Insecure Vibes: Secure Coding Literacy for Vibe Coders
Vibe coding has a time and a place: it is great for making quick prototypes, and is very tempting for less technical folks. However, those who don’t understand their own code will be blissfully unaware of the many security vulnerabilities that AI assistants can introduce. In this presentation, I will cover a variety of common […]
TaHiTI, threat hunting methodology.
Discover the Power of TaHiTI at ONE Conference AI is accelerating everything—threat discovery, vulnerability disclosure, and attacker adaptation. As timelines between “known” and “exploited” keep collapsing, relying on static detection is no longer enough. In this interactive workshop, we introduce the renewed TaHiTI (Targeted Hunting integrating Threat Intelligence) framework, developed within the Dutch financial sector. […]
PQC: Who owns cryptography? When decisions outgrow IT
Most organisations lack clear ownership of cryptographic decisions. With post-quantum cryptography (PQC), this becomes an urgent risk: migration takes years, regulations are tightening, and decisions have long-term business impact. This interactive session focuses on why PQC fails when treated as a technical upgrade rather than a governance and IT operating model challenge. Participants start with […]
Unravel Cybercrime: Anti-Phishing and -Ransomware Agenda
Phishing remains the primary entry point for many cyberattacks, enabling access to interconnected criminal ecosystems where no cybercrime occurs in isolation. This session examines how attackers exploit trust layers like DNS, use anonymization technologies, and leverage crypto assets to obscure operations. It highlights the need for a technology agenda that links fragmented signals and rapidly […]
3 Practical Leadership Strategies to Retain Cyber Talent
Most efforts to address staffing shortages and talent gaps in cyber focus on expanding the pipeline (e.g., education, recruitment, reskilling). There is, however, another critical angle to prioritize: retaining current talent. This interactive workshop, based on a 2025 Dutch Security Cluster study conducted by the Municipality of The Hague, introduces 3 practical leadership strategies to […]
CTI Pubquiz
Back by popular demand from CTI and RUMINT enthusiasts: the CTI pubquiz! Are you able to claim the fame of most dedicated cyber doomscroller of this year? How many DDoS-attacks occur daily, which actor was able to remain hidden? Are you able to tell how many versions of breachforums were taken down last year? These […]
Under Pressure: Survive the Crisis
Imagine a massive cyberattack crippling your supply chain, amplified by the rapid deployment of malicious AI tooling. What is your next move? In this highly interactive workshop hosted by CCRC, you will step into the shoes of a crisis management team facing a high-stakes cyber incident. We will guide the audience through the painful dilemmas […]
Follow the Trail: Crypto Sanctions Evasion
States increasingly pursue their geopolitical objectives through non-military means — including front companies, sanctions-busting supply chains, proxy networks, and covert financing. Cryptocurrency has become a critical enabler of this architecture: state-backed actors are now building and exploiting financial and crypto platforms specifically designed to circumvent sanctions regimes, funnelling illicit virtual asset flows through jurisdictions that […]