{"$schema": "https://c3voc.de/schedule/schema.json", "generator": {"name": "pretalx", "version": "2026.2.1", "url": "https://cfp.romhack.io"}, "schedule": {"url": "https://cfp.romhack.io/romhack-camp-2026/schedule/", "version": "1.0.1", "base_url": "https://cfp.romhack.io", "conference": {"acronym": "romhack-camp-2026", "title": "RomHack Camp 2026", "start": "2026-10-02", "end": "2026-10-04", "daysCount": 3, "timeslot_duration": "00:05", "time_zone_name": "Europe/Rome", "colors": {"primary": "#e80960"}, "rooms": [{"name": "STAGE 1 (Section 9)", "slug": "2-stage-1-section-9", "guid": "47b38352-0691-5618-8b15-f67c738deddd", "description": null, "capacity": 100}, {"name": "STAGE 2 (Ghost in the Shellcode)", "slug": "3-stage-2-ghost-in-the-shellcode", "guid": "e6e85222-3d79-5c40-98db-dfb632bfe2f4", "description": null, "capacity": 100}, {"name": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "5-workshop-1-neon-genesis-exploitation", "guid": "5704863c-a7a0-53ae-9462-b14a304bf451", "description": null, "capacity": 39}, {"name": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "8-workshop-2-getroot-no-jutsu", "guid": "b14df57e-15a1-5fdc-813b-324ebdcf0c89", "description": null, "capacity": null}, {"name": "HACKSPACE (The Wired)", "slug": "7-hackspace-the-wired", "guid": "7ac17949-9fe3-5471-8c9b-7f655052c9a0", "description": null, "capacity": 80}, {"name": "COMMUNITY AREA", "slug": "9-community-area", "guid": "26c3166c-cef0-5f8b-ba33-5f86d59c5704", "description": null, "capacity": null}, {"name": "FOOD AREA", "slug": "10-food-area", "guid": "94a7c03f-98b9-5d88-af7d-a3547773ea0f", "description": "This space is outside camp area", "capacity": null}, {"name": "SHOW AREA", "slug": "6-show-area", "guid": "769af98e-f727-5d4e-b4fe-0e6db840e584", "description": "This space is outside camp area", "capacity": null}, {"name": "UNUSED", "slug": "4-unused", "guid": "4303c450-0922-582b-841f-dbf4ad3c2f75", "description": null, "capacity": 27}], "tracks": [{"name": "Food", "slug": "15-food", "color": "#6f7c1a"}, {"name": "Sponsor", "slug": "16-sponsor", "color": "#aaa604"}, {"name": "Orga", "slug": "14-orga", "color": "#a52a2a"}, {"name": "Cybersecurity and Hacking", "slug": "5-cybersecurity-and-hacking", "color": "#00ccff"}, {"name": "Entertainment", "slug": "13-entertainment", "color": "#7b2fbf"}, {"name": "Gaming and game development", "slug": "12-gaming-and-game-development", "color": "#800aa7"}, {"name": "Hardware, Makers and IoT", "slug": "6-hardware-makers-and-iot", "color": "#fbaa12"}, {"name": "Journalism, society, hacker culture", "slug": "10-journalism-society-hacker-culture", "color": "#61be3d"}, {"name": "Kids", "slug": "4-kids", "color": "#001dff"}, {"name": "Networking and Radio", "slug": "11-networking-and-radio", "color": "#25a785"}, {"name": "Scripting, Coding, Development", "slug": "7-scripting-coding-development", "color": "#d02077"}, {"name": "Other", "slug": "9-other", "color": "#406d78"}], "days": [{"index": 1, "date": "2026-10-02", "day_start": "2026-10-02T04:00:00+02:00", "day_end": "2026-10-03T03:59:00+02:00", "rooms": {"STAGE 1 (Section 9)": [{"guid": "89839af4-ef15-5a58-8e2f-fc9263688830", "code": "7DJ87Y", "id": 177, "logo": null, "date": "2026-10-02T10:30:00+02:00", "start": "10:30", "end": "2026-10-02T11:00:00+02:00", "duration": "00:30", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-177-romhack-camp-opening", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/7DJ87Y/", "title": "RomHack Camp Opening", "subtitle": "", "track": "Orga", "type": "Talk", "language": "en", "abstract": "**Welcome to the second edition of RomHack Camp!** \nWe are thrilled to gather the community back at the Flaminio Village in Rome for three intensive days of hacking, sharing, and networking.  \n\nIn this opening session, the Cyber Saiyan team will set the stage for the weekend ahead. \nWe will walk you through the **camp layout**, introduce this year's **Community Villages**, and share **essential logistical details** to help you navigate the venue.  We will also preview the upcoming highlights of the weekend.\n\nGrab a seat as we kick off RomHack Camp 2026, celebrate our community, and officially start an unforgettable weekend of collaborative learning. \n\nLet the hacking begin!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "G8CNEJ", "name": "Cyber Saiyan", "avatar": "https://cfp.romhack.io/media/avatars/G8CNEJ_pShIzxp.png", "biography": "Cyber Saiyan is a non-profit cultural association founded in 2017. Our goal is simple: raising awareness and providing education in the field of cyber security.\n\nWe are the proud organizers of RomHack, an initiative built by the community, for the community. What started as a yearly technical conference has evolved to include intensive, hands-on Training sessions and an immersive three-day Hacker Camp in Rome.\n\nBeyond our core events, we actively promote independent projects and collaborations, such as the editorial initiative \"Guerre di Rete\".\n\nInvolving the community is very important to us. We strive to foster curiosity, sharpen skills, and create welcoming spaces where enthusiasts, researchers, and professionals can connect and share their knowledge.\n\nMore info: https://cybersaiyan.it/", "public_name": "Cyber Saiyan", "guid": "7ea9bfd7-a45d-51b7-a3cc-53c4da30d2a2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/G8CNEJ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/7DJ87Y/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/7DJ87Y/", "attachments": []}, {"guid": "a1a19dd4-42f1-544b-b3f8-0faf032dc3d4", "code": "RLARMV", "id": 218, "logo": null, "date": "2026-10-02T11:00:00+02:00", "start": "11:00", "end": "2026-10-02T11:40:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-218-stupid-sexy-bearer-tokens-a-deep-dive-into-exploding-oidc-sessions-and-hardening-with-dpop", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/RLARMV/", "title": "Stupid Sexy Bearer Tokens: a deep dive into exploding OIDC sessions and hardening with DPoP", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "it", "abstract": "Standard OIDC bearer tokens are deceptively simple and highly attractive to developers, but they hide a structurally weak security posture: anyone who holds them can spend them. Following up on [our previous deep dive](https://www.youtube.com/watch?v=ehSkbR-YuZw) @MOCA24 into securing OIDC code exchanges, this presentation is a hands-on, exploit-driven exploration of token-usage security.\nWe will begin by demonstrating how easily standard bearer tokens are stolen and replayed remotely from an attacker's terminal. We will then look \"beyond the basics\" to live-demo a hardened implementation of [RFC 9449](https://datatracker.ietf.org/doc/html/rfc9449) (DPoP) using a Keycloak identity provider and an Express.js resource server.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "VDKJ7K", "name": "jiraky", "avatar": "https://cfp.romhack.io/media/avatars/FSHLQ7_kzqjqD2.webp", "biography": "Dr. Zago holds a PhD from the University of Murcia, Spain.  He is currently based in Verona, Italy, working as a cybersecurity engineer (official registration code VR-A-4783).  Since 2024 he works for the Oniverse Group as Cyber Security engineer.\n\nHis research has focused on Artificial Intelligence for cybersecurity, including machine learning solutions for network intrusion detection systems, big data and sentiment analysis to identify social bots on social media platforms; and, anomaly detection in users' behavioural patterns for authentication and authorization purposes.", "public_name": "jiraky", "guid": "f9798ae8-97ef-57a3-a2b1-a1fe21411831", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/VDKJ7K/"}, {"code": "RWMF87", "name": "reymerk", "avatar": null, "biography": null, "public_name": "reymerk", "guid": "347a33c2-cc66-5952-9ece-93dc6eb9afdd", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/RWMF87/"}, {"code": "Q7EX7A", "name": "Giuseppe", "avatar": null, "biography": null, "public_name": "Giuseppe", "guid": "8e413ec9-e8fa-5f66-aec4-cde632646520", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/Q7EX7A/"}, {"code": "WWMB3L", "name": "toctou", "avatar": "https://cfp.romhack.io/media/avatars/UAGQFJ_1V9Cm0H.webp", "biography": "toctou ha conseguito una laurea magistrale in Ingegneria della Sicurezza informatica presso l'Universit\u00e0 di Verona. Ha iniziato la sua carriera come analista di Cyber Security, cambiando poi bruscamente rotta diventando Senior Oracle Database Administrator con oltre dieci anni di esperienza nel settore IT. Da poco \u00e8 poi riuscito a tornare alle radici virando di nuovo carriera e diventando Penetration Tester. \u00c8 certificato come OffSec Certified Professional (OSCP) e OffSec Experienced Penetration Tester (OSEP). Come appassionato di cybersecurity \u00e8 sempre desideroso di studiare e ampliare le conoscenze e le competenze pratiche in materia di sicurezza informatica nel tempo libero e, come attivit\u00e0 secondaria, attualmente crea macchine vulnerabili per OffSec come autore freelance.", "public_name": "toctou", "guid": "273b9ced-1a17-5855-917d-38f356829478", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/WWMB3L/"}, {"code": "7VCGQS", "name": "Stefano Maistri", "avatar": "https://cfp.romhack.io/media/avatars/MMQK3J_AdAoGEQ.webp", "biography": "I currently work as Principal Security Consultant at IMQ Group - Intuity S.p.A., where I conduct penetration testing, secure code reviews, threat modeling, and DevSecOps assessments. Alongside consulting, I'm involved in academia as external professor for the Cyber Security Master's program at the University of Bologna.", "public_name": "Stefano Maistri", "guid": "ffd11c1f-a587-548f-884a-9c0ee062babe", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/7VCGQS/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/RLARMV/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/RLARMV/", "attachments": []}, {"guid": "57ef6376-7ec2-5b1f-bdc2-5b370e55c3fc", "code": "EXYNT7", "id": 213, "logo": null, "date": "2026-10-02T12:00:00+02:00", "start": "12:00", "end": "2026-10-02T12:20:00+02:00", "duration": "00:20", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-213-macos-malware-development-an-introduction", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/EXYNT7/", "title": "macOS Malware Development: An Introduction", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Lightning Talk", "language": "en", "abstract": "This talk introduces the audience to the realm of macOS malware development. As Macs are increasingly adopted by companies, they are being targeted more frequently in malware campaigns. Similarly, in red team engagements, operators are encountering Macs more often, making the development of malware and TTPs for this platform crucial.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "U8GUJF", "name": "[kuom]", "avatar": "https://cfp.romhack.io/media/avatars/N8LPNP_YsPdjQN.webp", "biography": "Malware nerd, OT Security tester at [redacted].\nAs a teenager, I wanted to be a journalist; I guess Plan B worked better... for now. \nI know a couple things about OS internals, EDRs, and macOS security.", "public_name": "[kuom]", "guid": "9cd7688b-fbe9-53b2-94c3-c043c0d65dbd", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/U8GUJF/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/EXYNT7/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/EXYNT7/", "attachments": []}, {"guid": "45dd5398-d6ca-59cc-affb-a845c8b22c96", "code": "AGFMRW", "id": 187, "logo": null, "date": "2026-10-02T14:30:00+02:00", "start": "14:30", "end": "2026-10-02T15:10:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-187-stop-injecting-start-blending-a-kiss-approach-to-malware-development", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/AGFMRW/", "title": "Stop Injecting, Start Blending: A KISS Approach to Malware Development", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "As EDR products continue to improve their ability to detect malicious behavior, malware developers are increasingly adding layers of complexity in an attempt to evade detection.\n\nOne of the most challenging operations to perform under the radar remains code injection. This seemingly unavoidable step is associated with numerous indicators of compromise, ranging from well-known Windows API calls to uncommon memory permissions or suspicious execution flows.\n\nTo address this challenge, we revisit the decade-old technique of *code caves*: unused memory locations within legitimate binaries that can be repurposed to host and execute malicious code. By extending the concept to include *dead code* and embracing position-independent payload development we show that it is not only possible to go beyond classic code cave limitations, but also eliminate the need for code injection altogether.\n\nThrough practical demonstrations, we will show how it is possible to automate the discovery and weaponization of dead code in legitimate binaries. This proof of concept advocates a renewed philosophy of malware development, emphasizing simplicity and minimalism rather than increasingly complex evasion chains.\n\nFinally, we discuss important defensive implications of this work : if attackers can increasingly avoid traditional injection artifacts, detection strategies should focus less on how code reached execution and more on what that code ultimately does.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "PQNFD8", "name": "Julien Bedel", "avatar": "https://cfp.romhack.io/media/avatars/S39XWM_bqPoX31.webp", "biography": "Julien is a French security researcher and red team operator at Orange Cyberdefense, where he conducts offensive security assessments and develops tradecraft for adversary emulation.\n\nWith a background in software development, his research focuses on offensive security, ranging from password manager security to DCOM abuse. He is also a  contributor to open-source security projects including Scapy, Metasploit, Impacket, CrackMapExec, and KeePwn.\n\nHis research has been presented at conferences including Black Hat MEA, BruCON, hack.lu and leHACK.", "public_name": "Julien Bedel", "guid": "bee64bf8-6197-526c-b703-078e38c89665", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/PQNFD8/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/AGFMRW/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/AGFMRW/", "attachments": []}, {"guid": "d424461d-3346-5ea4-b0ed-3cdfc860efdb", "code": "SSVQRR", "id": 239, "logo": null, "date": "2026-10-02T15:20:00+02:00", "start": "15:20", "end": "2026-10-02T16:00:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-239-automated-vulnerability-scanning-in-software-development", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/SSVQRR/", "title": "automated vulnerability scanning in software development", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "i am working in software development in critical infrastructure. \n\nThere are several different ways of vulnerability scanning and vulnerability management and i'd like to give an overview on that. \n\nThis talks therefore covers the different opportunities of vulnerability scanning and their different anchor points. \nFurthermore i will talk on how to integrate that into a vulnerability management tool and how to build processes around it to achieve that vulns actually get fixed.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "9SFEJ9", "name": "mc.fly", "avatar": "https://cfp.romhack.io/media/avatars/8WEZNT_q8hrzTB.webp", "biography": "mc.fly\n\nOld hacker, works in software development in critical infrastructure. NPC in a computer game. \nWorks in security since 20+ years, likes to talk on conferences oder things that come to his mind. \n\nPre-2000 history at the CCC, started milliways.", "public_name": "mc.fly", "guid": "a195dc07-50ce-5561-a138-53eae6e54eb7", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/9SFEJ9/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/SSVQRR/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/SSVQRR/", "attachments": []}, {"guid": "b92b5411-f599-5521-84b8-1a224b3fb710", "code": "XJTACK", "id": 182, "logo": null, "date": "2026-10-02T16:10:00+02:00", "start": "16:10", "end": "2026-10-02T16:50:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-182-just-one-proof-away-the-cryptography-behind-private-payments", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/XJTACK/", "title": "Just one proof away: the cryptography behind private payments", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Building private payments is a fascinating technical challenge. Somehow, we have to hide some combination of three things: who is paying, who is being paid, and how much. All without letting anyone print infinite money. This talk is about the cryptographic machinery and approaches people have come up with to make private payments possible and practical today. We focus on two projects, Monero and Zcash, which are among the most mature and influential systems.\n\nIn the talk we will start from a few simple cryptographic primitives: additively homomorphic commitments, ring signatures, stealth addresses, and zero-knowledge proofs. Then we dissect how transactions work in both Monero and Zcash, highlighting differences and similarities.\n\nWe close with a short, uncomfortable observation: when a system hides payments well, a forged proof is indistinguishable from an honest one, leaving us always just one proof away from trouble.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "79WAFR", "name": "Giorgio Dell'Immagine", "avatar": "https://cfp.romhack.io/media/avatars/W8ECAU_Ul08VH7.webp", "biography": "Giorgio Dell'Immagine is a cryptography engineer and security researcher at zkSecurity, where he focuses on the security of modern cryptographic systems. He has conducted numerous audits for industry-leading projects, spanning cryptographic protocols, zero-knowledge proof constructions, and smart contracts. He also has extensive experience competing and organizing CTFs with the team \"fibonhack\" based in Pisa.\n\nGiorgio holds an MSc from the University of Pisa, where he graduated with a thesis on the construction of a post-quantum signature scheme. More information can be found at his website [daltron.de](https://daltron.de)", "public_name": "Giorgio Dell'Immagine", "guid": "e26c29a1-23fc-59ad-bc22-67c857740262", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/79WAFR/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/XJTACK/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/XJTACK/", "attachments": []}, {"guid": "ab5c5dce-79ad-5ab9-a1ed-83464c8c4542", "code": "7RZJGK", "id": 160, "logo": null, "date": "2026-10-02T16:50:00+02:00", "start": "16:50", "end": "2026-10-02T17:30:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-160-the-trojan-pop-up-modern-threat-actor-uses-of-advertising", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/7RZJGK/", "title": "The Trojan Pop-Up; Modern Threat Actor Uses of Advertising", "subtitle": "", "track": "Journalism, society, hacker culture", "type": "Talk", "language": "en", "abstract": "In the run up to Google\u2019s plans to dump 3rd party cookies, marketing firms (a $1.7 TRILLION dollar industry) were sent into a complete panic. These firms relied heavily on 3rd party cookies in order to better attribute CPM (cost per 1000 clicks) and how many of those clicks turned into sales. So advertisers could better study human behavior and trends in order to more effectively sell products. \n\nAs a former Security Engineer at the Largest Independent Digital Marketing firm in the world, I had a unique view into the evils that these companies were developing in order to not only maintain a view into consumer trends but to increase these views, increase the invasiveness of these techniques, and increase the cooperation between all levels of the industry from display point (streaming service), device point (iPhone, TV), location points (via ISP), to sales point. \n\nThis talk is a peek under the curtain for the server side data harvesting that agencies have developed, and how they\u2019ve managed to twist this further invasion into so-called consumer protection and increased privacy.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "7T3EAY", "name": "Sean Juroviesky", "avatar": "https://cfp.romhack.io/media/avatars/7T3EAY_TWxGnVS.png", "biography": "Sean Juroviesky is a dedicated cybersecurity, risk management, and privacy advocate; speaking on those topics at conferences across the world including DEF CON, CypherCon, CornCon, BSides Rochester, SecretCon, Sec-T, and more. Sean also acts as a cybersecurity architect for a large music streaming provider.  Beyond their professional pursuits, Sean finds joy in backpacking through the mountains with their adventurous Australian Shepherd, partner, and twins, embracing the serenity of nature and the thrill of exploration.", "public_name": "Sean Juroviesky", "guid": "13406ce3-4836-5111-84b8-0b4082d79c84", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/7T3EAY/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/7RZJGK/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/7RZJGK/", "attachments": []}, {"guid": "264bea42-0f9f-5d4f-8599-b6ee15cf5ce1", "code": "GPNXUR", "id": 203, "logo": null, "date": "2026-10-02T17:30:00+02:00", "start": "17:30", "end": "2026-10-02T18:10:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-203-guerra-profonda-hacker-bugie-e-l-architettura-segreta-dei-nuovi-conflitti", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/GPNXUR/", "title": "Guerra Profonda. Hacker, bugie e l'architettura segreta dei nuovi conflitti", "subtitle": "", "track": "Journalism, society, hacker culture", "type": "Talk", "language": "it", "abstract": "Viviamo nell'era della sorveglianza totale. I sistemi con cui le corporation controllano ogni angolo del mondo esistono gi\u00e0: intelligenze artificiali generative, droni, telecamere biometriche. \nLa battaglia per la sovranit\u00e0 digitale \u00e8 gi\u00e0 cominciata e si combatte a colpi di fibra ottica e codice binario. La posta in gioco non \u00e8 un territorio lontano, ma la libert\u00e0 di miliardi di persone. Si combatte con algoritmi, satelliti e troll farm, e il fronte \u00e8 dentro smartphone, social e dati consensualmente concessi. \n\u00c8 una guerra ibrida fatta di episodi concreti: l'attacco alla rete satellitare Viasat che ha accecato le difese ucraine ore prima dell'invasione russa; i cavi sottomarini sabotati nel Mar Baltico, attraverso cui transita una parte delle comunicazioni mondiali; Elon Musk che decide della connettivit\u00e0 di una nazione in guerra; Peter Thiel e Alexander Karp che vendono agli Stati la capacit\u00e0 di prevedere tutto, sottraendo loro la sovranit\u00e0 necessaria per difendersi. \nLa disinformazione di massa \u00e8 ormai industrializzata e democratizzata dall'intelligenza artificiale. Internet non \u00e8 pi\u00f9 uno spazio comune, ma un arcipelago di fortezze digitali dove ogni conflitto \u00e8 permanente e silenzioso. \nL'Europa che regolamenta senza produrre tecnologia autonoma. Il rischio \u00e8 la fine del vecchio ordine globale, delle sue leggi, delle sue istituzioni. In questo conflitto nessuno \u00e8 civile: siamo tutti bersagli.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "QGXMRP", "name": "Arturo Di Corinto", "avatar": "https://cfp.romhack.io/media/avatars/V8D3EK_9Q70lTf.webp", "biography": "Researcher and teacher in cognitive and communication psychology, graduated in Rome, he specialized in persuasion technologies at Stanford University, California.\n\nAuthor at Treccani, journalist specialized in innovation and cybersecurity, he has published 2300 journalistic articles for national newspapers working for Il Sole24Ore, Wired and L'Espresso, Il Manifesto and La Repubblica. Reporter for the Rai Uno television program \u201cCodice. All life is digital\u201d, he is also an author and television presenter.\n\nArturo Di Corinto has written many publications with ISBN and several books, including Hacktivism (2002, Manifestolibri), Revolution OS II (2006, Apogeo/Feltrinelli), I nemici della rete (2010, Rizzoli), Un dizionario hacker (2014, Manni), Il futuro Trent\u2019anni fa (2017), Riprendiamoci la rete! Piccolo manuale di autodifesa digitale per giovani generazioni (Eurilink, 2019).\n\nProfessor of Digital Identity, Privacy and Cybersecurity in the faculty of Political Science, Sociology and Communication at the Sapienza University of Rome, he is currently advisor at the National Cybersecurity Agency in charge of its special projects.", "public_name": "Arturo Di Corinto", "guid": "5d93b401-3428-59f5-9e7d-edc2e0658abf", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/QGXMRP/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GPNXUR/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GPNXUR/", "attachments": []}, {"guid": "4289128a-10cd-5396-88c5-333686509ab1", "code": "MKHXNV", "id": 184, "logo": null, "date": "2026-10-02T18:20:00+02:00", "start": "18:20", "end": "2026-10-02T19:00:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-184-presentazione-manualetto-di-sicurezza-digitale-per-giornalisti-e-attivisti", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/MKHXNV/", "title": "Presentazione \"Manualetto di sicurezza digitale per giornalisti e attivisti\"", "subtitle": "", "track": "Journalism, society, hacker culture", "type": "Talk", "language": "it", "abstract": "A Febbraio 2026 il progetto editoriale [Guerre di Rete](https://guerredirete.it) ha pubblicato il \"Manualetto di sicurezza digitale per giornalisti e attivisti\".\n\nDurante il Camp presenteremo il manualetto, in ricordo di Carola Frediani, fondatrice ed anima del progetto Guerre di Rete, venuta a mancare troppo presto,  il 3 Giugno 2026.\n\nll manualetto \u00e8 rivolto a categorie essenziali per il funzionamento della democrazia e del dibattito pubblico, che troppe volte abbiamo visto essere target di attacchi informatici, sorveglianza, campagne d\u2019odio e di molestie nel mondo, in Europa, in Italia.\n\u00c9 scritto da giornalisti e attivisti in maniera semplice e discorsiva, ma fornisce anche indicazioni pratiche di base per iniziare a sistemare e a proteggere la propria vita digitale.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "ZSAQWX", "name": "Guerre di Rete", "avatar": "https://cfp.romhack.io/media/avatars/NECWYG_MJXhjjP.webp", "biography": "Guerre di rete \u00e8 un progetto editoriale frutto dell'impegno di due associazioni culturali: l\u2019omonima Guerre di Rete, che per anni ha pubblicato  una [newsletter settimanale]([url](https://guerredirete.substack.com/archive)) dedicata alla cybersicurezza a firma Carola Frediani (venuta a mancare il 3 Giugno 2026) e [Cyber Saiyan]([url](https://www.cybersaiyan.it/), una community indipendente di professionisti del settore della cybersicurezza.\n\nhttps://www.guerredirete.it/il-progetto/", "public_name": "Guerre di Rete", "guid": "aa9bef63-1c77-55cd-ae9a-0e0c3c7e0bff", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/ZSAQWX/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/MKHXNV/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/MKHXNV/", "attachments": []}, {"guid": "878320d9-dc41-5636-9494-0d0013430c36", "code": "QECNXZ", "id": 226, "logo": null, "date": "2026-10-02T19:00:00+02:00", "start": "19:00", "end": "2026-10-02T19:40:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-226-developers-under-attack-how-to-protect-yourself", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/QECNXZ/", "title": "Developers under attack - how to protect yourself", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Supply chain attacks are increasingly focusing on developers and automation tools.\nIn early 2025, someone infected a widely used security tool, then used the knowledge from that attack to subsequently infect npm- and python packages to steal developer credentials.\nThe talk will show how these kinds of attacks worked and how developers can protect themselves (and their assets) against similar attacks and why ai might or might not be helpful in these scenarios.