SPEAKERS / 2026
Research lineup
Original work, practical exploitability, and technical depth. Talks are announced as the program is locked.
10 announced talks
Offensive Research · 45 min
Brian Gorenc
TrendAI · Vice President of Research and Development
Learnings From Two Decades of Zero-Days: From Manual Exploits to Autonomous Discovery
Twenty years of vulnerability research leaves you with patterns, not just a trophy case of exploits.

Offensive Research · 35 min
Meysam Firouzi
Mercedes-Benz · Software Security Researcher
Breaking Memory Tagging Extension (MTE): Internals, Limitations, and a Practical Bypass
ARM’s Memory Tagging Extension (MTE) is designed to stop common memory corruption bugs, but its real-world effectiveness depends on subtle implementation details.This talk explains...

Offensive Research · 40 min
Ignacio Navarro
Independent · Security Researcher
Every Ride You Take: Hacking a City's Public Transportation
Let's talk about some critical infrastructure that millions of people use every day: Public transportation.

Offensive Research · 45 min
Alperen Şirin
Independent · Security Researcher
A History of PAC Bypasses
Since it was introduced on iPhones, PAC evolved from a small hindrance to a serious obstacle.

Offensive Research · 45 min
Waleed Barakat
TikTok USDS JV · Vulnerability Researcher
Low Hanging Apples: Red Teaming macOS
As macOS continues to grow in adoption across enterprises in the midst of a rapidly evolving GenAI landscape, securing the endpoint presents an evolving challenge.

Offensive Research · 45 min
Paul Montgomery
Anthropic · Red Team Operator
Low Hanging Apples: Red Teaming macOS
As macOS continues to grow in adoption across enterprises in the midst of a rapidly evolving GenAI landscape, securing the endpoint presents an evolving challenge.

Offensive Research · 45 min
İbrahim Seker
Independent · Security Researcher
Optimize, Desync, Exploit: A Luau Codegen Bug Story
This talk follows the discovery and exploitation path of a Luau codegen bug that causes optimized code to produce an inconsistent VM state, turning a hard-to-reproduce crash into...

Offensive Research · 45 min
Sangsoo Jeong
78ResearchLab · Security Researcher
Two Nations, One Bridge: A Reverse-Engineering Teardown of Türkiye's and Korea's National Tax Signers
National tax portals stopped shipping Java applets and ActiveX years ago — but the problem they solved didn't go away, so each country rebuilt the same thing: a small native "local...

Offensive Research · 45 min
Dan Borgogno
Faraday Security · Security Researcher
Root From Kilometers Away: Ubiquiti AirMax RCE
You don't realize it until you see them; they are everywhere. From Wireless ISPs links, to the frontline of modern warfare. But no one found anything?

Offensive Research · 45 min
Gaston Aznarez
Faraday Security · Security Researcher
Root From Kilometers Away: Ubiquiti AirMax RCE
You don't realize it until you see them; they are everywhere. From Wireless ISPs links, to the frontline of modern warfare. But no one found anything?