Skip to main content
Vincent Swolfs

Vincent Swolfs

Director of Hacking

Injexion

About

Sessions

How AI is Changing Offensive Security and Continuous Attack Simulation

What you will learn:

-How AI is lowering the barrier to advanced offensive capabilities -Why continuous attack simulation is replacing traditional pentesting models -How modern attackers operate in an AI-augmented landscape -How platforms like Aikido Security enable developers and security teams to continuously identify and fix vulnerabilities before attackers exploit them This is not theory. This is how offensive security is evolving in practice, and what you must do to stay ahead.

N.E.M.E.S.I.S.: Turning the Hunter Into the Hunted

What you will learn:

Every talk in this space is about getting faster at spotting the attacker after they're already inside. I want to talk about what happens when you stop waiting for that and build the door they walk through instead. At Injexion we've spent the last few years baking a deception-driven intelligence platform straight into our architecture. We call it N.E.M.E.S.I.S. (Neural Engine, Multi-Vector Exploitation, Surveillance, Intrusion, System). The idea is simple: detection tells you something happened, deception tells you who, how, and what they wanted. A honeypot that gets touched is unambiguous. There's no legitimate reason for anyone to be there, so the noise problem that kills most SOC tooling basically disappears. In this talk I'll walk through how that actually works. How we build decoys (fake servers, seeded credentials, planted files) that survive basic reconnaissance and look worth stealing. What we capture the moment an attacker interacts with one: source IP, tooling fingerprints, timing, lateral movement pattern. How that raw session data gets turned into attribution, correlated against known actor TTPs, confidence-weighted rather than treated as gospel, and rolled into blocklists and threat reporting that actually gets used. The part I care most about showing is the decision loop. N.E.M.E.S.I.S. surfaces a recommended response (isolate a host, block an indicator, pull forensics) but a human always approves before anything happens. Automation buys us triage time. It doesn't get to make the call. I'll bring the live dashboard on stage and walk through a real incident end to end, from the first touch on a decoy through to the report that goes out the other side. If you're building or running threat intel, this talk is for you.