BSidesLuxembourg

222 Followers
476 Following
459 Posts

๐Ÿ›ก๏ธ Now Announcing: A New Cybersecurity Session at BSides Luxembourg

๐—–๐—ข๐— ๐—ฃ๐—ฅ๐—˜๐—›๐—˜๐—ก๐—ฆ๐—œ๐—ฉ๐—˜ ๐—™๐—ฅ๐—”๐— ๐—˜๐—ช๐—ข๐—ฅ๐—ž ๐—™๐—ข๐—ฅ ๐—”๐—ก๐—”๐—Ÿ๐—ฌ๐—ญ๐—œ๐—ก๐—š ๐—”๐—ก๐—— ๐——๐—˜๐—ง๐—˜๐—–๐—ง๐—œ๐—ก๐—š ๐— ๐—”๐—Ÿ๐—œ๐—–๐—œ๐—ข๐—จ๐—ฆ ๐—•๐—ฅ๐—ข๐—ช๐—ฆ๐—˜๐—ฅ ๐—˜๐—ซ๐—ง๐—˜๐—ก๐—ฆ๐—œ๐—ข๐—ก๐—ฆ โ€“ Van Nguyen

Take a closer look at one of the webโ€™s most overlooked threats in this 30-minute lightning talk session feature within the Actionable CTI and Detection Engineering Village. This session dives into the growing risk of malicious browser extensions and how they silently impact millions of users through tracking, redirects, ad injection, data theft, and other unwanted actions.

Built on a curated dataset of 460 malicious extensions removed from the Chrome Web Store, this talk presents a practical detection framework combining static and dynamic analysis techniques, including CodeQL and Python-based workflows. A valuable session for analysts, threat hunters, and defenders looking to better understand browser-based threats.

Van Nguyen is a Security Analyst with a strong background in Software Engineering, Machine Learning, and IT Security, currently focusing on modern threat analysis and detection methodologies.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #ThreatIntelligence #DetectionEngineering #BrowserSecurity #CyberSecurity #Infosec

โšก Just Dropped: A Must-See Talk at BSides Luxembourg 2026!

๐—™๐—ข๐—ฅ๐—˜๐—ก๐—ฆ๐—œ๐—– ๐—–๐—›๐—”๐—Ÿ๐—Ÿ๐—˜๐—ก๐—š๐—˜๐—ฆ ๐—œ๐—ก ๐—ฅ๐—˜๐—”๐—Ÿ-๐—ช๐—ข๐—ฅ๐—Ÿ๐—— ๐—–๐—”๐—ฆ๐—˜๐—ฆ ๐—ข๐—™ ๐——๐—œ๐—š๐—œ๐—ง๐—”๐—Ÿ ๐— ๐—”๐—ก๐—œ๐—ฃ๐—จ๐—Ÿ๐—”๐—ง๐—œ๐—ข๐—ก โ€“ Thiago Vieira

Step into the growing authenticity crisis in this compelling 40-minute talk, where the surge of AI-generated content is reshaping digital forensics and the justice system. Through real-world cases from Portugal and Brazil, this session uncovers how voice cloning, spoofing, and synthetic media are blurring the line between real and fakeโ€”making investigations more complex than ever.

From analyzing metadata and spectrographic patterns to understanding evolving legal standards like admissibility of AI-generated evidence, this talk highlights the shift from intuition to technical validation. Discover how investigators can adapt, counter manipulation tactics, and navigate challenges like the โ€œliarโ€™s dividend,โ€ where even genuine evidence risks being dismissed as fake.

Thiago Vieira brings a unique blend of technical and legal expertise, with over 15 years spanning development, network engineering, and digital forensics. Now focused on helping cyber startups scale, he works at the intersection of technology and law to strengthen digital resilience against modern threats.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #DigitalForensics #AISecurity #Deepfakes #CyberSecurity #ThreatIntelligence

๐Ÿ’ฅ Another Power-Packed ๐—ž๐—˜๐—ฌ๐—ก๐—ข๐—ง๐—˜ Joins BSides Luxembourg 2026!

๐—ž๐—œ๐—Ÿ๐—Ÿ๐—œ๐—ก๐—š ๐—ž๐—œ๐—Ÿ๐—Ÿ๐—ก๐—˜๐—ง โ€“ Alex Holden

Step inside a gripping 40-minute keynote that uncovers the real story behind one of the most visible hacktivist groups. What appeared to be a decentralized force was, in reality, a tightly controlled operationโ€”until a small team exposed its weak points and brought it down.

From uncovering financial ties to dark web markets to dismantling internal trust within the group, this session reveals how targeted investigation, OSINT, and strategic pressure can collapse even high-profile adversaries. A powerful case study in modern cyber disruption and how small teams can take on global threats.

Alex Holden is the founder and CISO of Hold Security, LLC, and a leading expert in threat intelligence. His work focuses on understanding cybercriminal operations and helping organizations build stronger defenses against real-world attacks.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #Keynote #ThreatIntelligence #OSINT #CyberSecurity #Infosec

๐Ÿ“… (continued)

โ€ข BSidesBUD #Bsidesbud โ€” Apr 29, 2026, Budapest ๐Ÿ‡ญ๐Ÿ‡บ #Hungary
โ€ข Zero Day Con #ZeroDayCon โ€” Apr 29, 2026, Dublin ๐Ÿ‡ฎ๐Ÿ‡ช #Ireland
โ€ข Out Of The Box #OutOfTheBox โ€” Apr 29-30, 2026, Jakarta ๐Ÿ‡ฎ๐Ÿ‡ฉ #Indonesia
โ€ข Security First Trinidad #SecurityFirstTrinidad โ€” Apr 30, 2026, Port of Spain ๐Ÿ‡น๐Ÿ‡น
โ€ข THCon #Thcon โ€” May 5-6, 2026, Toulouse ๐Ÿ‡ซ๐Ÿ‡ท #France
โ€ข PIVOTcon #Pivotcon โ€” May 6-8, 2026, Malaga ๐Ÿ‡ช๐Ÿ‡ธ #Spain
โ€ข BSidesLuxembourg @BSidesLuxembourg โ€” May 6-8, 2026, Belval ๐Ÿ‡ฑ๐Ÿ‡บ #Luxembourg

โšก Secure Development Spotlight at BSides Luxembourg 2026!

๐—ง๐—ฅ๐—จ๐—ฆ๐—ง ๐—”๐—ก๐—— ๐—ง๐—ฅ๐—”๐—–๐—˜๐—”๐—•๐—œ๐—Ÿ๐—œ๐—ง๐—ฌ: ๐——๐—˜๐—ฉ๐—˜๐—Ÿ๐—ข๐—ฃ๐—˜๐—ฅ ๐—ข๐—•๐—ฆ๐—˜๐—ฅ๐—ฉ๐—”๐—•๐—œ๐—Ÿ๐—œ๐—ง๐—ฌ ๐—œ๐—ก ๐—ง๐—›๐—˜ ๐—”๐—œ ๐—ฃ๐—ข๐—ช๐—˜๐—ฅ๐—˜๐—— ๐—ฆ๐——๐—Ÿ๐—– โ€“ Omar Rachid

As AI coding tools become deeply embedded in modern development workflows, organizations are facing a new challenge: developers are using them everywhereโ€”often without visibility, governance, or consistent security oversight. This 40-minute talk explores how the rapid adoption of AI in the SDLC is exposing critical gaps in developer security skills and enterprise risk management.

The session focuses on how security leaders can build observability into the development lifecycle to better understand both developer behavior and the security posture of AI-generated code. It covers strategies for establishing developer risk baselines, improving secure coding practices, addressing AI-induced vulnerabilities, and building governance models that scale with modern AI-assisted engineering workflows.

Omar Rachid is an Application Security Engineer with over 10 years of experience helping organizations embed security into the software development lifecycle. His work sits at the intersection of AppSec, DevOps, and AI security, with a strong focus on practical risk reduction and secure adoption of emerging technologies.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #AppSec #AISecurity #SDLC #DevSecOps #SecureDevelopment

โšก Secure Development Highlight at BSides Luxembourg 2026!

๐—•๐—จ๐—œ๐—Ÿ๐——๐—œ๐—ก๐—š ๐—ฆ๐—˜๐—–๐—จ๐—ฅ๐—˜ ๐—”๐—œ: ๐— ๐—”๐—ž๐—œ๐—ก๐—š ๐—ง๐—›๐—ฅ๐—˜๐—”๐—ง ๐— ๐—ข๐——๐—˜๐—Ÿ๐—œ๐—ก๐—š ๐—” ๐—–๐—ข๐—ฅ๐—˜ ๐—ฃ๐—”๐—ฅ๐—ง ๐—ข๐—™ ๐——๐—˜๐—ฉ๐—˜๐—Ÿ๐—ข๐—ฃ๐— ๐—˜๐—ก๐—ง โ€“ Diana Waithanji

As AI systems become deeply embedded in modern applications, security can no longer be an afterthought. This 40-minute talk explores how threat modeling can be integrated directly into the AI development lifecycle, ensuring vulnerabilities are identified and addressed early using a โ€œshift-leftโ€ approach.

The session introduces practical methods for conducting effective AI threat modeling sessions, including frameworks like STRIDE, relevant OWASP research, and tools that help teams systematically identify and mitigate risks unique to AI systems. Beyond methodology, it also focuses on making threat modeling collaborative and engaging, ensuring active participation from both technical and non-technical stakeholders.

Diana Waithanji is a cybersecurity professional at SAP specializing in cloud infrastructure security. She is a TechWomen USA fellow at Google and an AFRIKA KOMMT alumna, with active roles in cybersecurity standards and community initiatives promoting diversity and secure digital development.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #AISecurity #ThreatModeling #SecureDevelopment #OWASP #AppSec

โšก Story-Driven Security Talk at BSides Luxembourg 2026!

