Agenda
Click on the session title
to view the abstract
All Dates
9/18-9/21
Wednesday
9/18
Thursday
9/19
Friday
9/20
Saturday
9/21
Badge Pick-Up
Badge Pick-Up
3:00 PM-7:00 PM
Community Room
Welcome Reception
Welcome Reception
7:00 PM-10:00 PM
Camelback Overlook
Passing the Torch
Passing the Torch
7:30 PM-8:30 PM
Camelback Overlook
Katie Moussouris
Founder and CEO
Luta Security
Visi Stark
Co-Founder
The Vertex Project
Breakfast
Breakfast
8:00 AM-9:00 AM
Paradise Terrace
Welcome from SentinelLabs
Welcome from SentinelLabs
9:05 AM-9:15 AM
Paradise Ballroom
Juan Andres Guerrero-Saade
AVP of Research for SentinelLabs
SentinelOne
Chris Krebs
CIO & PPO, President of PinnacleOne
SentinelOne
The Ransomware Trust Paradox
The Ransomware Trust Paradox
9:15 AM-9:40 AM
Paradise Ballroom
Max Smeets
Researcher & Director
Center for Security Studies, ETH Zurich
A 30-Year Journey from Compilation Student to Decompilation Pioneer
A 30-Year Journey from Compilation Student to Decompilation Pioneer
9:40 AM-10:05 AM
Paradise Ballroom
Dr Cristina Cifuentes
Vice President
Oracle Software Assurance
Resilience and Protection in the Windows Ecosystem
Resilience and Protection in the Windows Ecosystem
10:05 AM-10:30 AM
Paradise Ballroom
Kim Zetter
Author & Journalist
David Weston
Vice President, Enterprise and OS Security
Microsoft
Morning Break Sponsored by The Vertex Project
Morning Break Sponsored by The Vertex Project
10:30 AM-11:05 AM
Paradise Ballroom Foyer
A Walking Red Flag (With Yellow Stars)
A Walking Red Flag (With Yellow Stars)
11:05 AM-11:25 AM
Paradise Ballroom
Dakota Cary
Strategic Advisory Consultant
SentinelOne
Eugenio Benincasa
Cyberdefense Researcher
ETH Zurich
Daggers and Arrows
Daggers and Arrows
11:25 AM-11:45 AM
OTR
Paradise Ballroom
Michael Matonis
Breaching the Battlefield: UNC4221’s Espionage for Military Advantage
Breaching the Battlefield: UNC4221’s Espionage for Military Advantage
11:45 AM-12:05 PM
OTR
Paradise Ballroom
Dan Black
Manager, Cyber Espionage Analysis
Google Cloud (Mandiant)
Luke Jenkins
Principal Analyst
Google Cloud (Mandiant)
Farmyard Gossip: The Foreign Footprint in U.S. Agriculture
Farmyard Gossip: The Foreign Footprint in U.S. Agriculture
12:05 PM-12:25 PM
Paradise Ballroom
Kristin Del Rosso
Managing Director
DevSec
Madeleine Devost
Intelligence Specialist
Nisos
Lunch
Lunch
12:25 PM-1:45 PM
Paradise Terrace
The Consolation of Threat Intelligence
The Consolation of Threat Intelligence
1:45 PM-2:10 PM
Paradise Ballroom
Juan Andres Guerrero-Saade
AVP of Research for SentinelLabs
SentinelOne
PKFAIL: Supply-Chain Failures in Secure Boot Key Management
PKFAIL: Supply-Chain Failures in Secure Boot Key Management
2:10 PM-2:30 PM
Paradise Ballroom
Alex Matrosov
Founder and CEO
Binarly
Fabio Pagani
Vulnerability Research Lead
Binarly
Unearthing the Archaic: 25 Years of SSL VPNs and Their Lifecycle Vulnerability Footprints
Unearthing the Archaic: 25 Years of SSL VPNs and Their Lifecycle Vulnerability Footprints
2:30 PM-2:50 PM
Paradise Ballroom
MJ Emanuel
Threat Analyst
SAIS
Unveiling Hidden Infrastructure: Tracking Threats via SSH Public Keys
Unveiling Hidden Infrastructure: Tracking Threats via SSH Public Keys
2:50 PM-3:10 PM
OTR
Paradise Ballroom
Blake Butler
Head of Fraud Threat Intelligence
PayPal Inc.
