Chcon2025

Wireless Pivots: How Trusted Networks Become Invisible Threat Vectors
2025-10-31 , Main Hall

In todays mobile first world, the security perimeter no longer ends at the office firewall or physical office perimeter. Laptops and mobile devices routinely connect to home networks, cafes, hotels, and co-working spaces—each one a potential foothold for attackers. This talk explores the concept of WiFi pivoting, where adversaries leverage previously connected networks to bypass traditional enterprise defenses.


We will dive into real-world scenarios where attackers exploit saved SSIDs, rogue access points, and misconfigured wireless profiles to gain access to corporate assets—often without ever touching the corporate network directly. Attendees will learn how mobile devices extend the attack surface far beyond the organisation's control, and why WiFi should be treated as a first-class security boundary.

This session will include live demonstrations of WiFi pivoting techniques, practical mitigation strategies, and a discussion on how to rethink trust in a world where every network a device has ever touched could be a backdoor.

Toby "TheXero" Reynolds is a dynamic security professional, with over a decade of experience, His career spans a diverse clientele in both commercial and non-commercial sectors. With a keen focus on enhancing cybersecurity, his expertise lies in vulnerability research, exploit development, and blackbox Penetration Testing. As a thought leader in the field, Toby not only identifies and addresses security gaps but also takes the lead as the primary trainer in courses that delve into the intricacies of attacker tools and methodologies. By combining practical experience with a passion for education, he empowers others to navigate the ever-evolving landscape of cybersecurity with confidence.

This speaker also appears in: