Peter Geissler
Peter “blasty” Geissler is an independent security researcher from the Netherlands. He’s well known for facilitating code execution on various platforms, writing exploits for popular software packages, competing in pwn2own and being a founding member of the Eindbazen CTF team.
Session
this talk presents the story of some (semi-related) side projects that disappeared into
the freezer until the speaker (and the rest of the world) got slightly redpilled on the
whole agentic engineering thing.
in this talk we'll show you how a single engineer built a semi-autonomous system for
automatic vulnerability discovery and exploitation aimed at networked (consumer) electronics
in only a few months, assisted by an unhealthy amount of vibemaxxing and caffeine.
everyone can start claude and point it at a network device and ask it nicely to find some
novel new zerodays. but that doesn't scale and will likely give subpar results. what if we
want to hack 20 devices in parallel? how do we compete with the big dogs who have access to Mythos?
how you do keep track of findings/useful nuggets of information? how do we sandbox our agents?
how do we (attempt to) minimize our operational cost? and why the hell was a 3d printer used
extensively during this research?!
These and many more questions will be answered during the talk.
It doesn't matter whether you enjoy (embedded) security research, LLM hypetrains, building things
or just breaking things; there's something for everyone in this talk!