Silas Cutler
OnlyScans
Afternoon Break Sponsored by Alperovitch Institute
Afternoon Break Sponsored by Alperovitch Institute
3:10 PM-3:40 PM
Paradise Ballroom Foyer
The Real AI Race - Disinformation In The Taiwanese Election
The Real AI Race - Disinformation In The Taiwanese Election
3:40 PM-4:00 PM
Paradise Ballroom
Martin Wendiggensen
PhD Researcher
Johns Hopkins SAIS Alperovitch Institute
That Story We Can't Tell
That Story We Can't Tell
4:00 PM-4:20 PM
OTR
Paradise Ballroom
Tom Hegel
Principal Threat Researcher
SentinelLabs
Follow the Money: Uncovering the CCP's Incorporation and Ownership of Chinese Firms Investing in the US
Follow the Money: Uncovering the CCP's Incorporation and Ownership of Chinese Firms Investing in the US
4:20 PM-4:40 PM
Paradise Ballroom
Dr Elly Rostoum
Managing Director
Alperovitch Institute, Johns Hopkins SAIS
Closing Remarks
Closing Remarks
4:40 PM-4:45 PM
Paradise Ballroom
Dinner
Dinner
7:00 PM-10:00 PM
Mountain Shadows Lawn
After Party Sponsored by Dreadnode
After Party Sponsored by Dreadnode
10:00 PM-1:00 AM
Dreadnode Suite
Breakfast
Breakfast
8:00 AM-9:00 AM
Paradise Terrace
WORKSHOP: Beating Sophistication With Simplicity: Advanced Techniques for Detecting New Malicious Infrastructure
WORKSHOP: Beating Sophistication With Simplicity: Advanced Techniques for Detecting New Malicious Infrastructure
9:00 AM-10:30 AM
Echo Room
Ken Bagnall
Founder and CEO
Silent Push
You Shall Not Pass: Dancing with Expressions
You Shall Not Pass: Dancing with Expressions
9:00 AM-9:25 AM
Mountain View Room
Matthias Frielingsdorf
VP of Research
iVerify
Let Them Eat Cake: “Secure by Upgrade” Software is a National Security Threat
Let Them Eat Cake: “Secure by Upgrade” Software is a National Security Threat
9:00 AM-9:25 AM
Valley Room
Kymberlee Price
CEO + Founder
Zatik Security
Kryptina RaaS: From Unsellable Cast-off to Enterprise Ransomware
Kryptina RaaS: From Unsellable Cast-off to Enterprise Ransomware
9:30 AM-9:55 AM
Mountain View Room
Jim Walter
Senior Threat Researcher
SentinelLabs
Frequently Attacked Questions
Frequently Attacked Questions
9:30 AM-9:55 AM
Valley Room
Gabriel Bernadett-Shapiro
Lead AI Researcher
Salesforce
Ebury: Public-private partnership unveils the full scale of a sophisticated Linux threat
Ebury: Public-private partnership unveils the full scale of a sophisticated Linux threat
10:00 AM-10:25 AM
Mountain View Room
Jean-Ian Boutin
Director of Threat Research
ESET
Raptor Train: China’s Multi-Year Mirai Facelift
Raptor Train: China’s Multi-Year Mirai Facelift
10:00 AM-10:25 AM
Valley Room
Michael Horka
Senior Lead Information Security Engineer
Lumen Technologies
Coffee Break
Coffee Break
10:25 AM-11:00 AM
Paradise Ballroom Foyer
WORKSHOP: Visualizing memory allocations with WinDbg and p5.js
WORKSHOP: Visualizing memory allocations with WinDbg and p5.js
11:00 AM-12:30 PM
Echo Room
Philippe Laulheret
Senior Vulnerability Researcher
Cisco Talos
R1Z: From Broker to Busted
R1Z: From Broker to Busted
11:00 AM-11:25 AM
OTR
Mountain View Room
Drea London Petter
VP, DFIR
SentinelOne
Following Frankenstein (and Friends): Hamas Cyber Operations In and Out Conflict
