<?xml version='1.0' encoding='utf-8' ?>
<!-- Made with love by pretalx v2026.3.0.dev0. -->
<schedule>
    <generator name="pretalx" system="event.sec-t.org" version="2026.3.0.dev0" />
    <version>0.8</version>
    <conference>
        <title>SEC-T 2025</title>
        <acronym>sec-t-2025</acronym>
        <start>2025-09-10</start>
        <end>2025-09-12</end>
        <days>3</days>
        <timeslot_duration>00:05</timeslot_duration>
        <base_url>https://event.sec-t.org</base_url>
        <logo>https://event.sec-t.org/media/sec-t-2025/img/sec-t-logo-white-on-black_Nady611.png</logo>
        <time_zone_name>Europe/Stockholm</time_zone_name>
        
        
    </conference>
    <day index='1' date='2025-09-10' start='2025-09-10T04:00:00+02:00' end='2025-09-11T03:59:00+02:00'>
        <room name='Main hall' guid='95fb7a11-3924-50d2-9a79-88e4c941e631'>
            <event guid='e251b9fd-5f9d-5eeb-8e23-d2943be5b558' id='79956' code='3QUA7S'>
                <room>Main hall</room>
                <title>Welcome to Community Day</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-10T13:00:00+02:00</date>
                <start>13:00</start>
                <duration>00:15</duration>
                <abstract>A warm welcome to Community Event, a free event open for anyone, with lots of breaks to mingle and maybe grab a drink.

```
  /$$$$$$  /$$$$$$$$  /$$$$$$  /$$$$$$$$
 /$$__  $$| $$_____/ /$$__  $$|__  $$__/
| $$  \__/| $$      | $$  \__/   | $$   
|  $$$$$$ | $$$$$   | $$ /$$$$$$ | $$   
 \____  $$| $$__/   | $$|______/ | $$   
 /$$  \ $$| $$      | $$    $$   | $$   
|  $$$$$$/| $$$$$$$$|  $$$$$$/   | $$   
 \______/ |________/ \______/    |__/                 
```</abstract>
                <slug>sec-t-2025-79956-welcome-to-community-day</slug>
                <track></track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/3QUA7S/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/3QUA7S/feedback/</feedback_url>
            </event>
            <event guid='b2e7ead8-d79d-5d22-b007-17bfc8d3b85b' id='75420' code='B7ZYQ8'>
                <room>Main hall</room>
                <title>LLM Security Literacy</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-10T13:15:00+02:00</date>
                <start>13:15</start>
                <duration>00:45</duration>
                <abstract>AI literacy now commands attention across many organisations in the EU. Article 4&#8212;AI Literacy&#8212;of the EU AI Act, mandates a baseline level of knowledge for all AI users in scope.
This session distils several landmark realisations in LLM security, grounded primarily in Anthropic&#8217;s published security research.

We conclude with two case studies: rapid prototypes of novel LLM application architectures, as food for thought. Each prototype is analysed from a security-first perspective, while demonstrating the capabilities - and shortcomings - of today&#8217;s strongest agentic software-engineering models.</abstract>
                <slug>sec-t-2025-75420-llm-security-literacy</slug>
                <track></track>
                
                <persons>
                    <person id='74964'>krister hedfors</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/B7ZYQ8/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/B7ZYQ8/feedback/</feedback_url>
            </event>
            <event guid='80691687-d56d-5300-a049-f2b6d2f88316' id='61948' code='N8SPBQ'>
                <room>Main hall</room>
                <title>Practical AWS Antiforensics</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-10T14:20:00+02:00</date>
                <start>14:20</start>
                <duration>00:30</duration>
                <abstract>Antiforensics refers to a set of techniques, tools, or practices used to hinder, mislead, or obstruct digital forensic investigations. This opens opportunities for attackers to intentionally disable or tamper with logs, use short-lived compute resources like AWS Lambda to carry out malicious actions, and store payloads in less-monitored services like object storage or serverless APIs. Effective cloud forensic readiness requires proactive measures such as enabling comprehensive logging (e.g., CloudTrail, VPC Flow Logs), enforcing strict IAM policies, and integrating tamper-evident storage solutions to preserve the integrity of evidence.

In this demo driven technical presentation I&#8217;ll begin by introducing the audience on how log collection, security detection and digital forensics is executed in AWS Environments, like what services are needed to ship data to a SIEM, what are the delays we can take advantage of, how Guardduty works and how SOC teams are getting non-cloud-specific logs from servers using SSM. Then I will demonstrate how an attacker can leverage common known blindspots, like the share responsibility model lack of visibility and the internal delays between log generation and log collection, to execute antiforensics techniques with the objective of hindering an investigator&#8217;s ability to recover, analyze, or attribute activity related to cloud-based attacks.</abstract>
                <slug>sec-t-2025-61948-practical-aws-antiforensics</slug>
                <track></track>
                
                <persons>
                    <person id='63049'>Santi Abastante</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/N8SPBQ/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/N8SPBQ/feedback/</feedback_url>
            </event>
            <event guid='39253631-b5ae-5f02-b047-801c99c934bb' id='78958' code='TJGL3H'>
                <room>Main hall</room>
                <title>Attacking and defending GitHub Actions</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-10T15:10:00+02:00</date>
                <start>15:10</start>
                <duration>00:30</duration>
                <abstract>GitHub Actions are the perfect tool for automating all aspects of your software workflows and deployment processes.
As Actions have access to source code, this makes them a prime target for (supply-chain) attacks.
Learn how to exploit and fix old vulnerabilities, what new vulnerabilities to be aware of, and how to reduce the impact should your Actions get exploited.</abstract>
                <slug>sec-t-2025-78958-attacking-and-defending-github-actions</slug>
                <track></track>
                
                <persons>
                    <person id='79927'>Simon Gerst</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/TJGL3H/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/TJGL3H/feedback/</feedback_url>
            </event>
            <event guid='29ce775b-aca2-5fca-93f7-e3c502919739' id='67818' code='FWGJCR'>
                <room>Main hall</room>
                <title>The Voices Of Confession</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-10T16:00:00+02:00</date>
                <start>16:00</start>
                <duration>00:45</duration>
                <abstract>As long as we can communicate securely, everything will be fine.

In this talk I will present how one can build an entire decentralised and distributed encrypted network to carry data, voice, text and more - all based on the sanctum project I presented at SEC-t last year.

From peer-to-peer and end-to-end encrypted tunnels between laptops, desktops and phones to full on group voice-calls and chatting between these devices, using only sanctum and its underlying protocol.

I will deep dive into said protocol, how it works, what the tradeoffs are and how to put this up yourself in a safe and secure way.