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "BEABEK", "name": "Christian <cy> K\u00fchn", "avatar": "https://cfp.romhack.io/media/avatars/N7DK3B_5h1lx91.webp", "biography": "Christian has worked in most fields in IT. From yawning in the Datacenter swapping hard drives at 03:00 in the night, through administrating and consulting on large-scale networks he rode the devops-wave over into development. While infosec had been a sidetrack for many years, he is now fully engaging in security engineering and consulting, helping secure one of Europe's largest retail companies.", "public_name": "Christian <cy> K\u00fchn", "guid": "080cbbf5-4f1a-58ce-9e06-0087310818a5", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/BEABEK/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/QECNXZ/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/QECNXZ/", "attachments": []}, {"guid": "7527ff27-94e7-5fa4-abe4-7942ad80bd8f", "code": "GY3RFX", "id": 209, "logo": null, "date": "2026-10-02T20:30:00+02:00", "start": "20:30", "end": "2026-10-02T22:30:00+02:00", "duration": "02:00", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-209-hacker-cinema-night-sneakers-1992", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/GY3RFX/", "title": "Hacker Cinema Night - Sneakers (1992)", "subtitle": "", "track": "Entertainment", "type": "Film", "language": "en", "abstract": "The Camp goes dark and the screen lights up.\n\nOn Friday night we open our two open-air screenings with a film that needs no introduction to this crowd: [Sneakers](https://www.imdb.com/title/tt0105435/) (1992). A team of security specialists, a black box that breaks any encryption, and a plot that put pentesting on the big screen decades before it was cool. \"Setec Astronomy\" \u2014 you'll get it.\n\nGrab a drink, find a spot under the sky, and watch with the people who get it. No slides, no keynotes \u2014 just a film, together.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "G8CNEJ", "name": "Cyber Saiyan", "avatar": "https://cfp.romhack.io/media/avatars/G8CNEJ_pShIzxp.png", "biography": "Cyber Saiyan is a non-profit cultural association founded in 2017. Our goal is simple: raising awareness and providing education in the field of cyber security.\n\nWe are the proud organizers of RomHack, an initiative built by the community, for the community. What started as a yearly technical conference has evolved to include intensive, hands-on Training sessions and an immersive three-day Hacker Camp in Rome.\n\nBeyond our core events, we actively promote independent projects and collaborations, such as the editorial initiative \"Guerre di Rete\".\n\nInvolving the community is very important to us. We strive to foster curiosity, sharpen skills, and create welcoming spaces where enthusiasts, researchers, and professionals can connect and share their knowledge.\n\nMore info: https://cybersaiyan.it/", "public_name": "Cyber Saiyan", "guid": "7ea9bfd7-a45d-51b7-a3cc-53c4da30d2a2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/G8CNEJ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GY3RFX/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GY3RFX/", "attachments": []}, {"guid": "ff2b4a74-f281-520d-8470-088d727a707e", "code": "E7ZT7B", "id": 211, "logo": null, "date": "2026-10-02T22:30:00+02:00", "start": "22:30", "end": "2026-10-03T00:30:00+02:00", "duration": "02:00", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-211-after-dark-friday-music-session", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/E7ZT7B/", "title": "After Dark - Friday Music Session", "subtitle": "", "track": "Entertainment", "type": "Performance", "language": "en", "abstract": "The screen goes dark, the speakers wake up.\n\nRight after the Friday film, the Camp turns up the volume. Two hours of music to keep the night going with the community.\n\nNo agenda, no schedule to follow, just good sound, good people, and the woods around you.\n\nThe DJ line-up will be announced closer to the Camp.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "G8CNEJ", "name": "Cyber Saiyan", "avatar": "https://cfp.romhack.io/media/avatars/G8CNEJ_pShIzxp.png", "biography": "Cyber Saiyan is a non-profit cultural association founded in 2017. Our goal is simple: raising awareness and providing education in the field of cyber security.\n\nWe are the proud organizers of RomHack, an initiative built by the community, for the community. What started as a yearly technical conference has evolved to include intensive, hands-on Training sessions and an immersive three-day Hacker Camp in Rome.\n\nBeyond our core events, we actively promote independent projects and collaborations, such as the editorial initiative \"Guerre di Rete\".\n\nInvolving the community is very important to us. We strive to foster curiosity, sharpen skills, and create welcoming spaces where enthusiasts, researchers, and professionals can connect and share their knowledge.\n\nMore info: https://cybersaiyan.it/", "public_name": "Cyber Saiyan", "guid": "7ea9bfd7-a45d-51b7-a3cc-53c4da30d2a2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/G8CNEJ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/E7ZT7B/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/E7ZT7B/", "attachments": []}], "STAGE 2 (Ghost in the Shellcode)": [{"guid": "0eacefba-5391-5230-a06b-88af6532fd46", "code": "CTWEV9", "id": 202, "logo": null, "date": "2026-10-02T11:00:00+02:00", "start": "11:00", "end": "2026-10-02T11:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-202-incontro-con-la-gang-ransomware-schrodingercat", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/CTWEV9/", "title": "Incontro con la gang ransomware Schrodingercat.", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "it", "abstract": "Come un attacco informatico rovina la tua vita, quelle dei tuoi cari e dei tuoi dipendenti.\n\nRacconteremo di una risposta ad un incidente informatico particolare.\nLa gang ransomware \u00e8 passata dall'azienda I.T. che gestiva la struttura informatica dei sui clienti.\nLa gang si \u00e8 propagata prima sull'infrastruttura del system integrator, per poi infettare le aziende pi\u00f9 grandi del loro parco clienti, infine ha fatto quello che sapeva fare meglio...\n\nQuando non ci sono pi\u00f9 strade, si \u00e8 ad un bivio ove bisogna scegliere per forza se chiudere l'attivit\u00e0 o pagare il riscatto. Questa scelta ti toglie il sonno...\n\nAnche piegandosi ai ricatti del crimine, non sempre va tutto bene, perch\u00e8 a volte i decryptor non funzionano....\n\nButteremo uno sguardo alla pseudo struttura di questa gang criminale, alla loro efficienza, nonch\u00e9 al loro modus operandi.\n\nIn questo talk non vengono tralasciate le implicazioni legali, morali ed emotive che coinvolgono le persone interessate, le loro dinamiche famigliari ed i dipendenti.\n\nA questo talk non \u00e8 stato dato un taglio tecnico come di consueto, ma si vuole raccontare una storia di vita reale, che pu\u00f2 capitare a chiunque e che sempre pi\u00f9 spesso sentiamo ai T.G., leggiamo sui giornali, ma non pensiamo possa toccare a noi. Vogliamo avvicinarci a quei C.E.O., C.T.O., A.D., consigli direttivi, ed imprenditori di qual si voglia natura e grandezza che a volte pensano, \"figurati se succede a noi\", \"non abbiamo nulla di valore\", \"ma noi siamo protetti\".", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "WA7JT9", "name": "Davide Baraldi", "avatar": "https://cfp.romhack.io/media/avatars/MJWCUG_y5GA59s.webp", "biography": "Hacker | Master Chief at CR1PT0 | Cyber Security Researcher | Cyberwarfare Specialist Consultant | Cryptographer | Bitcoiner | Veteran.\n\nEx operatore Militare e di Polizia Militare. Operatore presso N.E.D. e altre infrastrutture distaccate. C.S.O., C.I.S.O., docente presso Plan B Network e Security Cert, speakers a LUGMan, Satoshi Spritz ed eventi Bitcoin.", "public_name": "Davide Baraldi", "guid": "9943ce4a-185b-55c9-8fa0-7d85e30e56b4", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/WA7JT9/"}, {"code": "MJLEJP", "name": "Chiara Ciccia Romito", "avatar": "https://cfp.romhack.io/media/avatars/U8F7PF_bgSKCv2.webp", "biography": "Avvocata ha conseguito un Dottorato di ricerca presso l?Universit\u00e0 degli Studi di Modena e Reggio Emilia con una tesi di ricerca su Intelligenza Artificiale e mondo delle imprese, certificata 27001/2022 \u00e8 autrice per diverse case editrici, da ultimo _Sicurezza dei dati nelle PMI_ edito Lefbvre Giuffr\u00e8 2026.", "public_name": "Chiara Ciccia Romito", "guid": "de181384-bb7e-5c89-92d5-176a551cb1bb", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/MJLEJP/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/CTWEV9/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/CTWEV9/", "attachments": []}, {"guid": "1423ff67-c54c-5145-9972-fa7dc8dbd5bc", "code": "KLSNYA", "id": 186, "logo": null, "date": "2026-10-02T12:00:00+02:00", "start": "12:00", "end": "2026-10-02T12:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-186-command-and-collusion-flipping-the-c2-model-for-no-egress-environments", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/KLSNYA/", "title": "Command and Collusion: Flipping the C2 Model for No-Egress Environments", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Modern red team operations rarely play out in friendly territory. The days of wide-open egress are fading, replaced by environments where defenders tighten every screw. Outbound traffic is inspected, filtered, and often blocked entirely. A shell on a public-facing server might feel like a win, but in many cases, it comes with no DNS, no HTTP, and no callbacks at all. In these conditions, the familiar C2 playbook runs out of pages, and operators are forced to adapt or stall.\n\nIn this session, we will flip the C2 model on its head. You will see how to turn \"dead-end\" footholds into fully functional command channels without a single outbound packet, blending covert tasking into legitimate inbound web traffic. We will break down the design choices, the stealth advantages, and the pitfalls you will want to avoid, then share tooling to make it work with your own implants and frameworks.\nIf you have ever been stuck behind a wall of egress controls, you will walk away with a new blueprint and a few tricks to make the unreachable reachable.\n\nWhy This Matters\n\nThis is original, never-before-published research that redefines how C2s can function under extreme network restrictions.\nThe technique has been tested in real red teams, proving both its stealth and reliability in complex environments.\nWe\u2019re genuinely enthusiastic about sharing this research with the community. Not just as a technical talk and tooling, but as a fresh perspective on adversary resilience in a post-egress world.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "YFRMLK", "name": "Hatem Mohamed", "avatar": "https://cfp.romhack.io/media/avatars/DAT8GJ_3J2G9op.webp", "biography": "Hatem is a Principal Red Team Consultant at Google Cloud, in the META region, with extensive experience in various domains of cybersecurity. He excels in planning and executing red team operations, identifying flaws and weaknesses in systems, and leveraging his experiences to identify and exploit hard-to-find vulnerabilities. His broad expertise in providing offensive security services enables him to quickly identify viable attack paths, assess their real risks, and devise effective mitigations at strategic, operational, and tactical levels. Currently, his focus is on performing Red Team operations and adversary simulations, emphasizing adversary strategy, operational design ,and enterprise post-exploitation.", "public_name": "Hatem Mohamed", "guid": "5e24b418-5457-5ed8-831e-9cd711ca8159", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/YFRMLK/"}, {"code": "ABE7DX", "name": "Moataz Moustafa", "avatar": "https://cfp.romhack.io/media/avatars/VEESZT_DztzsQT.webp", "biography": "Moataz is a cybersecurity expert with over a decade of extensive experience specialising in offensive security. Presently working as a Senior Consultant at Google APT66 advanced offensive security services. Moataz focus lies within the realms of red teaming and intelligence analysis.", "public_name": "Moataz Moustafa", "guid": "8f7122ba-5365-5e10-9ffb-11c5236cd49a", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/ABE7DX/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KLSNYA/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KLSNYA/", "attachments": []}, {"guid": "0a960714-71d6-5e27-a8c2-e451fe975b30", "code": "NNMA7U", "id": 155, "logo": null, "date": "2026-10-02T14:30:00+02:00", "start": "14:30", "end": "2026-10-02T15:10:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-155-2038-the-next-epochalypse-breaking-time-before-it-breaks-us", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/NNMA7U/", "title": "2038: The Next Epochalypse \u2014 Breaking time before it breaks us", "subtitle": "", "track": "Journalism, society, hacker culture", "type": "Talk", "language": "en", "abstract": "The Year 2038 problem is often framed as a technical limitation of legacy systems, but its real impact extends far beyond code. At 03:14:07 UTC on January 19, 2038, systems relying on signed 32-bit Unix time will overflow, potentially misinterpreting dates and disrupting critical services. While some engineers have long been aware of this boundary, its broader societal implications remain largely overlooked.\n\nThis talk explores Y2038 as a systemic risk embedded in the infrastructure of modern society. From healthcare devices and industrial control systems to financial records and identity management, many long-lived systems still depend\u2014directly or indirectly\u2014on fragile time representations. Unlike typical vulnerabilities, this issue is not confined to a single product or vendor: it is distributed, silent, and deeply woven into global digital ecosystems.\n\nWhat happens when time itself becomes unreliable in systems we depend on for safety, trust, and accountability?\n\nRather than focusing on exploitation, this talk reframes Y2038 as a challenge of governance, resilience, and accountability. It highlights how technical debt, supply chain opacity, and the longevity of embedded systems turn a known limitation into a slow-moving, systemic risk\u2014and why addressing it requires coordination beyond the security community.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "NN8C3L", "name": "Lorenzo Dina (joecondo)", "avatar": "https://cfp.romhack.io/media/avatars/NN8C3L_pCjMkom.jpg", "biography": "Lorenzo Dina is a serial tinkerer, explorer, and cybersecurity enthusiast who has been passionate about networks and information security since a young age. About twenty years ago, he took a step in what he likes to call the \u201cright\u201d direction, turning that passion into a professional career across cybersecurity, digital forensics, and information security management.\n\nHe works also as a trainer for companies and universities, regularly contributes as a panelist at corporate events, and speaks at conferences within the cybersecurity community.", "public_name": "Lorenzo Dina (joecondo)", "guid": "ef0f51e5-9d97-5ce9-85b6-d16ba25c8cc7", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/NN8C3L/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/NNMA7U/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/NNMA7U/", "attachments": []}, {"guid": "d8f86e04-556e-596f-be97-92934eca8d03", "code": "GHQJFC", "id": 188, "logo": null, "date": "2026-10-02T15:10:00+02:00", "start": "15:10", "end": "2026-10-02T15:30:00+02:00", "duration": "00:20", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-188-mxmap-italia-national-observatory-for-digital-sovereignty", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHQJFC/", "title": "MXMap Italia: National Observatory for Digital Sovereignty", "subtitle": "", "track": "Journalism, society, hacker culture", "type": "Lightning Talk", "language": "en", "abstract": "MXMap Italia has been established as national observatory of the status of digital Sovereignty of italian public agencies, by analyzing DNS records on the basis of the MXMap software. \n\nThe technical platform provides opendata, mapping and analytics of the 23k+ public agencies on https://mxmap.it .\n\nThe alarming results, with more than 46% of italian government agencies accessible trough Cloud Act by USA Security Agencies, requires all the institutional, technical, activist world to act now!\n\nThe political platform https://osservatorio.mxmap.it aim to provides awareness across all the stakeholders, with policy and technical papers, brief for decision makers, and periodic massive emailing campaign to inform the key persons at each agency (DPO, but also RTD, owner of digital transformation).\n\nThis walk want to share the project results, methodology and a call to action to contribute to the project goals, improving the status of digital sovereignty with self-hosted infrastructure and free software.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "MKKXMV", "name": "Fabio Pietrosanti (naif)", "avatar": "https://cfp.romhack.io/media/avatars/TZA9KZ_roub2aV.webp", "biography": "Fabio Pietrosanti has been part of the digital underground with the nickname \u201cnaif\u201d since 1995, while he\u2019s been a professional working in digital security since 1998. President and co-founder of the Hermes Center for Transparency and Digital Human Rights, he is active in many projects to create and spread the use of opensource tools in support of freedom of expression and government transparency.\n\nHe is among the founders of the anonymous whistleblowing GlobaLeaks project, nowadays used by investigative journalists, citizen activists and the public administration for anti-corruption purposes. Expert in technological innovation in the field of whistleblowing, transparency, communication encryption and digital anonymity.\n\nLike to engage in techno-activistic initiatives where technology intertwined with administrative laws and a bit of trolling, bring a benefit for the public good, like with MonitoraPA that in 2022 eradicated Google Analytics from most of Italian Public Agencies with more than 100.000 PEC sent in an activistic campaign ;)", "public_name": "Fabio Pietrosanti (naif)", "guid": "5721bedd-f17f-5d73-a6a5-87734589ebfc", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/MKKXMV/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHQJFC/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHQJFC/", "attachments": []}, {"guid": "c2111593-7327-5044-9bd2-775d61e0c6a3", "code": "BNCWHH", "id": 192, "logo": null, "date": "2026-10-02T15:30:00+02:00", "start": "15:30", "end": "2026-10-02T16:10:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-192-last-night-a-dj-erased-my-drive", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/BNCWHH/", "title": "Last Night a DJ Erased My Drive", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "As Joni Mitchell famously sang \u201cDon't it always seem to go, that you don't know what you've got till it's gone.\u201d\n\nLike how an envelope generator in electronic music shapes a sound's character over time, this talk is concerned with the shape and characteristics of cybersecurity and is all about what music teaches us about attacks, timing, and resilience.\n\nMusic and cybersecurity share the same basic anatomy since they are about identity and community. Both require a trigger to set off a series of events and can be creative or destructive.\n\nOver the years, music has been used to spread misinformation. Music has also been a method to control and torture people. For example, the use of acoustic bombardment to bring down the Noriega regime in Panama.\n\nMusic can be a destructive force. Janet Jackson\u2019s Rhythm Nation video caused hard drives to crash and was classified with its own CVE.\n\nConversely in times of oppression, music has been used as a form of communication to bypass censorship.\n\nIn this talk, I will explore how ransomware and identity-driven attacks evade detection not by being invisible, but by being indistinguishable from normal operational noise.\n\nModern attacks don\u2019t break systems, they blend into them.\n\nUsing the structure of music production (signal/noise, mixing and mastering) to explore real-world attack chains, the goal is to share practical insights into why detection fails.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "ESB9CQ", "name": "Mathew Caplan", "avatar": "https://cfp.romhack.io/media/avatars/FEUYCR_LoXQa7P.webp", "biography": "Mathew Caplan has spent more than 25 years helping organisations navigate cybersecurity challenges and build resilience in an increasingly complex world.\n\nAs Director of Professional Services at Orange Cyberdefense\u2060, he advises organisations around the world on how to strengthen resilience, manage cyber risk and build trust.\n\nAlongside his leadership role, he is an international cybersecurity speaker and storyteller who turns complex security problems into memorable tales.\n\nKnown for blending music, movies and real-world experience, Mathew makes complex cybersecurity concepts understandable, memorable and engaging.", "public_name": "Mathew Caplan", "guid": "083b3c94-f681-5bb3-9db6-f1f8ddbde242", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/ESB9CQ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/BNCWHH/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/BNCWHH/", "attachments": []}, {"guid": "c2a72184-5154-5c1d-b940-f6e5b6d3814c", "code": "8EHEDT", "id": 208, "logo": null, "date": "2026-10-02T16:10:00+02:00", "start": "16:10", "end": "2026-10-02T16:50:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-208-growing-a-nearly-self-sufficient-vegetable-garden", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/8EHEDT/", "title": "Growing a (nearly) self-sufficient vegetable garden", "subtitle": "", "track": "Other", "type": "Talk", "language": "en", "abstract": "In this talk I'll share my experience over the last few years, since I decided to set up my own vegetable garden and start growing produce for my family.\n\nI'll walk you through the challenges I faced: no water source available for irrigation, and the need to make the garden as self-sufficient as possible (scheduled irrigation, weed control, keeping manual work to a minimum).\n\nThere's still some \"nerdy\" stuff left to do: monitoring the pump, the water level and the power supply, so I get alerted when something goes wrong instead of finding out once the plants have already dried out :)\n\nI'll tell you about the mistakes and wrong choices I made out of sheer inexperience as a grower, but also about the satisfaction of harvesting what you've sown.\n\nThis is the same talk I'm presenting at [ESC]([url](https://endsummer.camp/)) (End Summer Camp), enriched here with ideas and discussions that came out of ESC.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "EZYGLT", "name": "merlos", "avatar": "https://cfp.romhack.io/media/avatars/T3FPTA_uLvACkn.webp", "biography": "I'm Giovanni Mellini, aka _merlos_, one of the founders of the non-profit association [Cyber Saiyan]([url](https://cybersaiyan.it)) that organizes [RomHack]([url](https://romhack.io)) Camp.\n\nI occasionally speak on public community events, schools and universities.", "public_name": "merlos", "guid": "7a15f6e6-1007-5f86-86e9-09b4c673905c", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/EZYGLT/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/8EHEDT/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/8EHEDT/", "attachments": []}, {"guid": "bcdc66ec-6165-55d7-bb23-65f802ee0b97", "code": "3L33X7", "id": 206, "logo": null, "date": "2026-10-02T17:00:00+02:00", "start": "17:00", "end": "2026-10-02T17:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-206-argus-sbom-guard-gestione-delle-vulnerabilita-a-partire-dagli-sbom", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/3L33X7/", "title": "Argus SBOM Guard: gestione delle vulnerabilit\u00e0 a partire dagli SBOM", "subtitle": "", "track": "Scripting, Coding, Development", "type": "Talk", "language": "it", "abstract": "La generazione degli SBOM \u00e8 ormai sempre pi\u00f9 diffusa, ma in molti contesti rimane un\u2019attivit\u00e0 isolata: i file vengono prodotti durante la CI/CD e poi archiviati senza diventare parte di un processo di gestione del rischio.\n\nIn questo talk presenter\u00f2 Argus SBOM Guard, un progetto open source e 'self-hostabile' nato per sperimentare un approccio leggero alla raccolta degli SBOM, alla correlazione delle vulnerabilit\u00e0 e al tracciamento delle attivit\u00e0 di remediation.\n\nL\u2019obiettivo non \u00e8 introdurre l\u2019ennesimo scanner, ma mostrare un flusso pratico che collega SBOM, inventory, vulnerability intelligence, prioritizzazione e verifica delle correzioni, con uno sguardo anche alle esigenze emergenti legate alla software supply chain security e a normative come NIS2 e DORA.\n\nUn racconto tecnico, pragmatico e basato sull\u2019esperienza di costruzione di un side project open source.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "C9FTRD", "name": "Matteo Vitali (trotto)", "avatar": "https://cfp.romhack.io/media/avatars/S9GR7D_KzptEOp.webp", "biography": "Python backend developer and DevOps\nSociologist by training and passionate about computer science.\nGnu/Linux user, free and open-source software advocate.\nDevelop in Python and Django is my favorite way to build things.\nPython Marche founder and co-organizer", "public_name": "Matteo Vitali (trotto)", "guid": "15821eda-ac8e-5a10-beca-3401235c26bc", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/C9FTRD/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3L33X7/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3L33X7/", "attachments": []}, {"guid": "dd2dd98f-e07e-5aca-9d4c-5d2f8ca0c445", "code": "NFK7KE", "id": 235, "logo": null, "date": "2026-10-02T17:40:00+02:00", "start": "17:40", "end": "2026-10-02T18:00:00+02:00", "duration": "00:20", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-235-a-review-bot-that-just-works", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/NFK7KE/", "title": "A review bot that just works", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Lightning Talk", "language": "en", "abstract": "Sometimes, the perfectly engineered solution isn\u2019t what you need. We discuss how, at the beginning of 2026, we moved quickly to build a review bot that helped stem the flow of vulnerabilities entering the codebase in the era of vibe coding. We\u2019ll cover the ROI, costs, and practical challenges involved, along with lessons learned about model choice and how reusing existing harnesses helped us move faster.\n\nPresented at AI for Security event @ DEFCON34.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "JCDEGT", "name": "Andrea Cappa", "avatar": "https://cfp.romhack.io/media/avatars/RVLYTZ_c3pnpr6.webp", "biography": "Andrea Cappa (zi0Black) is Security Lead at Aptos Labs, where he oversees all things security. A former penetration tester at Shielder, he now spends his time exploring how AI can be applied to security in real-world environments, as well as the human factors behind security incidents and system failures.", "public_name": "Andrea Cappa", "guid": "987882c1-54dd-5f32-88cf-dd66453731a8", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/JCDEGT/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/NFK7KE/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/NFK7KE/", "attachments": []}, {"guid": "aba89880-8d12-5d5b-b728-692748769505", "code": "8QEJPW", "id": 189, "logo": null, "date": "2026-10-02T18:20:00+02:00", "start": "18:20", "end": "2026-10-02T19:00:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-189-movementhound-you-might-be-missing-something-move-it", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/8QEJPW/", "title": "MovementHound: You might be missing something, move it!", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "\"You need local admin for that.\" It's one of the most repeated assumptions in offensive Windows tradecraft, and it's mostly wrong.\nMost of these techniques are gated by a specific set of access-mask and DACL permissions, not by group membership, so the real question isn't \"am I admin?\" but \"what do I actually need?\" This talk answers that systematically: what each lateral-movement technique truly requires, instead of what folklore and our tooling assume.\nWe'll walk through the true minimum rights behind service creation and reconfiguration, DCOM, WinRM, WMI (over both DCOM and WSMAN), Remote Registry, Remote GhostTask, Remote Network Provider hijack, RDP and RDP Shadowing, SSH, and User Right Assignments. Along the way we'll hit the under-documented Microsoft policy that silently breaks \"non-admin service creation,\" the granular access masks that make these paths work (0x0003 on the SCM, 0x00011 for shadowing, and friends), and why those same minimal rights double as quiet persistence.\nThe uncomfortable part cuts both ways. BloodHound edges, NetExec's \"Pwned!\", and group-membership checks systematically miss these configurations, so attackers slip through and defenders never see it. I'll cover MovementHound, a PowerShell minimal-rights enumerator that surfaces these overlooked paths and feeds the missing edges straight into BloodHound, with a recorded demo of it in action.\nExpect granular access-mask details and honest caveats.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "JKA3ZC", "name": "Umberto Micillo (polair)", "avatar": "https://cfp.romhack.io/media/avatars/AJUZUL_0CljExq.webp", "biography": "Offensive Security Researcher, with a soft spot for Windows internals and Active Directory. Ever since I was a kid I wanted to know what was happening under the hood, taking things apart just to understand why they worked, and that itch never went away; it just grew into a passion for breaking and understanding Windows environments.", "public_name": "Umberto Micillo (polair)", "guid": "9c7f30bd-dd5b-5f3e-a3a5-7beafdb6adb9", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/JKA3ZC/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/8QEJPW/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/8QEJPW/", "attachments": []}, {"guid": "73d60a6a-d5b7-5ae1-ad7f-42582ff40b26", "code": "AS8AWJ", "id": 172, "logo": null, "date": "2026-10-02T19:10:00+02:00", "start": "19:10", "end": "2026-10-02T19:50:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-172-why-i-ve-to-waste-my-precious-time-on-cryptography", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/AS8AWJ/", "title": "Why I've to waste my (precious) time on cryptography?", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "it", "abstract": "Cryptography is a magic ring of darkness and mistiness, but seems that every time a new attack comes in town, while cryptographers get excited, technicians start suffering to re-configure everything trying to survive following signals coming from misterious regulations and crypto public challenges. And in the Quantum era everything is exploding: QKD, PQC, Hybrid Crypto, key exchange latency problems. We'll try to give a little survival guide for this (apparently new) world, which can make us more aware and confident on the future, or at least better prepare for the next fashionable attacks. Maybe..", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "Y7X9GW", "name": "Andrea Pompili", "avatar": "https://cfp.romhack.io/media/avatars/SJXXCS_iDLVOIG.webp", "biography": "Andrea Pompili is an information technology specialist that takes care of security. He joined the computer's world with one of the most famous Italian games based on the C64 platform. Once graduated, he started working first in the software development market, and then in computer security, following security threats and solutions on strategic projects. Currently Andrea is a strategy advisor in Cyber Security, and aims to discover and integrate innovative solutions for this connected world", "public_name": "Andrea Pompili", "guid": "14db5b09-1e87-5a6a-9877-e20bf41dad62", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/Y7X9GW/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/AS8AWJ/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/AS8AWJ/", "attachments": []}], "WORKSHOP 1 (Neon Genesis Exploitation)": [{"guid": "2c89f348-bb9d-5ec9-af8e-cafdcbe92248", "code": "KEJWJK", "id": 225, "logo": null, "date": "2026-10-02T11:00:00+02:00", "start": "11:00", "end": "2026-10-02T13:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-225-prove-it-without-telling-me-who-you-are", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/KEJWJK/", "title": "Prove It Without Telling Me Who You Are", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Workshop", "language": "en", "abstract": "Self-Sovereign Identity promises a different way of proving who we are online: instead of relying on a central identity provider, users can hold verifiable credentials and decide what information to disclose.\nBut how much information do we really need to reveal to prove something about ourselves?\nIn many digital interactions, a verifier does not need to know our full identity. It may only need to know whether we are over 18, authorised to access a service, hold a valid qualification, or possess a non-revoked credential.\nThis talk explores how selective disclosure, Zero-Knowledge Proofs and cryptographic accumulators can support a shift from identity disclosure to proof-based verification. Instead of transferring personal data and protecting it afterwards, users can prove that a requirement is satisfied without revealing the underlying information.\nUsing scenarios inspired by the TRUSTED project, we discuss data minimisation, unlinkability, credential validity and revocation. We also look beyond cryptography itself: even privacy-preserving credentials can still enable correlation, metadata leakage or unnecessary identification if the wider identity flow is poorly designed.\nThe key question is therefore not only \u201cCan I prove who I am?\u201d, but \u201cCan I prove what you need to know without telling you who I am?\u201d", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "MNSRPC", "name": "Carmela Occhipinti e Marco Pratesi", "avatar": "https://cfp.romhack.io/media/avatars/SAHSCZ_EW0bDdr.webp", "biography": "**Carmela Occhipinti:** cofondatrice e Managing Director di Cyberethics Lab. \u00e8 laureata in Scienze politiche, ricercatrice ed esperta di innovazione. Ha lavorato per 24 anni come responsabile del Security and Privacy Lab in una grande azienda ICT italiana. Ha conseguito certificazioni PMP, ITIL Expert, PRINCE2 e SCRUM Master ed \u00e8 membro dell\u2019Italian Chapter of the International Information Security System Certification Consortium (ISC)2. Grazie al suo background professionale, \u00e8 esperta di impatti sociali delle nuove tecnologie, soprattutto nel campo etico e sociale. Insegna Diritto della privacy in numerosi corsi di Project e Service Management per aziende private e pubbliche. \u00c8 ricercatrice in diversi progetti europei, soprattutto nel campo della sicurezza, in cui ricopre ruoli come Coordinatrice di progetto, Direttrice tecnica, Innovation Manager, Dissemination Manager ed Ethical Manager. Negli ultimi anni, i suoi interessi di ricerca si sono spostati su problemi di privacy e protezione dei dati. Ha collaborato con uno studio legale italiano e partecipa a commissioni europee per i progetti Horizon 2020, supportando i partner per la gestione dei problemi etici e di privacy.\n\n**Marco Pratesi:** \u00e8 un ingegnere del software con una formazione trasversale tra musica e tecnologia. Dopo aver conseguito una laurea presso il Conservatorio \u201cAlfredo Casella\u201d de L\u2019Aquila, ha proseguito il suo percorso accademico in Ingegneria Informatica presso l\u2019Universit\u00e0 di Roma Tor Vergata. \u00c8 esperto in sistemi operativi, gestione dei processi e progettazione di architetture software. Marco ha sviluppato competenze nell\u2019analisi e nello sviluppo di sistemi complessi, con particolare attenzione all\u2019ottimizzazione delle performance e all\u2019efficienza dei processi informatici. Collabora a progetti multidisciplinari che uniscono creativit\u00e0 e innovazione tecnologica, contribuendo con una visione integrata tra arte e ingegneria.", "public_name": "Carmela Occhipinti e Marco Pratesi", "guid": "7f30d7e5-2d37-57ab-af6b-fd5a48723a79", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/MNSRPC/"}, {"code": "CKJ39Y", "name": "Marco Pratesi", "avatar": "https://cfp.romhack.io/media/avatars/BU9ZMQ_W9ygG2P.webp", "biography": "Marco Pratesi is a software engineer with a multidisciplinary background in both music and technology. After earning a degree from the \u201cAlfredo Casella\u201d Conservatory in L\u2019Aquila, he pursued his academic path in Computer Engineering at the University of Rome Tor Vergata. He is skilled in operating systems, process management, and software architecture design. Marco has developed expertise in the analysis and development of complex systems, with a particular focus on performance optimization and process efficiency. He collaborates on multidisciplinary projects that combine creativity and technological innovation, contributing with an integrated perspective that bridges art and engineering.", "public_name": "Marco Pratesi", "guid": "d4f70618-9032-51fd-a3a2-de3bf65ff518", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/CKJ39Y/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KEJWJK/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KEJWJK/", "attachments": []}, {"guid": "4ff4d65b-e36b-5511-8692-dcb4f64ca39a", "code": "L9ZERS", "id": 221, "logo": null, "date": "2026-10-02T15:00:00+02:00", "start": "15:00", "end": "2026-10-02T17:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-221-pwn-the-pipeline-a-hands-on-tour-of-ci-cd-security-risks", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/L9ZERS/", "title": "Pwn the Pipeline: A Hands-On Tour of CI/CD Security Risks", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Workshop", "language": "en", "abstract": "Modern software delivery runs on CI/CD pipelines and attackers know it. From the SolarWinds Orion backdoor to the Codecov Bash Uploader compromise and the countless exposed Jenkins instances found on Shodan, build systems have become one of the most valuable and least monitored targets in the software supply chain. A single misconfigured runner, an overprivileged token, or a poisoned dependency can silently compromise everything downstream; and the rise of AI-based attacking agents, capable of autonomously discovering and chaining misconfigurations at scale, is only raising the stakes.\n\nThis workshop is a practical introduction to CI/CD security through the lens of the OWASP Top 10 CI/CD Security Risks. We'll walk through each risk category (insufficient flow control, poisoned pipeline execution, dependency chain abuse, exposed secrets, insecure system configuration, and more) grounding each one in real-world incidents that made these risks tangible rather than theoretical.\n\nAfter the theory, attendees get their hands dirty with a set of self-contained challenges built on the CICD Goat vulnerable-by-design environment, hunting for and exploiting common pipeline misconfigurations and attack chains, followed by a guided walkthrough of each solution.\n\nPrerequisites: basic web/Linux exploitation knowledge, familiarity with git, and a laptop with Docker and a git client installed.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "JKBEBM", "name": "m3ssap0", "avatar": "https://cfp.romhack.io/media/avatars/FKMECJ_xTrgiJQ.webp", "biography": "Hey, I'm m3ssap0! I do AppSec stuff - mostly web, I work as a Security Engineering Manager and I organize Meethack meetups in Torino every week. Some years ago, I used to play CTFs. Now I am a beginner carnivore plants and terrariums grower.", "public_name": "m3ssap0", "guid": "7a954082-95b0-5b71-9fff-03f59be10ad5", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/JKBEBM/"}, {"code": "KX9XFS", "name": "Mattia Brollo", "avatar": null, "biography": null, "public_name": "Mattia Brollo", "guid": "5f3683f5-ac45-5edc-b8dd-d7ad75d426e9", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/KX9XFS/"}, {"code": "LPLEGG", "name": "Fleeenz", "avatar": null, "biography": null, "public_name": "Fleeenz", "guid": "19f88d32-4443-5252-8b5f-e791109f7a9b", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/LPLEGG/"}, {"code": "TKHU78", "name": "IadRabbit", "avatar": null, "biography": null, "public_name": "IadRabbit", "guid": "9e9775d0-2775-5904-ac43-a0446de9522f", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/TKHU78/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/L9ZERS/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/L9ZERS/", "attachments": []}, {"guid": "5642155c-3d83-58df-8c2e-ad348d7ea737", "code": "EMS9ZU", "id": 193, "logo": null, "date": "2026-10-02T17:00:00+02:00", "start": "17:00", "end": "2026-10-03T08:00:00+02:00", "duration": "15:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-193-community-ctf-by-fibonhack", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/EMS9ZU/", "title": "Community CTF by fibonhack", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Cyber Saiyan is proud to join forces with [fibonhack]([url](https://fibonhack.it/)) to present \u201c**From Dusk Till Dawn**\u201d, an on-site hacking marathon taking place during RomHack Camp.\n\nThis isn\u2019t your average competition. While the rest of the camp sleeps, 5 elite teams will battle through the night. 12 hours. Pure adrenaline.\n\n\ud83d\udea9 Meet the Finalists\n\ud83e\udd47 1st - FR13NDS TEAM - Kazakhstan \ud83c\uddf0\ud83c\uddff\n\ud83e\udd48 2nd - TPC - Japan \ud83c\uddef\ud83c\uddf5\n\ud83e\udd49 3rd - thePizzaIncident - Italy \ud83c\uddee\ud83c\uddf9\n\ud83c\udfc5 4th - SaturnX - South Korea \ud83c\uddf0\ud83c\uddf7\n\ud83c\udfc5 5th - Mntcrl - UniBa, Italy \ud83c\uddee\ud83c\uddf9", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "TKHHMQ", "name": "fibonhack", "avatar": "https://cfp.romhack.io/media/avatars/QUCM7T_tJROfXa.webp", "biography": "Fibonhack is a CTF team founded in Pisa in 2019 by a group of students from the University of Pisa, following the CyberChallenge.it program. Over the years, they have competed in numerous competitions and assisted the University and local schools with cybersecurity training. The group has also organized several CTFs, such as the Internet Festival CTF 2023 and MOCA CTF 2024.\n\nBeyond competitions, the team is actively involved in organizing and participating in events to raise cybersecurity awareness.", "public_name": "fibonhack", "guid": "e008c5c0-40d5-5e21-a014-0f3fa8de6719", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/TKHHMQ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/EMS9ZU/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/EMS9ZU/", "attachments": []}], "WORKSHOP 2 (GetRoot no Jutsu)": [{"guid": "2be65324-e5f2-52c9-8503-029a71ac4cb3", "code": "TGTBKG", "id": 220, "logo": null, "date": "2026-10-02T11:00:00+02:00", "start": "11:00", "end": "2026-10-02T13:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-220-0-il-bullismo-non-va-in-vacanza", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/TGTBKG/", "title": "Il bullismo non va in vacanza", "subtitle": "", "track": "Kids", "type": "Workshop", "language": "it", "abstract": "**Bullismo No Grazie** \u00e8 un'associazione no profit nata nel 2021 che ha incontrato oltre 200.000 ragazzi e 90.000 adulti in pi\u00f9 di 100 citt\u00e0 italiane, percorrendo oltre 150.000 km di scuole, palestre e villaggi turistici.\n\nIn questo workshop portiamo la realt\u00e0 che vediamo ogni giorno: le challenge pericolose che circolano tra bambini di IV e V elementare, i social network che i ragazzi usano e che i genitori non conoscono, le responsabilit\u00e0 civili e penali che ricadono sulle famiglie quando un minore commette atti di cyberbullismo.\n\nNiente teoria. Solo casi reali, domande vere, strumenti pratici per riconoscere i segnali e sapere cosa fare.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "9ESFYE", "name": "Bullismo No Grazie", "avatar": "https://cfp.romhack.io/media/avatars/ZBXF7K_GZMDVlz.webp", "biography": "**Bullismo No Grazie** \u00e8 un'associazione no profit fondata nel settembre 2021. Nata da un incontro e da una visione condivisa, l'associazione riunisce professionisti di diversi settori con l'obiettivo comune di contrastare il bullismo, il cyberbullismo e il revenge porn attraverso formazione, informazione e prevenzione rivolte a giovani, genitori e insegnanti.\n\nDal 2021 a oggi l'associazione ha incontrato oltre 18.000 docenti, 90.000 adulti e circa 200.000 ragazzi in pi\u00f9 di 100 localit\u00e0, percorrendo oltre 150.000 km in tutta Italia per portare la propria testimonianza nelle scuole di ogni ordine e grado.\n\nTra le attivit\u00e0 principali figura la campagna \"**Il Bullismo Non Va in Vacanza**\", realizzata nelle estati dal 2022 al 2026 in collaborazione con il tour operator Fruit Viaggi, prima e unica campagna contro il bullismo condotta in presenza nei villaggi turistici italiani. L'associazione ha inoltre prodotto il cortometraggio \"**Non Vi Lasceremo Soli**\" e diretto \"**Il Coraggio di Parlare**\", presentato nel maggio 2025 e interpretato da 27 studenti dell'Istituto Comprensivo di Borgaro Torinese.\n\nBullismo No Grazie \u00e8 stata presente alla Camera del Senato, ha partecipato a convegni organizzati dal CSI Piemonte con la Citt\u00e0 Metropolitana di Torino e dalla Regione Veneto, ha curato la mostra fotografica \"Combattere il Bullismo\" nel 2024 e ha preso parte a pi\u00f9 edizioni di Fiera Didacta Italia. Ha collaborato con il Parlamento Europeo in Italia e con numerose istituzioni locali e aziende su tutto il territorio nazionale.\n[https://www.bullismonograzie.it/](https://www.bullismonograzie.it/)", "public_name": "Bullismo No Grazie", "guid": "e489a432-446d-54d0-bce5-02c851682929", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/9ESFYE/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/TGTBKG/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/TGTBKG/", "attachments": []}, {"guid": "2e08c382-18ac-53c6-8457-6b71dbb69b43", "code": "KSYBBR", "id": 214, "logo": null, "date": "2026-10-02T14:00:00+02:00", "start": "14:00", "end": "2026-10-02T15:00:00+02:00", "duration": "01:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-214-braccialetti-diy", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/KSYBBR/", "title": "Braccialetti DIY", "subtitle": "", "track": "Kids", "type": "Light Workshop", "language": "it", "abstract": "Durante questo workshop imparerete a costruire braccialetti con perline e charms vari. Tutto l'occorrente sar\u00e0 fornito dal trainer, l'unica cosa da portare \u00e8 forza di volont\u00e0 e un bel sorriso!\n\nNota: il workshop \u00e8 aperto anche ai pi\u00f9 grandi e non ci sono barriere linguistiche. **English speakers are welcome!**", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "98SPMU", "name": "Lucrezia", "avatar": "https://cfp.romhack.io/media/avatars/KXQ7QJ_GxbqRuU.webp", "biography": "I'm Lucrezia and I've been in the RomHack staff since the beginning. During past RomHack's conferences I've helped with the Kids' workshops. I'm 17 and I'm on my last year of high school and I plan to study aerophysics when I go to university.", "public_name": "Lucrezia", "guid": "ab63438d-6deb-5fe5-aa95-46db2f1d5aa1", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/98SPMU/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KSYBBR/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KSYBBR/", "attachments": []}, {"guid": "a9ca81f4-b928-5781-97b9-860d162c5093", "code": "9VWFFW", "id": 228, "logo": null, "date": "2026-10-02T15:00:00+02:00", "start": "15:00", "end": "2026-10-02T18:00:00+02:00", "duration": "03:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-228-brain-arena", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/9VWFFW/", "title": "Brain Arena", "subtitle": "", "track": "Kids", "type": "Workshop", "language": "it", "abstract": "Brain Arena \u2013 Allenare la mente attraverso sfide, robotica e problem solving\n\nBrain Arena \u00e8 un laboratorio esperienziale in cui bambini e ragazzi entrano in una vera arena delle competenze: non una lezione tradizionale di coding, ma una sequenza di missioni da affrontare attraverso logica, strategia, creativit\u00e0 e collaborazione.\n\nDurante le due ore i partecipanti, organizzati in piccoli team, dovranno osservare un problema, immaginare una soluzione, programmarla e metterla subito alla prova utilizzando robot educativi e speciali tappeti di gioco. Ogni sfida richiede di prendere decisioni, correggere gli errori, migliorare la propria strategia e confrontarsi con gli altri.\n\nL\u2019obiettivo non \u00e8 semplicemente \u201cfar muovere un robot\u201d, ma allenare competenze fondamentali come problem solving, pensiero computazionale, capacit\u00e0 di analisi, collaborazione e gestione dell\u2019errore.\n\nRome Hack sar\u00e0 la prima presentazione pubblica di Brain Arena, un nuovo format educativo Italmaker che trasforma l\u2019apprendimento STEM in un\u2019esperienza dinamica, coinvolgente e competitiva, dove imparare significa soprattutto mettersi alla prova.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "QNS7JG", "name": "Italmaker", "avatar": "https://cfp.romhack.io/media/avatars/7WSNDU_EHayvtq.webp", "biography": "**Emiliano Gatti** \u00e8 professionista nel settore della formazione **STEM** e progettista di esperienze educative innovative dedicate a coding, robotica, making e nuove tecnologie.\n\nOpera professionalmente con **Italmaker**, sviluppando percorsi, laboratori e format rivolti a bambini, ragazzi, scuole e docenti, con l\u2019obiettivo di trasformare la tecnologia in uno strumento per allenare logica, creativit\u00e0, problem solving, pensiero computazionale e capacit\u00e0 di collaborazione.\n\n\u00c8 inoltre **Presidente di Italmaker \u2013 Accademia dell\u2019Inventore**, realt\u00e0 impegnata nella diffusione della cultura maker e dell\u2019educazione tecnologica.\n\nNegli anni ha ideato e realizzato workshop, percorsi didattici, competizioni ed esperienze STEM basate sull\u2019apprendimento attraverso il fare, la sperimentazione, la robotica educativa e la prototipazione.\n\nHa partecipato a Maker Faire Rome con progetti dedicati all\u2019innovazione educativa, ottenendo nel 2025 il riconoscimento **Maker of Merit.**\n\n**A Rome Hack presenta in anteprima Brain Arena, il nuovo format educativo che trasforma coding e robotica in un vero allenamento della mente attraverso missioni, strategia, sfide e problem solving.**", "public_name": "Italmaker", "guid": "252abfbb-7f4b-5e65-856a-6eab32588979", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/QNS7JG/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/9VWFFW/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/9VWFFW/", "attachments": []}, {"guid": "a0153bf1-0e31-5404-8383-a738ef822475", "code": "AHQ3ZZ", "id": 200, "logo": null, "date": "2026-10-02T18:00:00+02:00", "start": "18:00", "end": "2026-10-02T20:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-200-keep-callm-and-let-it-block-agentic-soar-with-n8n-splunk", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/AHQ3ZZ/", "title": "Keep caLLM and Let It Block: Agentic SOAR with n8n + Splunk", "subtitle": "", "track": "Other", "type": "Workshop", "language": "en", "abstract": "Everyone talks about SOAR; few have wired one up end to end. In this hands-on lab you'll build the \"respond\" half of a real detection-and-response pipeline \u2014 no slideware, no vendor console.\n\nWe hand you a live AWS environment: an API gateway and WAF fronting a target app, with all traffic and attack detections already flowing into Splunk. Your job is to build the automation that fires when Splunk raises an alert, using n8n (open-source, low-code) as the orchestrator.\n\nYou'll answer one question \u2014 \"should I block this IP?\" \u2014 with steadily rising intelligence. First, block on any alert (and watch the false positives roll in). Then block only when threat intel says the IP is malicious. Then hand the decision to an AI agent that investigates for itself: it queries multiple intel sources and runs its own Splunk searches, then returns a verdict with its reasoning. Finally, put a human in the loop to approve or overrule the agent \u2014 because trusting an autonomous blocker is the real 2026 question \u2014 and, time permitting, make the block self-reverse with a TTL and an audit trail back to Splunk.\n\nYou'll leave with a working, governed, AI-triaged auto-response pipeline and the patterns to rebuild it at home. Bring a laptop; we bring the infrastructure (AI model included).", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "HEQYHT", "name": "Doc", "avatar": "https://cfp.romhack.io/media/avatars/BA3GDL_pN3KktR.webp", "biography": "Mattia \u2014 \"Doc\" to most people \u2014 is a Senior Defense Security Engineer at Satispay, where he works across the full defensive stack: detection engineering, monitoring, incident response and security automation for a European fintech. Splunk and n8n are two of his everyday tools, but the job spans the whole blue-team surface \u2014 building the systems that catch attacks and the automation that responds to them safely. He's spent years turning noisy signals into actions a SOC can trust, and is increasingly focused on where AI fits into that loop: genuinely useful for triage, dangerous without guardrails. Doc believes the hard problem in security automation isn't automating the response, but automating it safely \u2014 and would rather prove it with a working lab than a deck. This is his first time on the RomHack stage.", "public_name": "Doc", "guid": "f07ca20c-b0f5-5f4d-bf52-681c90d578c0", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/HEQYHT/"}, {"code": "F8K3U9", "name": "aserpi", "avatar": "https://cfp.romhack.io/media/avatars/9UCZNW_iFC68k0.webp", "biography": "Alessandro Serpi is a Defensive Security Engineer at Satispay. Focused in building robust SIEM and SOAR architectures, he specializes in automating incident response pipelines and designing cross-functional tools that extend traditional cybersecurity capabilities into adjacent domains, such as fraud detection.", "public_name": "aserpi", "guid": "d9a8202d-d75b-55f9-be9a-aeeacf10e0ec", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/F8K3U9/"}, {"code": "XUQWQR", "name": "Ric", "avatar": null, "biography": null, "public_name": "Ric", "guid": "3670f2c3-8900-5c79-8fd1-2ac0363b5951", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/XUQWQR/"}, {"code": "EP8CMK", "name": "Francesco Viscardi", "avatar": null, "biography": null, "public_name": "Francesco Viscardi", "guid": "e14e0c8b-47e9-538c-9736-45a75bcaaff0", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/EP8CMK/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/AHQ3ZZ/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/AHQ3ZZ/", "attachments": []}, {"guid": "8c9b1863-b9c2-56d5-a0c7-2cdd0742b117", "code": "RBQXR3", "id": 199, "logo": null, "date": "2026-10-02T21:00:00+02:00", "start": "21:00", "end": "2026-10-02T22:00:00+02:00", "duration": "01:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-199-irc-is-not-dead-self-hosting-real-time-chat-like-it-s-1996-but-with-tls", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/RBQXR3/", "title": "IRC is not dead: self-hosting real-time chat like it's 1996 (but with TLS)", "subtitle": "", "track": "Journalism, society, hacker culture", "type": "Light Workshop", "language": "it", "abstract": "Before Slack, before Discord, before Telegram, there was IRC. A protocol so simple you could read it with netcat, so resilient it survived 35 years of \"IRC is dead\" articles, and so transparent that what you typed was exactly what the server saw \u2014 no algorithms, no tracking, no engagement metrics.\nThis late-night session is part storytelling, part live hacking. We will walk through the history of IRC from the Italian underground scene of the late '90s \u2014 irc.tin.it, war scripts, channel takeovers, netsplits, and the culture that shaped an entire generation of Italian hackers \u2014 to deploying a modern IRC server in 2026 on a self-hosted LXC container with TLS, persistent history, and integrated services, no third-party dependencies.\nBring your laptop. We will spin up a live server at the camp and open a channel for attendees to join in real time via browser or terminal client. You will register a nick, join a channel, and experience what real-time communication looked like before corporations decided your attention was a product.\nNo slides. No frameworks. Just a terminal, a protocol from 1988, and a conversation about what we lost when we handed our communication to platforms we don't control.\nSuitable for all skill levels. Nostalgia-prone attendees may experience involuntary emotions.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "QENS3V", "name": "Myfox", "avatar": "https://cfp.romhack.io/media/avatars/BFDWLU_fwfoEos.webp", "biography": "A senior security researcher and consultant with over 15 years of field experience in penetration testing, digital forensics, and incident response. Founder of CyberSartoria, a boutique cybersecurity firm focused on offensive security and NIS2/DORA compliance for enterprise clients, and co-founder/CTO of TeamBit, a blockchain and AI software house. Active in 0-day research and responsible disclosure. CEH and ISO 27001 Lead Auditor certified. Community roots going back to Hackmeeting and the Italian underground scene of the late 90s, when IRC was the internet. Regular speaker and participant at security events including Security Summit and RomaHack. Outside the terminal: co-founder of an anti-bullying nonprofit and two-time Olympic torchbearer.", "public_name": "Myfox", "guid": "247402e2-e0e2-5988-9473-d37c51f64b91", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/QENS3V/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/RBQXR3/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/RBQXR3/", "attachments": []}], "COMMUNITY AREA": [{"guid": "0e1905f2-23a1-5f13-a0e2-7c2d7e660580", "code": "MMBQHU", "id": 234, "logo": null, "date": "2026-10-02T20:00:00+02:00", "start": "20:00", "end": "2026-10-02T23:00:00+02:00", "duration": "03:00", "room": "COMMUNITY AREA", "slug": "romhack-camp-2026-234-tradizionale-polenta-taragna-di-berghem-in-the-middle", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/MMBQHU/", "title": "\"tradizionale\" polenta taragna di Berghem-in-the-Middle", "subtitle": "", "track": "Food", "type": "Workshop", "language": "en", "abstract": "Take a break from hacking: it\u2019s time for the ultimate caloric overflow! Masterfully cooked and proudly served by Berghem-in-the-Middle (the crew behind [No Hat conference](https://www.nohat.it), our traditional Polenta Taragna is made to perfection with cornmeal, buckwheat, the finest alpine cheese and a terabit-scale DoS of butter.\nA tradition we deeply cherish, sparked during the first RomHack Camp edition, when [a dear friend forever in our hearts wrote: \u201cafter that night, the world will be divided into those who have tasted polenta taragna and those who haven't.\u201d](https://romhack.io/un-hacker-camp-da-ricordare/) \nBring some appetite, and good luck staying awake at your terminal once that inevitable post-taragna sleep mode kicks in!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "3UTX97", "name": "Berghem-in-the-Middle", "avatar": "https://cfp.romhack.io/media/avatars/DB7HRZ_op0oMIp.webp", "biography": "Berghem-in-the-Middle (BITM) is a non-profit founded by information security enthusiasts and professionals in northern Italy, in an open and friendly environment fostering technical development and knowledge sharing. Since 2019 it hosts No Hat, an international security conference gathering researchers and specialists in Bergamo.\n\nYou can find BITM in the Community Area.", "public_name": "Berghem-in-the-Middle", "guid": "1afe35cd-a010-5622-ae21-f7bd7013c337", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/3UTX97/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/MMBQHU/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/MMBQHU/", "attachments": []}], "FOOD AREA": [{"guid": "a7f0f990-8a26-51c9-b7ce-e5c9a49e9972", "code": "3FTTEN", "id": 246, "logo": null, "date": "2026-10-02T19:00:00+02:00", "start": "19:00", "end": "2026-10-02T23:00:00+02:00", "duration": "04:00", "room": "FOOD AREA", "slug": "romhack-camp-2026-246-0-pizza-truck-wood-fired-dinner", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/3FTTEN/", "title": "\ud83c\udf55 Pizza Truck \u2014 Wood-Fired Dinner", "subtitle": "", "track": "Food", "type": "Workshop", "language": "en", "abstract": "Hungry after a day of hacking? A wood-fired Pizza Truck parks on site both evenings, serving fresh pizza straight from a real wood oven.\n\nNo need to leave the woods for dinner \u2014 grab a slice, grab a seat, and refuel before or after the Hacker Cinema Night and the After Dark music session.\n\nAvailable Friday and Saturday evening.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "PECMDS", "name": "Pizza Truck", "avatar": "https://cfp.romhack.io/media/avatars/JBNTTT_LLfoMCV.webp", "biography": "Straight from Rieti, in the green heart of northern Lazio, our Pizza Truck crew are professional pizza makers who have spent years perfecting one craft: turning flour, water, and fire into something worth queuing for.\n\nLong before they rolled onto the RomHack Camp grounds, they were feeding hungry crowds at festivals, markets, and events across the region \u2014 always with the same wood-fired oven riding along with them. Their approach is refreshingly low-tech in a field full of gadgets: a real wood fire, dough left to rise the slow way, quality local ingredients, and the kind of instinct that only comes from making thousands of pizzas by hand.\n\nFor them, a good pizza is not just food \u2014 it is a moment where people stop, sit down together, and take a break from whatever they were focused on. That makes them a perfect fit for a hacker camp, where the best conversations often happen around a shared meal after a long day of tinkering.\n\nThis weekend they bring their oven, their skills, and their Rieti pride to the woods of Flaminio Village. Come say hello, watch the flames, and grab a slice hot off the peel. \ud83c\udf55\ud83d\udd25", "public_name": "Pizza Truck", "guid": "2c7f39f3-730c-5699-bbc8-7f17639a1e7d", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/PECMDS/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3FTTEN/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3FTTEN/", "attachments": []}]}}, {"index": 2, "date": "2026-10-03", "day_start": "2026-10-03T04:00:00+02:00", "day_end": "2026-10-04T03:59:00+02:00", "rooms": {"STAGE 1 (Section 9)": [{"guid": "8e177857-46d1-5f7c-a782-4b718eb72898", "code": "F9WCBL", "id": 175, "logo": null, "date": "2026-10-03T10:00:00+02:00", "start": "10:00", "end": "2026-10-03T10:40:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-175-gnome-and-beyond-dream-tour-discover-linux-desktop-sandboxing-and-more-through-its-vulnerabilities", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/F9WCBL/", "title": "GNOME and Beyond Dream Tour: Discover Linux desktop sandboxing and more through its vulnerabilities", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Unlike mobile environments, The Linux desktop paradigm wasn\u2019t really designed with app-level security, permissions and sandboxing in mind. Despite this, modern desktop environments try to shoehorn this in with systems such as Flatpak and desktop portals.\n\nWe went digging into GNOME ecosystem security, investigating its core libraries (glib, libsoup, and gvfs) and sandboxing mechanisms (Flatpak, bubblewrap, dbus-proxy, and desktop portals). During this journey into the GNOME world we uncovered numerous security issues, resulting in more than 14 CVEs, including a full, zero-precondition Flatpak sandbox escape.\n\nWe\u2019ll take you along our very same journey where you\u2019ll discover how permissions and security boundaries are enforced and rely on a web of libraries and tools, some of which seemingly unaware of their importance in the overall chain. This way you\u2019ll be able to see with your own eyes what issues arise in such a complex environment where a couple of small mistakes, or colliding opinions, can lead to impactful vulnerabilities. We\u2019ll also take a few detours to show critical issues that we found in widely used open source productivity software, and how those vulnerabilities can have a severe impact also outside of the desktop paradigm.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "F9CLXC", "name": "b0n0b0", "avatar": "https://cfp.romhack.io/media/avatars/NDLVKM_Esp98T8.webp", "biography": "Edoardo is a security analyst at Codean Labs, where he focuses on application security assessments and research.\nIn his free time, he plays CTFs with the Fibonhack team, focusing mainly on web and Android challenges.\n\nSecurity aside, he likes to read tons of books and sci-fi comics, and yaps about them.", "public_name": "b0n0b0", "guid": "78aa79f5-a463-5ff9-8de1-b21932280fd2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/F9CLXC/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/F9WCBL/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/F9WCBL/", "attachments": []}, {"guid": "a1d774cb-d41d-535f-849e-a928b596738d", "code": "8AZUTX", "id": 170, "logo": null, "date": "2026-10-03T10:40:00+02:00", "start": "10:40", "end": "2026-10-03T11:20:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-170-from-hero-to-zero-the-fatalnoise-neverending-story", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/8AZUTX/", "title": "From Hero to Zero: The FatalNoise neverending story", "subtitle": "", "track": "Gaming and game development", "type": "Talk", "language": "it", "abstract": "Dopo aver sfidato i limiti del **Commodore 64** con **Catalypse**, perch\u00e9 non ripetersi su **Amiga**? Perch\u00e8 non spingere l'hardware a livelli mai visti, ricreando la magia dei coin-op che ci facevano sognare alla fine degli anni '90? Questa \u00e8 la storia di **Fatalnoise**, un picchiaduro ambizioso che non ha mai visto la luce. Un progetto folle, nato e sviluppato tra sfide tecniche insormontabili, problemi con l'universit\u00e0, accese divergenze creative e quella immancabile, totale incoscienza di chi non aveva la minima idea di cosa stesse realmente combinando... fino ad oggi...", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "Y7X9GW", "name": "Andrea Pompili", "avatar": "https://cfp.romhack.io/media/avatars/SJXXCS_iDLVOIG.webp", "biography": "Andrea Pompili is an information technology specialist that takes care of security. He joined the computer's world with one of the most famous Italian games based on the C64 platform. Once graduated, he started working first in the software development market, and then in computer security, following security threats and solutions on strategic projects. Currently Andrea is a strategy advisor in Cyber Security, and aims to discover and integrate innovative solutions for this connected world", "public_name": "Andrea Pompili", "guid": "14db5b09-1e87-5a6a-9877-e20bf41dad62", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/Y7X9GW/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/8AZUTX/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/8AZUTX/", "attachments": []}, {"guid": "ad86b14a-57f8-5f1f-991c-8b46f202047f", "code": "GHGK7L", "id": 185, "logo": null, "date": "2026-10-03T11:30:00+02:00", "start": "11:30", "end": "2026-10-03T12:10:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-185-presentazione-libro-l-inganno-dell-automa-di-carola-frediani", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHGK7L/", "title": "Presentazione libro \"L'inganno dell'Automa\" di Carola Frediani", "subtitle": "", "track": "Journalism, society, hacker culture", "type": "Talk", "language": "it", "abstract": "Insieme alla famiglia di Carola, a amici e amiche e alla redazione di Guerre di Rete presenteremo il suo ultimo libro \"L'inganno dell'Automa\"\n\n_\u00ab\u00c8 un big game, my friend. Chi si oppone non finisce bene.\u00bb Italia contemporanea. Andrea, un giovane ricercatore di cybersicurezza che vive tra Milano e la Liguria, viene interrotto nella sua edonistica quotidianit\u00e0 dalla notizia dell\u2019arresto a Dubai di un vecchio amico. L\u2019uomo, che commerciava vulnerabilit\u00e0 informatiche e si dedicava a vari traffici in giro per il mondo, \u00e8 accusato di spionaggio. Mentre Andrea cerca di capire come aiutare l\u2019amico e cosa si nasconda dietro l\u2019arresto, incrocia sulla sua strada una giornalista investigativa, Agnese, autrice di un blog molto seguito, dal quale si scaglia contro la corruzione del governo; ma anche Caterina, brillante e frustrata social media manager di una politica nazionale. Travolta da rivelazioni, inquietanti trafficanti d\u2019armi, e oscuri intrecci di politici corrotti e societ\u00e0 di intelligenza artificiale, la vita dei tre viene cambiata, obbligandoli a cercare giustizia pi\u00f9 che una facile via d\u2019uscita. E non tutto \u00e8 ci\u00f2 che sembra._\n\nhttps://www.ibs.it/inganno-dell-automa-libro-carola-frediani", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "ZSAQWX", "name": "Guerre di Rete", "avatar": "https://cfp.romhack.io/media/avatars/NECWYG_MJXhjjP.webp", "biography": "Guerre di rete \u00e8 un progetto editoriale frutto dell'impegno di due associazioni culturali: l\u2019omonima Guerre di Rete, che per anni ha pubblicato  una [newsletter settimanale]([url](https://guerredirete.substack.com/archive)) dedicata alla cybersicurezza a firma Carola Frediani (venuta a mancare il 3 Giugno 2026) e [Cyber Saiyan]([url](https://www.cybersaiyan.it/), una community indipendente di professionisti del settore della cybersicurezza.\n\nhttps://www.guerredirete.it/il-progetto/", "public_name": "Guerre di Rete", "guid": "aa9bef63-1c77-55cd-ae9a-0e0c3c7e0bff", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/ZSAQWX/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHGK7L/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHGK7L/", "attachments": []}, {"guid": "30aa5888-07ae-5f6b-b0be-31f373dc16d3", "code": "TT8EEA", "id": 216, "logo": null, "date": "2026-10-03T12:30:00+02:00", "start": "12:30", "end": "2026-10-03T13:10:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-216-breaking-the-charge-security-analysis-of-the-phoenix-contact-charx-sec-3000-ev-charging-controller", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/TT8EEA/", "title": "Breaking the Charge: Security Analysis of the Phoenix Contact CHARX SEC-3000 EV Charging Controller", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Talk summary:\u00a0Electric vehicle charging infrastructure is rapidly expanding, becoming a critical component of modern transportation. Despite the increased attention on its security, our research shows that even devices previously examined in competitions such as Pwn2Own can still hide impactful vulnerabilities.\n\nWe picked up this device right after Pwn2Own results were announced and the competition was over - and quickly found that the story was far from finished. Our security analysis of this commercially available Phoenix Contact CHARX SEC-3000 EV charging station controller uncovered serious, previously unknown issues that had gone unnoticed during the event. By combining firmware analysis with emulation techniques, we identified several critical vulnerabilities (including OS Injection) affecting the device. We will walk through the approaches, challenges, and what we have learned.\n\nLonger talk description: This session provides a technical analysis into our ongoing research on an EV charging station controller. The device we investigated had already been part of a Pwn2Own competition, yet our analysis revealed multiple security vulnerabilities. We will cover our approach to analyzing the charger, including firmware extraction and emulation to understand internal components and logic of the device ecosystem.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "HTVWLE", "name": "Piotr Ptaszek", "avatar": "https://cfp.romhack.io/media/avatars/GCKJWD_JsexdOZ.webp", "biography": "Senior Purple Teamer @ Tier-1 Global Bank, specializing in adversary simulation, red team operations, and offensive tooling development. Experienced in penetration testing across banking and energy sectors, including Web/Mobile/AD/OT-ICS/Embedded systems in critical infrastructure. Conducts independent hardware security research, holds multiple CVE/ZDI vulnerability disclosures. Co-author of \"Introduction to IT Security\" (Metasploit chapter) and leads hands-on security training.", "public_name": "Piotr Ptaszek", "guid": "87386fea-181b-5ea9-834d-ae7292776951", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/HTVWLE/"}, {"code": "L8U8SL", "name": "Matthew", "avatar": "https://cfp.romhack.io/media/avatars/JE3UNT_aTPvDsk.webp", "biography": "Mateusz W\u00f3jcik, an independent security researcher, red team operator, and former programmer specializing in IoT security, loves to find new vulnerabilities in IoT devices, especially those based on architectures like ARM and MIPS.", "public_name": "Matthew", "guid": "3e7b91f0-8a78-5447-bc8c-8026d11e294f", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/L8U8SL/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/TT8EEA/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/TT8EEA/", "attachments": []}, {"guid": "da0a5ed5-2b0d-5ad8-85de-2cd3ceaab710", "code": "XYPNLH", "id": 190, "logo": null, "date": "2026-10-03T14:00:00+02:00", "start": "14:00", "end": "2026-10-03T14:20:00+02:00", "duration": "00:20", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-190-the-commodore-65-the-dream-that-never-arrived", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/XYPNLH/", "title": "The Commodore 65: the dream that never arrived", "subtitle": "", "track": "Hardware, Makers and IoT", "type": "Lightning Talk", "language": "en", "abstract": "This presentation explores the history, technology, and legacy of the Commodore 65, one of the most fascinating unreleased machines in Commodore\u2019s history. Conceived at the end of the 1980s as the possible successor to the legendary Commodore 64, the C65 represented an ambitious attempt to extend the life of the 8-bit platform while integrating features inspired by the emerging 16-bit generation. Through historical context, technical analysis, and direct experience with original prototypes, the talk examines the C65\u2019s architecture, including the 4510 CPU, VIC-III graphics chip, enhanced BASIC 10, integrated 3.5-inch disk drive, and advanced graphic and sound capabilities. Particular attention is given to the machine\u2019s difficult development, its uncertain position between the C64 and the Amiga, and the reasons why it never reached the commercial market. The Commodore 65 is presented not only as a rare collector\u2019s item, but as a symbol of Commodore\u2019s creativity, contradictions, and missed opportunities. Its story reveals a crucial transitional moment in home computing: the end of the classic 8-bit age and the beginning of a new technological era", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "N3DWVQ", "name": "Dr. Commodore 65", "avatar": "https://cfp.romhack.io/media/avatars/Z8GPH9_HDqEcdq.webp", "biography": "Carlo Pastore is an Italian medical oncologist and a long-standing enthusiast, collector, and researcher in the field of retrocomputing, with a particular focus on Commodore and Amiga history.\nAlongside his professional activity in medicine, he has cultivated for many years a deep passion for the machines, people, prototypes, stories, and technological culture that shaped the home computer revolution of the 1980s and 1990s. His work as a collector is not limited to preserving hardware: it is strongly connected to historical research, documentation, outreach, and the desire to keep alive the memory of a generation of computers that changed the relationship between people and technology.\nHe is especially known in the Italian Commodore and Amiga community for his interest in rare and prototype machines, including the Commodore 65, unreleased Amiga hardware, development boards, expansion cards, and historically significant items linked to Commodore\u2019s final years. Over time, he has built contacts with former Commodore and Amiga engineers, developers, managers, and collaborators, collecting testimonies, documents, technical information, and personal memories that help reconstruct a complex and often fragmented history. Carlo is also active in the promotion of retrocomputing culture through talks, articles, books, social media, and public events. He has contributed to spreading knowledge about Commodore history in Italy, with particular attention to the educational, emotional, and cultural value of vintage computers. His approach combines technical curiosity, historical passion, and the belief that these machines are not merely obsolete objects, but witnesses of creativity, innovation, and personal discovery. As Scientific Director of the Museo del Videogioco di Roma \u2013 GAMM, he works to support the preservation and public presentation of the history of video games and home computing, with the aim of making this heritage accessible to new generations.", "public_name": "Dr. Commodore 65", "guid": "a0fcb370-5a85-51d8-8f60-ace43dba5f84", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/N3DWVQ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/XYPNLH/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/XYPNLH/", "attachments": []}, {"guid": "a31a34cc-fe9b-592a-ad94-1bdc204359a5", "code": "DTBUCX", "id": 173, "logo": null, "date": "2026-10-03T14:30:00+02:00", "start": "14:30", "end": "2026-10-03T15:10:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-173-state-trojan-the-malware-with-a-warrant", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/DTBUCX/", "title": "State Trojan: The Malware with a Warrant", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Your smartphone is not just a phone. It is your microphone, camera, archive, diary, GPS tracker, wallet, authenticator, and memory. In this talk, we will explore what happens when that device is turned into an informant during a legitimate criminal investigation through the use of lawful investigative malware, commonly known in Italy as a \"captatore informatico\".\nWe will start from the civic and legal tension: the need for effective investigations versus the privacy impact of compromising the most intimate device we own. Then we will move into the technical side, dissecting a real-world mobile implant to understand how it likely infected the device, what data it was able to collect, how it communicated, and what traces it left behind.\nThis is not an anti-law-enforcement talk. It is a hard look at the technical power of these tools, the risks created by their use, the vendors and supply chains behind them, and the practical signals defenders can monitor.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "YFQYK3", "name": "Pietro Boccaletto", "avatar": "https://cfp.romhack.io/media/avatars/9DHKUS_Z1QljOW.webp", "biography": "My journey started with technology. As a self-taught and curious teenager, I spent countless late-night hours exploring the emerging Internet, dismantling computers, and learning to program. That early hacker mindset shaped my long-term interest in complex systems, software, and security.\n\nAt a time when cybersecurity was not yet the established professional field it is today, I first applied this mindset in the life sciences, developing a background in molecular biology, marine biology, functional proteomics, and later bioinformatics. As a Senior Bioinformatician at the International Institute of Molecular and Cell Biology in Warsaw, I led the development of scientific tools and databases, while completing a PhD focused on computational biology and data analysis.\n\nOver time, my focus moved decisively toward cybersecurity, where my experience in software engineering, data analysis, and complex-system modelling became directly applicable to digital defence. Today, I serve as CTO at AptGetDefence, leading Incident Response operations, R&D, and secure product development. I also advise organizations on NIS2 compliance, cyber resilience, and strategic security governance.\n\nRecently, I was appointed Adjunct Professor at the University of Padua, where I teach \u201cInternet Security\u201d, combining academic rigor with real-world cybersecurity practice.\n\nMy work now focuses on threat mitigation, incident response, secure architectures, and regulatory readiness, helping organizations strengthen their security posture in an increasingly complex threat landscape.", "public_name": "Pietro Boccaletto", "guid": "3379f633-e99e-5250-8a34-a7fe0e2e0a5b", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/YFQYK3/"}, {"code": "PHRQR7", "name": "Francesco Infantini", "avatar": "https://cfp.romhack.io/media/avatars/9UETZM_ROgfYrM.webp", "biography": "My interest in technology started with a curiosity about how systems work and how they break. That curiosity eventually led me into infrastructure administration, where I spent several years managing enterprise environments and supporting critical systems.\n\nOver time, I became increasingly interested in cybersecurity, particularly offensive security and adversary tradecraft. Today, I work as a penetration tester, conducting security assessments and red team engagements focused on identifying realistic attack paths and helping organizations strengthen their security posture.\n\nMy areas of interest include Active Directory security, Windows internals, command and control frameworks, and detection evasion. I hold the CRTO certification and continue to focus on developing practical offensive security skills through research, training, and real-world engagements.", "public_name": "Francesco Infantini", "guid": "84cf4c43-dea6-520b-98a8-8fe65973cc43", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/PHRQR7/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/DTBUCX/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/DTBUCX/", "attachments": []}, {"guid": "f8530b2c-673d-5009-b26c-d28c69b9293f", "code": "WVKS3F", "id": 237, "logo": null, "date": "2026-10-03T15:10:00+02:00", "start": "15:10", "end": "2026-10-03T15:50:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-237-a-call-for-collective-action-on-cyber-defense", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/WVKS3F/", "title": "A call for collective action on cyber defense", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "AI is changing both the scale and speed of cyber offense and defense. In response, more than 100 organizations across technology, cybersecurity, industry, and government have called for a global surge in cyber defense: better tools for defenders, stronger protection for critical infrastructure, more useful intelligence sharing, and faster remediation of vulnerabilities.\n\nThe harder question is what happens next. What should organizations actually commit to, and how should progress be measured? Who gets access to advanced defensive AI, and who decides what qualifies as a \u201ctrusted defender\u201d? How can vendors share intelligence and fixes that defenders can use in practice? And who pays to bring these capabilities to smaller hospitals, utilities, municipalities, and other resource-constrained organizations?\n\nThe panel will also tackle a fundamental technical challenge: securing software and infrastructure at scale. More models, agents, or compute do not automatically translate into fewer critical vulnerabilities. We will discuss what AI labs, governments, security vendors, software producers, and infrastructure operators each need to do to turn a broad call for action into concrete, accountable improvements in cyber defense.