day 1: 10:00 - 10:10 - welcoming presentation 10:15 - 10:35 - veorq => Crypto security modules (20 min) 10:40 - 11:10 - smaury => XML Tales (30 min) 11:20 - 11:45 - Jennifer Gehrke => Authenticode Masquerade (20 min) 11:50 - 14:00 - lunch break 14:05 - 14:25 - Sandro Gauci => DTLS Hello race condition DoS (20 min) 14:35 - 15:05 - Disconnect3d => Linux privesc via arbitrary x86 MSRs read/write bug: case study from a CTF challenge (30 min) 15:15 - 15:45 - har1sec => Under the Hood: Exploring the Architecture and Security Risks of Large Language Models (30 min) 15:55 - 16:25 - greg & finn => Digging Tunnels out of a JS Sandbox (30 min) 16:30 - 17:00 - Lightning talks slot day 2: 10:15 - 10:45 - FlUxIuS => Connected cars: scary RF signals & possible RCEs (30 min) 10:55 - 11:15 - Mehdi Talbi (@abu_y0ussef) => Attacking the FreeBSD hypervisor (20 min) 11:25 - 11:45 - Adrian Hetman => Decoding the Battlefield: WarRoom Stories from Web3 (20 min) 11:50 - 14:00 - lunch break 14:05 - 14:35 - Mateusz Fruba & munmap => Beyond Android MTE: Navigating OEM's Logic Labyrinths (30 min) 14:45 - 15:15 - Piotr Bazydlo (chudypb) => Avalanche of Pwns for Ivanti Avalanche (30 min) 15:20 - 15:50 - dump_stack() => Non-binary reverse engineering. Playing a different game. (30 min) 16:00 - 16:20 - cynicalsecurity => An Explosive Endnote (20 min)