BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//hack-lu-2026//speaker//TNLSSF
BEGIN:VTIMEZONE
TZID:Europe/Luxembourg
BEGIN:DAYLIGHT
DTSTART:20251020T000000
TZNAME:CEST
TZOFFSETFROM:+0200
TZOFFSETTO:+0200
END:DAYLIGHT
BEGIN:STANDARD
DTSTART:20251026T030000
RDATE:20261025T030000
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20260329T030000
RDATE:20270328T030000
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
SUMMARY:Glucose in the Air: Wireless Medical IoT Without a Trust Anchor - 
 Mohamed Ouad\, Bartek Górkiewicz
DTSTART;TZID=Europe/Luxembourg:20261020T144500
DTEND;TZID=Europe/Luxembourg:20261020T151500
DTSTAMP:20261009T042228Z
UID:pretalx-hack-lu-2026-ZG7W3T@pretalx.com
DESCRIPTION:Continuous glucose monitors (CGMs) stream health information o
 ver Bluetooth Low Energy from body-worn sensors to smartphones and the ven
 dors’ clouds. Millions of people depend on this communication system eve
 ry day. However\, existing CGM regulations tend to focus on medical-device
  compliance and operational requirements\, while their security posture as
  connected medical IoT devices is often not fully evaluated.\n\nOver a two
 -month research effort\, we conducted a comparative security assessment of
  four commercial continuous glucose monitoring (CGM) sensors\, covering wi
 reless pairing mechanisms\, mobile applications\, embedded interfaces\, an
 d portions of the supporting cloud infrastructure. Across multiple vendors
 \, we identified recurring architectural weaknesses affecting user device 
 trust\, communication security\, sensor management functionality\, and bac
 kend authorization controls.\n\nGuided by a detailed threat model\, we ana
 lyzed both the design and implementation decisions behind these platforms.
  In this talk\, we will demonstrate how attackers in close proximity can a
 buse weaknesses in device pairing and trust establishment to impersonate t
 rusted devices\, why protocol obscurity at the wireless layer fails as a s
 ecurity boundary\, and what manufacturers must change to build secure CGM 
 ecosystems.\n\nAttendees will leave with a clear understanding of the rele
 vant threat scenarios\, the technical flaws introduced during the design a
 nd manufacturing of these devices\, and the broader implications such weak
 nesses have in today’s always-connected society. The talk will also high
 light how insecure wireless connectivity\, weak trust assumptions\, and po
 or security engineering practices can directly impact the safety\, privacy
 \, and reliability of modern medical ecosystems.
LOCATION:Europe
URL:https://pretalx.com/hack-lu-2026/talk/ZG7W3T/
END:VEVENT
END:VCALENDAR
