Mohamed Elsayed
Mohamed is a senior Red team consultant at Google Cloud Security - Mandiant team with more than 15 years of expertise in offensive security. He has led and executed dozens of high-impact offensive security services for Fortune 500 companies, financial institutions, government entities, and critical national infrastructure. With a proven track record of identifying and exploiting challenging vulnerabilities in complex environments, Mohamed focuses on diverse initial access vectors and post-exploitation strategies in red team operations. He has also contributed to the security community by publishing tools and researches in various offensive security topics.
Session
Initial access isn’t just about phishing anymore. Modern breaches are increasingly rooted in the application layer, where logic flaws, design weaknesses, and overlooked attack surfaces can open paths to compromise.
In this talk, we’ll dissect how AppSec-driven tactics can redefine red team operations. We’ll share our methodology for embedding vulnerability research into live engagements, blending code-level analysis, target hunting, and exploit chaining with traditional adversary tradecraft. This isn’t about dropping a pre-packaged exploit - it’s about building one mid-operation.
Through case studies against high-profile global targets, we’ll show how this approach surfaced and chained zero-day vulnerabilities to breach external perimeters and operate effectively in mature environments. Whether you’re looking to sharpen your offensive capabilities or expand your initial access playbook, this session delivers hard-earned insights straight from the field