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "JCDEGT", "name": "Andrea Cappa", "avatar": "https://cfp.romhack.io/media/avatars/RVLYTZ_c3pnpr6.webp", "biography": "Andrea Cappa (zi0Black) is Security Lead at Aptos Labs, where he oversees all things security. A former penetration tester at Shielder, he now spends his time exploring how AI can be applied to security in real-world environments, as well as the human factors behind security incidents and system failures.", "public_name": "Andrea Cappa", "guid": "987882c1-54dd-5f32-88cf-dd66453731a8", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/JCDEGT/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/WVKS3F/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/WVKS3F/", "attachments": []}, {"guid": "00f3336a-f5a1-56f1-be98-1efbd6abe4b6", "code": "PTNMVU", "id": 223, "logo": null, "date": "2026-10-03T16:00:00+02:00", "start": "16:00", "end": "2026-10-03T16:40:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-223-cash-card-or-root-security-archaeology-of-a-fiscal-cash-register", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/PTNMVU/", "title": "Cash, Card or Root? Security Archaeology of a Fiscal Cash Register", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Fiscal cash registers are everywhere in Italy, yet they receive surprisingly little attention as embedded systems. They are regulated appliances with tamper-evident seals, periodic inspections, controlled service procedures, and hardware mechanisms intended to make fiscal data difficult to manipulate.\nWe bought one of the most common models on the second-hand market and started taking it apart. Inside, we found an unusual design: an FPGA driving the user interface, an internal battery supporting a peculiar power lifecycle, a resin-encapsulated memory module, and physical switches hidden on the main board.\n\nThe software architecture is much more familiar: the device runs an old Linux-based OS with a writable root filesystem, essentially no privilege separation, extensive debug functionality, and a broad network attack surface.\n\nWhether you prefer hardware or software, we found ways in from both sides. Rather than presenting a vulnerability catalogue, this talk examines the security model of a regulated embedded system and the mismatch between elaborate physical protections and weak software trust boundaries.\nWhat does \u201ctamper resistant\u201d mean when the protected component is connected to a general-purpose computer with weak security assumptions?\n\nBy the end of the talk, we\u2019ll have answered that question and one more: does it run Doom?", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "GFG8EB", "name": "Jacopo Jannone", "avatar": "https://cfp.romhack.io/media/avatars/MC7PLG_Gq7Rabn.webp", "biography": "Jacopo Jannone is a computer engineer specialized in offensive cybersecurity. He has a strong passion for reverse engineering, which as an information security professional he mainly applies to the analysis of mobile, web and native applications. His interests extend to identification systems, radio frequency communications, embedded systems, and electronics. In his daily job he manages the offensive security team at Satispay, while in his free time he performs security research, develops open source projects, plays CTF competitions, and reverse engineers anything he finds interesting.", "public_name": "Jacopo Jannone", "guid": "99f858a8-d21c-5973-83af-a5bdcf6cf491", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/GFG8EB/"}, {"code": "NSY8LL", "name": "Jacopo Moioli", "avatar": null, "biography": null, "public_name": "Jacopo Moioli", "guid": "8e9a2008-61af-54bf-bda2-a500c9c0bcd2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/NSY8LL/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/PTNMVU/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/PTNMVU/", "attachments": []}, {"guid": "6581e2d7-27bc-57c8-bb9a-d6b7eff1c189", "code": "9V9HDD", "id": 236, "logo": null, "date": "2026-10-03T17:00:00+02:00", "start": "17:00", "end": "2026-10-03T17:20:00+02:00", "duration": "00:20", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-236-the-state-of-systemd-security-sandboxing-in-debian", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/9V9HDD/", "title": "The state of systemd security sandboxing in Debian", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Lightning Talk", "language": "en", "abstract": "Systemd units have many built-in configuration options that can be used to restrict access of a unit to the rest of the system, with the goal of containing a compromised system service.\nMarco will review the state of systemd security sandboxing in Debian packages, what we need to fix to have more and what will break by enabling too much of it.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "ANNNUD", "name": "Marco d'Itri", "avatar": "https://cfp.romhack.io/media/avatars/9QMAYC_kj7RXWt.webp", "biography": "Marco d'Itri has been involved with Internet operations and policy in Italy since the late '90s, and has been a Debian Developer for almost 30 years.\nIn Debian, he likes to maintain system packages like netbase, kmod, udev and ppp, Vinyl Cache, the BGP RPKI ecosystem and much more.", "public_name": "Marco d'Itri", "guid": "8059a2e8-6c73-5360-a3f6-78fb79426b27", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/ANNNUD/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/9V9HDD/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/9V9HDD/", "attachments": []}, {"guid": "5c29e905-ea6b-5084-a8a3-2bff14c1d3ad", "code": "VPLU83", "id": 217, "logo": null, "date": "2026-10-03T17:30:00+02:00", "start": "17:30", "end": "2026-10-03T17:50:00+02:00", "duration": "00:20", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-217-from-discovery-to-automated-windows-malware-analysis", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/VPLU83/", "title": "From Discovery to Automated Windows Malware Analysis", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Lightning Talk", "language": "en", "abstract": "The talk focuses on the hardcore usage from treat actor of ai to develop malware in large scale. In order to overcome the disastrous events shortcoming, we implement via LangGraph, Capev2 and Local Ai a way to find the most sketchy ones.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "X3DYPR", "name": "Pizzamarinarasadd", "avatar": "https://cfp.romhack.io/media/avatars/FHJ33P_Ee6a1Jl.webp", "biography": "I'm a Cybersecurity student at the University of Milan following a Master, beginnign this year. Before i was studying Network and Systems Security at the University of Milan. I'm a curious type of person trying to learn the inner workings of every software i stumble upon and whatnot", "public_name": "Pizzamarinarasadd", "guid": "db2b259c-94c6-53f9-96dd-c2140d506dd8", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/X3DYPR/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/VPLU83/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/VPLU83/", "attachments": []}, {"guid": "56d822d2-1f7e-5799-a21e-5136064328cc", "code": "9ZK9QM", "id": 179, "logo": null, "date": "2026-10-03T18:00:00+02:00", "start": "18:00", "end": "2026-10-03T18:30:00+02:00", "duration": "00:30", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-179-community-ctf-by-fibonhack-award-ceremony", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/9ZK9QM/", "title": "Community CTF by fibonhack - Award Ceremony", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Lightning Talk", "language": "en", "abstract": "The long night is finally over! After an intense 12-hour on-site hacking marathon, it is time to wrap up the From Dusk Till Dawn CTF.\n\nOrganized by the brilliant community-driven group **fibonhack**, this competition tested the limits of our finalists across Web Security, Binary Exploitation, Cryptography, and Reverse Engineering. \nWhile the rest of the camp slept, five elite teams\u2014FR13NDS TEAM, TPC, thePizzaIncident, SaturnX, and Mntcrl\u2014battled it out from Friday at 19:00 straight through to Saturday morning at 07:00.\n\nIn this 20-minute award ceremony, the **fibonhack** and **Cyber Saiyan** teams will take the stage to review the final scoreboard and officially crown the **RomHack Camp 2026 Community CTF Champions**.\n\nJoin us to celebrate the incredible skills of our players, discover who takes home the prizes, and give a massive round of applause to everyone who survived until dawn!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "TKHHMQ", "name": "fibonhack", "avatar": "https://cfp.romhack.io/media/avatars/QUCM7T_tJROfXa.webp", "biography": "Fibonhack is a CTF team founded in Pisa in 2019 by a group of students from the University of Pisa, following the CyberChallenge.it program. Over the years, they have competed in numerous competitions and assisted the University and local schools with cybersecurity training. The group has also organized several CTFs, such as the Internet Festival CTF 2023 and MOCA CTF 2024.\n\nBeyond competitions, the team is actively involved in organizing and participating in events to raise cybersecurity awareness.", "public_name": "fibonhack", "guid": "e008c5c0-40d5-5e21-a014-0f3fa8de6719", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/TKHHMQ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/9ZK9QM/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/9ZK9QM/", "attachments": []}, {"guid": "facf9830-198e-5e6e-b162-cccd726c32e9", "code": "JZSCRH", "id": 194, "logo": null, "date": "2026-10-03T18:30:00+02:00", "start": "18:30", "end": "2026-10-03T19:10:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-194-gulp-see-the-attack-understand-the-story-prove-the-facts", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/JZSCRH/", "title": "GULP: See the Attack. Understand the Story. Prove the Facts", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Modern Digital Forensics and Incident Response (DFIR) investigations require analysts to process large volumes of heterogeneous data, correlate evidence from multiple sources, and quickly reconstruct attack timelines without losing context. Gulp (Graphical Universal Log Processor) is designed to address these challenges by providing a flexible, visual platform for exploring, correlating, and analyzing logs and digital artifacts, complementing existing forensic workflows rather than replacing them.\n\nThis session introduces the GULP project, its architecture, and the challenges it is designed to address. The core of the presentation is a hands-on investigation that walks attendees through the different stages of a real-world attack. It also demonstrates how GULP can be used to analyze data collected from third-party forensic tools and log sources, leveraging graphical visualizations and contextual correlations to accelerate investigations and improve the understanding of complex attack scenarios.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "RPEKZN", "name": "Davide Inzerillo", "avatar": "https://cfp.romhack.io/media/avatars/RMKMU8_ee0gNMx.webp", "biography": "With 15 years of experience in the software industry, I have transitioned from test automation to full-stack development, always maintaining a strong focus on secure coding practices and authentication protocols. Currently, I am a developer at Mentat, where I build solutions tailored for SOC analysts, blue teams, incident responders, and digital forensics experts. I work on Gulp, a tool we utilize to streamline incident response workflows. Outside of my professional role, I am a contributor to the Security Cert community.", "public_name": "Davide Inzerillo", "guid": "628d9189-00b8-58b5-a98b-0763bef6b42f", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/RPEKZN/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/JZSCRH/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/JZSCRH/", "attachments": []}, {"guid": "1e10156c-322f-57c2-b47c-4e4103debd0f", "code": "QCMYJN", "id": 196, "logo": null, "date": "2026-10-03T19:10:00+02:00", "start": "19:10", "end": "2026-10-03T19:50:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-196-secret-scanning-in-open-source-at-scale-in-depth", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/QCMYJN/", "title": "Secret scanning in open source at scale (in-depth)", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Supply chain security conversation is booming these days after attacks like log4j came to the scene.\n\nIn this in-house research, we have conducted research on publicly available open-source assets like NPM (JS packages) and WordPress Plugins find out the presence of mistakenly or deliberately publicly exposed secrets (including private API keys and so on) i.e. AWS, Google, etc. (33 different categories of secrets!)\n\nThis could pose a risk to anyone using those packages as dependencies or plugins so that this chain of not re-inventing the wheel could become a disaster that stops the wheel once and for all.\n\nWe would be presenting our research done on a large scale after in-house scanning on:\n\n- Scanning of around 2 Million+ NPM Packages.  (almost all publicly available at the time of research)\n- Scanning of about 60,000 WordPress Plugins. (almost all publicly available at the time of research)", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "H3VQRX", "name": "Hassan Khan Yusufzai", "avatar": "https://cfp.romhack.io/media/avatars/JLF3BK_bJDy3XA.webp", "biography": "Hassan Khan Yusufzai is the Director and Co\u2011Founder of Laburity, bringing deep experience in the internet\u2011wide scanning, red teaming, penetration testing, threat intelligence and dark web monitoring. He combines deep technical research with practical, hands-on offensive security work to help organizations find and fix real-world security issues across different industries.\n\nHassan is an in\u2011demand speaker who shares his research and practical findings at international security conferences. He has presented at Cyber Security Asia \ud835\udde5\ud835\uddee\ud835\uddfb\ud835\ude00\ud835\uddfc\ud835\uddfa\ud835\ude04\ud835\uddee\ud835\uddff\ud835\uddf2 \ud835\udde5\ud835\uddf2\ud835\ude00\ud835\uddf6\ud835\uddf9\ud835\uddf6\ud835\uddf2\ud835\uddfb\ud835\uddf0\ud835\uddf2 \ud835\udfee\ud835\udfec\ud835\udfee\ud835\udff2, DeepSec 2025, OWASP AppSecDays 2025, BlackHat MEA (Riyadh) in 2022, 2023 and 2025, ThreatCon 2023, MCTTP Munich Cyber Tactics, Techniques & Procedures (MCTTP) 2024, HITBSecConf 2024, and the Security Analyst Summit in Phuket in 2024. \n\nHassan holds the Offensive Security Certified Professional (OSCP) certification, reflecting his solid technical mastery of penetration testing and exploit development techniques.\n\nHassan has identified and reported over 200 CVEs to date and was recognized as one of the top hackers by WPScan for his contributions to WordPress security. His responsible vulnerability reporting has been widely recognized: in 2017 Hassan was listed in the Google Security Hall of Fame, the Twitter Security Hall of Fame, and the Microsoft Security Hall of Fame for contributions that improved the security of major platforms.\n\nHassan develops tools and techniques for at-scale security research and analysis, designed to handle large datasets. His work focuses on efficiency and scalability, enabling faster identification of vulnerabilities across massive environments.", "public_name": "Hassan Khan Yusufzai", "guid": "fc969a2e-dd1e-50ad-a1d4-d6649883c8ea", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/H3VQRX/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/QCMYJN/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/QCMYJN/", "attachments": []}, {"guid": "62a04fba-999e-5f68-a821-f88a17dcf636", "code": "PUJVLA", "id": 210, "logo": null, "date": "2026-10-03T20:30:00+02:00", "start": "20:30", "end": "2026-10-03T22:30:00+02:00", "duration": "02:00", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-210-hacker-cinema-night-the-hitchhiker-s-guide-to-the-galaxy-2005", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/PUJVLA/", "title": "Hacker Cinema Night - The Hitchhiker's Guide to the Galaxy (2005)", "subtitle": "", "track": "Entertainment", "type": "Film", "language": "en", "abstract": "One more night, one more film.\n\nAfter a full day of hacking and the CTF award ceremony, we close Saturday under the open sky with [The Hitchhiker's Guide to the Galaxy](https://www.imdb.com/title/tt0371724/) (2005). Douglas Adams' tale of Earth's demolition, improbable escapes, and one very useful towel \u2014 a reminder that the answer might be 42, but the fun is in the questions.\n\nSame spot, same spirit as Friday. Bring your towel and Don't Panic.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "G8CNEJ", "name": "Cyber Saiyan", "avatar": "https://cfp.romhack.io/media/avatars/G8CNEJ_pShIzxp.png", "biography": "Cyber Saiyan is a non-profit cultural association founded in 2017. Our goal is simple: raising awareness and providing education in the field of cyber security.\n\nWe are the proud organizers of RomHack, an initiative built by the community, for the community. What started as a yearly technical conference has evolved to include intensive, hands-on Training sessions and an immersive three-day Hacker Camp in Rome.\n\nBeyond our core events, we actively promote independent projects and collaborations, such as the editorial initiative \"Guerre di Rete\".\n\nInvolving the community is very important to us. We strive to foster curiosity, sharpen skills, and create welcoming spaces where enthusiasts, researchers, and professionals can connect and share their knowledge.\n\nMore info: https://cybersaiyan.it/", "public_name": "Cyber Saiyan", "guid": "7ea9bfd7-a45d-51b7-a3cc-53c4da30d2a2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/G8CNEJ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/PUJVLA/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/PUJVLA/", "attachments": []}, {"guid": "bba5981f-b818-568b-a25d-9d7cb572b7b6", "code": "HEPMEH", "id": 212, "logo": null, "date": "2026-10-03T22:30:00+02:00", "start": "22:30", "end": "2026-10-04T00:30:00+02:00", "duration": "02:00", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-212-after-dark-saturday-music-session", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/HEPMEH/", "title": "After Dark - Saturday Music Session", "subtitle": "", "track": "Entertainment", "type": "Performance", "language": "en", "abstract": "One more night, one more set.\n\nAfter the Saturday film, we close the Camp's last full night the right way. Two hours of open-air music with the community.\n\nSame spirit as Friday, one more chance to hang out under the sky before the Camp winds down.\n\nThe DJ line-up will be announced closer to the Camp.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "G8CNEJ", "name": "Cyber Saiyan", "avatar": "https://cfp.romhack.io/media/avatars/G8CNEJ_pShIzxp.png", "biography": "Cyber Saiyan is a non-profit cultural association founded in 2017. Our goal is simple: raising awareness and providing education in the field of cyber security.\n\nWe are the proud organizers of RomHack, an initiative built by the community, for the community. What started as a yearly technical conference has evolved to include intensive, hands-on Training sessions and an immersive three-day Hacker Camp in Rome.\n\nBeyond our core events, we actively promote independent projects and collaborations, such as the editorial initiative \"Guerre di Rete\".\n\nInvolving the community is very important to us. We strive to foster curiosity, sharpen skills, and create welcoming spaces where enthusiasts, researchers, and professionals can connect and share their knowledge.\n\nMore info: https://cybersaiyan.it/", "public_name": "Cyber Saiyan", "guid": "7ea9bfd7-a45d-51b7-a3cc-53c4da30d2a2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/G8CNEJ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HEPMEH/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HEPMEH/", "attachments": []}], "STAGE 2 (Ghost in the Shellcode)": [{"guid": "ecf7a74e-a8cd-5358-879e-645c442b7def", "code": "SVZ8AS", "id": 242, "logo": null, "date": "2026-10-03T10:00:00+02:00", "start": "10:00", "end": "2026-10-03T10:20:00+02:00", "duration": "00:20", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-242-anatomia-di-un-drm-editoriale", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/SVZ8AS/", "title": "Anatomia di un DRM editoriale", "subtitle": "", "track": "Other", "type": "Lightning Talk", "language": "it", "abstract": "Aumentare la criptazione, rende il sistema pi\u00f9 sicuro?\nTra la versione A e la versione B di un'app di edicola digitale: il sistema di protezione \u00e8 diventato pi\u00f9 sofisticato ma nello stesso tempo, pi\u00f9 fragile.\n\nLa versione A proteggeva l'accesso tramite regolare autenticazione e autorizzazione, lato server. Con la versione B, indici e metadati cifrati sono diventati pubblicamente raggiungibili, mentre la protezione \u00e8 stata affidata a uno schema crittografico proprietario, costruito sopra Crypto++ e distribuito all'interno dell'app.\n\nRicostruiremo il percorso che ci ha permesso di comprenderne il funzionamento: MITM, decompilazione dell'APK, analisi del bridge JNI e reverse engineering di una libreria nativa ARM64.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "MZSCPD", "name": "Fabio Fabrizi", "avatar": "https://cfp.romhack.io/media/avatars/K9YVUZ_U7b1L4q.webp", "biography": "Software architect freelance, progetto e sviluppo soluzioni digitali per aziende, cercando di trasformare problemi complessi in strumenti semplici e utili. Negli ultimi anni seguo lo sviluppo IA, automazione e nuovi modi di interagire con la tecnologia.", "public_name": "Fabio Fabrizi", "guid": "80387f3b-dc3c-5fed-88dc-6c37ddb9a61d", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/MZSCPD/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/SVZ8AS/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/SVZ8AS/", "attachments": []}, {"guid": "3a33999b-9083-59a2-91e9-d0966bdd0525", "code": "U8LFED", "id": 222, "logo": null, "date": "2026-10-03T10:20:00+02:00", "start": "10:20", "end": "2026-10-03T11:00:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-222-how-to-poison-a-skill-and-why-nobody-reviews-it-twice", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/U8LFED/", "title": "How to poison a skill, and why nobody reviews it twice", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "it", "abstract": "Nobody runs a bare AI agent. Everyone extends it: skills, MCP servers, plugins, hooks, subagents. Every one of those is, underneath, a folder of text that gets loaded into the model's context and read as instruction.\n\nWhich makes them a supply chain. One that gets reviewed exactly once, at install, and executed every session afterwards.\n\nThis talk poisons one, step by step. We write a skill that does what it advertises and one extra thing, and we look at where you put the payload so that the person installing it does not see it, not in the file they skim, but in the reference file that skill loads on demand. Then we do the version that actually matters: a clean skill, installed and approved three weeks ago, updated today. Four lines different. Nobody diffs an update.\n\nSame trick without installing anything: MCP tool descriptions are context, so changing one after approval changes what the agent does with no code the user ever reviews. And repository content  is read as task context by an agent that cannot tell instruction from data.\n\nThe point is what none of it requires: no exploit, no privilege escalation, no CVE. Every step uses capability that was granted on purpose.\n\nSecond half is defensive: which controls change the outcome, which ones only feel like they do, and what you can still reconstruct afterwards.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "CBZDKR", "name": "Pietro Virgillito", "avatar": "https://cfp.romhack.io/media/avatars/8SHUTG_XBNyH97.webp", "biography": "Pietro is CTO and co-founder of MiniMako, where he builds kernel-level runtime security for Linux servers running autonomous AI agents.\n\nBefore MiniMako he spent fifteen years in operational cybersecurity: hardening critical infrastructure, reverse engineering, live incident response. Through 2024 and 2025, while claimed DDoS waves hit Italian banks, airports and ports, the systems he had hardened held, not because they reacted faster, but because there was no surface left to hit.\n\nThat is where his current work comes from. AI agents in production emit syscalls like any other process, but nobody watches them at that level: application logs capture prompts, not kernel calls. Pietro works on eBPF and LSM hooks to make what an agent actually does observable and stoppable, not what it claims to do.", "public_name": "Pietro Virgillito", "guid": "48f1ea97-c4b7-5fd2-813d-addc472a6f0f", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/CBZDKR/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/U8LFED/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/U8LFED/", "attachments": []}, {"guid": "800abafa-eaf3-5928-8aeb-176c6eef8243", "code": "J7BBDG", "id": 162, "logo": null, "date": "2026-10-03T11:00:00+02:00", "start": "11:00", "end": "2026-10-03T11:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-162-linux-ipfire-hardening-lan-with-suricata-ips", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/J7BBDG/", "title": "Linux-IpFire hardening lan with suricata/IPS", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "it", "abstract": "Il talk vuole presentare questa distro linux IpFire per uso firewall in casa e piccole ditte con molti plug-in in particolare quello per tor che permette il firewall non solo di proteggere le connessioni tramite IPS ma anche per l'anonimato come nodo entrante al circuito tor e volendo come bridge per contribuire alla complessita del deepweb. Il talk quindi fa una panoramica dei punti di forza del progetto opensource non avendo una versione commerciale, vuole sensibilizzare all'uso di strumenti opensource per la privacy come VPN e protezione DNS.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "88ARQH", "name": "fabio carletti aka Ryuw", "avatar": "https://cfp.romhack.io/media/avatars/HBEVRK_YPE4UZ7.webp", "biography": "Fabio Carletti aka Ryuw \u00e8 un White Hat del gruppo (SoldierX Hacker team).\n\nEsperto di sicurezza informatica con una vasta esperienza nel campo della protezione dei sistemi, delle reti e dei dati sensibili. Con pi\u00f9 di 20 anni di esperienza nel settore della sicurezza informatica, ha lavorato con diverse organizzazioni per implementare strategie di difesa avanzate e mitigare le minacce informatiche in continua evoluzione.\n\nCollabora come membro volontario del Tor Project team.\n\nOspite di rilevanti eventi italiani riguardanti la privacy, gnu/linux e software open source dedica le sue energie alla ricerca nella sicurezza informatica.", "public_name": "fabio carletti aka Ryuw", "guid": "a4169978-eb3a-5730-a9bf-62b0eaf2d3ad", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/88ARQH/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/J7BBDG/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/J7BBDG/", "attachments": []}, {"guid": "c94d795b-8d53-5116-babc-1d980ea04359", "code": "KKWVTD", "id": 205, "logo": null, "date": "2026-10-03T12:00:00+02:00", "start": "12:00", "end": "2026-10-03T12:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-205-codice-python-sicuro-buone-pratiche-e-strumenti-di-analisi", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/KKWVTD/", "title": "Codice Python Sicuro: Buone Pratiche e Strumenti di Analisi", "subtitle": "", "track": "Scripting, Coding, Development", "type": "Talk", "language": "it", "abstract": "Nel mondo attuale dello sviluppo software, la sicurezza non pu\u00f2 pi\u00f9 essere un ripensamento. Con l'approccio DevSecOps e il principio \"shift left\", gli sviluppatori svolgono un ruolo proattivo nell'integrare la sicurezza fin dalle prime fasi dello sviluppo, contribuendo a rendere le applicazioni pi\u00f9 sicure e resilienti. In questo talk esploreremo best practices per scrivere codice sicuro e presenteremo alcuni strumenti che aiutano ad automatizzare la rilevazione di vulnerabilit\u00e0 nel nostro codice Python e nelle dipendenze.