BSides Munich 2025

Let's make hackers cry.... With Deception!
2025-11-15 , Hochschule München - R0.004

In this worksop we will do 4 labs where you will learn deception techniques you can use in your organization as soon as you get back to work.

They are awesome. They are free. And they will frustrate your next attacker and/or pen tester.


How would you like to learn how to honey all the things? Honey users? Honey Files? Honey Ports? How would you like to be able to detect a spear phishing attack before the attacker sends a single email in your organization?

How about using AI in your deception?

How about honeypots in the cloud?

And…. All the above for free?

Then this session is for you.


Which keywords describe your submission?:

Honeypots cloud AI Next Generation

John Strand has both consulted and taught hundreds of organizations in the areas of security, regulatory compliance, and penetration testing. He is a coveted speaker and much loved SANS teacher. John is a contributor to the industry-shaping Penetration Testing Execution Standard and 20 Critical Controls frameworks.