BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//Active Countermeasures - ECPv6.17.0//NONSGML v1.0//EN
CALSCALE:GREGORIAN
METHOD:PUBLISH
X-ORIGINAL-URL:https://www.activecountermeasures.com
X-WR-CALDESC:Events for Active Countermeasures
REFRESH-INTERVAL;VALUE=DURATION:PT1H
X-Robots-Tag:noindex
X-PUBLISHED-TTL:PT1H
BEGIN:VTIMEZONE
TZID:America/New_York
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20230312T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20231105T060000
END:STANDARD
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20240310T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20241103T060000
END:STANDARD
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20250309T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20251102T060000
END:STANDARD
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20260308T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20261101T060000
END:STANDARD
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20270314T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20271107T060000
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20260617T100000
DTEND;TZID=America/New_York:20260617T163000
DTSTAMP:20260610T203250Z
CREATED:20260610T182442Z
LAST-MODIFIED:20260610T203250Z
UID:16519-1781690400-1781713800@www.activecountermeasures.com
SUMMARY:Threat Hunting Summit 2026
DESCRIPTION:New tools are coming. The fundamentals are here to stay. \n  \nWhat’s happening \nThe Threat Hunting Summit 2026 is almost here! One day\, 12 practitioners\, all threat hunting. This year’s summit leans hard into a question the community is actively wrestling with: \nWhat does AI actually change about threat hunting\, and what does it not? \nThe short answer: AI is already being demonstrated as a genuinely useful tool by accelerating hypothesis generation\, surfacing patterns in telemetry\, and helping hunters move faster. But it doesn’t replace sound methodology. If your fundamentals are weak\, AI amplifies the noise\, not the signal. The talks this year reflect that tension and give you frameworks to adapt to the accelerating field. \nIf you’re already in the discipline\, this is a good gut-check on where the field is heading. If you’re building toward it\, there’s no better place to be for a day. \n  \nWhy attend \n\n12 practitioners talking about what’s actually working and what isn’t\nA direct look at how AI is being integrated into real hunting workflows\nThe full spectrum: detection engineering\, memory forensics\, network analysis\, C2 behavioral profiling\, agentic AI\nIt’s free! The ACM/BHIS community have always believed access to good training and tooling shouldn’t require a conference budget.\n\n  \nSummit talks: June 17\, 2026 \nMorning Keynote — David Bianco | The Hunter’s Paradox: Is It Time to Embrace Automated Threat Hunting? \nFaan Rossouw — How AI Agents Solve Threat Hunting’s Biggest Problem\nJamie Levy — Memory Forensics for Everyone\nSydney Marrone — Avoiding Hunt Amnesia: Building a Memory Your AI Can Use\nHermon Kidane — Threat Hunting with RITA: A Behavioral Analysis of C2 Traffic\nShane Hartman — Threat Hunting in the Dark: A Practical Approach\nLauren Proehl — Fast-track Reports into Ready-Made Hypotheses with AI\nPanel — Legal Landmines\, Insurance & Incident Response \nAfternoon Keynote — Jason Haddix | Defending AI: Organized Musings on Securing AI Agents for Cybersecurity \n  \nPost-summit trainings: June 18-26\, 2026 \nFive hands-on courses are being offered from Antisyphon Training the week after the summit. Live\, instructor-led\, and built for people who actually want to do the work\, not just watch slides. Spans beginner to advanced. Reimbursement letter templates are available on the training pages if you need to make the case to your org. \nJune 18 — Threat Hunting on the Edge | Troy Wojewoda\nJune 19 — Cyber Threat Intelligence 101 | Wade Wells\nJune 22–23 — LOLBINs vs. LOLBINs: Endpoint Threat Hunting | Patterson Cake\nJune 24–25 — Intro to Network Threat Hunting | John Strand\nJune 26 — Agentic AI for Threat Hunting | Faan Rossouw \n  \nThe summit takes place on Wednesday\, June 17\, 2026. \nMore info:  https://www.antisyphontraining.com/event/threat-hunting-summit/ \nChat and interact with us and your fellow attendees in the Antisyphon Training Discord server: https://discord.gg/antisyphon \n  \nRegister Here\n  \n  \nP.S. You are also welcome to join us up to 30 minutes early for pre-show banter! \nKeith ChewKeith’s appreciation for computing and processes originates from working with his first personal computer in 1982\, a TI-99/4A. Keith sees himself as fortunate for the opportunity to apply his passion towards a career that assists in the advance of technology and continuing education. \nShare this:
URL:https://www.activecountermeasures.com/event/threat-hunting-summit-2026/
LOCATION:Zoom
CATEGORIES:Online Trainings,Virtual Event,Webcasts
ATTACH;FMTTYPE=image/png:https://www.activecountermeasures.com/wp-content/uploads/2026/06/threat-hunting-summit-2026-antisyphon-training-active-countermeasures.png
END:VEVENT
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20250516T130000
DTEND;TZID=America/New_York:20250516T140000
DTSTAMP:20250508T160536Z
CREATED:20250508T142426Z