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "C9FTRD", "name": "Matteo Vitali (trotto)", "avatar": "https://cfp.romhack.io/media/avatars/S9GR7D_KzptEOp.webp", "biography": "Python backend developer and DevOps\nSociologist by training and passionate about computer science.\nGnu/Linux user, free and open-source software advocate.\nDevelop in Python and Django is my favorite way to build things.\nPython Marche founder and co-organizer", "public_name": "Matteo Vitali (trotto)", "guid": "15821eda-ac8e-5a10-beca-3401235c26bc", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/C9FTRD/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KKWVTD/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/KKWVTD/", "attachments": []}, {"guid": "ccb2310b-f175-53ba-ae0e-68a4e7d822b3", "code": "HETQC3", "id": 219, "logo": null, "date": "2026-10-03T12:40:00+02:00", "start": "12:40", "end": "2026-10-03T13:00:00+02:00", "duration": "00:20", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-219-you-don-t-need-a-security-solution", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/HETQC3/", "title": "You Don't Need a Security Solution", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Lightning Talk", "language": "en", "abstract": "Over the years as a cybersecurity pre-sales engineer, I've had the privilege of seeing organizations prepare to defend themselves against sophisticated attackers, ransomware gangs, zero-days, and nation-state threats. Sometimes, however, the biggest security problem was much closer to home.\nA company wants NAC, but there's no IdP. Another wants PAM while every workstation shares the same local administrator password. Someone wants an anti-spam solution while SPF, DKIM and DMARC are not configured properly. I've encountered passwords stored in passwords.txt, environments where every machine is administered individually.\nThese aren't just funny war stories. They reveal a recurring problem: security products have prerequisites.\nNAC and EDR assume you can manage your endpoints. Vulnerability management assumes you know what assets you have. SIEM assumes you have useful logs and someone who can act on them. Zero Trust assumes you have some idea who your users, devices and applications actually are.\nThis talk is a collection of strange, surprising and sometimes painful lessons from the security pre-sales trenches, and an argument for asking an uncomfortable question before buying the next security product:\n\u201cWhat should we fix first?\u201d\nBecause sometimes the most useful thing a security vendor can tell you is:\n\u201cYou don't need our product yet.\u201d", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "LLAYR7", "name": "Max Derkach", "avatar": "https://cfp.romhack.io/media/avatars/8FDCYT_zIs9fu4.webp", "biography": "I'm a cybersecurity Pre-Sales Engineer and Security Architect with over 12 years of experience designing, implementing, and integrating enterprise security solutions across organizations of every size and scale.\nIn my spare time, you'll probably find me reversing binaries, solving CTF challenges, building random lab environments, or disappearing down a rabbit hole of some new technology that caught my attention. I enjoy taking things apart, understanding the details, and putting them back together, ideally better than before.", "public_name": "Max Derkach", "guid": "2b35b186-9a13-540c-a5fa-146100be8b2c", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/LLAYR7/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HETQC3/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HETQC3/", "attachments": []}, {"guid": "2be6bdea-a04d-50f2-8774-7ba206646cba", "code": "3MJRSS", "id": 164, "logo": null, "date": "2026-10-03T14:00:00+02:00", "start": "14:00", "end": "2026-10-03T14:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-164-sbom-sbam-who-put-this-in-my-code-enterprise-grade-supply-chain-security-on-a-zero-budget", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/3MJRSS/", "title": "SBOM SBAM: Who Put This in My Code? Enterprise-Grade Supply Chain Security on a Zero Budget", "subtitle": "", "track": "Scripting, Coding, Development", "type": "Talk", "language": "it", "abstract": "Modern software is assembled, not just written: nearly 90% of a typical application consists of third-party libraries. If a critical vulnerability like Log4Shell were disclosed tomorrow, how long would it take your team to identify every affected microservice? While large enterprises rely on expensive \"Ultimate\" licenses, SMEs and independent teams often face a dangerous security gap.\nIn this session, we will explore how to democratize Software Supply Chain Security (SSCS) by building an automated defense perimeter at zero licensing cost. Through a Live Demo featuring a Docker-based prototype, we will walk through a real-world architecture integrating:\n\u2022 GitLab Community Edition for pipeline orchestration.\n\u2022 Trivy and cdxgen for automated SBOM (Software Bill of Materials) generation in CycloneDX format.\n\u2022 OWASP Dependency-Track for continuous, proactive vulnerability monitoring.\nWe will go beyond basic scanning by demonstrating how to leverage Artificial Intelligence for code reachability analysis, generating VEX (Vulnerability Exploitability eXchange) files to silence false positives and focus only on actionable risks. We will also discuss how this stack prepares organizations for the upcoming EU Cyber Resilience Act (CRA) requirements.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "T7GUSB", "name": "Maurizio Argoneto", "avatar": "https://cfp.romhack.io/media/avatars/UK8G8N_ZJKyr4W.webp", "biography": "AWS HERO | Senior Engineering Manager | IT Strategy & AI Governance | Infrastructure Architect | Bridging Tech & Business Goals\n\nTrasformo la visione di business in infrastrutture tecnologiche scalabili e performanti. Con oltre 15 anni di esperienza, di cui 10+ focalizzati su architetture Cloud-native e governance di programmi complessi, guido la digitalizzazione della Pubblica Amministrazione e delle imprese con un approccio \"hands-on\" che garantisce concretezza e velocit\u00e0 di delivery.\n\nPerch\u00e9 collaborare con me:\n- Governance su larga scala: Ho gestito portafogli progetti >4M\u20ac, coordinando team multi-vendor di 50+ persone con piena responsabilit\u00e0 su budget e KPI.\n- Efficienza operativa: Ho ridotto i cicli di release del 60% attraverso l'adozione di pratiche DevOps, CI/CD e Infrastructure as Code (Terraform).\n- Visione Architetturale: Guido migrazioni cloud end-to-end (AWS) e modernizzazione di sistemi legacy tramite API-first design e microservizi.\n- Leadership & Community: Founder di GDG e AWS User Group Basilicata, credo nel valore dell'evangelismo tecnologico e della formazione come motori di crescita aziendale.\n\nSpecializzato nel \"bridging\" tra stakeholder C-level e team di sviluppo, garantisco che ogni scelta tecnologica sia un investimento orientato al valore.", "public_name": "Maurizio Argoneto", "guid": "7d8458c7-d44d-5481-b89b-8f46b0e213a0", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/T7GUSB/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3MJRSS/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3MJRSS/", "attachments": []}, {"guid": "78abd401-cdaa-554d-96b8-f8a8e0de246e", "code": "ACVWSL", "id": 181, "logo": null, "date": "2026-10-03T14:40:00+02:00", "start": "14:40", "end": "2026-10-03T15:20:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-181-shells-without-phish", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/ACVWSL/", "title": "Shells Without Phish", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Initial access isn\u2019t just about phishing anymore. Modern breaches are increasingly rooted in the application layer, where logic flaws, design weaknesses, and overlooked attack surfaces can open paths to compromise.\nIn this talk, we\u2019ll dissect how AppSec-driven tactics can redefine red team operations. We\u2019ll share our methodology for embedding vulnerability research into live engagements, blending code-level analysis, target hunting, and exploit chaining with traditional adversary tradecraft. This isn\u2019t about dropping a pre-packaged exploit - it\u2019s about building one mid-operation.\nThrough case studies against high-profile global targets, we\u2019ll show how this approach surfaced and chained zero-day vulnerabilities to breach external perimeters and operate effectively in mature environments. Whether you\u2019re looking to sharpen your offensive capabilities or expand your initial access playbook, this session delivers hard-earned insights straight from the field", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "DWKKLM", "name": "Mohamed Elsayed", "avatar": "https://cfp.romhack.io/media/avatars/BAXFET_Byej8ws.webp", "biography": "Mohamed is a senior Red team consultant at Google Cloud Security - Mandiant team with more than 15 years of expertise in offensive security. He has led and executed dozens of high-impact offensive security services for Fortune 500 companies, financial institutions, government entities, and critical national infrastructure. With a proven track record of identifying and exploiting challenging vulnerabilities in complex environments, Mohamed focuses on diverse initial access vectors and post-exploitation strategies in red team operations. He has also contributed to the security community by publishing tools and researches in various offensive security topics.", "public_name": "Mohamed Elsayed", "guid": "3966ddde-7cee-53de-80f6-b6b0034b58d2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/DWKKLM/"}, {"code": "B7ZD3J", "name": "Abdulrahman Nour", "avatar": null, "biography": null, "public_name": "Abdulrahman Nour", "guid": "48b4a066-1e44-5727-bede-c98680b9714e", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/B7ZD3J/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ACVWSL/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ACVWSL/", "attachments": []}, {"guid": "c3e92c22-2164-545f-87ca-392a08c6baa7", "code": "V9FE9N", "id": 227, "logo": null, "date": "2026-10-03T15:20:00+02:00", "start": "15:20", "end": "2026-10-03T16:00:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-227-living-off-trusted-cloud-provider-infrastructure-as-phishing-delivery-channel", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/V9FE9N/", "title": "Living Off Trusted Cloud: Provider Infrastructure as Phishing Delivery Channel", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Phishing defenses assume the attack comes from outside the trusted set: a lookalike domain, a domain registered last week, a sender with no history. Your cloud Provider's own infrastructure breaks that assumption, and this talk covers how far that goes.\nB2B guest invitations produce real, Signed mail carrying a redirection target the attacker influences. Open redirects across Trusted Cloud Provider-owned domains supply the pivot, and chaining them keeps the trusted origin intact through to the payload. I'll demo forced POST parameter injection, image and context injection that pulls the target's own tenant branding into the lure, and end-to-end credential and MFA capture. The address bar stays your favorite Provider's the whole way.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "XLDAYK", "name": "Rahul Vashisht", "avatar": "https://cfp.romhack.io/media/avatars/L3VMST_Ozx2Atw.jpeg", "biography": "Rahul is a seasoned Red Team Operator with years of experience executing high-stakes offensive security engagements against hardened global enterprises\u2014from breaching physical perimeters to dismantling cloud-native EDR solutions. As a key player at a top-tier cybersecurity firm, he specializes in crafting undetectable attack chains, weaponizing novel evasion techniques, and developing custom tooling that bypasses industry-standard defenses for clients in banking, telecom, and critical infrastructure. His mission? Hack first, hunt harder.", "public_name": "Rahul Vashisht", "guid": "f4d0a941-5245-5ccd-83c5-d23c7dc1f96a", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/XLDAYK/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/V9FE9N/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/V9FE9N/", "attachments": []}, {"guid": "f05505a7-83f5-58fa-adbe-776416b2d39d", "code": "UCVJX3", "id": 156, "logo": null, "date": "2026-10-03T16:00:00+02:00", "start": "16:00", "end": "2026-10-03T16:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-156-tesla-coil-by-voltagepyromania", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/UCVJX3/", "title": "Tesla Coil by VoltagePyromania", "subtitle": "", "track": "Hardware, Makers and IoT", "type": "Talk", "language": "it", "abstract": "In questa presentazione verr\u00e0 illustrato il principio di funzionamento delle Tesla coil musicali, dispositivi elettromeccanici capaci di generare scariche elettriche controllate e visibili, sincronizzate con segnali audio. Partendo da un inquadramento storico e scientifico, verr\u00e0 spiegato cosa sono le Tesla coil e come, attraverso l\u2019elettronica di potenza e il controllo digitale, sia possibile modulare le scariche per produrre suoni e melodie. L\u2019incontro approfondir\u00e0 i concetti di risonanza, alta tensione e ionizzazione dell\u2019aria, evidenziando il legame tra fisica, ingegneria e musica. La presentazione far\u00e0 da introduzione allo spettacolo serale, in cui le Tesla coil musicali saranno protagoniste di una performance dal vivo: un\u2019esperienza immersiva che unisce divulgazione scientifica e intrattenimento, trasformando l\u2019elettricit\u00e0 in luce, suono ed emozione.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "Z7V8NF", "name": "michele pietravalle aka PHCV", "avatar": "https://cfp.romhack.io/media/avatars/Z7V8NF_OLnQftv.png", "biography": "Michele Pietravalle costruisce Tesla Coil dall\u2019et\u00e0 di 15 anni e, dopo oltre 25 anni di passione e sperimentazione, ha portato le sue bobine a livelli sempre pi\u00f9 evoluti in termini di tipologia e potenza. La sua ricerca lo ha condotto a dar vita a VoltagePyromania, un progetto musicale e scenico che unisce fulmini ed elementi di fuoco in un\u2019esperienza artistica unica e immersiva.", "public_name": "michele pietravalle aka PHCV", "guid": "cf36d494-41d4-5606-90fa-5ff29a4c42be", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/Z7V8NF/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/UCVJX3/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/UCVJX3/", "attachments": []}, {"guid": "2ae7da10-0613-5694-845e-11529f4ee025", "code": "HBCFWE", "id": 163, "logo": null, "date": "2026-10-03T16:40:00+02:00", "start": "16:40", "end": "2026-10-03T17:20:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-163-using-temporal-spatial-3d-cnn-features-to-enhance-osint-based-profiling-and-individual-traceability", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/HBCFWE/", "title": "Using Temporal\u2011Spatial 3D CNN Features to Enhance OSINT\u2011Based Profiling and Individual Traceability", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Deepfake detection using 3D CNNs traditionally focuses on identifying synthetic facial manipulations in video. This work inverts that lens. I leverage temporal\u2011spatial 3D CNN features originally designed to spot fake videos and apply them to a completely different domain: OSINT\u2011based profiling. By treating metadata as a volumetric signal across related individuals, the same convolutional filters that detect frame\u2011to\u2011frame anomalies can reconstruct familial linkages from public or leaked databases. This methodology enhances traditional OSINT by adding a predictive layer. Instead of manually building family trees, the 3D CNN model learns kinship patterns and flags potential person matches with high confidence. The result is a hybrid attack that combines AI forensics and open source intelligence to identify a target individual from a distant relative\u2019s spit sample. I demonstrate a proof of concept using synthetic profiles and real OSINT sources. The talk shows how a deepfake detection technique becomes a privacy\u2011breaking weapon for person traceability at scale.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "C9YMMS", "name": "Reza", "avatar": "https://cfp.romhack.io/media/avatars/PEKVSB_rRUcuk9.webp", "biography": "With over eight years of hands on experience in offensive security and vulnerability discovery, I specialize in data driven threat hunting across complex product ecosystems. Currently completing a Master of Science in Software Engineering with a focus on deepfake detection using 3D CNNs, I bridge the gap between academic research and advanced exploitation techniques. I have authored three technical volumes, including AI For Red Team Operation and Practical Application Security, while maintaining a global rank of 6 on Hackthebox. My work focuses on architecting resilient defense systems that integrate runtime application self protection and virtual patching to proactively decrease the time to pwn and neutralize emerging threats. By leveraging multi cloud telemetry and offensive research, I have identified over 140 vulnerabilities for major global vendors, ensuring product integrity against sophisticated adversaries.", "public_name": "Reza", "guid": "71f5e042-30ff-521f-9715-920dc47e13be", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/C9YMMS/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HBCFWE/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HBCFWE/", "attachments": []}, {"guid": "c3bd8c83-eed8-5323-b782-c954fe67857a", "code": "CATUNP", "id": 231, "logo": null, "date": "2026-10-03T17:30:00+02:00", "start": "17:30", "end": "2026-10-03T17:50:00+02:00", "duration": "00:20", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-231-ghost-in-the-sim-silent-zero-click-over-the-air-exploitation-of-a-pixel-9-baseband-oob-read", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/CATUNP/", "title": "Ghost in the SIM: Silent, Zero-Click, Over-the-Air Exploitation of a Pixel 9 Baseband OOB Read", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Lightning Talk", "language": "en", "abstract": "Cellular baseband processors run highly privileged, proprietary software beneath the main OS, making them a critical yet hard-to-analyze attack surface. Focusing on the Google Pixel 9 modem, this talk demonstrates how adapting open-source emulation software allowed us to build a baseband fuzzing pipeline, surfacing three new vulnerabilities and several rediscoveries, including an Out-of-Bounds (OOB) read in 5G message parsing.\nAfter validating the flaw with Software Defined Radios (SDRs), we address the challenge of turning local memory leaks into full remote attacks. We show how SIM Toolkit (STK) applets, legitimate applications running on SIMs/eSIMs that can be provisioned over-the-air, can be repurposed as a delivery and execution primitive operating entirely outside main OS visibility. Finally, we detail how pairing remote STK provisioning with the 5G baseband vulnerability creates a silent, zero-click exfiltration chain that leaks sensitive memory over SMS.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "9GYHGU", "name": "Lorenzo Valeriani", "avatar": "https://cfp.romhack.io/media/avatars/N9HJDY_3SpRduc.webp", "biography": "As a CNIT mobile security researcher, Lorenzo Valeriani spends his time breaking phones (ethically, of course) and working towards a Ph.D. at the University of Rome Tor Vergata, where he also holds a Master's degree in Computer Engineering. His research focuses on the behavioural analysis of Android malware, new attack and defence strategies and the study of emerging protocol technologies such as eSIMs.", "public_name": "Lorenzo Valeriani", "guid": "522b1d0c-afba-54f0-80dc-d5a9432511f2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/9GYHGU/"}, {"code": "MYA3HS", "name": "Pasquale Caporaso", "avatar": "https://cfp.romhack.io/media/avatars/3JALLT_6nwwl7s.webp", "biography": "Pasquale Caporaso is a security researcher for the CNIT NAM National laboratory. His research focuses on computer security and operating systems, general purpose and embedded. Over the years, he has accumulated extensive experience in the world of security. He worked as a Cybersecurity Specialist for the multinational Leonardo spa where he experienced first-hand the attack and defence of Linux operating systems and, as a member of the Italian ethical hacker team mhackeroni, he has participated in numerous Italian and international competitions, including the finals of DEFCON and HackASat CTF in Las Vegas, among the world's biggest hacking competitions.", "public_name": "Pasquale Caporaso", "guid": "fb5d61f3-5929-5628-9048-03b387435479", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/MYA3HS/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/CATUNP/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/CATUNP/", "attachments": []}, {"guid": "ee643e78-7edc-5f9b-a016-5c7760a75843", "code": "3LJDWR", "id": 168, "logo": null, "date": "2026-10-03T18:00:00+02:00", "start": "18:00", "end": "2026-10-03T18:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-168-command-line-alchemy-turning-scripts-into-superpower", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/3LJDWR/", "title": "Command-Line Alchemy: Turning Scripts into Superpower", "subtitle": "", "track": "Scripting, Coding, Development", "type": "Talk", "language": "en", "abstract": "Bash isn't just an interface to your daily laptop - it's a weapon. This 45 minute talk shows how to push bash beyond its typical use-cases, leveraging it for hacking, data processing, automation, and real-world security applications. Whether you're crafting exploits, analyzing massive datasets, or automating reconnaissance, this talk will equip you with the skills to turn bash into your ultimate hacking tool.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "AYN9P8", "name": "Kirils Solovjovs", "avatar": "https://cfp.romhack.io/media/avatars/QMKE3A_Mm73D0m.jpg", "biography": "Kirils Solovjovs is Latvia's leading white-hat hacker and IT policy activist. He began programming at age 7, and by grade 9 was already writing machine code directly in a hex editor during lunch breaks. Renowned for uncovering and responsibly disclosing critical vulnerabilities in national and international systems, he is an expert in network flow a\nKirils Solovjovs is Latvia's leading white-hat hacker and IT policy activist. He began programming at age 7, and by grade 9 was already writing machine code directly in a hex editor during lunch breaks. Renowned for uncovering and responsibly disclosing critical vulnerabilities in national and international systems, he is an expert in network flow analysis, reverse engineering, and social engineering. A lifelong command-line enthusiast, he uses bash daily for hacking, automation, and large-scale data processing.\nHe is the author of the jailbreak tool for MikroTik RouterOS and played a pivotal role in developing e-Saeima, the world's first fully remote legislative system used by the Latvian Parliament. Today, Kirils serves as lead researcher at Possible Securitynalysis, reverse engineering, and social engineering. A lifelong command-line enthusiast, he uses bash daily for hacking, automation, and large-scale data processing.\nHe is the author of the jailbreak tool for MikroTik RouterOS and played a pivotal role in developing e-Saeima, the world's first fully remote legislative system used by the Latvian Parliament. Today, Kirils serves as lead researcher at Possible Security", "public_name": "Kirils Solovjovs", "guid": "d871964f-f8d7-5e98-b718-d18129acc8b2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/AYN9P8/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3LJDWR/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3LJDWR/", "attachments": []}, {"guid": "972a40c4-e09c-5490-b316-2364291ae51e", "code": "VZ7VY3", "id": 157, "logo": null, "date": "2026-10-03T18:40:00+02:00", "start": "18:40", "end": "2026-10-03T19:20:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-157-vibeshell-how-trusting-your-ai-ide-costs-you-your-machine", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/VZ7VY3/", "title": "VibeShell: How Trusting Your AI IDE Costs You Your Machine", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Forget prompt injection. While the industry obsesses over manipulating model inputs to bypass guardrails, it is overlooking a far more dangerous threat requiring no user interaction beyond opening the application embedded beneath the AI itself: the underlying platform architecture.\n\nTo deliver on the promise of full autonomy, AI-powered coding environments wire Large Language Models directly into the developer workflow\u2014handing them local filesystem access, shell execution, and cloud credentials. Developers accept this tradeoff for the massive productivity gains, but the security cost is severe.\n\nIn these environments, privileged OS access is not a misconfiguration but a product requirement. For a chat interface to truly become an autonomous \"agent,\" it must be equipped with tools. Equipping the AI with these tools creates a structural conflict with traditional application isolation, like Electron's security model. To make the AI function, developers are forced to break the sandbox and expose highly permissive IPC (Inter-Process Communication) bridges between the web renderer and the local operating system.\n\nThis presentation provides a technical deep dive into how chained IDOR vulnerabilities can be escalated into zero-click RCE via persistent LLM conversation injection and unsafe Electron IPC designs. To prove the real-world impact, we will debut novel research into Orchids, a leading local, Electron-based AI coding IDE with over a million users, reported to be used by teams", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "N3W3YX", "name": "Etizaz Mohsin", "avatar": "https://cfp.romhack.io/media/avatars/N3W3YX_5ZQg4SM.jpeg", "biography": "Etizaz Mohsin is a cybersecurity researcher focused on advanced threat research and offensive security. His work has explored real-world attack techniques used by sophisticated adversaries, including research on NSO Group's Pegasus spyware, which he presented at Black Hat MEA. Earlier in his career, he investigated the DarkHotel espionage campaign targeting executives and diplomats through compromised hotel networks.\n\nHis research has been featured by outlets such as Forbes, BBC, Wired, TechCrunch and Al Jazeera. He has presented at international security conferences including Black Hat Middle East and Africa, HITCON, 44CON, CONFidence, DeepSec, SECTOR, Hacktivity, GreHack, HackFest, and Wild West Hackin' Fest.", "public_name": "Etizaz Mohsin", "guid": "766f1c7f-85e1-5620-a421-4e3621ac3093", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/N3W3YX/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/VZ7VY3/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/VZ7VY3/", "attachments": []}, {"guid": "98b8fb9d-5cac-5f27-9f20-781d7590da80", "code": "XQUFNN", "id": 171, "logo": null, "date": "2026-10-03T19:20:00+02:00", "start": "19:20", "end": "2026-10-03T20:00:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-171-the-miracle-of-plane-and-sprite-multiplication", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/XQUFNN/", "title": "The miracle of Plane and Sprite Multiplication", "subtitle": "", "track": "Gaming and game development", "type": "Talk", "language": "en", "abstract": "How it was possible to have more that one independent scrolling plane in a C64 videogame? How it was possible to have more than the 8 declared sprites in a 50 frames per second game? We will explore the tricks and the strategies applied by most of the games of the C64 era, including my shoot-em-up game Catalypse. We will discuss about charset maps, double buffering, shifting chars but also about the software interrupts, the synchronized drawing opportunities given by the VIC II graphic chipset and the real-life sorting algorithm choices, everything constrained inside a complete screen raster time", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "Y7X9GW", "name": "Andrea Pompili", "avatar": "https://cfp.romhack.io/media/avatars/SJXXCS_iDLVOIG.webp", "biography": "Andrea Pompili is an information technology specialist that takes care of security. He joined the computer's world with one of the most famous Italian games based on the C64 platform. Once graduated, he started working first in the software development market, and then in computer security, following security threats and solutions on strategic projects. Currently Andrea is a strategy advisor in Cyber Security, and aims to discover and integrate innovative solutions for this connected world", "public_name": "Andrea Pompili", "guid": "14db5b09-1e87-5a6a-9877-e20bf41dad62", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/Y7X9GW/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/XQUFNN/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/XQUFNN/", "attachments": []}], "WORKSHOP 1 (Neon Genesis Exploitation)": [{"guid": "53776b53-d3dd-5379-854c-e101590e48ed", "code": "HLLYEW", "id": 243, "logo": null, "date": "2026-10-03T09:30:00+02:00", "start": "09:30", "end": "2026-10-03T11:30:00+02:00", "duration": "02:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-243-sponsor-workshop-introduction-to-cobalt-strike-command-control-and-code-execution-fundamentals", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/HLLYEW/", "title": "[Sponsor workshop] Introduction to Cobalt Strike: Command & Control and Code Execution Fundamentals", "subtitle": "", "track": "Sponsor", "type": "Workshop", "language": "en", "abstract": "Delivered through Fortra's Zero-Point Security training platform, this hands-on workshop provides an introduction to Cobalt Strike, its core components, and the product philosophy behind modern adversary simulation and red team operations.\n\nAttendees will begin by exploring the Cobalt Strike ecosystem, including key concepts such as Team Servers, Beacons, listeners, and communication channels. Through interactive labs, participants will learn how to deploy and manage Beacons, work with HTTP, SMB,\n and TCP listeners, and understand how Beacon communication topologies can be modified in real time.\n\nThe workshop also covers code execution fundamentals using Cobalt Strike's Resource Kit, where attendees will customize payload resources, generate and host payloads, and execute them within a controlled lab environment.\n\nBy the end of the session, participants will have a foundational understanding of Cobalt Strike's architecture, Beacon communications, listener types, payload delivery, and customization techniques commonly used in adversary emulation and red team engagements.\n\n**Workshop Requirements**\n* Max capacity of 30 attendees\n* Attendees must bring their own laptop to access the training. \n* Attendee email addresses must be provided to Fortra in order to provide access to the platform:\n  * At least 3 days prior to the event\n  * Attendees must be able to access the email address which they provide, or they will not receive their login credentials", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "EP8XYH", "name": "Fortra", "avatar": "https://cfp.romhack.io/media/avatars/CPPVZA_bydxqC6.webp", "biography": "[Fortra](https://www.fortra.com/) builds data-centric cybersecurity \u2014 and hackers know them best for their offensive security tooling: Cobalt Strike, Core Impact and Outflank, for adversary simulation, pentesting and red teaming.", "public_name": "Fortra", "guid": "716d345f-3ba5-5047-b79e-5ccf4ea27f50", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/EP8XYH/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HLLYEW/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/HLLYEW/", "attachments": []}, {"guid": "9bb40e71-cb12-5c69-a713-3e836e37115d", "code": "JCWFDW", "id": 166, "logo": null, "date": "2026-10-03T11:30:00+02:00", "start": "11:30", "end": "2026-10-03T13:30:00+02:00", "duration": "02:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-166-physec-lab-part-1-lockpicking-101", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/JCWFDW/", "title": "PhySec Lab Part 1: Lockpicking 101", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Workshop", "language": "en", "abstract": "This 2 hours workshop (max 20 people) wants to be an introductory course to the marvelous world of picking locks. After an overview of the most common types of locks and how they operate, the instructor will show you which type of tools are needed to manipulate and open them. In the second part of this training, you will be provided with a lockpicking kit and some practice locks in order to try yourself.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "D8LAUA", "name": "CYBERANTANI", "avatar": "https://cfp.romhack.io/media/avatars/DYJAQD_BQUXndf.webp", "biography": "Luca Bongiorni (@CyberAntani) is working as Director of a CyberSecurity Lab and is Founder of WHID - We Hack In Disguise ( www.whid.ninja ): a cybersecurity boutique focused on R&D offensive hardware implants and IIoT Security. Luca is also actively involved in InfoSec where his main fields of research are: Radio Networks, Hardware Hacking, Internet of Things, and Physical Security. He also loves to share his knowledge and present some cool projects at security conferences around the globe: BlackHat Europe & USA, TROOPERS, HackInParis, DEFCON, HackInBo, Defcon Moscow, OWASP Chapters, Security Analyst Summit, etc. At the moment, he is focusing his researches on bypassing biometric access control systems, IIoT Security & Forensics, Air-Gapped Environments and IoOT (Internet of Offensive Things).", "public_name": "CYBERANTANI", "guid": "9fa2e44e-9784-5fff-87b9-ca5d75bd7743", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/D8LAUA/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/JCWFDW/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/JCWFDW/", "attachments": []}, {"guid": "3036a286-3f2a-5cb7-9ded-6116dbe144fa", "code": "MXTLKL", "id": 229, "logo": null, "date": "2026-10-03T14:00:00+02:00", "start": "14:00", "end": "2026-10-03T16:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-229-don-t-crash-challenges-walkthrough", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/MXTLKL/", "title": "\"Don't crash\" challenges walkthrough", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Workshop", "language": "en", "abstract": "You've always wanted to start with binary exploitation challenges, but fear the horrors of weird machines? This will be a workshop for you! After a theoretical introduction on binary exploitation basics all the way to x86_64 Return Oriented Programming you will get your hands dirty with the \"Don't crash\" challenges with the help of the author. Bring your Linux laptop (or VM) with Ghidra, pwntools and pwndbg", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "Y3VLQ3", "name": "Max 'Sparrrgh' Bellia", "avatar": "https://cfp.romhack.io/media/avatars/DKAKEB_Swjj72C.webp", "biography": "Security researcher with experience in offensive security in various contexts, mainly web and binary exploitation.\n\nThey have a passion for optimizing vulnerability research processes, making finding bugs easier and faster. They do this mainly by developing custom SAST and DAST tooling. Currently working as a security engineer at Secure Network, in Milan.", "public_name": "Max 'Sparrrgh' Bellia", "guid": "c1d880d4-9504-5e92-926b-2b94f79bee00", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/Y3VLQ3/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/MXTLKL/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/MXTLKL/", "attachments": []}, {"guid": "1be3fdcc-04ca-59f3-b8a5-fdb74f96debf", "code": "ALJJBE", "id": 241, "logo": null, "date": "2026-10-03T16:00:00+02:00", "start": "16:00", "end": "2026-10-03T17:00:00+02:00", "duration": "01:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-241-from-ioc-to-detection-turning-threat-intelligence-into-something-your-soc-can-actually-use", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/ALJJBE/", "title": "From IOC to Detection: Turning Threat Intelligence Into Something Your SOC Can Actually Use", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Light Workshop", "language": "en", "abstract": "Threat intelligence teams collect indicators, follow threat actors and produce reports. SOC teams build detections and investigate alerts. Too often, the connection between the two ends with a list of IP addresses, domains and hashes added to a SIEM.\n\nThis talk looks at how to move beyond that model.\n\nUsing practical attack examples, I'll walk through how intelligence can be transformed from an IOC or threat report into an investigative hypothesis, observable attacker behaviour and ultimately a detection. We will look at what information gets lost when intelligence is reduced to indicators, how to identify the behaviour behind those indicators, and how to decide which telemetry can actually expose it.\n\nThe session follows a simple workflow:\n\nThreat Intelligence \u2192 Adversary Behaviour \u2192 Detection Hypothesis \u2192 Telemetry \u2192 Detection \u2192 Hunt \u2192 Validation\n\nI'll also cover what happens after a detection fires: how investigation results can feed back into threat intelligence, improve context and help identify what should be hunted for next.\n\nThe goal is not to collect more intelligence or generate more alerts. It is to make threat intelligence operational enough to change what your SOC can detect.\n\nAn IOC may tell you what the attacker used. A good detection should help you find what the attacker did.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "VPEGKG", "name": "Sanjay Kumar", "avatar": "https://cfp.romhack.io/media/avatars/KEQZAZ_CBMi8y5.webp", "biography": "Sanjay Kumar is Head of Security Operations & Threat Intelligence at EYKON, where he leads security operations, threat detection, incident response, and threat intelligence. With more than a decade of experience in cybersecurity, his work focuses on detection engineering, threat hunting, identity-driven attacks, incident response, and translating threat intelligence into actionable defenses. Sanjay is an international cybersecurity speaker who has presented at security conferences and industry events across Europe and the United States, including DeepSec in Vienna, the ICS Cyber Security Conference in Atlanta, Recorded Future PREDICT, Next IT Security in Stockholm, and CrowdTour Helsinki. He is the recipient of multiple cybersecurity and research recognitions, including the Recorded Future Excellence Award for Innovation in Threat Intelligence at PREDICT Europe 2025. Alongside his industry work, Sanjay is a PhD researcher exploring the application of artificial intelligence and machine learning to cybersecurity and threat detection. His interests lie at the intersection of threat intelligence, security operations, detection engineering, identity security, and emerging attacker tradecraft, with a particular focus on turning real-world attack patterns into practical detection and response strategies.", "public_name": "Sanjay Kumar", "guid": "7fb693ef-62ec-5db0-9e60-2b1b7b783da7", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/VPEGKG/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ALJJBE/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ALJJBE/", "attachments": []}, {"guid": "f69591b7-6e0a-5cd2-84c9-0072bf36a56e", "code": "GHQT3K", "id": 158, "logo": null, "date": "2026-10-03T17:00:00+02:00", "start": "17:00", "end": "2026-10-03T19:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-158-hands-on-forensic-imaging-and-data-extraction-from-windows-and-macos-using-free-and-open-source-tools", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHQT3K/", "title": "Hands-On Forensic Imaging and Data Extraction from Windows and macOS Using Free and Open Source Tools", "subtitle": "", "track": "Other", "type": "Workshop", "language": "en", "abstract": "The growing reliance on heterogeneous computing environments in both personal and enterprise contexts has made cross-platform forensic acquisition a critical competency for digital investigators. Yet the adoption of rigorous forensic workflows remains uneven, particularly in resource-constrained settings where commercial tools may be inaccessible. This workshop addresses that gap by offering a structured, hands-on introduction to forensic data extraction from Windows and macOS systems using exclusively free tools.\nThe session opens with a foundational module covering the core principles of digital forensics as they apply to forensic imaging: bit-by-bit acquisition, cryptographic hash verification (MD5, SHA-256), write-blocking procedures, chain of custody documentation, and legal admissibility requirements. \nThe practical component introduces a curated toolkit of free acquisition and analysis solutions. Guymager is presented as a reliable, GUI-based imaging platform offering multi-format output (DD, EWF/E01, AFF), real-time hash calculation, and parallel acquisition support. Fuji is introduced as a modern imager optimized for macOS environments, particularly suited for APFS volumes and Apple Silicon hardware, featuring automated image verification workflows. For analysis, FTK Imager is demonstrated for forensic extraction from Windows hosts, while Autopsy provides participants with an open-source platform for analysis, data recovery and case management.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "LLJTEP", "name": "Alessandro Farina", "avatar": "https://cfp.romhack.io/media/avatars/LLJTEP_TbyexJK.webp", "biography": "So, who actually is Alessandro? Catch him on a weekend and you'll probably find him knee-deep in malt and hops, brewing his own craft beer, or hunting for the perfect shot with his camera. But don't let the chill vibes fool you \u2014 in his spare time he moonlights as an information systems designer and developer, with a quiet but serious streak in cybersecurity and digital forensics.\n\nA true veteran of the digital world (let's just say he's been around the block), his experience is anything but textbook. He's spent years \"in the trenches,\" digitizing business processes and leading complex projects for both small and medium-sized companies and public sector organizations.\n\nHe's played around with pretty much everything \u2014 classic Client/Server architectures, cloud setups on Azure and AWS, all the way to high-availability (HA) configurations.\n\nHe's also been spotted hanging out with the LE on more than one occasion \u2014 but somehow always made it home perfectly fine. Rumor has it he's committed every cybercrime you can think of (and some you can't).\n\nOh, and fair warning \u2014 his passion for digital forensics is contagious. Once he starts \"playing,\" he has a way of dragging even complete strangers along into his world of bits and investigations.", "public_name": "Alessandro Farina", "guid": "20bf2d80-c43b-594a-9209-75eeb9553a9a", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/LLJTEP/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHQT3K/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/GHQT3K/", "attachments": []}, {"guid": "29c4da93-848b-503e-96da-49f3245c0c09", "code": "DZPHFB", "id": 238, "logo": null, "date": "2026-10-03T19:00:00+02:00", "start": "19:00", "end": "2026-10-03T20:00:00+02:00", "duration": "01:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-238-zerosoc-framework-working-session-building-the-open-standard-for-human-agentic-secops", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/DZPHFB/", "title": "ZeroSOC Framework Working Session: Building the Open Standard for Human & Agentic SecOps", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Light Workshop", "language": "en", "abstract": "Why is security operations know-how trapped inside proprietary vendor platforms and siloed team wikis? Traditional SOCs operate at human speed against machine-speed adversaries, while commercial \"AI SOC\" tools hide behind opaque black boxes and prohibitive costs. Meanwhile, attempting to automate without common operational grammar leads to alert chaos, hallucinations, and inconsistent response actions that either disrupt business operations or leave incidents partially unresolved.\nThe ZeroSOC initiative (zerosoc.org) is an early-stage open project (Apache-2.0, v0.1 working draft) democratizing autonomous cyberdefense. Centered on the ZeroSOC Framework, it explores Executor Neutrality \u2014 the principle that the same human-readable playbook can be executed interchangeably by a human analyst, deterministic automation, or an AI agent \u2014, OCSF-aligned taxonomy, and verifiable measurement gates.\nThis 1-hour interactive working session aims to bring together SOC analysts, detection engineers, incident responders, and researchers at RomHack Camp to co-design and shape this emerging standard. Following a 15-minute introduction to the architecture (no prerequisites required), we will open the floor for a working group focused on the framework's foundational building blocks: Definitions & Taxonomy, 4-Phase Processes, Operational Metrics, Agentic Guardrails, and Playbooks. Come ready to challenge assumptions, debate edge cases, and help architect the open foundation for modern SecOps!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "3UTX97", "name": "Berghem-in-the-Middle", "avatar": "https://cfp.romhack.io/media/avatars/DB7HRZ_op0oMIp.webp", "biography": "Berghem-in-the-Middle (BITM) is a non-profit founded by information security enthusiasts and professionals in northern Italy, in an open and friendly environment fostering technical development and knowledge sharing. Since 2019 it hosts No Hat, an international security conference gathering researchers and specialists in Bergamo.\n\nYou can find BITM in the Community Area.", "public_name": "Berghem-in-the-Middle", "guid": "1afe35cd-a010-5622-ae21-f7bd7013c337", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/3UTX97/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/DZPHFB/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/DZPHFB/", "attachments": []}], "WORKSHOP 2 (GetRoot no Jutsu)": [{"guid": "d8444c06-2fd1-52ca-afc0-9f60f8a5db52", "code": "S8XTE9", "id": 233, "logo": null, "date": "2026-10-03T10:00:00+02:00", "start": "10:00", "end": "2026-10-03T13:00:00+02:00", "duration": "03:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-233-ai4kids-laboratorio-di-introduzione-all-intelligenza-artificiale", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/S8XTE9/", "title": "AI4KIDS laboratorio di introduzione all'intelligenza artificiale", "subtitle": "", "track": "Kids", "type": "Workshop", "language": "it", "abstract": "Un laboratorio pratico dove i ragazzi useranno modelli di Machine Learning e la funzione di  riconoscimento dei gesti delle mani per decodificare la Lingua Italiana dei Segni (LIS). Tutte le fasi di raccolta dati, addestramento, validazione e test saranno gestite in ambiente Pictoblox. Un'esperienza interattiva per scoprire come l'intelligenza artificiale possa abbattere le barriere della comunicazione e favorire l'inclusione.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "CMGA9N", "name": "Agnese", "avatar": "https://cfp.romhack.io/media/avatars/77JC3V_VFKKNNW.webp", "biography": "Gen C64\nArmed with a Master\u2019s in Statistics and a background in Mathematics to uncover when things are not what they seem.\nProud mother of two, committed to a safer and fairer world, actively supporting environmental sustainability, digital rights, and advocacy against gender-based gap and violence", "public_name": "Agnese", "guid": "b4f2b79d-c851-5f55-96a5-49f7e3c0b39c", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/CMGA9N/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/S8XTE9/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/S8XTE9/", "attachments": []}, {"guid": "4fd2c2da-1fbc-5d72-8e3d-af3cc0e12d13", "code": "87DHLD", "id": 232, "logo": null, "date": "2026-10-03T14:00:00+02:00", "start": "14:00", "end": "2026-10-03T15:00:00+02:00", "duration": "01:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-232-0-zero-to-podcaster-start-today-your-show-with-ai", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/87DHLD/", "title": "Zero to podcaster, start today your show with AI!", "subtitle": "", "track": "Entertainment", "type": "Light Workshop", "language": "it", "abstract": "Ready to build?\nMove beyond theory and construct a full functional AI-powered podcast in this hands-on \"Build with AI\" workshop.\nWe'll guide you through an end-to-end workflow, leveraging specific Google AI and Cloud tools to transform an idea into publishable audio content.\n-Dive into practical prompt engineering with Google Gemini. You'll actively brainstorm niche topics, outline a compelling episode structure, and generate a working script for a short podcast segment.\n-Take your Gemini-generated script and bring it to life. We'll use the Google Cloud Text-to-Speech API to synthesize natural-sounding voice audio, experimenting with different voice profiles. You'll see how to generate audio files directly from text.\n-We'll then explore how Google Cloud Run can serve as the backbone for automating this workflow \u2013 designing a simple service architecture capable of potentially taking script inputs and orchestrating the TTS generation and audio file delivery. \nWho is this for? Developers, creators, and tech enthusiasts that want to apply latest Google's AI and Cloud tools to the content creation challenges.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "VADYDR", "name": "Nicola Guglielmi", "avatar": "https://cfp.romhack.io/media/avatars/R9MSLE_HucBEmN.webp", "biography": "I operate at the intersection of bold vision and brilliant teams. As a Principal Cloud & AI Strategist and Fractional CTO, I partner with companies to architect future-proof cloud solutions and build the high-performing engineering teams needed to execute them.\n\nWith over a decade of hands-on experience in Digital Transformation, I specialize in Google Cloud Platform, Generative AI (Vertex AI), and complex multi-cloud architectures. I don't just talk theory, I have built Cloud Business Units from scratch and led mission-critical migrations in fast-paced sectors like Oil & Gas.\nMy philosophy is simple: an elite strategy is useless without an elite team to execute it, so I build the team first, knowing that the results will follow.\nAs a passionate advocate for open knowledge, I am a Google Cloud Authorized Trainer, a Google Developer Expert (GDE) for Cloud, and the Community Lead for GDG Campobasso.\nWhether I am live-coding a Gen AI agent or sharing insights on the dynamics of engineering leadership, I bring energy, clarity, and deep real-world experience to the stage. I love connecting with people who are eager to challenge the status quo and push the boundaries of what technology can solve.", "public_name": "Nicola Guglielmi", "guid": "eb55b5ed-8f91-5d31-9a97-59e0e2c9658e", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/VADYDR/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/87DHLD/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/87DHLD/", "attachments": []}, {"guid": "1c25e50f-3718-595b-a8cc-21ebd784e7b2", "code": "TGTBKG", "id": 220, "logo": null, "date": "2026-10-03T15:00:00+02:00", "start": "15:00", "end": "2026-10-03T18:00:00+02:00", "duration": "03:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-220-1-il-bullismo-non-va-in-vacanza", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/TGTBKG/", "title": "Il bullismo non va in vacanza", "subtitle": "", "track": "Kids", "type": "Workshop", "language": "it", "abstract": "**Bullismo No Grazie** \u00e8 un'associazione no profit nata nel 2021 che ha incontrato oltre 200.000 ragazzi e 90.000 adulti in pi\u00f9 di 100 citt\u00e0 italiane, percorrendo oltre 150.000 km di scuole, palestre e villaggi turistici.\n\nIn questo workshop portiamo la realt\u00e0 che vediamo ogni giorno: le challenge pericolose che circolano tra bambini di IV e V elementare, i social network che i ragazzi usano e che i genitori non conoscono, le responsabilit\u00e0 civili e penali che ricadono sulle famiglie quando un minore commette atti di cyberbullismo.\n\nNiente teoria. Solo casi reali, domande vere, strumenti pratici per riconoscere i segnali e sapere cosa fare.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "9ESFYE", "name": "Bullismo No Grazie", "avatar": "https://cfp.romhack.io/media/avatars/ZBXF7K_GZMDVlz.webp", "biography": "**Bullismo No Grazie** \u00e8 un'associazione no profit fondata nel settembre 2021. Nata da un incontro e da una visione condivisa, l'associazione riunisce professionisti di diversi settori con l'obiettivo comune di contrastare il bullismo, il cyberbullismo e il revenge porn attraverso formazione, informazione e prevenzione rivolte a giovani, genitori e insegnanti.\n\nDal 2021 a oggi l'associazione ha incontrato oltre 18.000 docenti, 90.000 adulti e circa 200.000 ragazzi in pi\u00f9 di 100 localit\u00e0, percorrendo oltre 150.000 km in tutta Italia per portare la propria testimonianza nelle scuole di ogni ordine e grado.\n\nTra le attivit\u00e0 principali figura la campagna \"**Il Bullismo Non Va in Vacanza**\", realizzata nelle estati dal 2022 al 2026 in collaborazione con il tour operator Fruit Viaggi, prima e unica campagna contro il bullismo condotta in presenza nei villaggi turistici italiani. L'associazione ha inoltre prodotto il cortometraggio \"**Non Vi Lasceremo Soli**\" e diretto \"**Il Coraggio di Parlare**\", presentato nel maggio 2025 e interpretato da 27 studenti dell'Istituto Comprensivo di Borgaro Torinese.\n\nBullismo No Grazie \u00e8 stata presente alla Camera del Senato, ha partecipato a convegni organizzati dal CSI Piemonte con la Citt\u00e0 Metropolitana di Torino e dalla Regione Veneto, ha curato la mostra fotografica \"Combattere il Bullismo\" nel 2024 e ha preso parte a pi\u00f9 edizioni di Fiera Didacta Italia. Ha collaborato con il Parlamento Europeo in Italia e con numerose istituzioni locali e aziende su tutto il territorio nazionale.\n[https://www.bullismonograzie.it/](https://www.bullismonograzie.it/)", "public_name": "Bullismo No Grazie", "guid": "e489a432-446d-54d0-bce5-02c851682929", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/9ESFYE/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/TGTBKG/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/TGTBKG/", "attachments": []}, {"guid": "f9c4763f-8f27-5942-a0aa-527e3765c89e", "code": "ZHYFFX", "id": 167, "logo": null, "date": "2026-10-03T18:00:00+02:00", "start": "18:00", "end": "2026-10-03T20:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-167-physec-lab-part-2-hacking-physical-access-control-systems", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/ZHYFFX/", "title": "PhySec Lab Part 2: Hacking Physical Access Control Systems", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Workshop", "language": "en", "abstract": "This 2 hours workshop (max 20 people) is designed to provide the attendees a good grasp on how Physical Access Control Systems work and how they can be defeated. During the course there will be multiple real examples and different offensive techniques will be explained. In the second part, it will be also possible to try exploiting them in live against real targets setup for the occasion.