Loading…
Streaming: https://mssvideo.vcu.edu/RVAsec
Venue: Upstairs, Grand Ballroom F/G clear filter
arrow_back View All Dates
Wednesday, June 10
 

10:30am EDT

From OSINT to Detection: Building an Agentic CTI Pipeline
Wednesday June 10, 2026 10:30am - 11:20am EDT
Modern threat intelligence moves fast, but detection engineering lags. This talk presents an agentic workflow that transforms OSINT into actionable detections using structured extraction, LLM reasoning, and automated validation. Transparent, auditable pipelines accelerate the CTI lifecycle, from ingestion to Sigma rules, while preserving analyst control, reducing time-to-detection from days to hours.
Speakers
avatar for Andrew Skatoff

Andrew Skatoff

Senior Manager Information Security, Federal Reserve Bank of Richmond
Andrew is a cybersecurity senior leader with over 20 years of experience protecting critical financial infrastructure within the national financial infrastructure. He leads large-scale programs spanning incident response, threat hunting, and detection engineering, and has served as... Read More →
Wednesday June 10, 2026 10:30am - 11:20am EDT
Upstairs, Grand Ballroom F/G

11:30am EDT

Flirting With AI: Pwning Web Sites Through Their AI Chatbot Agents
Wednesday June 10, 2026 11:30am - 12:20pm EDT
Everyone is implementing AI chatbots to improve their customer experience and journey, without increasing call centre costs. But this comes with risk: get the configuration wrong and that chatbot can be convinced to part with data that it shouldn't. We think of conventional cyber security controls as being binary, yet AI can sometimes hallucinate, lie and mislead. It's a brave organization that would trust their perimeter security exclusively to AI. We'll include some live demos to illustrate the problem.
Speakers
avatar for Paul Brownridge

Paul Brownridge

Head of Technical Delivery, Pen Test Partners
Paul Brownridge is Head of Technical Delivery at Pen Test Partners, the ethical hacking firm. Originally from an engineering background, Paul swapped his hard hat for a white hat and has been working in cyber security for the last 10 years. His practical experience of industrial environments... Read More →
Wednesday June 10, 2026 11:30am - 12:20pm EDT
Upstairs, Grand Ballroom F/G

1:00pm EDT

Initial Access in 2026 – The Power of the Spoken Word
Wednesday June 10, 2026 1:00pm - 1:50pm EDT
Defensive detections and protocols have come a long way. The adoption of MFA was once the sign of a security minded client with a mature security posture but has reached the level of commonplace. Gaining initial access via email or web application has become so difficult that its often skipped entirely as companies opt to place the attacker on the inside of the network as the starting point. Yet, business compromises are on the rise. What are attackers using if they no longer rely on business email compromise as their go-to initial access vector. Well, as was the case with MGM, they’re often just picking up the phone.
Speakers
avatar for Mike Bailey

Mike Bailey

Computer Operator, Rotas

avatar for Ariyan Suroosh

Ariyan Suroosh

Principal Security Consultant, Rotas Security
Ariyan Bakhti-Suroosh is a Principal Security Consultant at Rotas Security, specializing in offensive security, social engineering, and physical facility penetration testing. With over seven years of experience, Ariyan has led enterprise-scale penetration tests, advanced adversary... Read More →
Wednesday June 10, 2026 1:00pm - 1:50pm EDT
Upstairs, Grand Ballroom F/G

2:00pm EDT

Catching Collection in M365: Outlook and SharePoint Canary Tokens
Wednesday June 10, 2026 2:00pm - 2:50pm EDT
After a stolen token grants access to M365, the next move is predictable: search for value before exfiltration. This talk shows how to detect that collection phase using canary tokens built on native telemetry across Outlook and SharePoint/OneDrive. We cover end-to-end implementation and results from live production deployments, including what produced high-fidelity signal and what created noise.
Speakers
avatar for Ryan O'Donnell

Ryan O'Donnell

Senior Security Engineer, Microsoft
Ryan O'Donnell is a Senior Security Engineer at Microsoft. Over the last 13+ years, he's been performing Penetration Tests, Red Team assessments, and Incident Response investigations. Ryan has presented at the followinhttg conferences: Wild West Hackin' Fest, Saintcon, Hack Space... Read More →
Wednesday June 10, 2026 2:00pm - 2:50pm EDT
Upstairs, Grand Ballroom F/G
 
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -