O Bareja
Cybersecurity GRC Specialist
V-CISO. ISMS. Certified CISA, CISM, IRCA Internal Auditor
Adv. Prem Kamath
Special Judge NIA Cases , Ernakulam , India President & Founder Trustee, Vishwaguru Foundation, Vadodara , Honorary Director, Centre for Information Communication Technology and Law, Maharashtra National Law University, Mumbai , Founder , The Perspective & Grade Ace , India Cybersecurity GRC Specialist , V-CISO. ISMS. Certified CISA, CISM, IRCA Internal Auditor , India
Bridges Security In EVM Networks
CEO & Senior Security Researcher
With more than 8 years of experience in cybersecurity as a Senior Security Researcher specialized in application security, cryptography and security of decentralized applications, he assisted several organizations in improving their cybersecurity strategy. And as an Instructor and a Speaker he presented Security lectures in universities and Conferences. Recently researching on Formal Verification in the cybersecurity Field. He is Also a Blockchain Developer in Solidity and Rust and also working as a Security Researcher in Blockchain .
Anshu Kumar Senior Member of Technical Staff, VMware Anshu Kumar is a Senior Information Security Engineer in the security product team at VMware. She has over a decade of experience in the industry . Currently working in security domain with previous international work experience with infrastructure and mobile development teams as software developer. At VMware she develops and maintain security products that enhance the effectiveness of existing tools, enable integrations, and provide frameworks for other teams to access critical security and compliance information.
Senior MTS in Security Product Engineering team
Pavan Sorab is a Senior Information Security Engineer with over 10 years of experience in software development and information security. He has a Bachelor's degree in Computer Science from Visvesvaraya Technological University. Pavan is currently working in VMware where he focuses on VMware's SaaS transformation by driving automation and optimization throughout the Security community at VMware and producing scalable, reusable components to standardize tools and platforms making security more accessible for all. In the course of experience he has worked on developing various security management tools such as vulnerability management tool, compliance management tool and attack surface framework.
Mitigating SSRF at scale the right way with IMDSv2!
Lead Cloud & Data Security Engineer
Ayush is a Cyber Security Engineer specialising in Cloud and Data Security, and DevSecOps practices. He loves to develop automation for security controls and processes. He has delivered talks at various conferences and security communities like GrayHat'20, and Cyber Security Global Summit to name a few. He also contributes to the OWASP Ranchi chapter as the Chapter Lead. He currently works at CRED as a cloud & data security engineer.
Uncovering the Hidden Dangers Lurking as Android Apps using ML Algos
Lead - Cyber Security
Mr. Nikhil is a Security Engineer working at Dezerv Investments. He’s been a security researcher from his initial days in the Cyber Security space. His area of interest includes Web Application Penetration Testing, Mobile Application Security, DevSecOps and Machine Learning. He has presented his talks at International and National level Conferences and meets such as Nuit Du Hack Paris, OWASP AppSec Europe, Cocon International Cyber Policing and Security Conference, DEFCON Bangalore Chapter, Null Open Security Meet Bangalore, Null Open Security Meet Mysore. He is also a Bug Bounty Hunter and has been listed and Acknowledged in the Hall Of Fames of Companies such as Microsoft, Apple, Adobe, Nokia, Engine Yard and AVIRA Antivirus. He currently also leads the Bangalore Chapter of Null Open Security Community.
Finding gadgets to take control of your computer
Pierre-François Maillard is a French engineer specialized in the field of cyber security who is currently doing a PhD at TCG CREST in India. During his education, he actively collaborated with the CVO laboratory (Operational Cryptology and Virology) with a particular focus on the UEFI systems. Furthermore, he has gained experience in industrial cybersecurity while working in various companies. As a result of his research, he has written a series of three articles in MISC, a top French cybersecurity magazine, about the UEFI. He has also led several workshops and conferences regarding network and operating systems at C0c0n.
