Call For Paper - Presentations

The speaker's profile picture
Aaron Jewitt

Aaron Jewitt is a Principal Detection Engineer on the Elastic Infosec team. A 20-year security veteran with 10 years of offensive experience at the NSA and 10 years of experience defending networks, he specializes in detection engineering and high-velocity automation. Aaron is currently leading internal efforts to integrate AI agents into daily SecOps. Aaron lives in Germany and is a two-time speaker at BSides Frankfurt, dedicated to sharing practical, real-world lessons from the front lines of defense.

  • Lessons learned while building an Agentic SOC: The good, the bad, and the scary.
The speaker's profile picture
Christian Biehler

With over a decade of experience in the field, Christian Biehler is a seasoned IT security expert who combines the perspectives of a hacker, penetration tester, consultant, and trainer. His technical focus lies in securing Windows infrastructures and the Microsoft Cloud stack, including Entra ID, Azure, and M365.

Christian holds a Master’s degree in IT Security and the CISSP certification. He has successfully delivered over 300 projects across diverse sectors, establishing deep expertise in security architecture, risk management, and penetration testing for web, mobile, and operating systems.

Since 2019, Christian has been the Managing Director of bi-sec GmbH, leading a firm dedicated to expert consulting, rigorous penetration testing, and specialized security training.

  • Pentesting in the age of AI - where are we?
The speaker's profile picture
georg

Georg Heise is a Senior Offensive Security Consultant and security researcher at Lufthansa Industry Solutions, specialising in enterprise offensive security, identity security and AI-driven security research. His work focuses on helping large organisations understand and assess complex enterprise environments, ranging from Active Directory and Microsoft Entra ID to modern AI systems and autonomous security agents.

Alongside his role at Lufthansa Industry Solutions, Georg serves as a strategic advisor to the shareholders of an international logistics and holding group, advising on information security, digitalisation and technology strategy across a diverse portfolio of companies. This combination of hands-on offensive security and strategic advisory work provides a unique perspective on the challenges faced by large enterprise environments.

Over the past decade, Georg has led and contributed to hundreds of security assessments, including Active Directory, cloud, web application and Red Team engagements for Fortune 500 companies, government organisations and operators of critical infrastructure. His current research focuses on enterprise identity architecture, AI-assisted offensive security and autonomous security agents. He regularly shares his research through conference talks, technical publications and open-source projects.

Born in Germany with Australian roots, Georg studied, worked and completed two university degrees in Australia before returning to Europe. His goal is to bridge the gap between enterprise offensive security and the next generation of AI-powered security tooling, helping organisations prepare for an attacker that is becoming increasingly autonomous.

  • Welcome to Hybrid Hell - Breaking Entrpise Identity beyond Active Directory
The speaker's profile picture
Joernchen
  • Keynote (Jörn Schneeweisz)
The speaker's profile picture
Kolja Grassmann

Kolja is a Security Researcher and Trainer at Neodyme. He specializes in Windows and Active Directory security. He has found vulnerabilities in widely used security products and has extensive exploit development, pentesting, and red teaming experience.

  • Keyless Entry: Hacking SwitchBot Smartlocks
The speaker's profile picture
Maurice Fielenbach

With over 10 years of experience in cybersecurity, Maurice Fielenbach started on the offensive side before moving into defensive security. He has worked hundreds of cyber investigations, including major ransomware and APT cases across industries affecting millions of people. Among them was one of the largest ransomware incidents in German history, targeting a communal IT service provider and disrupting public infrastructure at scale.

Today he focuses primarily on threat intelligence and malware analysis. He is the founder of Hexastrike Cybersecurity, where he trains blue teams in digital forensics, malware analysis, and threat hunting through hands-on, scenario-driven sessions built from real incidents.

His research is regularly featured in leading cybersecurity publications and cited by industry peers. He speaks at security conferences and contributes open-source tooling and detection content used by security teams worldwide.

  • What Windows 11 Remembers (And Most Investigators Miss)
The speaker's profile picture
Stephan Berger

Stephan Berger is the Head of Investigations for an Incident Response team at InfoGuard, a Swiss-based cybersecurity firm. With over a decade of experience investigating complex network compromises, he specializes in the technical intersection of offensive tradecraft and defensive forensics. Stephan is the author of the DFIR.ch technical blog and is a regular speaker at international security conferences, including FIRST, Troopers, and hack.lu. He holds a Bachelor’s degree in Computer Science and a Master’s degree in Engineering and is the founder of Malmium, a specialized technical training provider.

  • Deconstructing Modern macOS Initial Access Vectors
The speaker's profile picture
Tim Schmidt

Tim Schmidt is an IT security researcher and penetration tester at Neodyme AG with over a decade of experience in competitive Capture The Flag (CTF) environments. While his core expertise lies in web and application penetration testing, his technical background also spans IoT and embedded reverse engineering and smart contract audits. An avid builder, Tim frequently develops software projects and custom IoT appliances from scratch in his free time.

As an educator, he has delivered specialized trainings on modern authentication technologies and cryptographic attacks for corporate clients in Germany and at international security conferences, such as HITB Amsterdam.

  • Hacking Consumer Drones: From Flash Dumping to Root Exploits