So put on your hacker hat, and let&apos;s hack.</abstract>
                <slug>sec-t-2025-67818-the-voices-of-confession</slug>
                <track></track>
                
                <persons>
                    <person id='68854'>joris</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>true</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/FWGJCR/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/FWGJCR/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Hardware Hacking Village' guid='9296f48f-07d9-59dc-aab3-886a2dd21695'>
            <event guid='d967af49-6c15-5e57-b6c4-158afacbd13f' id='81056' code='KCEQL7'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Arduino for total Newbies</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-10T09:00:00+02:00</date>
                <start>09:00</start>
                <duration>03:30</duration>
                <abstract>Workshop: Arduino for total Newbies

Even total newbies can learn to make way cool electronic projects with
Arduino. It&#8217;s fun and easy. Itinerary: Intro to Arduino, Everything
about Electronics, Learn to Solder, free Arduino software, Program
Arduinos, Read schematics, Make a TV-B-Gone on a Solderless Breadboard,
Target Practice.

This workshop is free and open for non-ticket holders as well. Hardware needed may be purchased on site.</abstract>
                <slug>sec-t-2025-81056-workshop-arduino-for-total-newbies</slug>
                <track></track>
                
                <persons>
                    <person id='82511'>Mitch Altman</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/KCEQL7/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/KCEQL7/feedback/</feedback_url>
            </event>
            <event guid='37ea6e15-21ec-5e24-8a06-9f973c75d4cb' id='81048' code='J998RJ'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Build Your Own Meshtastic Node: Off-Grid, Encrypted LoRa Meshnets for Beginners!</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-10T12:45:00+02:00</date>
                <start>12:45</start>
                <duration>01:45</duration>
                <abstract>Beginners can now create off-grid, encrypted mesh networks for cheap, with applications in emergency communication, sensor monitoring, and more! These mesh networks have been popping up in cities all over the world, and this class will go over everything a beginner needs to run or build their own nodes. If you&apos;ve ever wanted to legally create off-grid, encrypted mesh networks that can span over a hundred miles, you can get started with Meshtastic for around $50. This class will serve as a beginner user&apos;s guide to Meshtastic, covering everything from hardware basics to advanced software configuration. We will use custom Meshtastic nodes to see real-world results in Las Vegas and explore attacks against mesh networks. Attendees will learn to run their own Meshtastic nodes, select antenna options, and configure software!

This workshop is free and open for non-ticket holders as well. Hardware needed may be purchased on site.</abstract>
                <slug>sec-t-2025-81048-workshop-build-your-own-meshtastic-node-off-grid-encrypted-lora-meshnets-for-beginners</slug>
                <track></track>
                
                <persons>
                    <person id='82509'>Kody Kinzie</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/J998RJ/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/J998RJ/feedback/</feedback_url>
            </event>
            <event guid='30622d1a-4b7f-51be-8215-7d7d95e3f0c9' id='81057' code='CYRXH7'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: SEC-T Music Synthesizer Badge / Learn to Solder</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-10T14:45:00+02:00</date>
                <start>14:45</start>
                <duration>02:30</duration>
                <abstract>SEC-T 0x10sion Music Synthesizer Badge kit

You can buy the kit at the SEC-T shop.

Anyone can learn to solder! And anyone can learn to make music, sound
(and noise!) with computer chips! All participants will easily learn
all of this by making their SEC-T Music Synthesizer Badge from the open
hardware kit. This workshop is for everyone -- even total beginners.

Code: https://github.com/SEC-T/badge-2024

This workshop is free and open for non-conference ticket holders as well. Hardware needed may be purchased on site.</abstract>
                <slug>sec-t-2025-81057-workshop-sec-t-music-synthesizer-badge-learn-to-solder</slug>
                <track></track>
                
                <persons>
                    <person id='82511'>Mitch Altman</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/CYRXH7/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/CYRXH7/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Community Area' guid='0b28a60b-c02d-5405-9997-9d673be0f6ad'>
            <event guid='813f3a05-71a0-557a-b90d-3154abfda329' id='81046' code='XCDVCK'>
                <room>Community Area</room>
                <title>Workshop: Introduction to Linux Malware Reverse Engineering</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-10T09:00:00+02:00</date>
                <start>09:00</start>
                <duration>08:00</duration>
                <abstract>This workshop requires pre-registration at: https://blackhoodie.re/SecT2025/

Introduction to Linux Malware Reverse Engineering
Teachers: Marion Marschalek (@pinkflawd)

Topic: Ever wanted to know what a Linux malware looks like from the inside? Wonder no more, we&#8217;ll grab our scalpels and teach you autopsy in this class. We&#8217;ll go from 0 to hey ransomware! in just one day. This training is very busy, from file formats, loaders and process execution, disassemblers and debuggers, to hey this is encrypting files isn&#8217;t it. But don&#8217;t worry, we&#8217;ll arm you with all the necessary skills! The target will be x86-64 Linux ELF executables.

Prerequisites: Bring a laptop with IDAPro Free installed, class materials will be hosted on github.

What is BlackHoodie?
BlackHoodie is a free, women only reverse engineering workshop and community. More information can be found here: https://www.blackhoodie.re/about/</abstract>
                <slug>sec-t-2025-81046-workshop-introduction-to-linux-malware-reverse-engineering</slug>
                <track></track>
                
                <persons>
                    <person id='82508'>Marion Marschalek</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/XCDVCK/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/XCDVCK/feedback/</feedback_url>
            </event>
            
        </room>
        
    </day>
    <day index='2' date='2025-09-11' start='2025-09-11T04:00:00+02:00' end='2025-09-12T03:59:00+02:00'>
        <room name='Main hall' guid='95fb7a11-3924-50d2-9a79-88e4c941e631'>
            <event guid='6a4d91e2-759a-58e1-9ed1-531f722fcef8' id='79955' code='M9FMDP'>
                <room>Main hall</room>
                <title>Welcome to SEC-T</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-11T09:00:00+02:00</date>
                <start>09:00</start>
                <duration>00:15</duration>
                <abstract>A warm welcome and introduction talk about SEC-T by the SEC-T organizers.

```
   _____ ______ _____   _______ 
  / ____|  ____/ ____| |__   __|
 | (___ | |__ | |   ______| |   
  \___ \|  __|| |  |______| |   
  ____) | |___| |____     | |   
 |_____/|______\_____|    |_|                             
```</abstract>
                <slug>sec-t-2025-79955-welcome-to-sec-t</slug>
                <track></track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/M9FMDP/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/M9FMDP/feedback/</feedback_url>
            </event>
            <event guid='bf19443a-d885-5aea-b8a2-2a75318324c2' id='78081' code='QG9GNT'>
                <room>Main hall</room>
                <title>CYBER DEFENCE UNDER FIRE: Strategic insights from Ukraine&apos;s frontline</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-11T09:15:00+02:00</date>
                <start>09:15</start>
                <duration>00:30</duration>
                <abstract>As Ukraine endures a relentless wave of cyber-attacks during the ongoing conflict, the country&#8217;s cyber defense strategies have been put to the ultimate test. This presentation shares lessons from Ukraine&#8217;s frontline defense, focusing on the broader strategic impact of cyber warfare, including the significant cyber attack on Kyivstar. The talk will provide valuable insights for those seeking to understand the role of cybersecurity in modern warfare.</abstract>
                <slug>sec-t-2025-78081-cyber-defence-under-fire-strategic-insights-from-ukraine-s-frontline</slug>
                <track></track>
                