Following Frankenstein (and Friends): Hamas Cyber Operations In and Out Conflict
11:00 AM-11:25 AM
OTR
Valley Room
Saher Naumaan
Principal Threat Intelligence Analyst
BAE Systems Digital Intelligence
Honeypots, HMIs, and Havoc? Investigating the Real Threat Landscape of Internet-Exposed Control Systems
Honeypots, HMIs, and Havoc? Investigating the Real Threat Landscape of Internet-Exposed Control Systems
11:30 AM-11:55 AM
Mountain View Room
Glenn Thorpe
Sr. Director of Security Research & Detection Engineering
GreyNoise Intelligence
Jumping hurdles to verify vulnerabilities on Chinese Instant Messaging
Jumping hurdles to verify vulnerabilities on Chinese Instant Messaging
11:30 AM-11:55 AM
OTR
Valley Room
Vitor Ventura
Threat Researcher
Cisco Talos
Come Play, Supreme Leader! DPRK Remote Workers and the Culture of Evony Online
Come Play, Supreme Leader! DPRK Remote Workers and the Culture of Evony Online
12:00 PM-12:25 PM
Mountain View Room
Vincas Ciziunas
Intelligence Fellow
Nisos
Knowledge IIS power
Knowledge IIS power
12:00 PM-12:25 PM
Valley Room
John Southworth
Threat Intelligence Senior Manager
PwC
Lunch
Lunch
12:25 PM-1:45 PM
Paradise Terrace
WORKSHOP: The AI-talian Job: Hands-on attacks on AI Systems
WORKSHOP: The AI-talian Job: Hands-on attacks on AI Systems
1:45 PM-3:15 PM
Echo Room
Travis Smith
VP - ML Threat Ops
HiddenLayer
Down the BadHatch: Analysis of a Financially Motivated Access Broker
Down the BadHatch: Analysis of a Financially Motivated Access Broker
1:45 PM-2:10 PM
Mountain View Room
Colin Cowie
Senior Threat Intelligence Analyst
Sophos
DigitalRecyclers: Yet another member of the APT15 galaxy
DigitalRecyclers: Yet another member of the APT15 galaxy
1:45 PM-2:10 PM
Valley Room
Matthieu Faou
Senior Malware Researcher
ESET
No Such Talk
No Such Talk
2:15 PM-2:40 PM
OTR
Mountain View Room
To Be Announced
UNC1860 & The Temple of Oats - Iran's hidden hand in Middle Eastern Networks
UNC1860 & The Temple of Oats - Iran's hidden hand in Middle Eastern Networks
2:15 PM-2:40 PM
Valley Room
Stav Shulman
Senior Researcher
Google Cloud (Mandiant)
Tracking the Cyber Space Ghost from Oast to Oast
Tracking the Cyber Space Ghost from Oast to Oast
2:45 PM-3:10 PM
Mountain View Room
John Jarocki
Distinguished Member of Technical Staff
Sandia National Laboratories
Avalanche: Unmasking UNC5537's Campaign Targeting Snowflake Customer Instances
Avalanche: Unmasking UNC5537's Campaign Targeting Snowflake Customer Instances
2:45 PM-3:10 PM
Valley Room
Austin Larsen
Senior Threat Analyst
Google Cloud (Mandiant)
Happy Hour Sponsored by Silent Push
Happy Hour Sponsored by Silent Push
3:15 PM-4:15 PM
Community Room
3rd Annual Cyber Crime Gala - Cocktail Reception
3rd Annual Cyber Crime Gala - Cocktail Reception
7:00 PM-7:30 PM
Paradise Ballroom Foyer
3rd Annual Cyber Crime Gala - Dinner & Awards
3rd Annual Cyber Crime Gala - Dinner & Awards
7:30 PM-12:00 AM
Paradise Ballroom
After Party Sponsored by Dreadnode
After Party Sponsored by Dreadnode
11:55 PM-2:00 AM
Dreadnode Suite
Standard Departure Day
Standard Departure Day
10:00 AM-11:00 AM
Add-On Research & Recovery Day
Add-On Research & Recovery Day
10:30 AM-11:00 AM