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "D8LAUA", "name": "CYBERANTANI", "avatar": "https://cfp.romhack.io/media/avatars/DYJAQD_BQUXndf.webp", "biography": "Luca Bongiorni (@CyberAntani) is working as Director of a CyberSecurity Lab and is Founder of WHID - We Hack In Disguise ( www.whid.ninja ): a cybersecurity boutique focused on R&D offensive hardware implants and IIoT Security. Luca is also actively involved in InfoSec where his main fields of research are: Radio Networks, Hardware Hacking, Internet of Things, and Physical Security. He also loves to share his knowledge and present some cool projects at security conferences around the globe: BlackHat Europe & USA, TROOPERS, HackInParis, DEFCON, HackInBo, Defcon Moscow, OWASP Chapters, Security Analyst Summit, etc. At the moment, he is focusing his researches on bypassing biometric access control systems, IIoT Security & Forensics, Air-Gapped Environments and IoOT (Internet of Offensive Things).", "public_name": "CYBERANTANI", "guid": "9fa2e44e-9784-5fff-87b9-ca5d75bd7743", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/D8LAUA/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ZHYFFX/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ZHYFFX/", "attachments": []}, {"guid": "20404477-7eaa-5d68-9c10-eea9c7b4ac2a", "code": "CUHGR3", "id": 201, "logo": null, "date": "2026-10-03T21:30:00+02:00", "start": "21:30", "end": "2026-10-03T22:30:00+02:00", "duration": "01:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-201-trusting-trust-hands-on-building-a-self-reproducing-compiler-backdoor", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/CUHGR3/", "title": "Trusting Trust, Hands On: Building a Self-Reproducing Compiler Backdoor", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Light Workshop", "language": "en", "abstract": "In 1984 Ken Thompson, during his Turing Award acceptance speech, introduced to the world a very interesting kind of backdoor, described by himself as \"the cutest program I have ever wrote\". The speech has later been written in an article called \"Reflections on Trusting Trust\".\n\nThe idea is simple: modify a C compiler in order to insert a backdoor into the login binary whenever the login.c program is compiled. The backdoor allows a specific username to bypass authentication and obtain root privileges. This is the simple step. Then comes the hack: the logic to introduce the backdoor will replicate itself whenever the compromised compiler is used to compile a new compiler. This means that once your compiler has been compromised, it becomes very hard to get rid of it. Because how do you compile a compiler? With the compiler you already have!\n\nThis workshop is all about compilers and backdoors. To make it practical we will apply it against a small but functional C compiler (TinyCC). We will show how to build a working Thompson backdoor step by step in a fun and reproducible way. We will talk about quines, about self-replication, and ultimately about why trust in software cannot be established by just reading the source code. The Thompson backdoor is now 40 years old, yet it is more relevant than ever, as modern supply-chain compromises e.g. SolarWinds can be reduced to similar trust-delegation problems in the supply chain of software as Thompson described.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "NEMVME", "name": "Leonardo Tamiano", "avatar": "https://cfp.romhack.io/media/avatars/KAYKHX_h6US9AW.webp", "biography": "I've discovered the beauty of Computer Science by reading \"The Universal Computer - The Road from Leibniz to Turing\" By Martin H. Davis and \"G\u00f6del, Escher, Bach: an Eternal Golden Braid\n\" by Douglas Hofstadter. Since then, I've been deeply fascinated by the subject. I went to university to study the theory behind computation, algorithms and programming languages, and it is during university that I also met the technicalities behind the beautiful world of computer hacking. \n\nAfter university I worked as a penetration tester and cybersecurity trainer where I was able to learn the practical challenges that many business have to face when dealing with security from a management point of view as well as from a technical point of view.\n\nRecently I've become a freelance trainer in Italy, helping companies on cybersecurity related topics such as secure coding and threat modeling, and I've started an independent educational project called Esadecimale, which aims to become one of the best places in Italy to learn about Computer Science, programming and Hacking.", "public_name": "Leonardo Tamiano", "guid": "3fd81d30-b332-510e-9559-ca12b250a2a2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/NEMVME/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/CUHGR3/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/CUHGR3/", "attachments": []}], "COMMUNITY AREA": [{"guid": "623eb4cd-667b-51a6-9e3e-b114dc9b0283", "code": "WCZZS9", "id": 244, "logo": null, "date": "2026-10-03T20:00:00+02:00", "start": "20:00", "end": "2026-10-03T23:00:00+02:00", "duration": "03:00", "room": "COMMUNITY AREA", "slug": "romhack-camp-2026-244-bada-home-la-fuma-gnocco-fritto-by-fibonhack", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/WCZZS9/", "title": "Bada home la fuma - gnocco fritto by fibonhack", "subtitle": "", "track": "Food", "type": "Workshop", "language": "en", "abstract": "You've definitely seen that guy shouting about some focaccia saying \"bada 'ome la fuma\"\nThat catchphrase somehow became part of Tuscany's identity, so why not embracing that? We'll serve you the classic fried snack from pisa, the _Sgabeo_, prepared by fibonhack with love", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "TKHHMQ", "name": "fibonhack", "avatar": "https://cfp.romhack.io/media/avatars/QUCM7T_tJROfXa.webp", "biography": "Fibonhack is a CTF team founded in Pisa in 2019 by a group of students from the University of Pisa, following the CyberChallenge.it program. Over the years, they have competed in numerous competitions and assisted the University and local schools with cybersecurity training. The group has also organized several CTFs, such as the Internet Festival CTF 2023 and MOCA CTF 2024.\n\nBeyond competitions, the team is actively involved in organizing and participating in events to raise cybersecurity awareness.", "public_name": "fibonhack", "guid": "e008c5c0-40d5-5e21-a014-0f3fa8de6719", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/TKHHMQ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/WCZZS9/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/WCZZS9/", "attachments": []}], "FOOD AREA": [{"guid": "f08bd0df-1857-598c-98b2-5e7359c0cd9a", "code": "3FTTEN", "id": 246, "logo": null, "date": "2026-10-03T19:00:00+02:00", "start": "19:00", "end": "2026-10-03T23:00:00+02:00", "duration": "04:00", "room": "FOOD AREA", "slug": "romhack-camp-2026-246-1-pizza-truck-wood-fired-dinner", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/3FTTEN/", "title": "\ud83c\udf55 Pizza Truck \u2014 Wood-Fired Dinner", "subtitle": "", "track": "Food", "type": "Workshop", "language": "en", "abstract": "Hungry after a day of hacking? A wood-fired Pizza Truck parks on site both evenings, serving fresh pizza straight from a real wood oven.\n\nNo need to leave the woods for dinner \u2014 grab a slice, grab a seat, and refuel before or after the Hacker Cinema Night and the After Dark music session.\n\nAvailable Friday and Saturday evening.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "PECMDS", "name": "Pizza Truck", "avatar": "https://cfp.romhack.io/media/avatars/JBNTTT_LLfoMCV.webp", "biography": "Straight from Rieti, in the green heart of northern Lazio, our Pizza Truck crew are professional pizza makers who have spent years perfecting one craft: turning flour, water, and fire into something worth queuing for.\n\nLong before they rolled onto the RomHack Camp grounds, they were feeding hungry crowds at festivals, markets, and events across the region \u2014 always with the same wood-fired oven riding along with them. Their approach is refreshingly low-tech in a field full of gadgets: a real wood fire, dough left to rise the slow way, quality local ingredients, and the kind of instinct that only comes from making thousands of pizzas by hand.\n\nFor them, a good pizza is not just food \u2014 it is a moment where people stop, sit down together, and take a break from whatever they were focused on. That makes them a perfect fit for a hacker camp, where the best conversations often happen around a shared meal after a long day of tinkering.\n\nThis weekend they bring their oven, their skills, and their Rieti pride to the woods of Flaminio Village. Come say hello, watch the flames, and grab a slice hot off the peel. \ud83c\udf55\ud83d\udd25", "public_name": "Pizza Truck", "guid": "2c7f39f3-730c-5699-bbc8-7f17639a1e7d", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/PECMDS/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3FTTEN/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3FTTEN/", "attachments": []}], "SHOW AREA": [{"guid": "58a18858-ec46-5775-85c1-3174622d6128", "code": "3T7KHN", "id": 245, "logo": null, "date": "2026-10-03T21:00:00+02:00", "start": "21:00", "end": "2026-10-03T23:00:00+02:00", "duration": "02:00", "room": "SHOW AREA", "slug": "romhack-camp-2026-245-tesla-coil-live-show", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/3T7KHN/", "title": "Tesla Coil Live Show", "subtitle": "", "track": "Entertainment", "type": "Workshop", "language": "en", "abstract": "When night falls, the musical Tesla coils take the stage.\n\nFollowing the afternoon talk, VoltagePyromania turns high voltage into a show: metre-long electric arcs, synced to the music, drawing lightning in the dark of the Camp. A concert played by electricity itself, where resonance, high voltage and ionised air become light, sound, and emotion.\n\nAn immersive experience that blends science and entertainment. Come closer (safely), look up, and let it sweep you away.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "Z7V8NF", "name": "michele pietravalle aka PHCV", "avatar": "https://cfp.romhack.io/media/avatars/Z7V8NF_OLnQftv.png", "biography": "Michele Pietravalle costruisce Tesla Coil dall\u2019et\u00e0 di 15 anni e, dopo oltre 25 anni di passione e sperimentazione, ha portato le sue bobine a livelli sempre pi\u00f9 evoluti in termini di tipologia e potenza. La sua ricerca lo ha condotto a dar vita a VoltagePyromania, un progetto musicale e scenico che unisce fulmini ed elementi di fuoco in un\u2019esperienza artistica unica e immersiva.", "public_name": "michele pietravalle aka PHCV", "guid": "cf36d494-41d4-5606-90fa-5ff29a4c42be", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/Z7V8NF/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3T7KHN/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/3T7KHN/", "attachments": []}]}}, {"index": 3, "date": "2026-10-04", "day_start": "2026-10-04T04:00:00+02:00", "day_end": "2026-10-05T03:59:00+02:00", "rooms": {"STAGE 1 (Section 9)": [{"guid": "00810f25-376b-5144-b3d4-4cc4e89b04fe", "code": "BLFNET", "id": 180, "logo": null, "date": "2026-10-04T10:00:00+02:00", "start": "10:00", "end": "2026-10-04T10:40:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-180-imagine-pwning-your-favourite-nintendo-ds-game", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/BLFNET/", "title": "Imagine: pwning your favourite Nintendo DS game!", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "Imagine pwning a game from your childhood! \nWhat could possibly go wrong with a cute Nintendo DS game?\n\nThis talk will include a brief overview of the game, some useful details about Nintendo DS internals, the exploitation process, and a few other interesting observations I made while reversing it.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "YVGPWG", "name": "daisy", "avatar": "https://cfp.romhack.io/media/avatars/VTCDWS_hpaoMxT.webp", "biography": "Hi!\nI am a vulnerability researcher and a Computer Engineering student.\nIn my free time I like playing CTF competitions with the fibonhack team :)\nMy main interests are software exploitation and console hacking.", "public_name": "daisy", "guid": "c60f767d-827a-5f81-88b5-535e5bb701c2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/YVGPWG/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/BLFNET/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/BLFNET/", "attachments": []}, {"guid": "d0aa27d8-efde-53a4-a474-f839e27dcfd4", "code": "N93XCA", "id": 176, "logo": null, "date": "2026-10-04T11:00:00+02:00", "start": "11:00", "end": "2026-10-04T11:40:00+02:00", "duration": "00:40", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-176-chain-reaction-from-isolated-vulnerabilities-to-full-system-compromise", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/N93XCA/", "title": "Chain Reaction - From Isolated Vulnerabilities to Full System Compromise", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "This talk presents a real-world penetration test of a global platform with over 30 million users, where a series of seemingly isolated vulnerabilities were transformed into a complete attack chain that resulted in full system compromise.\n\nAttendees will follow the attacker's path as trust boundaries are systematically dismantled through exposed secrets in public JavaScript, session abuse, cross-application trust violations, and critical CORS and WAF misconfigurations. What begins as a handful of low-risk findings rapidly escalates into the exposure of production credentials, cryptographic keys, and complete control over the platform.\n\nThis is a technical autopsy of how small cracks can align to create a catastrophic failure and a front-row seat to how attackers turn scattered weaknesses into total compromise!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "FSP8KS", "name": "Rana", "avatar": "https://cfp.romhack.io/media/avatars/EZXYCS_n9PaHzi.webp", "biography": "Rana Khalil is a distinguished red team consultant, with a decade of experience in penetration testing, securing development pipelines, and building comprehensive application security programs. Beyond her technical expertise, Rana is a recognized international speaker, having presented at leading conferences including BlackHat. She is also the founder of an online academy with over 25,000 students, where she shares her extensive knowledge by teaching students how to hack and secure web applications.", "public_name": "Rana", "guid": "9537ecc7-368e-5883-ae28-36cc551dd86c", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/FSP8KS/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/N93XCA/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/N93XCA/", "attachments": []}, {"guid": "fb41af49-1448-5da8-9aac-312aaae73711", "code": "UW8HAH", "id": 178, "logo": null, "date": "2026-10-04T12:00:00+02:00", "start": "12:00", "end": "2026-10-04T12:30:00+02:00", "duration": "00:30", "room": "STAGE 1 (Section 9)", "slug": "romhack-camp-2026-178-romhack-camp-closing", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/UW8HAH/", "title": "RomHack Camp Closing", "subtitle": "", "track": "Orga", "type": "Talk", "language": "en", "abstract": "As three incredible days of hacking, learning, and community life come to an end, it\u2019s time to gather for the RomHack Camp 2026 closing remarks.  \n\nIn this final session, the Cyber Saiyan team will look back at the best highlights of this second edition, sharing key event insights, memorable milestones, and our collective achievements. \nMost importantly, we want to express our deepest gratitude to our brilliant speakers, the independent community groups who brought the villages to life, our supportive sponsors, and our tireless team of volunteers who made this event possible. \n\nJoin us to wrap up the camp, celebrate the community, and get a quick sneak peek at what\u2019s next on the roadmap for Cyber Saiyan.  Safe travels home!", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "G8CNEJ", "name": "Cyber Saiyan", "avatar": "https://cfp.romhack.io/media/avatars/G8CNEJ_pShIzxp.png", "biography": "Cyber Saiyan is a non-profit cultural association founded in 2017. Our goal is simple: raising awareness and providing education in the field of cyber security.\n\nWe are the proud organizers of RomHack, an initiative built by the community, for the community. What started as a yearly technical conference has evolved to include intensive, hands-on Training sessions and an immersive three-day Hacker Camp in Rome.\n\nBeyond our core events, we actively promote independent projects and collaborations, such as the editorial initiative \"Guerre di Rete\".\n\nInvolving the community is very important to us. We strive to foster curiosity, sharpen skills, and create welcoming spaces where enthusiasts, researchers, and professionals can connect and share their knowledge.\n\nMore info: https://cybersaiyan.it/", "public_name": "Cyber Saiyan", "guid": "7ea9bfd7-a45d-51b7-a3cc-53c4da30d2a2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/G8CNEJ/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/UW8HAH/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/UW8HAH/", "attachments": []}], "STAGE 2 (Ghost in the Shellcode)": [{"guid": "914d454c-183e-54e9-8757-ab06750f7807", "code": "QBPJBB", "id": 197, "logo": null, "date": "2026-10-04T10:00:00+02:00", "start": "10:00", "end": "2026-10-04T10:40:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-197-when-even-ai-writes-the-cve", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/QBPJBB/", "title": "When Even AI Writes the CVE", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "We used to treat every CVE as an alert. Each one meant dropping what we were building, classifying severity, chasing versions, lighting up the dashboard in red. Endless noise. That works when a serious vulnerability is a monthly event. It doesn't anymore. In 2025 the Linux kernel was the single most reported product on the planet, with thousands of CVEs, **roughly ten every day, from one project**. And its maintainers don't even rank them by severity, so you can't sit back and wait for the \"important\" ones. Then the AI era poured fuel on the fire: 2026 is on track for **66,000 CVEs**, and a single AI model (Claude Mythos) recently surfaced thousands of high severity flaws that remain **99% unpatched**. The flood is now machine speed.\n\nWhen a CVE lands every few minutes, you can't sound the alarm every time. So we stopped. Today patching is just part of the workflow, and we fight AI with AI: automation ingests and rolls out the patches, while AI triages the flood down to what is actually exploitable for each deployment. This talk shows how a small team keeps **hundreds of Keycloak clusters and thousands of vulnerabilities** under control, everywhere and anytime, without adding a single delay to the product roadmap.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "RETUSB", "name": "Luis Rubiera", "avatar": "https://cfp.romhack.io/media/avatars/WWYZSE_KuBrvTt.webp", "biography": "CTO, open source believer, and full time challenger of \"that's how it's always been done.\" I'm fascinated by how the past explains the present, and how technology quietly rewrites both. For years I've been trading ideas about SaaS, security, and open source from stages and classrooms, nudging people to rethink how we build and who we build with. I run a cybersecurity company with one foot planted firmly in the future, still convinced AI can be a force for good.", "public_name": "Luis Rubiera", "guid": "fc940902-e5eb-5eae-b286-b653032a35de", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/RETUSB/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/QBPJBB/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/QBPJBB/", "attachments": []}, {"guid": "60d5210e-82dc-5de3-a329-9cdbb8bc964b", "code": "PRSQPQ", "id": 159, "logo": null, "date": "2026-10-04T10:40:00+02:00", "start": "10:40", "end": "2026-10-04T11:20:00+02:00", "duration": "00:40", "room": "STAGE 2 (Ghost in the Shellcode)", "slug": "romhack-camp-2026-159-when-iac-goes-wrong", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/PRSQPQ/", "title": "When IaC goes wrong", "subtitle": "", "track": "Cybersecurity and Hacking", "type": "Talk", "language": "en", "abstract": "The infrastructure team built out an automated and orchestrated solution to simplify it all, access, scaling ect. Alas the team who built it has left or is allocated to another project; services and infrastructure are breaking. This session will examine the challenges of lifecycle management that IaC can create, and uncover a few strategies you can use to prevent it.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "7T3EAY", "name": "Sean Juroviesky", "avatar": "https://cfp.romhack.io/media/avatars/7T3EAY_TWxGnVS.png", "biography": "Sean Juroviesky is a dedicated cybersecurity, risk management, and privacy advocate; speaking on those topics at conferences across the world including DEF CON, CypherCon, CornCon, BSides Rochester, SecretCon, Sec-T, and more. Sean also acts as a cybersecurity architect for a large music streaming provider.  Beyond their professional pursuits, Sean finds joy in backpacking through the mountains with their adventurous Australian Shepherd, partner, and twins, embracing the serenity of nature and the thrill of exploration.", "public_name": "Sean Juroviesky", "guid": "13406ce3-4836-5111-84b8-0b4082d79c84", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/7T3EAY/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/PRSQPQ/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/PRSQPQ/", "attachments": []}], "WORKSHOP 1 (Neon Genesis Exploitation)": [{"guid": "5495aacd-8f68-5275-8729-e382dee4f7da", "code": "87DHLD", "id": 232, "logo": null, "date": "2026-10-04T10:00:00+02:00", "start": "10:00", "end": "2026-10-04T11:00:00+02:00", "duration": "01:00", "room": "WORKSHOP 1 (Neon Genesis Exploitation)", "slug": "romhack-camp-2026-232-1-zero-to-podcaster-start-today-your-show-with-ai", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/87DHLD/", "title": "Zero to podcaster, start today your show with AI!", "subtitle": "", "track": "Entertainment", "type": "Light Workshop", "language": "it", "abstract": "Ready to build?\nMove beyond theory and construct a full functional AI-powered podcast in this hands-on \"Build with AI\" workshop.\nWe'll guide you through an end-to-end workflow, leveraging specific Google AI and Cloud tools to transform an idea into publishable audio content.\n-Dive into practical prompt engineering with Google Gemini. You'll actively brainstorm niche topics, outline a compelling episode structure, and generate a working script for a short podcast segment.\n-Take your Gemini-generated script and bring it to life. We'll use the Google Cloud Text-to-Speech API to synthesize natural-sounding voice audio, experimenting with different voice profiles. You'll see how to generate audio files directly from text.\n-We'll then explore how Google Cloud Run can serve as the backbone for automating this workflow \u2013 designing a simple service architecture capable of potentially taking script inputs and orchestrating the TTS generation and audio file delivery. \nWho is this for? Developers, creators, and tech enthusiasts that want to apply latest Google's AI and Cloud tools to the content creation challenges.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "VADYDR", "name": "Nicola Guglielmi", "avatar": "https://cfp.romhack.io/media/avatars/R9MSLE_HucBEmN.webp", "biography": "I operate at the intersection of bold vision and brilliant teams. As a Principal Cloud & AI Strategist and Fractional CTO, I partner with companies to architect future-proof cloud solutions and build the high-performing engineering teams needed to execute them.\n\nWith over a decade of hands-on experience in Digital Transformation, I specialize in Google Cloud Platform, Generative AI (Vertex AI), and complex multi-cloud architectures. I don't just talk theory, I have built Cloud Business Units from scratch and led mission-critical migrations in fast-paced sectors like Oil & Gas.\nMy philosophy is simple: an elite strategy is useless without an elite team to execute it, so I build the team first, knowing that the results will follow.\nAs a passionate advocate for open knowledge, I am a Google Cloud Authorized Trainer, a Google Developer Expert (GDE) for Cloud, and the Community Lead for GDG Campobasso.\nWhether I am live-coding a Gen AI agent or sharing insights on the dynamics of engineering leadership, I bring energy, clarity, and deep real-world experience to the stage. I love connecting with people who are eager to challenge the status quo and push the boundaries of what technology can solve.", "public_name": "Nicola Guglielmi", "guid": "eb55b5ed-8f91-5d31-9a97-59e0e2c9658e", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/VADYDR/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/87DHLD/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/87DHLD/", "attachments": []}], "WORKSHOP 2 (GetRoot no Jutsu)": [{"guid": "54c68aa2-8553-5235-bdc5-4163e287bfb0", "code": "ELJLML", "id": 169, "logo": null, "date": "2026-10-04T10:00:00+02:00", "start": "10:00", "end": "2026-10-04T12:00:00+02:00", "duration": "02:00", "room": "WORKSHOP 2 (GetRoot no Jutsu)", "slug": "romhack-camp-2026-169-so-you-re-interested-in-social-engineering-the-very-first-steps", "url": "https://cfp.romhack.io/romhack-camp-2026/talk/ELJLML/", "title": "So you're interested in social engineering? The very first steps", "subtitle": "", "track": "Other", "type": "Workshop", "language": "en", "abstract": "It is well known that humans are the weakest link in information security.\nSocial engineering has emerged as a means to influence and manipulate individuals to achieve desired outcomes. In this presentation, we delve into the realm of social engineering, exploring the art of behavior alteration, manipulation and persuasive communication.", "description": null, "recording_license": "", "do_not_record": false, "persons": [{"code": "AYN9P8", "name": "Kirils Solovjovs", "avatar": "https://cfp.romhack.io/media/avatars/QMKE3A_Mm73D0m.jpg", "biography": "Kirils Solovjovs is Latvia's leading white-hat hacker and IT policy activist. He began programming at age 7, and by grade 9 was already writing machine code directly in a hex editor during lunch breaks. Renowned for uncovering and responsibly disclosing critical vulnerabilities in national and international systems, he is an expert in network flow a\nKirils Solovjovs is Latvia's leading white-hat hacker and IT policy activist. He began programming at age 7, and by grade 9 was already writing machine code directly in a hex editor during lunch breaks. Renowned for uncovering and responsibly disclosing critical vulnerabilities in national and international systems, he is an expert in network flow analysis, reverse engineering, and social engineering. A lifelong command-line enthusiast, he uses bash daily for hacking, automation, and large-scale data processing.\nHe is the author of the jailbreak tool for MikroTik RouterOS and played a pivotal role in developing e-Saeima, the world's first fully remote legislative system used by the Latvian Parliament. Today, Kirils serves as lead researcher at Possible Securitynalysis, reverse engineering, and social engineering. A lifelong command-line enthusiast, he uses bash daily for hacking, automation, and large-scale data processing.\nHe is the author of the jailbreak tool for MikroTik RouterOS and played a pivotal role in developing e-Saeima, the world's first fully remote legislative system used by the Latvian Parliament. Today, Kirils serves as lead researcher at Possible Security", "public_name": "Kirils Solovjovs", "guid": "d871964f-f8d7-5e98-b718-d18129acc8b2", "url": "https://cfp.romhack.io/romhack-camp-2026/speaker/AYN9P8/"}], "links": [], "feedback_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ELJLML/feedback/", "origin_url": "https://cfp.romhack.io/romhack-camp-2026/talk/ELJLML/", "attachments": []}]}}]}}}