08:40 CEST
Opening talk
Thursday April 23, 2026 08:40 - 09:00 CEST
Speakers
Staff Offensive Researcher, BSides Czech z.s. / SentinelOne
Thursday April 23, 2026 08:40 - 09:00
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
09:00 CEST
Keynote: Do Not Build the Torment Nexus
Thursday April 23, 2026 09:00 - 09:45 CEST
Speakers
Director of Cybersecurity, Electronic Frontier Foundation
Eva Galperin is the Director of Cybersecurity at the Electronic Frontier Foundation (EFF) and technical advisor for the Freedom of the Press Foundation. She is noted for her extensive work in protecting global privacy and free speech and for her research on malware and nation-state...
Read More →
Thursday April 23, 2026 09:00 - 09:45
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
10:10 CEST
Adventures in Router Firmware Through Dynamic Taint Analysis
Thursday April 23, 2026 10:10 - 10:35 CEST
Speakers
Researcher, ONESEC
I am currently a Cybersecurity Researcher at ONESEC, dedicated to uncovering new challenges and pushing the boundaries of cybersecurity. With over three years of hands-on experience in the field, I have developed a deep passion for binary exploitation, vulnerability research, firmware...
Read More →
Thursday April 23, 2026 10:10 - 10:35
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
10:10 CEST
From Prompt to Pwn: Abusing Browser Small Language Models
Thursday April 23, 2026 10:10 - 10:55 CEST
Speakers
LayerX Security
Eyal Arazi is Director of Strategy at LayerX Security. He has over 15 years of offensive and defensive cybersecurity experience, on both the application and network layers. He has also written and spoken on topics of cybersecurity extensively.
Thursday April 23, 2026 10:10 - 10:55
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
10:40 CEST
JA3/JA4+ hashes: A "Secret" Fingerprint Identifying Bots and Scrapers
Thursday April 23, 2026 10:40 - 11:05 CEST
Speakers
Lead Application Security Architect, Sandoz
I am a defender, a hacker, a tinkerer. My focus is on application security, linux (vim FTW), and python. Coming from a cryptography background, I managed to up my tech skills, practiced pentesting, and completed OSCP. I switched to the protective side, currently working in security...
Read More →
Thursday April 23, 2026 10:40 - 11:05
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:00 CEST
Building Deception at Scale: Automating Honeypots with Autonomous AI Agents
Thursday April 23, 2026 11:00 - 11:45 CEST
Speakers
Director, Security Research, Pluto Security
CO-Founder & CTO, Pluto Security
Gil Maman is the Co-Founder and CTO of Pluto Security.
Prior to founding Pluto, Gil spent more than six years in Israeli Military Intelligence, where he held multiple technical leadership roles spanning advanced cyber R&D, operational security engineering, and leading multidiscipl...
Read More →
Thursday April 23, 2026 11:00 - 11:45
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:10 CEST
Malware Evasion - Packers, Loaders, and Why Your EDR Misses Them
Thursday April 23, 2026 11:10 - 11:35 CEST
Speakers
SIX group AG
Massimo Bertocchi is a cybersecurity professional currently working in the Threat Detection and Hunting team at SIX Group in Zürich, Switzerland. He holds dual master's degrees in Security and Cloud Computing from two European institutions: KTH Royal Institute of Technology in Stockholm...
Read More →
Thursday April 23, 2026 11:10 - 11:35
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:40 CEST
Prompt, Pwn, Profit: A $30k Deep Dive into AI Agent Vulnerabilities
Thursday April 23, 2026 11:40 - 12:05 CEST
Speakers
I’m a security researcher from Ukraine. Yes—we’re still here, and we’re still doing security research.
I studied cybersecurity and computer science starting in 2010 and hold a Master’s degree in the field. I have nearly 15 years of experience as a software developer, w...
