BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: The Protocol-Native Adversary: Full-Spectrum ICS Sim
 ulation\n   via SiL\n   Tags: Red Team Village | Misc\n   When: Saturday\,
  Aug 8\, 12:00 - 12:59 PDT\n   Where: LVCCW Level 1 Hall 1 309 (Red Team V
 illage) Workshop Stage 2 -\n   [1]Map\n\n   Description:\n\n   As adversar
 ies increasingly target the "physics" of critical\n   infrastructure\, the
  security community must move beyond IT-centric red\n   teaming. While har
 dware-based training platforms have paved the way\,\n   they often lack th
 e scale required to simulate complex\, multi-facility\n   sabotage. This w
 orkshop introduces a Software-in-the-Loop (SiL)\n   environment designed t
 o bridge the gap between IT command-and-control\n   and OT process logic. 
 Participants will navigate a containerized\n   industrial ecosystem\, mast
 ering "Living-off-the-Ladder" (LotL)\n   techniques—using native\, unaut
 henticated protocols (Modbus\, DNP3\,\n   S7comm) to manipulate physical w
 ater treatment processes. We will move\n   through the full ICS kill-chain
 \, focusing on the technical mechanics\n   of memory-block interrogation a
 nd automated setpoint manipulation.\n   Attendees will engage in a hands-o
 n lab\, executing a "Credential\n   Harvest" (T0861) and a coordinated che
 mical-override attack. By the\n   end of the session\, participants will u
 nderstand why these\n   "authorized" protocol commands bypass traditional 
 NIDS and will leave\n   with a deployable SiL framework to continue their 
 own ICS research.\n\n   Speakers:Blessen Thomas\,Javier Hernández\,Wojcie
 ch Poparda\n\n   SpeakerBio:  Blessen Thomas\n\n   Blessen Thomas is an In
 dependent Security Researcher.He has more than\n   13+ years of experience
  in Red Teaming\, Appsec (Web\, Thick\, API &\n   Mobile Apps)\, Smart Wat
 ch Wearable Application Penetration Testing\,\n   Mobile Penetration Test 
 (iOS\,Android\,Windows platform)\, IoT\,OT\n   \,mainframes\,SAP\,SWIFT\,R
 PA\,Cloud\,ATM\,KIOSK\,Vulnerability Assessment and\n   Network Penetratio
 n Test\,Physical Covert Entry\,Wireless\n   assessments\,Telecom(2G\,3G\,U
 SSD) etc. for several enterprise companies\n   and financial institutions 
 all across the globe. He is a B.Tech in\n   Information Technology from An
 na University and holds industry\n   certifications such as SANS GPEN\,CRT
 O\,OPST\,CREST CRT(PEN)\,CREST\n   CPSA\,OSCP\,CRTP\,OSWP\,C)PTE\,CEH\,CHF
 I. He has been listed and\n   acknowledged in various “HALL OF FAMES” 
 for various companies such\n   as Oracle\,Sony\, Kayako\, Appcelerator\, H
 otgloo\, Meldium\, Splunk and\n   many more for responsible disclosure. He
  has been a bug bounty hunter\n   and contributor for the OWASP Mobile Tes
 ting Guide Project(MSTG)\,Tamer\n   OS\, Seclists\, OWASP top 10 API\, OSS
 TMM\, Awesome Mainframe\n   Hacking\,RvR\,WAVSEP Benchmark sectool project
 s. His research\n   training/talks has been accepted into various security
  conferences\n   like Hack in the Box-Dubai\,Hacktivity -Hungary\, CanSecW
 est\n   -Canada\,OWASP Appsec EU- London -UK\,OWASP Appsec Europe-Italy\,\
 n   RootCon-Philippines \,OWASP PH\,OWASP New Zealand Day\, Infosec\n   So
 uthWest\,Austin\,Texas\, FSec-Croatia\, Hackbeach\, Hackfest\,\n   Shakaco
 n\,ITWeb-South Africa\, Jordan Cyber Security Summit\,\n   HITCON-Taiwan\,
  OWASP AppSec-Bucharest\, OWASP Appsec\n   Africa-Morocco\,CircleCityCon\,
 OWASP\n   Botswana\,CactusCon\,Bsides-London\,Prishtina\,Aarhus\,Vilnius\,
 Elbsides\,Kristiansand\,Athens\n   and many more. He has been invited as S
 peaker for Radio Talk Shows for\n   All India Radio. He spends his leisure
  time playing drumkit and\n   percussion.\n\n   SpeakerBio:  Javier Herná
 ndez\n\n   Javier is a Red Team Operator and Malware Developer specializin
 g in\n   offensive engineering\, adversary emulation\, and custom tooling\
 n   development. Holding certifications such as OSEP and CRTO\, he has\n  
  delivered high‑impact security engagements across both consulting\n   e
 nvironments and in‑house security teams. His work focuses on\n   craftin
 g stealthy implants\, evasion techniques\, and\n   automation‑driven off
 ensive capabilities. Passionate about applied\n   research\, he explores t
 he intersection of malware development and\n   AI‑augmented offensive se
 curity to help organizations strengthen\n   their resilience against moder
 n threats\n\n   SpeakerBio:  Wojciech Poparda\n\n   Wojciech Poparda is a 
 cybersecurity consultant. He helps organizations\n   proactively defend th
 eir digital infrastructure by thinking like an\n   adversary. Leveraging a
  deep foundation in Offensive Security\, he\n   specializes in designing r
 esilient Security Architectures that bridge\n   the gap between complex at
 tack vectors and enterprise defense\, with a\n   sharp focus on Cloud Secu
 rity and Identity & Access Management (IAM).\n\n   His approach is backed 
 by rigorous technical validation\, holding\n   industry-leading certificat
 ions including OSCP\, CRTE\, CRTP\, CRTO\,\n   CPTS\, CWES\, AWS Certified
  Solutions Architect - Associate and AWS\n   Certified Security - Specialt
 y. He is also an Associate of ISC2\,\n   having successfully passed the CI
 SSP exam.\n\n   Beyond the terminal\, he channels the discipline\, focus\,
  and resilience\n   required for cybersecurity into his life as a triathle
 te. As an\n   IRONMAN European and World Championships finisher\, he bring
 s the same\n   endurance and dedication to solving complex security challe
 nges as he\n   does to the race course.\n\n   '\n\n   1. #LVCCW_Level1_Hal
 l1\n\n\n
DTEND:20260808T195900Z
DTSTART:20260808T190000Z
LOCATION:Red Team Village - LVCCW Level 1 Hall 1 309 (Red Team Village) Wor
 kshop Stage 2
SUMMARY:The Protocol-Native Adversary: Full-Spectrum ICS Simulation via SiL
END:VEVENT
END:VCALENDAR