Surviving In Dependency Hell
Kumar Ashwin is a skilled information security professional with a focus on web security, cloud security, and DevSecOps. He actively participates in various security communities, including The Open Security Community, Winja, and DEFCON Cloud Village, by speaking at meetups and creating CTFs. Ashwin has also spoken at conferences such as x33fcon, BSides and c0c0n. As an offensive security specialist, Ashwin excels in identifying vulnerabilities and preventing attacks. His expertise has helped numerous organizations improve their security posture and protect their assets.
A Secure Privacy-Preserving Lightweight Authentication Scheme for Internet of Medical Things
Dr. Panchami V
Dr. Panchami.V, HoD, CSE-Cyber Security Department, Indian Institute of Information Technology, Kottayam. She is the founder and faculty incharge of CyberLabs IIIT Kottayam. Her research area includes Lightweight Cryptography, Authentication Schemes, Blockchain and Cryptocurrency, Post-Quantum Cryptography, Cryptanalysis using Quantum Algorithms and Network Security.
She has co-authored over 30 research publications that have been published in prestigious international journals and standard conferences. Dr. Panchami V is also an IEEE member, a member of ACM and a member of the editorial boards of various international journals and the technical program committees of several IEEE conferences. She serves as a reviewer and speaker for several reputed international conferences and IEEE journals. He is the Principal Investigator and a Co-Principal Investigator of many researchShe is the principal investigator for MeitY sponsored Quantum Computing Applications Lab (QCAL) and received the grant credits as well. She also obtained a research grant to access time to IonQ Trapped Ion Quantum Computer for the research proposal as part of IonQ research Credits Programme. She got NASSCOM award for the ‘Ladies Safety App’ and received best research paper award in various conferences. She also received the Young Woman Researcher in Cryptography, Awarded by Centre for Advanced Research and Design, Venus International Foundation, 2022.
Mahima Mary Mathews
Research Scholar, CSE Department, IIIT
Indian Institute of Information Technology, Kottayam
Mahima Mary Mathews received her B.Tech degree in Computer science and Engineering in 2011 and M.Tech degree in Computer science and Engineering with specialization in Data Security in 2016 with university first rank, both from Cochin University of Science and Technology, Ernaku lam, Kerala, India. She is currently pursuing her PhD in the area of Cryptography and Network Security, Quantum resistant Cryptography at IIIT Kottayam, Kerala, India. She worked as a Techno-Functional Consultant with Accenture Services Pvt. Ltd. India from 2011 to 2014. From 2017 she is part of academia in teaching, research and development. Her research areas include Post-Quantum Cryptography, Quantum Cryptography, Quantum Communication, Quantum Computing, Quantum Cryptanalysis, Network Security, Forensics, Delay Tolerant Networks and Blockchain. Ms. Mathews is also the Research Coordinator and Consultant, CyberLabs IIIT Kottayam and is associated with multiple industry projects in the cyber security domain. She is the principal investigator of Quantum Computing research projects supported by the IonQ Research Credits Programme. She has published many papers and has received best paper awards.
Expanding capability horizons : Homelabs and beyond
Information Scurity Professional
Anant Shrivastava is an information security professional with 15+ yrs of corporate experience in Network, Mobile, Application and Linux Security. Anant is an avid opensource supporter and runs multiple opensource projects prominent of them being TamerPlatform and CodeVigilant.
He contributes to multiple Open communities like null and Garage4Hackers. He has also helped establishing local chapter in his hometown null Bhopal
He has been a speaker and a trainer at a multitude of conferences such as Black Hat -USA/ASIA/EU, Defcon, Nullcon, c0c0n, Rootconf and many more).
He also participates in various communities as a cfp reviewer. Notable of them being Blackhat EU, nullcon, Rootconf by Hasgeek, recon village @ Defcon , cloud village @ defcon, Adversary Village @ defcon
His code contributions can be found on Github. He is active on Twitter and Fediverse and his talks and presentations can be found here. He writes about his experiments at his blog.