NOPcon

SPEAKERS / 2026

Research lineup

Original work, practical exploitability, and technical depth. Talks are announced as the program is locked.

10 announced talks
01

Offensive Research · 45 min

Brian Gorenc

TrendAI · Vice President of Research and Development

Learnings From Two Decades of Zero-Days: From Manual Exploits to Autonomous Discovery

Twenty years of vulnerability research leaves you with patterns, not just a trophy case of exploits.

View talk →
02

Offensive Research · 35 min

Meysam Firouzi

Mercedes-Benz · Software Security Researcher

Breaking Memory Tagging Extension (MTE): Internals, Limitations, and a Practical Bypass

ARM’s Memory Tagging Extension (MTE) is designed to stop common memory corruption bugs, but its real-world effectiveness depends on subtle implementation details.This talk explains...

View talk →
03

Offensive Research · 40 min

Ignacio Navarro

Independent · Security Researcher

Every Ride You Take: Hacking a City's Public Transportation

Let's talk about some critical infrastructure that millions of people use every day: Public transportation.

View talk →
04

Offensive Research · 45 min

Alperen Şirin

Independent · Security Researcher

A History of PAC Bypasses

Since it was introduced on iPhones, PAC evolved from a small hindrance to a serious obstacle.

View talk →
05

Offensive Research · 45 min

Waleed Barakat

TikTok USDS JV · Vulnerability Researcher

Low Hanging Apples: Red Teaming macOS

As macOS continues to grow in adoption across enterprises in the midst of a rapidly evolving GenAI landscape, securing the endpoint presents an evolving challenge.

View talk →
06

Offensive Research · 45 min

Paul Montgomery

Anthropic · Red Team Operator

Low Hanging Apples: Red Teaming macOS

As macOS continues to grow in adoption across enterprises in the midst of a rapidly evolving GenAI landscape, securing the endpoint presents an evolving challenge.

View talk →
07

Offensive Research · 45 min

İbrahim Seker

Independent · Security Researcher

Optimize, Desync, Exploit: A Luau Codegen Bug Story

This talk follows the discovery and exploitation path of a Luau codegen bug that causes optimized code to produce an inconsistent VM state, turning a hard-to-reproduce crash into...

View talk →
08

Offensive Research · 45 min

Sangsoo Jeong

78ResearchLab · Security Researcher

Two Nations, One Bridge: A Reverse-Engineering Teardown of Türkiye's and Korea's National Tax Signers

National tax portals stopped shipping Java applets and ActiveX years ago — but the problem they solved didn't go away, so each country rebuilt the same thing: a small native "local...

View talk →
09

Offensive Research · 45 min

Dan Borgogno

Faraday Security · Security Researcher

Root From Kilometers Away: Ubiquiti AirMax RCE

You don't realize it until you see them; they are everywhere. From Wireless ISPs links, to the frontline of modern warfare. But no one found anything?

View talk →
10

Offensive Research · 45 min

Gaston Aznarez

Faraday Security · Security Researcher

Root From Kilometers Away: Ubiquiti AirMax RCE

You don't realize it until you see them; they are everywhere. From Wireless ISPs links, to the frontline of modern warfare. But no one found anything?

View talk →