The zero day show offers a rare window into how security flaws are discovered, disclosed, and defended against in real time. This event format combines live talks, demonstrations, and Q and A to translate highly technical research into clear stories for diverse audiences.
By bringing together researchers, defenders, and decision makers, the zero day show helps translate complex findings into practical risk management steps. The following sections outline what to expect from this event and how different roles can use the insights.
| Event Segment | Target Audience | Core Objective | Key Takeaway |
|---|---|---|---|
| Live Presentation | Technical and non-technical attendees | Explain the vulnerability and its real world impact | Clear narrative and context around the zero day |
| Live Demonstration | Security practitioners and engineers | Show exploit mechanics and detection challenges | Concrete evidence of risk and mitigation gaps |
| Responder Panel | Incident responders and defenders | Discuss detection, containment, and recovery | Actionable steps for improving readiness |
| Policy Discussion | Leadership, legal, and compliance roles | Address reporting, disclosure, and regulatory concerns | Strategic guidance for governance and risk decisions |
Understanding Zero Day Research and Disclosure
Zero day research focuses on vulnerabilities that are unknown to the vendor or have no patch available. Researchers often spend years refining techniques that reliably trigger a flaw without causing collateral damage.
At the zero day show, these methods are explained through stories that highlight both the technical depth and the ethical considerations guiding responsible disclosure.
Live Demonstration and Hands On Labs
Exploit Walkthroughs
Demonstrations walk through how an exploit could be delivered in the wild, including initial access, privilege escalation, and persistence mechanisms. Audiences see mitigations in action and learn why layered defenses matter.
Detection Challenges
Hands on labs highlight gaps in monitoring, logging, and alerting that allow advanced techniques to evade existing controls. Participants gain practical insight into tuning detection rules and improving telemetry quality.
Defender and Incident Response Insights
Responder panels share how teams triage suspicious activity, validate potential compromises, and coordinate containment during active incidents. They also discuss communication plans with executives, legal, and customers.
These segments emphasize measurable improvements in detection speed, evidence preservation, and business continuity, helping organizations refine their playbooks and tooling.
Policy, Disclosure, and Compliance Considerations
Speakers explore how legal frameworks, regulatory requirements, and vendor policies shape disclosure decisions. They highlight tensions between transparency, liability, and national security interests.
Attendees leave with a clearer view of when and how to engage vendors, regulators, and industry groups to align disclosure timing and reduce systemic risk.
Planning and Participation Roadmap
Organizations can maximize the value of the zero day show by aligning attendance with roles, integrating learnings into existing programs, and tracking improvements over time.
- Define attendee roles, such as researcher, defender, leader, and compliance, and map clear objectives for each.
- Schedule pre event briefings to set expectations and identify which sessions match key responsibilities and initiatives.
- Capture actionable items during sessions, including detection rules, configuration changes, and vendor engagement steps.
- Establish a post event review to assign ownership, timelines, and success metrics for implementing recommended changes.
FAQ
Reader questions
What specific techniques are covered in the live demonstration segment?
The demonstration covers the full exploit chain, including initial access vectors, code execution, bypass of common mitigations, and techniques to maintain stealth while avoiding disruption to production systems.
How do the policy discussions affect everyday security operations?
Policy discussions clarify reporting timelines, data handling rules, and coordination expectations, which in turn shape incident response procedures, vendor management, and audit readiness activities.
Can non technical leaders gain actionable insights from the event?
Yes, tailored sessions translate complex findings into business risk terms, helping leaders prioritize investments, align teams, and make informed decisions about risk acceptance and mitigation strategies.
What follow up resources are provided after the zero day show?
Attendees receive slide decks, detection playbooks, reference configurations, and access to a private community where speakers and participants can continue discussing emerging threats and mitigations.