SEC536: Adversarial AI - Penetration Testing AI Systems




In last year's talk (Don't Trust Smart Sheep), we explored the threats lurking inside large language models: prompt injection, jailbreaks, and the surprisingly fragile trust we place in systems that predict the next word. But the sheep have evolved. They've got calendars, code interpreters, web access, and API keys. They're booking meetings, writing scripts, and talking to each other. They're agents now. Smart Sheep Got Tools picks up where we left off, moving beyond the LLM itself to examine the unique security challenges of agentic AI systems. When an AI can act (not just respond) the attack surface explodes. We'll dig into the real-world risks: agents that can browse the web, execute code, send emails, and chain together into complex workflows where one bad instruction can ripple across an entire system. This talk covers the risks honestly and gives you a practical framework for thinking about trust, scope, and control in AI agent design. Because the question is no longer just what can you make the model say. It's what can you make it do.
In-Person & Virtual
For many organizations, securing ICS/OT has become a top priority causing a flurry of activity to build up defences in preparation for the next attack. But what is the activity organizations are doing and are they contributing towards safe and reliable operations. How does AI identify vulnerabilities in the firmware they operate and threaten operations of these systems? This talk explores the benefits and tribulations surrounding these activities along with real-world experiences of self-inflicted pain and blind ignorance that leads to near misses and direct impacts.
In-Person & Virtual
Registration:
About DFIR NetWars: Focused on digital forensics, incident response, threat hunting, and malware analysis, this tool-agnostic approach covers everything from low-level artifacts to high-level behavioral observations.
Computer Requirements: Laptop/desktop-based
Extra Requirements: Files downloads are required to participate.
Recommended For: Experienced Digital Forensic Analysts, Forensic Examiners, Media Exploitation Examiners, Malware Analysts, Incident Responders, Threat Hunters, Security Operations Center (SOC) Analysts, Law Enforcement Officers, Federal Agents, Detectives, and Cyber Crime Investigators.
Disciplines: Digital Forensics, Incident Response.
Example Topics:
Interactive Scenario: As a DFIR specialist, you are provided with evidence files from a series of mysterious compromised systems and conventional computing environments. Your mission? Use your DFIR skills to shed light on attack vectors, indicators of compromise, and other evidence needed to resolve the incident.
In-Person & Virtual
Registration:
About DFIR NetWars: Focused on digital forensics, incident response, threat hunting, and malware analysis, this tool-agnostic approach covers everything from low-level artifacts to high-level behavioral observations.
Computer Requirements: Laptop/desktop-based
Extra Requirements: Files downloads are required to participate.
Recommended For: Experienced Digital Forensic Analysts, Forensic Examiners, Media Exploitation Examiners, Malware Analysts, Incident Responders, Threat Hunters, Security Operations Center (SOC) Analysts, Law Enforcement Officers, Federal Agents, Detectives, and Cyber Crime Investigators.
Disciplines: Digital Forensics, Incident Response.
Example Topics:
Interactive Scenario: As a DFIR specialist, you are provided with evidence files from a series of mysterious compromised systems and conventional computing environments. Your mission? Use your DFIR skills to shed light on attack vectors, indicators of compromise, and other evidence needed to resolve the incident.
In-Person & Virtual