SEC536: Adversarial AI - Penetration Testing AI Systems

In-Person
SANS Cyber Crisis Exercises are immersive, scenario-based experiences that prepare organizations to navigate today’s complex cyber threat landscape. Designed for technical teams, business leaders, and executive stakeholders, these exercises replicate real-world cyber incidents in a controlled, facilitated environment with realistic injections. Each engagement includes a comprehensive performance report highlighting strengths and opportunities for improvement. By transforming strategy into practice, SANS Cyber Crisis Exercises validate response plans, strengthen cross-functional coordination, and elevate leadership decision-making. Ensure your organization is not reacting for the first time when a crisis strikes but executing a well-rehearsed response.
In-Person
Security teams are inundated with new vulnerabilities, threat advisories, and patching priorities every day, yet only a small percentage of CVEs become actively exploited in the wild. Drawing on insights from CrowdSec's global network of more than 500,000 connected systems, this session will examine how attackers are identifying, weaponizing, and exploiting vulnerabilities at scale. Attendees will gain a data-driven perspective on which vulnerabilities are attracting the most attention from threat actors, how quickly exploitation follows disclosure, and the key trends shaping today's threat landscape. The session will provide practical insights to help security leaders better prioritize remediation efforts, focus resources on the risks that matter most, and make more informed vulnerability management decisions.
Philippe Humeau, CISO – CrowdSec
In-Person
Miguel De Bruycker, Managing Director – CCB Belgium
In-Person
Based on a number of spectacular cases in the past years, digital sovereignty has appeared on the agenda of many boards and executive meetings. Security leaders have experience with business continuity and security risk management and are also asked to balance innovation with the need for greater control over the supply chain in which the organisation navigates. In this session Marc Vael will shed light on what digital sovereignty means for cybersecurity today and tomorrow and how security leaders help build digital resilience in an increasingly complex and fast-moving environment.
Marc Vael, Chief Digital Trust Officer – Esko
In-Person
In-Person
In-Person
Drawing on the Darwinian idea of “survival of the fittest,” organizational fitness today is no longer defined by preventing every attack. Instead, resilient enterprises shift from a narrow defense mindset to a broader continuity‑focused approach. Fitness is measured by the ability to anticipate, withstand, recover from, and adapt to adverse conditions. This shift is accelerated by AI, which now amplifies every phase of the kill chain: expanding attacker speed, scale, and sophistication. The session examines how AI reshapes the overall risk landscape and provides leaders with a 20‑point action plan to strengthen cyber resilience and fight back effectively.
Manfred Bordeaux-Dehmer, Former CIO & CISO - NATO
In-Person
In-Person