Bugs, Bounties, & Breaches - Insider Tales from the Trenches
Recon Village @ DEF CON 31 • 11th, 12th and 13th August 2023
Abstract
The most fun of any con is swapping war stories. With this in mind, we're excited to bring you "Bugs, Bounties, & Breaches," a unique panel discussion (with visuals) where seasoned red teamers and prolific bug bounty hunters share their stories from the front lines of offensive security.
Our panelists will dive deep into their first-hand experiences, revealing the thrill of the chase, the ingenuity of their exploits, and some inevitable close calls. From discovering logic-defying bugs and claiming high-profile bounties, to behind-the-scenes accounts of breaching some insane clients, these insider tales will give you a taste of the adrenaline, cunning, and perseverance that define these fields.
Whether you're a seasoned veteran, a budding professional, or just curious about the field, this panel promises a unique and exciting exploration into the minds of those who've been on the front lines of offensive security. So, come join us for and unforgettable swap of war stories, and gain insights from the thrilling tales of those who've lived to tell them.
Speaker
CEO
Jason Haddix AKA jhaddix is the CEO and “Hacker in Charge” at Arcanum Information Security. Arcanum is a world class assessment and training company. Jason has had a distinguished 20-year career in cybersecurity previously serving as CISO of FLARE, CISO of Buddobot, CISO of Ubisoft, Head of Trust/Security/Operations at Bugcrowd, Director of Penetration Testing at HP, and Lead Penetration Tester at Redspin. He has also held positions doing mobile penetration testing, network/infrastructure security assessments, and static analysis. Jason is a hacker, bug hunter and currently ranked 57th all-time on Bugcrowd’s bug bounty leaderboards. Currently, he specializes in recon, web application analysis, and emerging technologies. Jason has also authored many talks on offensive security methodology, including speaking at cons such as DEFCON, Bsides, BlackHat, RSA, OWASP, Nullcon, SANS, IANS, BruCon, Toorcon and many more.
View full speaker profile →