top of page

Program 2026

  • Pre-Conference Workshop: Hands-on-investigation of Malware Delivery

    Sopra Steria, Posthuset
  • Pre-Conference Workshop: Incident Response Manager Training

    mnemonic, Henrik Ibsens Gt 100

  • Registration and Coffee

    Klingenberg Kino, Olav Vs Gt 4
  • Welcome Remarks

  • Behind the Scenes of the Largest Crypto Heist in History | Per Morten Sandstad, mnemonic

  • Break

  • What a Massive Malware Corpus Reveals About Linux Threat Evolution | Craig Rowland, Sandfly

  • Break

  • Inside a ClickFix Operation: The Investigation That Exposed a Global Attack Campaign | Tinius J. Presterud, Defendable

  • Lunch

  • EtherHiding: How Threat Actors Leverage Blockchain for "Bullet-Proof" Infostealer Delivery | Tor Åge Takvam, ATEA

  • Break

  • Sliding into the Enemy's DMs: Detecting SaaS-Backed Malware C2 | Julian Wolf, VMRay

  • Break

  • Patch Later, Preserve First: A Field Workflow for Suspected Mobile Spyware | Lorena Carthy-Wilmot, iVerify

  • Break

  • All in a Day's Work. Red Menshen Style | Rolf-Petter Halle, Telenor

  • Registration and Coffee

    Klingenberg Kino, Olav Vs Gt 4
  • Cyber Fog of War: The Criminal Cyber Ecosystem in the Age of Geopolitical Conflict | Evgueni Erchov, Cypfer

  • Break

  • From Dream Job to Contractual Tasks | Jørgen Bøhnsdalen, Norsk Helsenett

  • Break

  • Handling Insider Threats: Lessons Learned | Jostein Løvbråten, Advania

  • Lunch

  • Defending the Future: Agentic AI and the Next Frontier of Threat Intelligence | Sam Sidani, Google Cloud

  • Break

  • Visualizing Cloud-Native Security | Lars Solberg, Telenor

  • Break

  • Hybrid Cyber Response Exercises – Halfway to Full Scale | Made Ziius, Sikt

  • Break

  • A Drastically Different Detection Design that Destroys Dull Detection Dilemmas | James Young, Splunk

bottom of page