Read More →
Thursday April 23, 2026 11:40 - 12:05
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:50 CEST
12:10 CEST
Harder, Better, Faster, Stronger: Because “FROM ubuntu:latest” Is a Supply-Chain Horror Story
Thursday April 23, 2026 12:10 - 12:25 CEST
Speakers
Product Security Engineer, Tricentis
I’m Vojtěch, better known as TheSysRat — a cybersecurity maniac in the best sense of the word. I work as a Product Security Engineer at Tricentis, spend my free time on CTFs, and publish detailed write-ups to help others learn. I’m a Linux-first technologist who loves building...
Read More →
Thursday April 23, 2026 12:10 - 12:25
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
13:35 CEST
How Infostealers slipped through EDRs - Process Doppleganging by IDAT Loader for over 18 months
Thursday April 23, 2026 13:35 - 14:20 CEST
Speakers
Threat Hunter, Cyberproof
I’m a cybersecurity threat hunter focused on identifying and mitigating advanced threats across enterprise environments. My work revolves around proactive threat hunting, vulnerability analysis, and building detection logic using tools like Microsoft Defender, Sentinel, and other...
Read More →
CyberProof
Niranjan holds over 18 years experience working with SentinelOne, Microsoft, CyberProof, McAfee, Symantec and HCL Technologies working on malware detection, reverse engineering, developing cleaning utilities etc. He has published his research in multiple blogs, journals and presented...
Read More →
Thursday April 23, 2026 13:35 - 14:20
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
13:35 CEST
Inside the Fortress: Attacking RFID Access Control Systems
Thursday April 23, 2026 13:35 - 14:20 CEST
Speakers
Security Consultant at Bishop Fox, member of RF Village MX, enthusiast of electronics, hardware hacking, hiking, music, and radio frequencies. Works as a penetration tester testing web applications, APIs, mobile applications, cloud, and networks. Has been a speaker at Ekoparty (Argentina...
Read More →
Thursday April 23, 2026 13:35 - 14:20
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
14:25 CEST
Ghost in the Script: Impersonating Google App Script projects for stealthy persistence
Thursday April 23, 2026 14:25 - 15:10 CEST
Speakers
Head of Engineering, Exaforce
Working on Exaforce. It is an early stage startup working on difficult engineering and operations problems faced by security, devops, and SRE teams. We are a group of engineers from Google, Palo Alto Networks, F5 and are backed by some of my favorite VC firms - Mayfield, Khosla Ventures...
Read More →
Exaforce
Bleon is an Info-sec passionate about Infrastructure Penetration Testing and Security, including Active Directory, Cloud (AWS, Azure, GCP, Digital Ocean), Hybrid Infrastructures, as well as Defense, Detection and Thread Hunting. He has presented in conferences like BlackHat and BSides...
Read More →
Thursday April 23, 2026 14:25 - 15:10
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
14:25 CEST
The CSI Hijack: Default Kubernetes Storage Drivers Exploitation
Thursday April 23, 2026 14:25 - 15:10 CEST
Speakers
Senior Security Researcher, Offensive Research Team, SentinelOne
Senior Security Researcher @ SentinelOne (Offensive Research Team). Previously @ PingSafe, acquired by SentinelOne for $120M+.
I work on 0-day discovery, EDR/XDR internals, cloud-native attacks (Kubernetes, Azure, AWS), and AI-driven detection research. All hats offensive.
Certs -
...
Read More →
Thursday April 23, 2026 14:25 - 15:10
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
15:20 CEST
(Security) Operations fuckups
Thursday April 23, 2026 15:20 - 15:45 CEST
Speakers
Friendly face of cybersecurity, grown and rotted in incident response. Seen a lot, including many weird people and even weirder incidents - including strangest excuses. Trying to de-mistify obscure topics and I openly hate buzzword technologies.
Thursday April 23, 2026 15:20 - 15:45
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
15:20 CEST
Cloud Agent to Physical Access: How Cursor Unlocked My Front Door
Thursday April 23, 2026 15:20 - 15:45 CEST
Speakers
Orca Security
Roi Nisimi is a Principal Security Researcher at Orca Security with over a decade of experience in vulnerability research and offensive cybersecurity. He honed his skills during six years of service in the Intelligence Corps of the IDF, where he achieved the rank of Lieutenant before...
