Las Vegas Convention Center, Level 1, West Hall 2, Zone 604
Village Hours
| Day 1 | Friday, August 8, 10am - 6pm |
|---|---|
| Day 2 | Saturday, August 9, 10am - 6pm |
| Day 3 | Sunday, August 10, 10am - 1pm |
All times are in Pacific Time(GMT -7)
Day 1 - August 08, 2025
10:00
10:15
Context & Cringe: Bringing Privacy into Threat Modeling
Workshop All Audiences
Kim Wuyts
AviD
10:20
10:30
AI Supply Chain: Generating AI SBOMs for Hugging Face Models
Arsenal All Audiences
Helen Oakley
11:00
The Death of XSS? Browser Security Features that Eliminate Bug Classes
Talk Intermediate
Javan Rasokat
11:40
From Tests to Targets: Expanding DAST with Selenium & ZAProxy
Talk Intermediate
Sara Martinez Giner
12:00
Static Analysis Hero - Security Code Reviews for Professionals
Arsenal All Audiences
Matthias Göhring
Dustin Born
12:20
Abusing the Rules: Detect and Defend Against Business Logic Attacks in APIs
Talk Intro
Tristan Kalos
Antoine Carossio
A Taste of Chrome V8 Exploitation
Workshop Intermediate
Hoseok Lee
Youngseo Park
JaeSeok Jung
Hyaesun Ji
Taeeun Lee
13:00
CVE Crisis: State of the Vulnerability Disclosure Landscape
Talk Intermediate
jgamblin
13:30
Introduction To SeVa [Secret Validator] - Secrets Prioritization Framework
Arsenal All Audiences
Pramod Rana
Leon Denard
13:40
14:20
15:00
Plug at Your Own Risk: End-to-End Security Analysis for Third-Party IoT Integrations
Talk Intermediate
RoguePacket
RootRouge
Inside KnoxSpy: Real-Time Visibility into MDM-Secured Mobile Traffic
Arsenal All Audiences
Subho Halder
15:30
Mastering Frontend Security: A Hands-On Workshop to Engineer XSS-Proof Web Applications
Workshop Intro
Aaron Shim
Mayra Robles
15:40
16:20
Beyond Assistants: Securing Agentic AI Systems and Multi-Agent Workflows in High-Stakes Environments
Talk Intermediate
Andra
Jeremiah Edwards
17:00
Red Teaming AI: How to Stress-Test LLM-Integrated Apps Like an Attacker
Talk Intermediate
Nnenna Ndukwe
Day 2 - August 09, 2025
10:00
Beyond Vibe Coding: Building Reliable AI AppSec Tools
Talk Intermediate
Emily Choi-Greene
10:30
Catch the Flow: Securing CI/CD with Flowlyt
Arsenal All Audiences
HK
kvprashant
Nandan Gupta
Arif
10:40
Cross-Site WebSocket Hijacking in 2025: Exploitation, Evolution, and Mitigation
Talk Intermediate
Laurence Tennant
11:00
11:20
r/DIY: How Do We Build Our Own Code Scanning Platform?
Talk Intermediate
Charan Akiri
Christopher Guerra
12:00
Introduction to CICDGuard - Orchestrating visibility and security of CICD ecosystem
Arsenal All Audiences
Pramod Rana
AI vs. the APTs: Using LLMs to discover malware and undisclosed vulnerabilities
Talk Intermediate
Mackenzie
12:40
Breaking the CI/CD Chain: Security Risks in GitHub Actions
Talk Intermediate
Sharon Ohayon Pshoul
Iggy
Michael Goberman
13:00
13:15
13:20
13:30
Exposor - A Contactless reconnaissance tool using internet search engines with a unified syntax
Arsenal All Audiences
Abdulla Abdullayev
14:00
14:40
Hijacking AI Agents with ChatML Role Injection
Talk Intermediate
zizkill
Armend Gashi
Anit Hajdari
15:00
PyIntruder: Customizable, CLI-Native Web Fuzzer
Arsenal All Audiences
Sagnik Haldar
Nandan Gupta
Swarup Natukula
Arif
15:20
15:30
Reverse Engineering Modern Websites - Practical Decomposition for Security Analysis
Workshop Intermediate
kuzushi
Abraham De Leon Gutierrez
16:00
CyberChef like Automation within BurpSuite - Let's get cooking with the CSTC
Arsenal
Matthias Göhring
16:40
Day 3 - August 10, 2025
10:00
AppSec in the Shadows: Adversarial Tradecraft in App and API Defenses
Workshop All Audiences
Roshan Piyush
Soujanya Namburi
10:20
Exploitable In The Wild CVE Appears! But Should We Fix Them All?
Talk Advanced
Moshe Siman Tov Bustan
Liad Cohen
11:00
11:30
Static Analysis Hero - Security Code Reviews for Professionals
Arsenal All Audiences
Matthias Göhring
Dustin Born
11:40
7 Vulns in 7 Days: Breaking Bloatware Faster Than It’s Built
Talk Intermediate
leonjza
Kyle Kelly
Ken Johnson
Raphael Silva
Darren Meyer
SheHacksPurple
m4lwhere
Gal Elbaz
Avi Lumelsky
Davide
Raphael Silva
Darren Meyer
some-natalie
Thomas Jost
Rashmi
Om Narayan
Ken Johnson
Raphael Silva
Uday
@sethlaw
SheHacksPurple
@cktricky
@jhaddix
madhuakula
Raphael Silva
Darren Meyer
Darren Meyer
Monish Alur Gowdru
cybermeow
Allan Friedman