LAST-MODIFIED:20250508T160536Z
UID:15715-1747400400-1747404000@www.activecountermeasures.com
SUMMARY:Fireside Friday - Authentication and Password Cracking
DESCRIPTION:We all have gaps in our security knowledge. Fireside Fridays will be an opportunity to fill in those gaps. Each Friday we will pick a topic and go over the basics. These sessions will be a combination of lecture and hands on labs. We’ll cover a single topic and hopefully fill in some of those cracks. Think of it as a single focused “ask us anything” session. No judgment on the questions that get asked\, just a chance to raise the bar for all of us. \nIn this episode of Fireside Fridays we will discuss authentication and password policies. We’ll also look at how passwords are “cracked” discussing online and offline password cracking. \nChat with your fellow attendees in the Threat Hunter Community Discord server: https://discord.gg/threathunter in the #live-chat channel. \n  \nRegister Here\nKeith ChewKeith’s appreciation for computing and processes originates from working with his first personal computer in 1982\, a TI-99/4A. Keith sees himself as fortunate for the opportunity to apply his passion towards a career that assists in the advance of technology and continuing education. \nShare this:
URL:https://www.activecountermeasures.com/event/fireside-friday-authentication-and-password-cracking/
LOCATION:Zoom
CATEGORIES:Chris Brenton,Online Trainings,Virtual Event,Webcasts
ATTACH;FMTTYPE=image/png:https://www.activecountermeasures.com/wp-content/uploads/2025/05/fireside-friday-authentication-and-password-cracking.png
END:VEVENT
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20250509T130000
DTEND;TZID=America/New_York:20250509T140000
DTSTAMP:20250508T160458Z
CREATED:20250423T200659Z
LAST-MODIFIED:20250508T160458Z
UID:15664-1746795600-1746799200@www.activecountermeasures.com
SUMMARY:Fireside Friday - Anatomy of a VPN - Part 3 of 3
DESCRIPTION:We all have gaps in our security knowledge. Fireside Fridays will be an opportunity to fill in those gaps. Each Friday we will pick a topic and go over the basics. These sessions will be a combination of lecture and hands on labs. We’ll cover a single topic and hopefully fill in some of those cracks. Think of it as a single focused “ask us anything” session. No judgment on the questions that get asked\, just a chance to raise the bar for all of us. \nIn the final installment of our VPN discussions\, we will leverage the previous defined framework to understand various VPN technologies. We will discuss SSH\, IPSec as well as TLS. We will also review recommended configuration options for each implementation. \nChat with your fellow attendees in the Threat Hunter Community Discord server: https://discord.gg/threathunter in the #live-chat channel. \n  \nRegister Here\nKeith ChewKeith’s appreciation for computing and processes originates from working with his first personal computer in 1982\, a TI-99/4A. Keith sees himself as fortunate for the opportunity to apply his passion towards a career that assists in the advance of technology and continuing education. \nShare this:
URL:https://www.activecountermeasures.com/event/fireside-friday-anatomy-of-a-vpn-part-3-of-3/
LOCATION:Zoom
CATEGORIES:Chris Brenton,Online Trainings,Virtual Event,Webcasts
ATTACH;FMTTYPE=image/png:https://www.activecountermeasures.com/wp-content/uploads/2025/04/fireside-friday-anatomy-of-a-vpn-part3.png
END:VEVENT
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20240906T110000
DTEND;TZID=America/New_York:20240906T170000
DTSTAMP:20240724T151527Z
CREATED:20240724T151527Z
LAST-MODIFIED:20240724T151527Z
UID:14765-1725620400-1725642000@www.activecountermeasures.com
SUMMARY:Cyber Threat Hunting Level 1 w/ Chris Brenton
DESCRIPTION:This course includes hands-on labs that will showcase the new version of our open source tool RITA!\nChris Brenton from Active Countermeasures is conducting another free\, one-day\, Cyber Threat Hunting Training online course. This is a new and improved version of the course he has taught in past years. \nOne of the biggest challenges in security today is identifying when our protection tools have failed and a threat actor has made it onto our network. \nIn this free\, one-day (6-hour) course\, we will cover how to leverage network and host data to perform a cyber threat hunt. \nThe focus will be on processes and techniques that can be used to protect: \n– Desktops \n– Servers \n– Network gear \n– IIoT \n– BYOD system \n  \nThe course includes hands-on labs that will showcase the new version of RITA! \nSetup/QA and pre-show banter starts at 10:30am ET\, Training starts at 11am ET. \n  \nJoin our Threat Hunter Community Discord Server to join in on the conversation during and after the webcast: https://discord.gg/threathunter in the #🔴live-webcast-chat channel. \n  \nRegister Here\nKeith ChewKeith’s appreciation for computing and processes originates from working with his first personal computer in 1982\, a TI-99/4A. Keith sees himself as fortunate for the opportunity to apply his passion towards a career that assists in the advance of technology and continuing education. \nShare this:
URL:https://www.activecountermeasures.com/event/cyber-threat-hunting-level-1-w-chris-brenton/