Read More →
Senior Security Researcher, Microsoft
Ari Marzuk (also known as MaccariTA) is a Senior AI Security Researcher at Microsoft with nearly a decade of cybersecurity experience. He previously worked for Salesforce, NSO Group and the Israeli Military Intelligence. In 2025, Ari published "IDEsaster" revealing 25 new CVEs in...
Read More →
Thursday April 23, 2026 15:20 - 15:45
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
16:10 CEST
Blind the Kernel: Subverting Integrity Checks via Semantic Asymmetry
Thursday April 23, 2026 16:10 - 16:55 CEST
Speakers
Sentinelone
Tejaswini Sandapolla is a Senior Malware Detection Researcher at SentinelOne with over seven years of specialized experience in cybersecurity, focusing primarily on reverse engineering. She has made significant contributions to the cyber security community through her in-depth analysis...
Read More →
Thursday April 23, 2026 16:10 - 16:55
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
16:10 CEST
Hunting Malicious Domains at Scale with AI-Augmented OSINT
Thursday April 23, 2026 16:10 - 16:55 CEST
Speakers
Cato Networks
Zohar Buber is a security analyst in Cato Research Labs at Cato Networks. He focuses on network protocol analysis and malicious traffic detection, specializing in threat identification using network-based methods. He previously worked at Radware, where he examined threats in the DDoS...
Read More →
Thursday April 23, 2026 16:10 - 16:55
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
17:00 CEST
The Forgotten Fingerprint: OSINT Through DNS TXT Record Analysis
Thursday April 23, 2026 17:00 - 17:25 CEST
Speakers
Senior Security Researcher, KYND
Rishi is a London-based security researcher with experience in vulnerability research, threat intelligence, and enterprise risk analysis. His work focuses on identifying zero-day vulnerabilities and emerging CVEs, with a particular interest in building detection logic before threats...
Read More →
Thursday April 23, 2026 17:00 - 17:25
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
17:00 CEST
Who defends the defenders? EDR killers landscape boom
Thursday April 23, 2026 17:00 - 17:25 CEST
Speakers
Malware Researcher, ESET
Radek Jizba graduated from the Computer Security program at Czech Technical University (FIT CTU)
[NF1] in 2022 and started working at ESET. Since 2023 he has worked as a malware researcher with a focus on crimeware. Among his publications you can find
Telekopye: Hunting Mammoths u...
Read More →
ESET
Tomáš Zvara is a malware researcher at ESET, specializing in malware analysis, reverse engineering, and threat intelligence. As part of ESET’s Prague crimeware research team, he focuses on financially motivated threat actors, with a particular emphasis on prominent ransomware...
Read More →
Thursday April 23, 2026 17:00 - 17:25
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
10:10 CEST
Breaching The Perimeter: The Forgotten Attack Vector That Always Works
Friday April 24, 2026 10:10 - 10:55 CEST
Speakers
Co-founder, Red Teamers
Jiří Vanek is an security consultant with over 20 years of experience encompassing IT, Management, and Ethical Hacking. He has led Red Team engagements, relishes in physical intrusions, and has first-hand experiences of successful intrusions and successful detections for clients...
Read More →
Friday April 24, 2026 10:10 - 10:55
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
10:10 CEST
The Agents of Chaos: AI Driven Malware Generation
Friday April 24, 2026 10:10 - 10:55 CEST
Speakers
Attacks and Exploits Developer, SafeBreach
Arad Donenfeld is an attacks and exploits developer in SafeBreach, and has a background in security research from several roles (including Deep Instinct, where this research was conducted). With his strong foundations of development, security, and operating systems internals, Arad...
Read More →
Friday April 24, 2026 10:10 - 10:55
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:00 CEST
Abusing the Ordinary: New COM-Based Windows Attack Vectors
Friday April 24, 2026 11:00 - 11:45 CEST
Speakers
SentinelOne
I'm a Security Engineer specializing in offensive security research within Windows environment. Over the years, I have worked extensively in red teaming, penetration testing, reverse engineering, and malware analysis and development. During this time, I have supported organizations...