                <persons>
                    <person id='80683'>Yurii Shaposhnikov</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>true</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/QG9GNT/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/QG9GNT/feedback/</feedback_url>
            </event>
            <event guid='5bf22107-9475-5729-87f2-d956436126dc' id='78876' code='DS3EAC'>
                <room>Main hall</room>
                <title>Unicode as low-level attack primitive</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-11T09:45:00+02:00</date>
                <start>09:45</start>
                <duration>00:30</duration>
                <abstract>Whether it is for applications, operating systems, databases, etc. anything that reads, writes, manipulates data must be using an encoding. On modern days, it will mostly always be UTF-8 by default, sometimes UTF-16, both are Unicode standards. Security auditors and researchers often manipulate data or protocols, but what about manipulating the underlying encoding?

Unicode has become the one encoding to rule them all, replacing hundreds of old standards. At first glance, it could feel like a simplification. It is not. All those old encodings where ultra-basic while Unicode is overwhelmingly complex beyond what you can imagine until reading the specifications.

Over the years, the lack of awareness about Unicode and its complexity have led to a lot of issues and implementation errors. The version 16.0 of the Unicode Standard is 1140 pages long, and there are over 60 UAX (Unicode Standard Annexes), UTS (Unicode Technical Standards), UTR (Unicode Technical Reports), each of which is comparable to an IETF RFC. During the last 3 years, I have analysed about 15 programming languages, none of which is fully implementing 100% of the Unicode standard.

Any piece of software around you is probably using Unicode, but none of them have complete implementation of it and all of them a probably different. What could go wrong?</abstract>
                <slug>sec-t-2025-78876-unicode-as-low-level-attack-primitive</slug>
                <track></track>
                
                <persons>
                    <person id='79840'>noraj</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/DS3EAC/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/DS3EAC/feedback/</feedback_url>
            </event>
            <event guid='15d9c196-5e69-5bc4-a887-db3e990f91e9' id='65257' code='ZDRKV9'>
                <room>Main hall</room>
                <title>Adware As a Service</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-11T10:45:00+02:00</date>
                <start>10:45</start>
                <duration>00:45</duration>
                <abstract>In the run up to Google&#8217;s plans to dump 3rd party cookies, marketing firms (a $1.7 TRILLION dollar industry) were sent into a complete panic. These firms relied heavily on 3rd party cookies in order to better attribute CPM (cost per 1000 clicks) and how many of those clicks turned into sales. So advertisers could better study human behavior and trends in order to more effectively sell products. 

As a former Security Engineer at the Largest Independent Digital Marketing firm in the world, I had a unique view into the evils that these companies were developing in order to not only maintain a few into consumer trends but to increase these views, increase the invasiveness of these techniques, and increase the cooperation between all levels of the industry from display point (streaming service), device point (iPhone, TV), location points (via ISP), to sales point. 

This talk is a peek under the curtain for the server side data harvesting that agencies have developed, and how they&#8217;ve managed to twist this further invasion into so-called consumer protection and increased privacy.</abstract>
                <slug>sec-t-2025-65257-adware-as-a-service</slug>
                <track></track>
                
                <persons>
                    <person id='66093'>Sean &quot;4dw@r3&quot; Juroviesky</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/ZDRKV9/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/ZDRKV9/feedback/</feedback_url>
            </event>
            <event guid='4fadf33f-bcc6-52a7-96d6-011b466462ec' id='66489' code='3NPMEZ'>
                <room>Main hall</room>
                <title>I know who your users are - abusing user enumeration for OSINT and Bug Bounty</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-11T11:30:00+02:00</date>
                <start>11:30</start>
                <duration>00:30</duration>
                <abstract>If you&#8217;re used to seeing user enumeration marked as informational or excluded from bug bounty program scopes, you&#8217;re not alone. User enumeration is one of those findings that&#8217;s hard to prove as impactful, but also hard to get rid of.

This talk will dive into user enumeration and demonstrate its real impact, something that might make clients reconsider the severity of this finding.</abstract>
                <slug>sec-t-2025-66489-i-know-who-your-users-are-abusing-user-enumeration-for-osint-and-bug-bounty</slug>
                <track></track>
                
                <persons>
                    <person id='67197'>Anton Linn&#233;</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/3NPMEZ/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/3NPMEZ/feedback/</feedback_url>
            </event>
            <event guid='bc392134-1167-5b74-8828-272ed45f9951' id='63277' code='UCPFRS'>
                <room>Main hall</room>
                <title>Inside Google&apos;s Discovery &amp; Remediation of a Critical CPU Vulnerability</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-11T13:00:00+02:00</date>
                <start>13:00</start>
                <duration>00:45</duration>
                <abstract>Just as Vulnerability Research is an important area of focus at Google, so is Vulnerability Response to critical and complex security vulnerabilities.

These responses not only safeguards the security of Google&apos;s products and users but also extends its reach to millions of devices connected to the Internet, in certain instances, including the case I&apos;m going to share here in details.

In this talk, I&apos;d like to go through a recent incident at Google, including technical details, in which I was the global lead. The incident involves the discovery by a Google&apos;s security researcher of a critical CPU vulnerability (Reptar) and the extensive remediation efforts across all of Google&apos;s products and systems.

The incident presented a confluence of intriguing technical challenges and unique operational complexities. I plan to elaborate on the strategies employed by Google to address these challenges effectively, emphasizing the time constraints and pressures under which we operated.</abstract>
                <slug>sec-t-2025-63277-inside-google-s-discovery-remediation-of-a-critical-cpu-vulnerability</slug>
                <track></track>
                
                <persons>
                    <person id='64354'>Yousif Hussin</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/UCPFRS/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/UCPFRS/feedback/</feedback_url>
            </event>
            <event guid='c68dd6c2-3767-5df7-acac-3166ced1fea5' id='79078' code='QKTYVQ'>
                <room>Main hall</room>
                <title>Offensive Security with Machine Learning: Applications and a Blockchain Case Study</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-11T13:45:00+02:00</date>
                <start>13:45</start>
                <duration>00:30</duration>
                <abstract>Offensive security adopts an attacker&apos;s mindset and techniques to strengthen defenses. The field has evolved to incorporate more complex tooling and increased automation and, recently, large language models (LLMs). While early AI lacked rigor for security professionals, recent autonomous agents now outperform humans in CTF competitions.

