The Important People

Ang Cui

Dr. Ang Cui is the Founder and Chief Scientist of Red Balloon Security, a leading cybersecurity provider and research firm that specializes in the protection of embedded devices across all industries. Ang received his PhD in Computer Science from Columbia University in 2015 and was part of the Intrusion Detection Systems Lab. His doctoral dissertation, titled “Embedded System Security: A Software-based Approach”, focused exclusively on scientific inquiries concerning the exploitation and defense of embedded systems.

Ang is the creator of Firmware Reverse Analysis Konsole (FRAK) and the inventor of Software Symbiote technology, both of which enable pioneering firmware analysis and defense for embedded devices. Since founding Red Balloon Security, backed by Bain Capital Ventures, Ang continues to research and develop new technologies to defend embedded systems against exploitation. He has led development of a portfolio of embedded security solutions to harden device firmware and provide continuous runtime protection and monitoring of device firmware.

Over the course of his research, he has uncovered numerous, critical vulnerabilities within ubiquitous embedded devices such as Cisco routers, HP printers, and Cisco IP phones as well as led research efforts uncovering vulnerabilities on aerospace infrastructure, building automation systems, electrical grid devices, telecommunications equipment, and ATMs. Ang has received various awards on his work on reverse engineering commercial devices and is also the recipient of the Symantec Graduate Fellowship and selected as a DARPA Riser in 2015.

Ang is passionate about creating a team of outstanding researchers, engineers, and executives whose best ideas are enabled by innovation, creativity, and autonomy to solve the most pressing challenges.

According to Wikipedia, Dr. Cui is the Duke of Space!

As of 2023, he also has the longest Summercon bio.

Samantha Davison

@sam_e_davison

Sam Davison is a Security, Privacy, and Trust & Safety leader. She recently joined as the Head of Security at an E-Commerce company. Prior to her current role, Davison served as Director of Trust & Privacy Engineering at Robinhood, building and leading all consumer-facing security, privacy, and trust & safety engineering in addition to offensive security and intelligence functions. Davison has held leadership roles at the Krebs Stamos Group, Lyft, Snap Inc., and Uber where she led efforts with a particular emphasis on behavioral engineering, offensive security, and content moderation. Before working in Silicon Valley, she conducted extensive research on the efficacy of security engagement and co-led a consulting firm that built behavioral-based programs for 15+ Fortune 500 companies. Davison has volunteered throughout her career, lending her expertise to survivors of domestic abuse and election protection efforts.

Renee Dudley

Renee Dudley is a technology reporter at ProPublica. Previously, as an investigative reporter at Reuters, she was named a 2017 Pulitzer Prize finalist for her work uncovering systematic cheating on college admissions tests. She started her career at daily newspapers in South Carolina and New England, and has won numerous journalism honors, including the Eugene S. Pulliam First Amendment Award.

Brandon Edwards

You never see Brandon Edwards and Dr. Raid together. We assume those two have some beef. Weird, they’re both such nice people.

Christine Fossaceca

Christine Fossaceca is an iOS reverse engineer and cybersecurity podcaster, co-creator of HerHax Podcast. She has worked in infosec for 7 years. Christine has the unique interests in both cybersecurity and pop culture to be able to speak to the impact of botnets on consumers.

Dan Golden

Daniel Golden, a senior editor and reporter at ProPublica, has won a Pulitzer Prize and three George Polk Awards. He is the bestselling author of The Price of Admission: How America’s Ruling Class Buys Its Way into Elite Colleges—and Who Gets Left Outside the Gates and Spy Schools: How the CIA, FBI, and Foreign Intelligence Secretly Exploit America’s Universities.

Dan Guido

[REDACTED]

Harri Hursti

Harri Hursti is a world-renowned data security expert, internet visionary, and serial entrepreneur. He began his career as the prodigy behind the first commercial, public email and online forum system in Scandinavia, founded his first company at the age of 13, and went on to co-found EUnet-Finland in his mid- 20s. Today, Harri continues to innovate and find solutions to the world’s most vexing problems. He is considered an authority on uncovering critical problems in electronic voting systems worldwide, but is clearly interested in a wide scope of hacking-related topics.

Jatin Kataria

Jatin Kataria is a security researcher focusing on defensive system technologies. His main security research interests are hardware
security extensions, bootloaders, OS, system services, program and binary analyses. Playing both the role of cat and mouse, he tires of n-days easily and is always looking for new and exciting ELF shenanigans, caching complications, and the Fedex guy who lost his engagement ring.

Jennifer Leggio

@mediaphyter

Jennifer Leggio is a marketing, operational strategy, and communications leader, and a board and VC advisor, with over 23 years of leading high-performing, creative, and data-driven teams. She has held leadership roles at some of the world’s most impactful cybersecurity companies, notably Fortinet, Sourcefire, Flashpoint, and Claroty. She is currently Chief Marketing Officer at Netography. Jennifer has been a frequent speaker, including DEF CON, RSA Conference, Gartner Security Summit, Hack in the Box, and SXSW Interactive, and formerly wrote for ZDNet and Forbes. In her personal time, she immerses herself in creative writing, comedy, and, of all things, horror movies. Jennifer was recognized in 2019 by SC Media as a fierce advocate of ethical marketing programs that focus on facts rather than fear to protect security researchers. She continues to speak out boldly against marketers who use fear, uncertainty, and doubt to try to advance business in the security industry

Mudge

It will probably save you a lot of time to just read this.

Dan “AltF4” Petro

By day, Dan is a Senior Security Engineer at Bishop Fox, focusing on capability development in attack surface discovery. By night, Dan helps out with security at Project Slippi and is the mad scientist of the Melee world, hunting cheaters and banning them.

Nick Sullivan

Nick Sullivan is a technologist known for his expertise in security and cryptography. He has spent time at Apple Inc., making significant contributions to security technologies used in the iPhone and other core systems. Later, as Head of Research at Cloudflare, he played a crucial role in enhancing the company’s encryption and secure network protocols while helping the company publish dozens of peer-reviewed papers and RFCs. Nick is not only a frequent speaker at global tech and security conferences but also volunteers his time on internet standards committees and as a reviewer for academic security conferences, underscoring his commitment to knowledge sharing and collaboration.

Christopher Surage

Christopher Surage is an application security engineer currently working in the financial industry. He has been working in application security for the last 10 years in a variety of industries (finance, consulting, technology). He enjoys learning about different technologies and the potential security implications of their usage. He also enjoys learning how things work.

Claudiu-Vlad Ursache

Claudiu-Vlad a core developer on the code analysis platform Joern, author of kotlin2cpg. he has been an engineer for 15 years, switched to security three years ago focusing on static analysis. When it comes to research work – he’s managed to break into consumer-grade routers (and spoke about it at No Hat Conference 2021), and more recently found vulnerabilities in Android apps of prominent publications.

Julien Vanegue

Julien Vanegue is a security researcher living in New York City who enjoys applying his logic knowledge to offense and defense.

John Viega

John Viega has done a bunch of things that people either loved or hated. He co-developed the most common cipher mode (AES-GCM), wrote the first book for developers on security, did the first two static analysis tools for security, and, before he discovered security, wrote the Mailman mailing list manager. He is co-founder and CEO of Crash Override, and was co-founder and CEO of Capsule8 prior to that.

Emily Wicki

Emily is a prominent member of the NYC digital forensics community, works for a very famous financial institution, and, in her spare time, helps Summercon wrangle sponsors.