Read More →
Friday April 24, 2026 11:00 - 11:45
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:00 CEST
Forked and Owned: Taking Over GitHub Repositories via a single Pull Request
Friday April 24, 2026 11:00 - 11:45 CEST
Speakers
Senior Security Researcher, Microsoft
Ari Marzuk (also known as MaccariTA) is a Senior AI Security Researcher at Microsoft with nearly a decade of cybersecurity experience. He previously worked for Salesforce, NSO Group and the Israeli Military Intelligence. In 2025, Ari published "IDEsaster" revealing 25 new CVEs in...
Read More →
Orca Security
Roi Nisimi is a Principal Security Researcher at Orca Security with over a decade of experience in vulnerability research and offensive cybersecurity. He honed his skills during six years of service in the Intelligence Corps of the IDF, where he achieved the rank of Lieutenant before...
Read More →
Friday April 24, 2026 11:00 - 11:45
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:50 CEST
1 Click, 0 Warnings: Hijacking Mic, Camera & GPS via Browser UI Blindspots
Friday April 24, 2026 11:50 - 12:35 CEST
Speakers
Katim LLC
Armaan Pathan is a Senior Security Engineer at KATIM with deep expertise in application security, penetration testing, and bug bounty hunting. Over the past 10+ years, he has uncovered and responsibly disclosed critical vulnerabilities at leading tech organizations including Google...
Read More →
Friday April 24, 2026 11:50 - 12:35
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
11:50 CEST
Mad data science for practical C2 detection - the talk
Friday April 24, 2026 11:50 - 12:35 CEST
Speakers
Consultant, Alzette Information Security
Principal consultant, Alzette Information Security
David Szili is a principal consultant at Alzette Information Security, an information security consulting company based in Europe. He has more than ten years of professional experience in various areas like penetration testing, red teaming, security monitoring, security architecture...
Read More →
Friday April 24, 2026 11:50 - 12:35
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
13:35 CEST
13:35 CEST
Painless IOS App Pentesting
Friday April 24, 2026 13:35 - 14:20 CEST
Speakers
Founder, Shaman Red Team
I’m an Application Security Engineer with over three years of practical experience across web and mobile penetration testing, secure software design, and vulnerability research - along with several CVE discoveries. I’m currently pursuing a PhD focused on Intrusion Prevention Systems...
Read More →
Friday April 24, 2026 13:35 - 14:20
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
14:25 CEST
Uncovering SAP BTP Attack Vectors, Before Someone Else Does!
Friday April 24, 2026 14:25 - 15:10 CEST
Speakers
Head of Security Advisory, NO MONKEY GmbH
Waseem Ajrab, a seasoned cybersecurity professional, leads cybersecurity initiatives at NO MONKEY, focusing on SAP environments globally. With expertise in SOC, network security, and penetration testing, he fortifies critical systems through strategic vision. Waseem is a key contributor...
Read More →
Friday April 24, 2026 14:25 - 15:10
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
14:25 CEST
What an "Exploitable CVE" Really Means: Moving Beyond CVSS Scores
Friday April 24, 2026 14:25 - 15:10 CEST
Speakers
Staff Security Engineer, Lyft
Eryx is an enthusiast in Cybersecurity and OpenSource. Currently working as Staff Security Engineer at Lyft he leads the vulnerability management program, handling the strategy to identify and fix code, infrastructure and endpoint vulnerabilities at scale. His career includes roles...
Read More →
Friday April 24, 2026 14:25 - 15:10
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
15:15 CEST
15:15 CEST
LLMs for Vulnerability Fixing: Hype or Reality?
Friday April 24, 2026 15:15 - 15:40 CEST
Speakers
CTO & Cofounder, Symbiotic Security
Edouard Viot is the co-founder and CTO of Symbiotic Security, an American-French startup specializing in AI-assisted code security. A passionate entrepreneur at the intersection of cybersecurity and innovation, he designs tools that help developers write more secure code through integrated...