In this talk, we explore how recent advancements in AI can be leveraged in the offensive workflow.
First, we examine techniques to enable adversarial use of LLMs. Second, we focus on recent advancements of offensive use of AI throughout the cyber kill chain. To ground these ideas, we conclude by presenting a case study on automating exploit generation for blockchain. Smart contracts, which underpin the decentralized finance ecosystem and collectively govern billions of dollars, are particularly vulnerable due to their immutable and open characteristics. We present our early work on agentic use of AI to aid smart contract auditors in their existing vulnerability detection workflow.

This talk aims to show how you, as a security practitioner, can begin leveraging AI methods to scale your existing workflows while also grounding your understanding of the evolving capabilities that adversaries have at their disposal.</abstract>
                <slug>sec-t-2025-79078-offensive-security-with-machine-learning-applications-and-a-blockchain-case-study</slug>
                <track></track>
                
                <persons>
                    <person id='80043'>Vivi Andersson</person><person id='80590'>Sofia Bobadilla</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/QKTYVQ/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/QKTYVQ/feedback/</feedback_url>
            </event>
            <event guid='0b01316a-4fcb-5e98-a7a7-56b3f808f8a0' id='65294' code='JAVP9M'>
                <room>Main hall</room>
                <title>Ignition Under Fire: Exploring Cybersecurity Attack Vectors in Rocket Propulsion</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-11T14:45:00+02:00</date>
                <start>14:45</start>
                <duration>00:45</duration>
                <abstract>The increasing reliance on digital systems in modern rocketry, from design and manufacturing to launch operations and in-flight control, introduces significant cybersecurity vulnerabilities. This presentation, &quot;Ignition Under Fire,&quot; explores the diverse attack vectors targeting rocket propulsion systems, examining potential consequences ranging from mission delays and data breaches to catastrophic failures. We will analyze the complex interplay of software, hardware, and network components within propulsion systems, identifying key weaknesses susceptible to exploitation. The presentation will delve into specific attack scenarios, software manipulation, sensor spoofing, and network intrusion, highlighting the potential impact on critical parameters like thrust, fuel flow, and combustion stability. Furthermore, we will discuss the unique challenges in securing these complex systems. We will explore how a Zero Trust architecture can be implemented to enhance security by enforcing strict access control, micro-segmentation, and continuous authentication and authorization throughout the propulsion system.</abstract>
                <slug>sec-t-2025-65294-ignition-under-fire-exploring-cybersecurity-attack-vectors-in-rocket-propulsion</slug>
                <track></track>
                
                <persons>
                    <person id='66134'>Paul Coggin</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/JAVP9M/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/JAVP9M/feedback/</feedback_url>
            </event>
            <event guid='5448790b-f491-5f94-a159-9ae6fc30f062' id='78609' code='VMZMWD'>
                <room>Main hall</room>
                <title>Applied Detections Bypass</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-11T15:30:00+02:00</date>
                <start>15:30</start>
                <duration>00:30</duration>
                <abstract>Red Teams and Blue Teams thrive when they grow through iterative progress. However, I&apos;ve historically witnessed Red Teams strive for logarithmic growth when caught by the Blue Team. This ultimately slows progress leaving a vast swath of median capabilities unexplored.

This talk is an interactive journey through open source detections, where we will bypass detections in a collaborative and iterative fashion. Attendees will gain a framework for leveling-up their Security programs, and hopefully pick up a few technical tricks along the way. Audience participation is highly encouraged.</abstract>
                <slug>sec-t-2025-78609-applied-detections-bypass</slug>
                <track></track>
                
                <persons>
                    <person id='79634'>int0x80</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/VMZMWD/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/VMZMWD/feedback/</feedback_url>
            </event>
            <event guid='9b183979-d4c7-51f2-8c66-e49971cb837f' id='64107' code='XFGJYK'>
                <room>Main hall</room>
                <title>How to bug hotel rooms v2.0</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-11T16:15:00+02:00</date>
                <start>16:15</start>
                <duration>00:45</duration>
                <abstract>Do you travel with expensive stuff? Do you like feeling safe about leaving your expensive stuff in your hotel room? Have you ever had anything stolen out of your room, or discovered someone has gained access to your room while you weren&apos;t there? .. what about .. other rooms? Maybe not EXACTLY a hotel room? I&apos;ve presented on securing hotel rooms in the past, but adding home assistant, zwave devices, co2 sensors and millimeter wave radar it&apos;s become a whole new game - a VERY interesting one! With graphs and remote access!</abstract>
                <slug>sec-t-2025-64107-how-to-bug-hotel-rooms-v2-0</slug>
                <track></track>
                
                <persons>
                    <person id='65045'>Dan Tentler</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/XFGJYK/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/XFGJYK/feedback/</feedback_url>
            </event>
            <event guid='85c1b3fd-18ac-5ca5-aa85-5b2c7a080a4d' id='80656' code='AQU8CM'>
                <room>Main hall</room>
                <title>Lightning talks &amp; dinner wraps</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-11T17:30:00+02:00</date>
                <start>17:30</start>
                <duration>01:00</duration>
                <abstract>During SEC-T each year we take one hour out of the schedule to allow lightning speakers to do brief presentations on stage. A smaller dinner is served in the form of wraps.

- **Jesper**: Hello from SecurityFest
- **Erik:** Life as an IPv4 address - Insights from a worldwide honeypot network
- **Alfred:** goSnoop: Using the Linux Kernel and eBPF for Syscall and DNS Monitoring
- **kdk:** Bypassable fingerprinting: lessons learned from a queer social network
- **Mikael B&#229;&#229;th:** Vide coding for veterans
- **Astrid:** This is (not) a printer on the Internet
- **Ignacio Navarro:** Insert coin: Hacking Arcades for Fun 
- Your talk here?

If you wish to hold a lightning talk (_maximum_ 15 minutes), send us at email at cfp@sec-t.org. Please include a sentence or two what the talk is about, and a rough time estimate to make planning easier!

---

```
 ____  _____ ____    _____ 
/ ___|| ____/ ___|  |_   _|
\___ \|  _|| |   _____| |  
 ___) | |__| |__|_____| |  
|____/|_____\____|    |_|  
```</abstract>
                <slug>sec-t-2025-80656-lightning-talks-dinner-wraps</slug>
                <track></track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/AQU8CM/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/AQU8CM/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Hardware Hacking Village' guid='9296f48f-07d9-59dc-aab3-886a2dd21695'>
            <event guid='b0ee6c76-3d42-59e5-a380-ee119867371a' id='81054' code='YPRM3V'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Make your very own evil IoT Cat Lamp with WLED!</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-11T09:30:00+02:00</date>
                <start>09:30</start>
                <duration>00:45</duration>
                <abstract>In this workshop, we&apos;ll upgrade a cute cat lamp with programmable LED hardware, walk through flashing it with WLED to give it custom animations, and then reflashing it to turn it into a sneaky WiFi hacking device. Workshop will involve beginner-level soldering and assembly skills. Great for cat-lovers and those looking to get into DIY IoT projects. Soldering and assembly tools will be provided, and hardware kits needed may purchased on-site.