๐—™๐—ฅ๐—ข๐—  ๐—ฃ๐—›๐—œ๐—ฆ๐—›๐—œ๐—ก๐—š ๐—ง๐—ข ๐— ๐—œ๐—ง๐—œ๐—š๐—”๐—ง๐—œ๐—ข๐—ก: ๐—”๐—ก ๐—˜๐—”๐—ฅ๐—Ÿ๐—ฌ-๐—–๐—”๐—ฅ๐—˜๐—˜๐—ฅ ๐—œ๐—ก๐—–๐—œ๐——๐—˜๐—ก๐—ง ๐—ฅ๐—˜๐—ฆ๐—ฃ๐—ข๐—ก๐—ฆ๐—˜ โ€“ Chris Beckman

Follow a real-world journey from chaos to control in this engaging 40-minute talk. What began as an overwhelming phishing campaign at a fast-growing AI startup quickly escalated into a serious operational threatโ€”flooding inboxes, disrupting workflows, and even triggering convincing social engineering scenarios inside the company.

Through careful analysis of email data and infrastructure tracing, this session reveals how seemingly scattered attacks were linked back to a small set of IP rangesโ€”and how an unexpected approach, combining technical investigation with responsible disclosure and human communication, led to resolution. This talk highlights a powerful lesson: not every security problem is solved with tools aloneโ€”sometimes collaboration and perspective make all the difference.

Chris Beckman is a Principal Security Engineer at TaxBit, specializing in AI security and architecture across startups and large organizations. His work emphasizes practical, real-world security decision-making shaped by hands-on experience in complex environments.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #CyberSecurity #IncidentResponse #Phishing #ThreatIntelligence #BlueTeam

โšก Fresh Talk Alert for BSides Luxembourg 2026!

๐—ฆ๐—ฃ๐—ฅ๐—˜๐—”๐——๐—œ๐—ก๐—š ๐— ๐—”๐—Ÿ๐—ช๐—”๐—ฅ๐—˜ ๐—ช๐—œ๐—ง๐—› ๐—จ๐—ฆ๐—• ๐—ž๐—˜๐—ฌ๐—ฆ - ๐——๐—ข๐—˜๐—ฆ ๐—œ๐—ง ๐—ฆ๐—ง๐—œ๐—Ÿ๐—Ÿ ๐—ช๐—ข๐—ฅ๐—ž ? โ€“ Didier Barzin, Mathieu Vajou

Uncover the reality behind one of the oldest yet most effective attack vector in this eye-opening 40-minute talk. Through a real-world experiment conducted in Luxembourg, where 250 USB drives were intentionally โ€œlost,โ€ this session reveals how oftenโ€”and how quicklyโ€”people plug in unknown devices, often within minutes.

The findings highlight a critical truth: human curiosity and good intentions can still open the door to compromise. Learn why USB-based attacks continue to succeed, what motivates user behavior, and how organizations can strengthen awareness and defenses against this deceptively simple threat.

Didier Barzin is an information security enthusiast who combines defensive expertise with a hacker mindset. A strong advocate for open source and collaboration, he brings practical insights into real-world security challenges and user behavior.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #CyberSecurity #HumanFactor #USBThreats #SecurityAwareness

๐Ÿค– AI Security Takes the Stage at BSides Luxembourg 2026

๐—ง๐—›๐—˜ ๐—›๐—œ๐—š๐—›-๐—ฃ๐—˜๐—ฅ๐—™๐—ข๐—ฅ๐— ๐—”๐—ก๐—–๐—˜ ๐—™๐—จ๐—˜๐—Ÿ ๐—™๐—ข๐—ฅ ๐—ฆ๐—ข๐—–๐—œ๐—”๐—Ÿ ๐—˜๐—ก๐—š๐—œ๐—ก๐—˜๐—˜๐—ฅ๐—œ๐—ก๐—š (๐—ก๐—ข๐—ช ๐—œ๐—ก ๐—”๐—œ ๐—™๐—Ÿ๐—”๐—ฉ๐—ข๐—ฅ๐—ฆ!) โ€“ Glen Sorensen

Unpack the hidden engine behind modern social engineering in this eye-opening 40-minute talk from the AI Security Village. As personal data becomes increasingly accessible, attackers are leveraging AI to scale highly targeted phishing, deepfake scams, and automated fraudโ€”turning everyday digital footprints into powerful attack vectors.

This session bridges privacy, OSINT, and cyber threat intelligence, showing how exposed data is collected, weaponized, and used against individuals and organizations. Walk away with practical strategies to reduce your exposure, detect AI-driven targeting, and strengthen defenses against the next generation of social engineering attacks.

Glen Sorensen is a Solutions Engineer at DeleteMe and a former CISO/vCISO with over 20 years of experience across security engineering, operations, and GRC. He specializes in how AI and OSINT are used in modern social engineering and helps organizations translate risk into practical defense strategies.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #AISecurity #SocialEngineering #OSINT #CyberSecurity #ThreatIntelligence