Swiss Websecurity Day 2023

October 17, 2023

Welle7

Location

Welle7

Schanzenstrasse 5, Bern
3008 Bern

Schedule

09:00 - 09:20
WELCOME & REGISTRATION
09:20 - 09:30
Welcome Speech
09:30 - 10:00
Email Authentication and BSI TR-03182

Patrick Ben Koetter

10:00 - 10:30
Medicrime & Cybercrime

Robert Kummer, Swissmedic

«Missbrauch des Internets im Bereich der Heilmittel – mit direktem Einfluss auf die öffentliche Gesundheit. Ein Einblick in eher unbekannte Aspekte des Domain-Missbrauchs, mit Gemeinsamkeiten zur Cybercrime Konvention.»
«Abuse of the Internet in the field of medicinal products and the direct impact on public health.A glimpse into rather unknown aspects of domain abuse, with similarities to the Cybercrime Convention.»

10:30 - 11:00
COFFEE & NETWORKING
11:00 - 11:25
Vulnerability Management at NCSC

Roger Knoepfel

Bug Bounty, Coordinated Vulnerability Disclosure (CVD) and security.txt -

Hands-on experience and initiatives by the National Cyber Security Centre NCSC.

11:30 - 11:50
Q9 Cyber Insights: Threats targeting Swiss web

Emilia Cebrat-Maslowski, Quad9 and SWITCH

Quad9 has the unique opportunity to analyze the volumes and trends of malicious campaigns targeting users worldwide. This presentation provides an overview of the main cyber threats targeting Swiss users and the Swiss web in the first half of 2023, as seen by Quad9 DNS and SWITCH Domain Abuse data.

11:50 - 12:15
VID - OID

What’s new about the Ordinance on Internet Domains?

The OID and the domain .swiss

The OID was revised. A major change will be the opening of the Domain .swiss for private individuals. Furthermore new rules were drawn up for the fight against cybercrime. First it will be pointed out under which conditions private individuals can obtain a .swiss Domain name and in a second part it will be shown what is done against cybercrime and what will change in this context.

Yael Erlich, BAKOM

12:15 - 13:15
LUNCH
13:15 - 14:30
Walk the Talk

Walk the Talk

A one-hour group walk to combat the post-lunch slump. Participants, grouped in threes, engage in structured discussions based on industry relevant questions, rotating speakers and listeners in set time intervals.




14:30 - 15:00
COFFEE & NETWORKING
15:00 - 16:20
Workshop 2

Community efforts to filter Phishing Emails

Phishing is still the attack vector #1.

Swico has published a best practice document for email providers on how to filter phishing emails and prevent users to get in contact with phishing emails.

How can Email providers implement the recommendations and what can we do to improve cooperation?

Moderation: Michael Hausding

15:00 - 16:20
Workshop 1

Open Security Standards

SWITCH is promoting open security standards like DNSSEC, DMARC, DANE with the price of .ch domain names.

How successful is this approach and what else can be done to drive the adoption of open security standards in Switzerland?

Moderation: Urs Eppenberger

16:20 - 16:30
Wrap Up of Swiss Web Security Day
16:30 - 17:00
APERO

Registration