The workshop is free for all conference attendees (not including hardware).</abstract>
                <slug>sec-t-2025-81054-workshop-make-your-very-own-evil-iot-cat-lamp-with-wled</slug>
                <track></track>
                
                <persons>
                    <person id='82510'>Michael Raymond</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/YPRM3V/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/YPRM3V/feedback/</feedback_url>
            </event>
            <event guid='325cdfba-ff9f-510d-969e-163be7c3f1cf' id='81058' code='UDQK8V'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: SEC-T Music Synthesizer Badge / Learn to Solder</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-11T10:30:00+02:00</date>
                <start>10:30</start>
                <duration>02:15</duration>
                <abstract>SEC-T 0x10sion Music Synthesizer Badge kit

You can buy the kit at the SEC-T shop.

Anyone can learn to solder! And anyone can learn to make music, sound
(and noise!) with computer chips! All participants will easily learn
all of this by making their SEC-T Music Synthesizer Badge from the open
hardware kit. This workshop is for everyone -- even total beginners.

Code: https://github.com/SEC-T/badge-2024

The workshop is free for all conference attendees (not including hardware).</abstract>
                <slug>sec-t-2025-81058-workshop-sec-t-music-synthesizer-badge-learn-to-solder</slug>
                <track></track>
                
                <persons>
                    <person id='82511'>Mitch Altman</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/UDQK8V/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/UDQK8V/feedback/</feedback_url>
            </event>
            <event guid='fddd31af-2469-59e5-8424-cc39e4b19d3e' id='81049' code='L98W77'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Build Your Own Meshtastic Node: Off-Grid, Encrypted LoRa Meshnets for Beginners!</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-11T13:00:00+02:00</date>
                <start>13:00</start>
                <duration>01:45</duration>
                <abstract>Beginners can now create off-grid, encrypted mesh networks for cheap, with applications in emergency communication, sensor monitoring, and more! These mesh networks have been popping up in cities all over the world, and this class will go over everything a beginner needs to run or build their own nodes. If you&apos;ve ever wanted to legally create off-grid, encrypted mesh networks that can span over a hundred miles, you can get started with Meshtastic for around $50. This class will serve as a beginner user&apos;s guide to Meshtastic, covering everything from hardware basics to advanced software configuration. We will use custom Meshtastic nodes to see real-world results in Las Vegas and explore attacks against mesh networks. Attendees will learn to run their own Meshtastic nodes, select antenna options, and configure software!

The workshop is free for all conference attendees (not including hardware).</abstract>
                <slug>sec-t-2025-81049-workshop-build-your-own-meshtastic-node-off-grid-encrypted-lora-meshnets-for-beginners</slug>
                <track></track>
                
                <persons>
                    <person id='82509'>Kody Kinzie</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/L98W77/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/L98W77/feedback/</feedback_url>
            </event>
            <event guid='0a536b7e-3aeb-549f-8070-c40900d5ead1' id='81059' code='3TYWA8'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: TV-B-Gone / Learn to Solder</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-11T15:00:00+02:00</date>
                <start>15:00</start>
                <duration>01:30</duration>
                <abstract>Workshop: TV-B-Gone / Learn to Solder

Anyone can learn to solder! And a fun way to do learn is by making
this wonderful little device that encourages you to turn
off TVs in public places! It works on a huge percentage of all TVs in
the world. Airports, bars, schools, waiting rooms&#8230; Works from 50 meters
away!

The workshop is free for all conference attendees (not including hardware).</abstract>
                <slug>sec-t-2025-81059-workshop-tv-b-gone-learn-to-solder</slug>
                <track></track>
                
                <persons>
                    <person id='82511'>Mitch Altman</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/3TYWA8/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/3TYWA8/feedback/</feedback_url>
            </event>
            <event guid='c8287135-70ec-56b8-96b7-13137c7e96e0' id='81051' code='CJZCLL'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Meshtastic for Hackers: Set up, Configure, &amp; Deploy Nodes for Advanced Use</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-11T16:45:00+02:00</date>
                <start>16:45</start>
                <duration>01:45</duration>
                <abstract>Meshtastic is a long range, encrypted, off-grid mesh protocol that features many powerful modules, configurations, and settings. For beginners just getting started, it can be confusing to dive into these features! In this workshop, we&apos;ll explore the exciting modules that make Meshtastic more fun and useful. We&apos;ll cover how to customize the encryption, add hardware like GPS and sensors, and change the default transmission settings to adapt to specific environments. Attendees will learn to customize their Meshtastic nodes for any situation using the built in modules and settings. We&apos;ll also explore attacks against Meshtastic, and how to get involved in your local area! What to bring: Computer with Google Chrome, iOS or Android smartphone. What you get: 1 Bluetooth Nugget+ LoRa Backpack + weather sensor

The workshop is free for all conference attendees (not including hardware).</abstract>
                <slug>sec-t-2025-81051-workshop-meshtastic-for-hackers-set-up-configure-deploy-nodes-for-advanced-use</slug>
                <track></track>
                
                <persons>
                    <person id='82509'>Kody Kinzie</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/CJZCLL/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/CJZCLL/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Club SEC-T' guid='408b5b1e-871c-5ee1-b043-b8d0a49d7480'>
            <event guid='adf5414c-fee5-533f-a661-162bc6693791' id='81149' code='EVJ3ZK'>
                <room>Club SEC-T</room>
                <title>Karategamers Retro Arcade</title>
                <subtitle></subtitle>
                <type>Recreation</type>
                <date>2025-09-11T12:30:00+02:00</date>
                <start>12:30</start>
                <duration>07:00</duration>
                <abstract>Play retro games, chill, hang out, and listen to low volume music DJ:ed by Syntax Error.

```
 _  __               _                                           
| |/ /__ _ _ __ __ _| |_ ___  __ _  __ _ _ __ ___   ___ _ __ ___ 
| &apos; // _` | &apos;__/ _` | __/ _ \/ _` |/ _` | &apos;_ ` _ \ / _ \ &apos;__/ __|
| . \ (_| | | | (_| | ||  __/ (_| | (_| | | | | | |  __/ |  \__ \
|_|\_\__,_|_|  \__,_|\__\___|\__, |\__,_|_| |_| |_|\___|_|  |___/
                             |___/                               
```</abstract>
                <slug>sec-t-2025-81149-karategamers-retro-arcade</slug>
                <track></track>
                
                <persons>
                    <person id='82606'>Weyland</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/EVJ3ZK/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/EVJ3ZK/feedback/</feedback_url>
            </event>
            <event guid='5f72a9b0-9197-58c4-962c-7b89f3146cdc' id='81239' code='LPPTHF'>
                <room>Club SEC-T</room>
                <title>Club SEC-T opens for the public</title>
                <subtitle></subtitle>
                <type>Performance</type>
                <date>2025-09-11T19:30:00+02:00</date>
                <start>19:30</start>
                <duration>00:30</duration>
                <abstract>The official party for SEC-T starts, and opens for non-ticket holders.

