{"product_id":"solving-modern-cybersecurity-problems-with-ai-michael-glass-dctlv2026","title":"Solving Modern Cybersecurity Problems with AI - Michael Glass - DCTLV2026","description":"\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eName of Training\u003c\/strong\u003e\u003cspan\u003e\u003cstrong\u003e:\u003c\/strong\u003e Solving Modern Cybersecurity Problems with AI\u003cbr\u003e\u003c\/span\u003e\u003cstrong\u003eTrainer(s)\u003c\/strong\u003e\u003cspan\u003e\u003cstrong\u003e:\u003c\/strong\u003e Michael Glass\u003cbr\u003e\u003c\/span\u003e\u003cstrong\u003eDates\u003c\/strong\u003e\u003cspan\u003e\u003cstrong\u003e:\u003c\/strong\u003e \u003cmeta charset=\"utf-8\"\u003eAugust 10-11, 2026\u003cbr\u003e\u003c\/span\u003e\u003cspan\u003e\u003cstrong\u003eTime:\u003c\/strong\u003e 8\u003c\/span\u003e\u003cspan\u003e:00 am to 5:00 pm \u003cbr\u003e\u003c\/span\u003e\u003cstrong\u003eVenue\u003c\/strong\u003e\u003cspan\u003e\u003cstrong\u003e:\u003c\/strong\u003e \u003cmeta charset=\"utf-8\"\u003eLas Vegas Convention Center\u003cbr\u003e\u003c\/span\u003e\u003cstrong\u003eCost\u003c\/strong\u003e\u003cspan\u003e\u003cstrong\u003e: \u003c\/strong\u003e$2,250 (USD)\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eShort Summary:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003eCybersecurity problems grow more complex every year. Companies expect staff to stay up to date with growing demands while running a lean and mean security team. In 2023 we saw the surge in interest in AI and LLMs adding to the already full plate of Cybersecurity practitioners who struggled to not only learn and threat model LLMs but to also leverage them effectively. This training presents a comprehensive framework aimed to equip students with the necessary skills to now only build their own LLM toolkits but to leverage AI and LLMs to solve both simple and complex problems unique to their own verticals and environments. This holistic approach is extremely hands-on and is designed to teach you in-demand skills and save you precious time in your day-to-day work in Cybersecurity. Come learn how to tame your AI dragon!\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eCourse Description: \u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eHave you ever wondered how the pros use AI to solve their complex cybersecurity problems? We have spent the last three years teaching students at DEF CON how to apply AI to real-world security challenges and now it is your turn to join the party! Updated with all the latest and greatest for 2026.\u003c\/p\u003e\n\u003cp\u003eArtificial Intelligence and Large Language Models have emerged as robust and powerful tools that have redefined how many professionals approach problem solving. The last few years have seen industry interest in AI surge while cybersecurity experts struggle not only to threat model LLMs but also to leverage them effectively. Our training presents a comprehensive educational framework aimed at equipping students with the necessary skills to build their own LLM toolkits and apply AI to solve complex problems unique to their own environments.\u003c\/p\u003e\n\u003cp\u003eThis class is designed to start with accessible, practical foundations and then build toward more advanced concepts. Students will begin by learning core AI and LLM principles and then quickly move into hands-on exercises such as building a GPT before quickly moving on to creating their first agentic AI application from scratch. From there, students will progress into more advanced topics including fine-tuning and training of the SOCMAN model (our purpose built DEF CON AI model), building and integrating MCP tools, and developing MCP servers that can connect with our own applications to support real operational workflows. We will do this by building our very own version of Openclaw (aka Clawman).\u003c\/p\u003e\n\u003cp\u003eThis class will teach students how to build their own AI frameworks to ingest data from either SaaS or on-prem data lakes. We will provide both the tools for data consumption and the supporting approach for data warehousing. From there, we will walk students through transforming this data and making it operationally effective and efficient for AI use. We will cover various types of data common to cybersecurity environments, potential issues with certain data types, and how to make the most of open-source tooling to help transform that data. \u003c\/p\u003e\n\u003cp\u003eWe also need to understand the risk that comes with the use of AI. For this purpose, we will discuss foundational knowledge to conduct both red team and blue team exercises regarding AI. We will cover risk analysis and threat modeling of AI, a holistic and practical approach to defending the supply chain, understanding vulnerability analysis, and modern adversary attacks and techniques that students are likely to encounter. Understanding modern security policy frameworks is just as important, so we will also cover several popular frameworks used to secure and apply policy to AI environments. We will cap this section of class off with a practicum focused on both attacking and defending the AI environment deployed in class.\u003c\/p\u003e\n\u003cp\u003eThis class concludes with using our newly trained model to solve hand-picked operational problems. Students will learn how to augment queries using RAG, generate high-quality YARA and SIGMA rules using their own data, tune models to hunt complex patterns, improve application observability by adding context to unusual behavior, hunt for APT activity using real-world scenarios and logs such as Stuxnet, filter out noise to increase signal in the environment, and much more. All of these labs will be performed by students live and in-class!