LOCATION:Zoom
CATEGORIES:Chris Brenton,Online Trainings
ATTACH;FMTTYPE=image/png:https://www.activecountermeasures.com/wp-content/uploads/2024/07/threat-hunt-training-2024-09-06.png
END:VEVENT
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20240625T110000
DTEND;TZID=America/New_York:20240625T170000
DTSTAMP:20240617T144427Z
CREATED:20240522T161530Z
LAST-MODIFIED:20240617T144427Z
UID:14619-1719313200-1719334800@www.activecountermeasures.com
SUMMARY:Training - Cyber Threat Hunting Level 1
DESCRIPTION:Chris Brenton from Active Countermeasures is conducting another free\, one-day\, Cyber Threat Hunting Training online course. This is a new and improved version of the course he has taught in past years! \nOne of the biggest challenges in security today is identifying when our protection tools have failed and a threat actor has made it onto our network. \nIn this free\, one-day (6-hours) course\, we will cover how to leverage network and host data to perform a cyber threat hunt. \nThe focus will be on processes and techniques that can be used to protect:\n– Desktops\n– Servers\n– Network gear\n– IIoT\n– BYOD system \nThe course includes hands-on labs using that will showcase our new Free Community Edition of AC-Hunter! \nJoin our Threat Hunter Community Discord Server to join in on the conversation during and after the webcast: https://discord.gg/threathunter \nRegister Here\nKeith ChewKeith’s appreciation for computing and processes originates from working with his first personal computer in 1982\, a TI-99/4A. Keith sees himself as fortunate for the opportunity to apply his passion towards a career that assists in the advance of technology and continuing education. \nShare this:
URL:https://www.activecountermeasures.com/event/training-cyber-threat-hunting-level-1-8/
LOCATION:Zoom
CATEGORIES:Chris Brenton,Online Trainings
ATTACH;FMTTYPE=image/png:https://www.activecountermeasures.com/wp-content/uploads/2024/05/Threat-Hunt-Training-June25th.png
END:VEVENT
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20240412T103000
DTEND;TZID=America/New_York:20240412T170000
DTSTAMP:20240319T143456Z
CREATED:20240319T143456Z
LAST-MODIFIED:20240319T143456Z
UID:14467-1712917800-1712941200@www.activecountermeasures.com
SUMMARY:Training – Cyber Threat Hunting Level 1
DESCRIPTION:In this free\, one-day (6-hours) course\, we will cover how to leverage network and host data to perform a cyber threat hunt. \nThe focus will be on processes and techniques that can be used to protect: \n– Desktops\n– Servers\n– Network gear\n– IIoT\n– BYOD system \nThe course includes hands-on labs. At the end\, we will showcase the new version of our Free Community Edition of AC-Hunter! \nJoin our Threat Hunter Community Discord Server to join in on the conversation during and after the webcast: https://discord.gg/threathunter \nRegister Here\nKeith ChewKeith’s appreciation for computing and processes originates from working with his first personal computer in 1982\, a TI-99/4A. Keith sees himself as fortunate for the opportunity to apply his passion towards a career that assists in the advance of technology and continuing education. \nShare this:
URL:https://www.activecountermeasures.com/event/training-cyber-threat-hunting-level-1-7/
LOCATION:Zoom
CATEGORIES:Chris Brenton,Online Trainings
ATTACH;FMTTYPE=image/png:https://www.activecountermeasures.com/wp-content/uploads/2024/03/Threat-Hunt-Training.png
END:VEVENT
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20240223T110000
DTEND;TZID=America/New_York:20240223T170000
DTSTAMP:20240116T180648Z
CREATED:20240116T180648Z
LAST-MODIFIED:20240116T180648Z
UID:14326-1708686000-1708707600@www.activecountermeasures.com
SUMMARY:Training – Cyber Threat Hunting Level 1
DESCRIPTION:Chris Brenton from Active Countermeasures is conducting another free\, one-day\, Cyber Threat Hunting Training online course. This is a new and improved version of the course he has taught in past years! \nOne of the biggest challenges in security today is identifying when our protection tools have failed and a threat actor has made it onto our network. \nIn this free\, one-day (6-hours) course\, we will cover how to leverage network and host data to perform a cyber threat hunt. \nThe focus will be on processes and techniques that can be used to protect: \n– Desktops\n– Servers\n– Network gear\n– IIoT\n– BYOD system \nThe course includes hands-on labs that will showcase the new version of our Free Community Edition of AC-Hunter! \nJoin our Threat Hunter Community Discord Server to join in on the conversation during and after the webcast: https://discord.gg/threathunter \nRegister Here\nKeith ChewKeith’s appreciation for computing and processes originates from working with his first personal computer in 1982\, a TI-99/4A. Keith sees himself as fortunate for the opportunity to apply his passion towards a career that assists in the advance of technology and continuing education. \nShare this:
URL:https://www.activecountermeasures.com/event/training-cyber-threat-hunting-level-1-6/
CATEGORIES:Chris Brenton,Online Trainings
ATTACH;FMTTYPE=image/png:https://www.activecountermeasures.com/wp-content/uploads/2024/01/Threat-Hunt-Training-Feb23.png
END:VEVENT
END:VCALENDAR