Club SEC-T is -free- to attend for anyone 18 years or older, whether you&apos;re a conference guest or just want a ridiculously geeky Thursday night and don&apos;t even know what SEC-T is!
This also means, as a conference guest, you&apos;re free to invite your non-ticket-holding friends.

Official Facebook event: https://www.facebook.com/events/2110818196113594</abstract>
                <slug>sec-t-2025-81239-club-sec-t-opens-for-the-public</slug>
                <track></track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/LPPTHF/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/LPPTHF/feedback/</feedback_url>
            </event>
            <event guid='cf2f6903-0c7d-541e-b74f-7e1184221aa3' id='81153' code='NVYJQX'>
                <room>Club SEC-T</room>
                <title>Weyland&apos;s Quiz</title>
                <subtitle></subtitle>
                <type>Contest</type>
                <date>2025-09-11T20:00:00+02:00</date>
                <start>20:00</start>
                <duration>01:30</duration>
                <abstract>Join us for another quiz with great music and visual clues! Some questions are more security related than others but all of it is fun! It&apos;s a though one so feel free to use your favorite search engine or other means to win.

Created by Weyland.

```
  ____ _       _       ____  _____ ____    _____ 
 / ___| |_   _| |__   / ___|| ____/ ___|  |_   _|
| |   | | | | | &apos;_ \  \___ \|  _|| |   _____| |  
| |___| | |_| | |_) |  ___) | |__| |__|_____| |  
 \____|_|\__,_|_.__/  |____/|_____\____|    |_|  
```</abstract>
                <slug>sec-t-2025-81153-weyland-s-quiz</slug>
                <track></track>
                
                <persons>
                    <person id='82606'>Weyland</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/NVYJQX/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/NVYJQX/feedback/</feedback_url>
            </event>
            <event guid='d9c3e37d-aad9-52f0-8bd0-ace11c3c5b5e' id='81154' code='YYGZCB'>
                <room>Club SEC-T</room>
                <title>Artist</title>
                <subtitle></subtitle>
                <type>Performance</type>
                <date>2025-09-11T21:30:00+02:00</date>
                <start>21:30</start>
                <duration>01:00</duration>
                <abstract>** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance ** Live Artist Performance **</abstract>
                <slug>sec-t-2025-81154-artist</slug>
                <track></track>
                
                <persons>
                    
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/YYGZCB/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/YYGZCB/feedback/</feedback_url>
            </event>
            <event guid='8680e26c-3ea4-5064-943f-759a55b0365c' id='81156' code='8DLCGT'>
                <room>Club SEC-T</room>
                <title>Syntax Error DJs</title>
                <subtitle></subtitle>
                <type>Performance</type>
                <date>2025-09-11T22:30:00+02:00</date>
                <start>22:30</start>
                <duration>02:30</duration>
                <abstract>** Syntax Error DJs are putting on a Party ** Syntax Error DJs are putting on a Party ** Syntax Error DJs are putting on a Party ** Syntax Error DJs are putting on a Party ** Syntax Error DJs are putting on a Party ** Syntax Error DJs are putting on a Party ** Syntax Error DJs are putting on a Party **</abstract>
                <slug>sec-t-2025-81156-syntax-error-djs</slug>
                <track></track>
                
                <persons>
                    <person id='82606'>Weyland</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/8DLCGT/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/8DLCGT/feedback/</feedback_url>
            </event>
            
        </room>
        
    </day>
    <day index='3' date='2025-09-12' start='2025-09-12T04:00:00+02:00' end='2025-09-13T03:59:00+02:00'>
        <room name='Main hall' guid='95fb7a11-3924-50d2-9a79-88e4c941e631'>
            <event guid='9fea5f10-ca55-524d-aed7-f85a7309fff5' id='79616' code='SNZ8XW'>
                <room>Main hall</room>
                <title>Gotcha! &#8211; How to Track Down a Drone Operator in the Heart of War</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-12T09:00:00+02:00</date>
                <start>09:00</start>
                <duration>00:45</duration>
                <abstract>Armed conflict accelerates technological development while exposing our blind spots in threat awareness. Even seemingly harmless diagnostic data from drones can be weaponized&#8212;with potentially deadly consequences.

This talk will include a live demonstration of advanced techniques used to intercept and locate drone operators in real-world war zones. Using the example of a three-day military operation in Ukraine, we&#8217;ll walk through how RF weaknesses can be exploited to detect and counter drone threats, and how custom tools can be built to track operators in the field.</abstract>
                <slug>sec-t-2025-79616-gotcha-how-to-track-down-a-drone-operator-in-the-heart-of-war</slug>
                <track></track>
                
                <persons>
                    <person id='80525'>Micha&#322; K&#322;aput</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/SNZ8XW/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/SNZ8XW/feedback/</feedback_url>
            </event>
            <event guid='64a5c5b8-25b3-518b-a3ff-9166c8339e6e' id='74422' code='SGBNCS'>
                <room>Main hall</room>
                <title>A Game of SSDLC Mistake Bingo</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-12T10:00:00+02:00</date>
                <start>10:00</start>
                <duration>00:45</duration>
                <abstract>In this talk, we peel back the curtain on the Secure Software Development Lifecycle (SSDLC) and explore some real war stories. Rather than focusing on idealized process models or textbook solutions, this session highlights some messy, funny, and sometimes frustrating real-world scenarios AppSec professionals face every day. Each phase of the OWASP SAMM framework becomes a round of mistake bingo, revealing lessons learned along the way. You&#8217;ll laugh, you&#8217;ll cringe, and you&#8217;ll likely recognize more than a few of these examples from your own experience.</abstract>
                <slug>sec-t-2025-74422-a-game-of-ssdlc-mistake-bingo</slug>
                <track></track>
                
                <persons>
                    <person id='74165'>Hendrik Noben</person><person id='74208'>Stephan Van Dyck</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/SGBNCS/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/SGBNCS/feedback/</feedback_url>
            </event>
            <event guid='10785d9f-f331-5ba2-99e5-6877ba26ba01' id='69136' code='SVBXCR'>
                <room>Main hall</room>
                <title>Oops, I Hacked It Again: Tales and disclosures</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-12T11:15:00+02:00</date>
                <start>11:15</start>
                <duration>00:45</duration>
                <abstract>Breaking into supermarket systems, ticketing platforms, and more. I&#8217;ll share some of my latest hacking stories, showing how I found the vulnerabilities, reported them, and collaborated with the companies. We&#8217;ll dive into tools, the challenges of disclosure, the importance of being &#8220;ethical&#8221;, lessons learned and how these experiences help improve security and build trust between hackers and organizations.</abstract>
                <slug>sec-t-2025-69136-oops-i-hacked-it-again-tales-and-disclosures</slug>
                <track></track>
                
                <persons>
                    <person id='69712'>Ignacio Navarro</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/SVBXCR/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/SVBXCR/feedback/</feedback_url>
            </event>
            <event guid='bf789fda-b3ea-502b-b1b9-566f43237b8d' id='74909' code='R7HVLL'>
                <room>Main hall</room>
                <title>LLM x MCP x KALI - Building &amp; Breaking AI Agents</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-12T13:00:00+02:00</date>
                <start>13:00</start>
                <duration>00:45</duration>
                <abstract>In June 2025 XBOW became the first AI Agent to reach #1 on Hacker1 USA ranking. But how does a hacking agent work? Can you build your own? Can it collect bug bounties while you drink Martinis on the beach?

