AD&D 2026 Program
Friday, September 18, 2026
Session 1 — 09:00–10:30 – AI/LLM Deception & CTI
| Time |
Session |
| 09:00–09:15 |
Welcome and Opening Remarks |
| 09:15–09:35 |
Make the Adversary Spend More: Stateful Deception as a Cost-Exchange Primitive for AI-Era Cyber Defense – Alessandro Cantelli-Forti, Isabella Marasco, Hosam Alamleh, Giada Boschi, Michele Colajanni |
| 09:35–09:55 |
Honey for the Agent: Cyber Deception and Behavioral Fingerprinting of LLM-Based Attackers – Dario Maddaloni, Anastasia Safargalieva, Emmanouil Vasilomanolakis |
| 09:55–10:15 |
AdvancedShelLM: A Stateful Multi-Agent LLM Honeypot for SSH Deception – Muris Sladić, Eman Alibalić, Veronica Valeros, Carlos Catania, Sebastian Garcia |
| 10:15–10:30 |
Position Paper: Bridging Cyber Deception and CTI through STIX-Based Honeypot Log Mapping – Karina Elzer, Tillmann Angeli, Stylianos Malamas, Emmanouil Vasilomanolakis |
| 10:30–10:50 |
Coffee Break |
Session 2 — 10:50–12:20 – Honeypots, Honeynets & Human Decoys
| Time |
Session |
| 10:50–11:10 |
HoneyPeople: When Decoys Talk Back – Claudio Facchinetti, Daniele Santoro, Roberto Doriguzzi Corin, Domenico Siracusa |
| 11:10–11:30 |
No Time for Harvesting: Deception-Assisted Attribution of IPv6 Address Leakage in the NTP Pool – Stefan Groser, Sajad Homayoun |
| 11:30–11:50 |
Decoys Cannot Go Everywhere: Mapping the Deception Surface in MITRE ATT&CK – Veronica Valeros, Carlos Catania, Viliam Lisý, Harm Griffioen |
| 11:50–12:05 |
Position Paper: Development of an Automated Vulnerability Placement Framework for IaC-Based Honeynets – Marvin Sinnwell, Daniel Reti, Hans D. Schotten |
| 12:05–12:20 |
Closing remarks and Open Discussion |
| 12:20–13:50 |
Lunch |
Session 3 — 13:50–14:40 – Keynote
| Time |
Session |
| 13:50–14:40 |
Keynote TBA |