Cloud Village @ BSidesCharm 2025

Cloud village is an open space to meet folks interested in offensive and defensive aspects of cloud security.

Become a Sponsor at BSidesCharm 2025 Call For Papers

About

Cloud village is an open space to meet folks interested in offensive and defensive aspects of cloud security. The village is home to various activities like talks, workshops, CTFs and discussions targeted around cloud services.

If you are a professional who is looking to gain knowledge on securely maintaining the cloud stack and loves to be around like-minded security folks who share the similar zeal towards the community, Cloud Village is the perfect place for you.

This year Cloud Village will be in-person at Sheraton Baltimore North, Townson, Maryland for BSidesCharm 2025. We will be bringing in our amazing-as-always Capture the Flag Event on Cloud Security. Stay Tuned!

Hope to see you all there!


Crew Members:


Cloud Village CTF

CTF start - 11 AM Saturday

CTF close - 12 PM Sunday

Register at - Grason Room



If you ever wanted to break stuff on the cloud, or if you like rabbit holes that take you places you did not think you would go to, follow complicated story lines to only find you could have reached to the flag without scratching your head so much - then this CTF is for you!

Our CTF is a contest where we have a bunch of challenges hosted across multiple Cloud providers across multiple categories of difficulty.

See you on the other side!


Schedule

Cloud Village | 2nd Floor Grason


2:00 – 2:30 PM

Analyzing Storm-2372: Primary Refresh Token Compromise

by Jenko Hwong

2:30 – 3:00 PM

Guardians of the Cloud – Proactive Policies for Securing the Cloud

by Aaron Shelmire

3:00 – 3:30 PM

Securing Kubernetes on the Cloud: From Misconfigurations to Mitigations ft. EKS

by Raviteja

3:30 – 4:00 PM

SquarePhish 2.0 – Turning QRCodes into Single Sign On Primary Refresh Tokens

by Nevada Romsdahl and Kam Talebzadeh

1:00 – 3:00 PM

CTF 101 Workshop

Join us in experiencing an alternate solution to solve this year's cloud challenges. We will help players understand the complex charm behind our challenges and obtain the flag