Read More →
Friday April 24, 2026 15:15 - 15:40
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
16:05 CEST
From Input to Impact: Prompt Injection in Production Pipelines
Friday April 24, 2026 16:05 - 16:30 CEST
Speakers
Developer advocate, GitGuardian
Mackenzie is a developer advocate with a passion for code security. As the co-founder and former CTO of the health tech startup Conpago, he learnt first-hand how critical it is to build secure applications with robust developer operations.
Today as the Developer Advocate at GitGuardian, Mackenzie is able to share his passion for code security with developers and works closely with research teams to show how malicious actors discover and exploit vulnerabilities in our applications...
Read More →
Friday April 24, 2026 16:05 - 16:30
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
16:05 CEST
LazarOps: APT Tactics Targeting the Developers Supply Chain
Friday April 24, 2026 16:05 - 16:50 CEST
Speakers
Threat Researcher, Security Joes
Diogo Machado has been working in the cyber security field for the past 10 years. Staring in a public company in Portugal, he developed yearly the joy in malware analysis and reverse engineering. From then, he joined Siemens in which he practiced the investigation and response to...
Read More →
Friday April 24, 2026 16:05 - 16:50
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
16:35 CEST
Call Me By Your [User]Name: Modern Identity-Centric Attacks
Friday April 24, 2026 16:35 - 17:00 CEST
Speakers
CTI analyst & manager, PwC
Lucie works as a CTI analyst and manager in the PwC Global Threat Intelligence team. She was previously a Fulbright visiting scholar at the Massachusetts Institute of Technology (MIT) in Cambridge, USA, and worked at the Czech National Cyber Security Centre. She holds a PhD from Charles...
Read More →
Friday April 24, 2026 16:35 - 17:00
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
16:55 CEST
17:05 CEST
So You Want to Write a Book? Writing About AI Security For No Starch Press
Friday April 24, 2026 17:05 - 17:50 CEST
Speakers
Mileva Security Labs
Harriet Farlow is the CEO of AI Security company Mileva Security Labs, a PhD Candidate in Machine Learning Security, and creative mind behind the YouTube channel HarrietHacks. She missed the boat on computer hacking so now she hacks AI and Machine Learning models instead. Her career...
Read More →
Friday April 24, 2026 17:05 - 17:50
CEST
Lucerna Cinema - AUX
Vodičkova 704 /36/110 00, 110 00 Nové Město
17:50 CEST
CLOSING BSIDES 2026
Friday April 24, 2026 17:50 - 18:15 CEST
Speakers
Staff Offensive Researcher, BSides Czech z.s. / SentinelOne
Friday April 24, 2026 17:50 - 18:15
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
18:30 CEST
Airport Security! - S01 E008 - Breaking into your baggage
Friday April 24, 2026 18:30 - 18:55 CEST
Speakers
Senior Managing Security Consultant, Bishop Fox
Héctor is a Senior Managing Security Consultant at Bishop Fox with over 12 years of experience in offensive security, digital forensics, threat hunting, and incident response, and has presented on multiple occasions at international conferences such as DEFCON, Ekoparty, WWHF and...
Read More →
Friday April 24, 2026 18:30 - 18:55
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
19:10 CEST
Last night a DJ erased my drive
Friday April 24, 2026 19:10 - 19:55 CEST
Speakers
Director of Professional Services, Orange Cyberdefense
Mathew Caplan is Director of Professional Services for Orange Cyberdefense, based in London, England. He is a highly experienced cybersecurity specialist with over 25 years in the field and a proven record in the implementation of information risk management processes. As a recognised...
Read More →
Friday April 24, 2026 19:10 - 19:55
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město
20:10 CEST
The Great Train Robbery - Hacking Like It’s 1855
Friday April 24, 2026 20:10 - 20:55 CEST
Speakers
KPMG
I am a security consultant for KPMG specialising in the fields of AI security and physical security. I have given talks on both topics across conferences in Europe and I am a co organiser of BSides Dresden.
Friday April 24, 2026 20:10 - 20:55
CEST
Lucerna Cinema - MAIN
Vodičkova 704 /36/110 00, 110 00 Nové Město