About
Kartik Ganesh is a Senior Technical Account Manager at AWS and a security researcher specializing in AI security, vulnerability research, and cloud security. He works with financial-services organizations to assess emerging risks and translate complex technical findings into practical defenses for regulated environments. His independent research has uncovered vulnerabilities recognized through CVEs and security advisories. Kartik brings both the researcher’s perspective of discovering vulnerabilities and the practitioner’s understanding of their real-world impact. He has presented at BSides San Diego and speaks on emerging threats across AI, cloud, and enterprise systems.
Sessions
32 Submitted, 2 Accepted: The Six Gates That Kill a Vulnerability Report
What you will learn:
1. A taxonomy of the most common reasons vulnerability reports get closed, with real examples rather than hypotheticals. 2. Six gate-questions that disqualify a non-finding in under a minute. 3. The single property shared by findings that actually get accepted: a control that is supposed to block the attack, shown to be bypassable. 4. A defender-side application: triaging inbound reports faster by pattern-matching the same noise. 5. The case for publishing your failure rate: honest post-mortems make you a sharper researcher than a highlight reel does.
