Aligning NIS2 in Practice Across the EU

NIS2 promises a more harmonised cybersecurity landscape across the European Union, but the reality is far more fragmented. As Member States implement the directive differently, organisations face a growing patchwork of requirements and audit expectations. This session offers a practical perspective on how NIS2 is unfolding across the EU. It highlights real challenges, key differences […]

0-Day SharePoint Exploitation: Responding to the unknown

This session unpacks the SharePoint Toolshell campaign as a case study in modern 0-day exploitation, walking through the tactics, techniques, and procedures observed in a real incident. From there, we broaden the lens: what does Toolshell teach us about responding to campaigns in the first 72 hours when activity is “unknown”? Attendees will leave with […]

IDRS report demonstrates cyber resilience for NIS2/DORA

Cyber resilience is increasingly a boardroom topic, but how do C-level executives and supervisory bodies actually know whether an organisation is resilient enough? Risk dashboards and audit reports exist in abundance, yet they rarely give decision-makers the holistic, comparable, and actionable insight they need. The International Digital Reporting Standards (IDRS) was developed precisely to address […]

The hype is killing kittens, but not that grumpy old cat

In this session, we take a step back from the hype cycle and look at security through a longer, vintage, grumpy old hackers lens. From the early days of classic computer hacks to the evolution of modern vulnerability research, we revisit the techniques, mindsets, the breakthroughs and the people responsible for those, with a focus […]

VShell: Tracking a State-Actor C2 Framework in the Wild

VShell is a post-exploitation command and control framework increasingly observed in intrusions targeting government and critical infrastructure sectors. Following NVISO’s initial research and publication, we continued tracking VShell infrastructure globally to understand how it is deployed and operated by state-linked threat actors. This session opens with a concise technical overview of VShell: how it works […]

We did everything right and still got owned by an APT

In the first half of 2026, the SOC of one of our customers discovered odd user behaviour on a sensitive server and started to investigate. That investigation lead to investigation of a authentication bypass and eventually a sophisticated and persistent attack of an edge device (F5) and the services offered though it. In this session […]

The pre-intrusion layer

Most security teams are not blind to influence operations. They see the signals, but they see them late: content already spreading, impersonation already live, narratives amplified. By then, the early-stage indicators – cloned domains, coordinated account creation, AI-generated content being tested – have been visible for weeks on platforms their security stack doesn’t collect from. […]

AI has blocked the cybersecurity talent pipeline.

AI in general, and LLMs in particular, have spread like wildfire across every industry. Cybersecurity is of course no exception to this. There are many facets of the new AI-age that need to be discussed, regulated, and developed. One under-discussed facet is the effect LLMs have had on students. While every education conference has discussions […]

From Radar to Roadmap: High-Tech Product Security

Standard security foresight tools were built for enterprise IT — not for products with 15-year lifecycles, tightly coupled hardware-software architectures, and supply chains where a single compromise can impact thousands of devices. This session presents two complementary instruments developed by the Brabant House of Cyber (BHoC): the Product Security Innovation Radar, a structured prioritization methodology […]

The Evolution of Adversarial AI in Cyber Operations

The integration of Generative AI into the cyber threat landscape is a story of gradual evolution rather than immediate revolution. Moving beyond speculative “super-malware” discourse, current intelligence reveals a nuanced reality: adversaries are maturing and experimenting in lockstep with the industry. This session dissects how state-sponsored APTs and financially motivated actors are using AI to […]