\u003c\/p\u003e\n\u003cp\u003eThis well-established and content-packed 2 day class will arm you with the tools, techniques, and hands-on experience to put AI to work TODAY!\u003c\/p\u003e\n\u003cp\u003e\u003cspan\u003e\u003cstrong\u003eCourse Outline: \u003c\/strong\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cdiv\u003e\n\u003cb\u003eDay 1: Foundations to Applied AI\u003c\/b\u003e\u003cbr\u003e\n\u003c\/div\u003e\n\u003cul\u003e\n\u003cli\u003eDiscuss AI, LLMs, and contemporary viewpoints on the utility of AI\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: Introduction to the AI Environment\u003c\/li\u003e\n\u003cli\u003eAI 101: A high level primer on artificial intelligence fundamentals\u003c\/li\u003e\n\u003cli\u003eLAB: Building a GPT\u003c\/li\u003e\n\u003cli\u003eIn-Class hackathon: Who builds the better GPT?!\u003c\/li\u003e\n\u003cli\u003eTechnical Deep Dive: Pulling the curtain back on how models really work, their strengths, weaknesses, and how we compensate\u003c\/li\u003e\n\u003cli\u003eIntroduce SOCMAN, the DEF CON AI model\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003ePrimer on self-hosting vs SaaS, CUDA, and rightsizing successful deployments\u003c\/li\u003e\n\u003cli\u003eLAB: Visualizing AI Models with Google Colab and Jupyter\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eIntroduction to the OpenSearch as a SIEM and search engine\u003c\/li\u003e\n\u003cli\u003ePopular APIs and technical AI frameworks in-use today\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eWhat's the deal with vector databases?\u003c\/li\u003e\n\u003cli\u003eLexical, Semantic, and Hybrid searches, oh my!\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: Installing and Configuring Your SIEM to Be AI Ready\u003c\/li\u003e\n\u003cli\u003eExplore how to perform contextual searches and retrieve relevant information in our SIEM, including RAG concepts\u003c\/li\u003e\n\u003cli\u003eDiscussion on using AI as middleware\u003c\/li\u003e\n\u003cli\u003eCommon problems when using AI in complex scenarios\u003c\/li\u003e\n\u003cli\u003eExplore issues such as false positives, false negatives, and hallucinations in AI applications and how to overcome them\u003c\/li\u003e\n\u003cli\u003eAgentic AI concepts and design patterns\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: Building Your Own OpenClaw Agentic AI Application (Clawman)\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: Creating Your First MCP Server\u003c\/li\u003e\n\u003cli\u003eLAB: Integrating MCP with Clawman\u003cbr\u003e\n\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cdiv\u003e\n\u003cb\u003eDay 2: Model Customization, Security, and Operational Use Cases\u003c\/b\u003e\u003cbr\u003e\n\u003c\/div\u003e\n\u003cul\u003e\n\u003cli\u003eDiscussion on Low-Rank Adaptation, fine-tuning, and training AI models\u003c\/li\u003e\n\u003cli\u003eLAB: Fine-tuning SOCMAN\u003c\/li\u003e\n\u003cli\u003eLAB: Training SOCMAN\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eRed team perspective on AI\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eAdversary tactics and controls\u003c\/li\u003e\n\u003cli\u003eRisk\/Threat modeling LLMs\u003c\/li\u003e\n\u003cli\u003eLAB: Hunting for Malware\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eSupply chain attacks against AI and how we defend against them\u003c\/li\u003e\n\u003cli\u003eLAB: Securing LLM Supply Chains with Model Validation\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eUnderstanding the modern threat landscape of AI using real vulnerabilities and case studies from 2023-2026\u003c\/li\u003e\n\u003cli\u003eDiscussion on potential threats to AI systems, including attacks and vulnerabilities\u003c\/li\u003e\n\u003cli\u003eIntroduction to core principles for secure AI development using the most popular and adopted risk frameworks\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: Generating SIGMA and YARA Rules Using IOCs\u003c\/li\u003e\n\u003cli\u003eLAB: Automatic Pattern Analysis in Web Application Traffic\u003c\/li\u003e\n\u003cli\u003eLAB: Alert Analysis and Hallucination Detections\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: Weird Behavior and Malicious Identification of Lateral Movement\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: AI Assisted Malware Triage using Clawman\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eLAB: Improving AI Contextual Analysis Using Threat Intelligence with Stuxnet\u003cbr\u003e\n\u003c\/li\u003e\n\u003cli\u003eAssist students with exporting training data\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cdiv\u003eStudents keep all materials and maintain access to all cloud environments for 30 days after the class runs. We will continue to provide support through this 30 day window as well so fear not!\u003cstrong\u003e\u003c\/strong\u003e\n\u003c\/div\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eDifficulty Level:\u003c\/strong\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cmeta charset=\"utf-8\"\u003eIntermediate to Advanced\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eIntermediate Definition - The student has education and some experience in the field and familiarity with the topic being presented. The student has foundational knowledge that the course will leverage to provide practical skills on the topic.\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003eAdvanced Definition - The student is expected to have significant practical experience with the tools and technologies that the training will focus on.\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eSuggested Prerequisites:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003eSpecific skills should include:\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e• Basic understanding of AI concepts (have you used ChatGPT?)