Hacking is about curiosity, building and breaking things. In this session we explore how we can integrate Large Langue Models (LLMs) with Model Context Protocols (MCPs) to automate &amp; orchestrate complex attacks

Then we look into how secure are AI agents and how can they be hacked</abstract>
                <slug>sec-t-2025-74909-llm-x-mcp-x-kali-building-breaking-ai-agents</slug>
                <track></track>
                
                <persons>
                    <person id='74544'>Andrei Agape</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/R7HVLL/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/R7HVLL/feedback/</feedback_url>
            </event>
            <event guid='82900cf8-54e0-58d9-b1cf-3d519ae3b1c9' id='68519' code='WWWX7Q'>
                <room>Main hall</room>
                <title>Breaking Entra: Real-World Cloud Identity Attacks You Can Recreate</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-12T13:55:00+02:00</date>
                <start>13:55</start>
                <duration>00:30</duration>
                <abstract>Identity has become the new perimeter and in Microsoft Entra ID (formerly Azure Active Directory), it&#8217;s also the easiest one to break. Misconfigured apps, over-scoped permissions, and weak conditional access open the door to attackers who know where to look. 

In this talk, we&#8217;ll walk through real-world Entra ID misconfigurations that led to privilege escalation and domain-wide compromise all of which have been reproduced in EntraGoat, a new open-source lab that simulates these attack paths in a CTF-style environment. 

You&#8217;ll see step-by-step demos of how attackers exploit these flaws, how defenders can detect them, and how you can use the lab to train, teach, or test in your own environment. Whether you&#8217;re red team, blue team, or just Entra-curious, you&#8217;ll walk away with practical techniques and a tool to keep practicing.</abstract>
                <slug>sec-t-2025-68519-breaking-entra-real-world-cloud-identity-attacks-you-can-recreate</slug>
                <track></track>
                
                <persons>
                    <person id='69100'>Tomer Nahum</person><person id='69226'>Jonathan Elkabas</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/WWWX7Q/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/WWWX7Q/feedback/</feedback_url>
            </event>
            <event guid='69c01bbf-c40e-5a67-a290-37350c531f63' id='66325' code='XVLLAY'>
                <room>Main hall</room>
                <title>Offensive SIEM: When the Blue Team Switches Perspective</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-12T14:30:00+02:00</date>
                <start>14:30</start>
                <duration>00:30</duration>
                <abstract>Traditional SIEM solutions focus on detecting attacks&#8212;but what if we flipped the script? Instead of waiting for adversaries to act, defenders can use SIEM proactively to identify local privilege escalation risks before they&#8217;re exploited. By analyzing Sysmon and Windows event logs, blue teams can uncover hidden misconfigurations in services, scheduled tasks, DLL loads, and centralized application deployments that could allow an attacker to escalate privileges to SYSTEM. In some cases, this approach might even reveal new CVEs lurking in your environment. This talk will showcase practical techniques for leveraging SIEM as an offensive discovery tool, helping defenders think like attackers to strengthen security from within.</abstract>
                <slug>sec-t-2025-66325-offensive-siem-when-the-blue-team-switches-perspective</slug>
                <track></track>
                
                <persons>
                    <person id='67054'>Erkan Ekici</person><person id='67121'>Shanti Lindstr&#246;m</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links>
                    <link href="https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-42598">Vulnerability found in EPSON printer drivers</link>
                
                    <link href="https://www.epson.co.uk/en_GB/faq/KA-01993/contents?loc=en-us">EPSON Security Notifications</link>
                </links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/XVLLAY/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/XVLLAY/feedback/</feedback_url>
            </event>
            <event guid='1cbdbd0b-14e4-5d6a-bcc4-c21795001bac' id='74995' code='HMMVQP'>
                <room>Main hall</room>
                <title>Crowdsourcing Bluetooth identity, to understand Bluetooth vulnerability</title>
                <subtitle></subtitle>
                <type>Full talk</type>
                <date>2025-09-12T15:30:00+02:00</date>
                <start>15:30</start>
                <duration>00:45</duration>
                <abstract>Bluetooth vulnerability assessment is still in the dark ages. We still don&apos;t have a good handle on all the devices that are affected by the exploitable-over-the-air vulnerabilities that we disclosed in Texas Instruments and Silicon Labs firmware back in 2020. But we&apos;ve been chipping away at the problem!

We released &quot;Blue2thprinting&quot; in 2023 as our starting point towards something akin to nmap OS fingerprinting, but with a focus on learning what we could about the specific Bluetooth chip or firmware versions, to identify known-vulnerable versions. We delved into the thousands of pages of Bluetooth specs to extract bits and pieces, packets and profiles, that had interesting information to share about what a device is. 

But even as we continue to add new types of data to enrich our understanding of what devices are, and whether they&apos;re vulnerable to known CVEs, there&apos;s just *so much* that&apos;s still unknown! In this talk we&apos;ll discuss the updates to Blue2thprinting to allow for P2P researcher data sharing and crowdsourcing, and how that can help broaden the global knowledge of Bluetooth vulnerability applicability. And we&apos;ll also highlight the ridiculous number of tantalizing known unknowns; and encourage you to join the BlueCrew on our Journey Into Mystery!</abstract>
                <slug>sec-t-2025-74995-crowdsourcing-bluetooth-identity-to-understand-bluetooth-vulnerability</slug>
                <track></track>
                
                <persons>
                    <person id='74618'>Xeno Kovah</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/HMMVQP/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/HMMVQP/feedback/</feedback_url>
            </event>
            <event guid='f7b6fe05-ceea-5a73-8c16-107b9196b96c' id='75181' code='BZUDJB'>
                <room>Main hall</room>
                <title>Build Your First Threat Emulation Plan</title>
                <subtitle></subtitle>
                <type>Small talk</type>
                <date>2025-09-12T16:15:00+02:00</date>
                <start>16:15</start>
                <duration>00:30</duration>
                <abstract>Ever wondered how to start your first red teaming engagement? This session will teach real-world methodologies for collecting, analyzing, and applying threat intelligence in offensive security engagements. Participants will gain hands-on experience in extracting TTPs from threat reports, building adversary emulation plans, and using tools like the MITRE ATT&amp;CK Navigator to plan intelligence-driven red team operations. Attendees will also receive custom worksheets and templates to support their future assessments.</abstract>
                <slug>sec-t-2025-75181-build-your-first-threat-emulation-plan</slug>
                <track></track>
                
