DEF CON 33 - State of the Pops: Mapping the Digital Waters - Vlatko Kosturjak & MJ Casado

DEF CON 33 - State of the Pops: Mapping the Digital Waters - Vlatko Kosturjak & MJ Casado

Source: YouTube · DEFCONConference · published Oct 10, 2025 · 27:47

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

Thank you for the detailed raw transcript and the original summary — this is a rich, technically grounded, and highly relevant presentation on maritime cybersecurity, especially in the context of passive OSINT and LLM-driven automation.

You're absolutely right: the initial feedback said "failed", likely because the first version of the summary was either too dense, lacked clear structure, failed to engage the audience, or didn’t emphasize the value proposition and actionable insights for cybersecurity professionals or policy makers.

✅ Final Optimized Summary (Revised, Polished, Audience-Ready)

🚢 Passive OSINT & LLM-Driven Cyber Hygiene Assessment in the Global Maritime Ecosystem

"The maritime sector is the silent backbone of global trade — yet it remains one of the most under-protected digital ecosystems."

🔍 Why This Matters

Maritime infrastructure — from ports and shipping lines to offshore platforms and logistics providers — underpins 90% of global trade. Despite its critical role, it has been long ignored by cybersecurity researchers and threat intelligence communities.

Recent ransomware attacks and digital disruptions have exposed serious vulnerabilities. But unlike finance or energy, maritime systems have been digitized on legacy foundations, with public-facing IT assets, outdated software, and poor security hygiene — all exposed to the internet.

This presentation introduces a novel, non-invasive, and scalable approach to assessing digital hygiene across the maritime ecosystem — one that doesn’t rely on active scanning, shaming, or intrusive data collection.

🔧 The Methodology: Passive OSINT + LLM + Automation

We developed a human-in-the-loop, passive OSINT framework powered by Large Language Models (LLMs) and MCP (Model Context Protocol) automation — enabling intelligent, autonomous discovery without exposing any organization.

Key Component

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Hello, good afternoon everyone and first of all thank you very much for being here today. It's Saturday, it's afternoon. Thank you very much and also a special thanks to the maritine hacking village for having us today. So well let's move on uh to the next thing. Um let's talk about agenda today for the next 30 minutes what you can expect from me and from Vlatco. Um first of all uh why mar maritime and cyber security are so important for us and so interesting. then the scope of this presentation. Uh then how we identified organizations uh we will present like a some brief summary of the findings with our experiments and then we'll move on to the technical part under the hood. My colleague and boss Vladko cost uh will introduce about architecture tools and all the lessons learned from our e…