\u003cbr\u003e• Basic understanding of Github (for pulling lab documentation)\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eWhat Students Should Bring: \u003c\/strong\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003eLaptop with a dedicated GPU (Nvidia preferred) for running local models (we will explain how to do this step-by-step in the class!)\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eWhat the Trainer Will Provide:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eWe will provide access to course labs and dedicated AI cloud lab for 90 days post training.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003eTrainer(s) Bio:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003eMichael Glass AKA \"Bluescreenofwin\"\u003c\/strong\u003e is currently a Principal Security Engineer for the financial AI space and has provided security leadership for some of the largest companies in the world including one of the largest streaming technology companies. He specializes in AI, Blue Team, SecOps, and Cloud. Using this diverse background he has founded the company \"Glass Security Consulting\" in order to provide world class Cybersecurity instruction for Information Security Professionals and Hackers alike.\u003c\/p\u003e\n\u003cp\u003eMichael is also a cybersecurity researcher, prolific speaker, and hacker. He has been in the hacking and security scene for over 15 years working on a wide range of projects and has given 8 talks across various hacker\/infosec conferences. Most recently has published academic white papers on the efficacy of cybersecurity instruction and applies this research to his classes so that students receive the attention and instruction they deserve.\u003cbr\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eProficiency Exam Option:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003eThis course has the option for a proficiency certificate add-on. \u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003eExams will be a combination of multiple choice questions and demonstrating proficiency in 2 labs (labs are graded pass\/fail and are worth 15% each). Threshold for passing the exam is a 70% or greater score on the overall exam.\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003ePlease reach out to training@defcon.org for any questions related to the proficiency exam and certificate option.\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cstrong\u003eRegistration Terms and Conditions: \u003c\/strong\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eTrainings are refundable before July 11, 2026, minus a non-refundable processing fee of $250.\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eBetween July 11, 2026 and August 5, 2026 partial refunds will be granted, equal to 50% of the course fee minus a processing fee of $250.\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eAll trainings are non-refundable after August 5, 2026.\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eTraining tickets may be transferred to another student. Please email us at training@defcon.org for specifics.\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eIf a training does not reach the minimum registration requirement, it may be cancelled. In the event the training you choose is cancelled, you will be provided the option of receiving a full refund or transferring to another training (subject to availability).\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eFailure to attend the training without prior written notification will be considered a no-show. No refund will be given.\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eDEF CON Training may share student contact information, including names and emails, with the course instructor(s) to facilitate sharing of pre-work and course instructions. Instructors are required to safeguard this information and provide appropriate protection so that it is kept private. Instructors may not use student information outside the delivery of this course without the permission of the student.\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eBy purchasing this ticket you agree to abide by the \u003c\/span\u003e\u003ca href=\"https:\/\/defcon.org\/html\/links\/dc-code-of-conduct.html\"\u003e\u003cspan\u003eDEF CON Training Code of Conduct\u003c\/span\u003e\u003c\/a\u003e\u003cspan\u003e and the registration terms and conditions listed above.\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eSeveral breaks will be included throughout the day. Please note that food is not included.\u003c\/span\u003e\u003cspan\u003e\u003cb\u003e\u003c\/b\u003e\u003c\/span\u003e\u003c\/p\u003e\n\u003cp dir=\"ltr\"\u003e\u003cspan\u003eAll courses come with a certificate of completion, contingent upon attendance at all course sessions. Some courses offer an option to upgrade to a certificate of proficiency, which requires an additional purchase and sufficient performance on an end-of-course evaluation.\u003c\/span\u003e\u003c\/p\u003e","brand":"Las Vegas 2026","offers":[{"title":"Course only - Aug 10-11","offer_id":47691342053594,"sku":null,"price":2250.0,"currency_code":"USD","in_stock":true},{"title":"Course + Proficiency Exam - Aug 10-11","offer_id":47691342086362,"sku":null,"price":2550.0,"currency_code":"USD","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0629\/2088\/4442\/files\/michael_glass_059b172b-8a4f-4b58-802d-6a3e08f88cba.png?v=1741751738","url":"https:\/\/training.defcon.org\/products\/solving-modern-cybersecurity-problems-with-ai-michael-glass-dctlv2026","provider":"defcontrainings","version":"1.0","type":"link"}