                <persons>
                    <person id='74771'>Fredrik Sandstr&#246;m</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/BZUDJB/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/BZUDJB/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Hardware Hacking Village' guid='9296f48f-07d9-59dc-aab3-886a2dd21695'>
            <event guid='cf60c952-a5ee-5d2f-a8d9-8c59a4fb3e97' id='81062' code='YSE7YV'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Learn BadUSB Hacking With the USB Nugget</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-12T09:00:00+02:00</date>
                <start>09:00</start>
                <duration>01:45</duration>
                <abstract>In this workshop, you&#8217;ll learn to write Bad USB scripts to hack computers using a cute, cat-shaped hacking tool called the USB Nugget. You&#8217;ll learn to write scripts to get computers of any operating system to do your bidding in seconds, and also how to automate nearly any desired action remotely. If you want to learn about simple scripting and HID attacks this workshop is for you! 

The USB Nugget kit may be purchased at the workshop.</abstract>
                <slug>sec-t-2025-81062-workshop-learn-badusb-hacking-with-the-usb-nugget</slug>
                <track></track>
                
                <persons>
                    <person id='82510'>Michael Raymond</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/YSE7YV/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/YSE7YV/feedback/</feedback_url>
            </event>
            <event guid='baf8a0d0-6a23-5aea-b33a-e846ea99c9c2' id='81060' code='GWJSRD'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: TV-B-Gone / Learn to Solder</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-12T11:00:00+02:00</date>
                <start>11:00</start>
                <duration>01:30</duration>
                <abstract>Workshop: TV-B-Gone / Learn to Solder

Anyone can learn to solder! And a fun way to do learn is by making
this wonderful little device that encourages you to turn
off TVs in public places! It works on a huge percentage of all TVs in
the world. Airports, bars, schools, waiting rooms&#8230; Works from 50 meters
away!

The training is free for all conference attendees. Needed hardware may be purchased at the workshop.</abstract>
                <slug>sec-t-2025-81060-workshop-tv-b-gone-learn-to-solder</slug>
                <track></track>
                
                <persons>
                    <person id='82511'>Mitch Altman</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/GWJSRD/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/GWJSRD/feedback/</feedback_url>
            </event>
            <event guid='18e10aa4-9565-5b41-b1a6-7b7b710d8fd8' id='81050' code='DFCKUX'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Build Your Own Meshtastic Node: Off-Grid, Encrypted LoRa Meshnets for Beginners!</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-12T12:45:00+02:00</date>
                <start>12:45</start>
                <duration>01:45</duration>
                <abstract>Beginners can now create off-grid, encrypted mesh networks for cheap, with applications in emergency communication, sensor monitoring, and more! These mesh networks have been popping up in cities all over the world, and this class will go over everything a beginner needs to run or build their own nodes. If you&apos;ve ever wanted to legally create off-grid, encrypted mesh networks that can span over a hundred miles, you can get started with Meshtastic. This class will serve as a beginner user&apos;s guide to Meshtastic, covering everything from hardware basics to advanced software configuration. We will use custom Meshtastic nodes to see real-world results in Las Vegas and explore attacks against mesh networks. Attendees will learn to run their own Meshtastic nodes, select antenna options, and configure software!

Needed hardware may be purchased at the workshop.</abstract>
                <slug>sec-t-2025-81050-workshop-build-your-own-meshtastic-node-off-grid-encrypted-lora-meshnets-for-beginners</slug>
                <track></track>
                
                <persons>
                    <person id='82509'>Kody Kinzie</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/DFCKUX/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/DFCKUX/feedback/</feedback_url>
            </event>
            <event guid='632691cf-3eed-57be-8956-97d76fbf5930' id='81052' code='Z7HXLK'>
                <room>Hardware Hacking Village</room>
                <title>Workshop: Meshtastic for Hackers: Set up, Configure, &amp; Deploy Nodes for Advanced Use</title>
                <subtitle></subtitle>
                <type>Workshop</type>
                <date>2025-09-12T14:45:00+02:00</date>
                <start>14:45</start>
                <duration>01:45</duration>
                <abstract>Meshtastic is a long range, encrypted, off-grid mesh protocol that features many powerful modules, configurations, and settings. For beginners just getting started, it can be confusing to dive into these features! In this workshop, we&apos;ll explore the exciting modules that make Meshtastic more fun and useful. We&apos;ll cover how to customize the encryption, add hardware like GPS and sensors, and change the default transmission settings to adapt to specific environments. Attendees will learn to customize their Meshtastic nodes for any situation using the built in modules and settings. We&apos;ll also explore attacks against Meshtastic, and how to get involved in your local area! What to bring: Computer with Google Chrome, iOS or Android smartphone. What you get: 1 Bluetooth Nugget+ LoRa Backpack + weather sensor (can be purchased at the workshop).</abstract>
                <slug>sec-t-2025-81052-workshop-meshtastic-for-hackers-set-up-configure-deploy-nodes-for-advanced-use</slug>
                <track></track>
                
                <persons>
                    <person id='82509'>Kody Kinzie</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/Z7HXLK/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/Z7HXLK/feedback/</feedback_url>
            </event>
            
        </room>
        <room name='Club SEC-T' guid='408b5b1e-871c-5ee1-b043-b8d0a49d7480'>
            <event guid='90ec1889-4ffe-5729-a21e-55dcda6e2cf4' id='81157' code='SDBQJY'>
                <room>Club SEC-T</room>
                <title>Karategamers Retro Arcade</title>
                <subtitle></subtitle>
                <type>Recreation</type>
                <date>2025-09-12T09:00:00+02:00</date>
                <start>09:00</start>
                <duration>03:00</duration>
                <abstract>** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade ** Karategamers Retro Arcade **</abstract>
                <slug>sec-t-2025-81157-karategamers-retro-arcade</slug>
                <track></track>
                
                <persons>
                    <person id='82606'>Weyland</person>
                </persons>
                <language>en</language>
                
                <recording>
                    <license></license>
                    <optout>false</optout>
                </recording>
                <links></links>
                <attachments></attachments>

                <url>https://event.sec-t.org/sec-t-2025/talk/SDBQJY/</url>
                <feedback_url>https://event.sec-t.org/sec-t-2025/talk/SDBQJY/feedback/</feedback_url>
            </event>
            
        </room>
        
    </day>
    
</schedule>
