Ekokparty 2026

Date:
October 7-9, 2026
Location:
Buenos Aires, Argentina
Conference Ekoparty 2026 with official logo in retro computer.

Now in its 22nd year, Ekoparty is Latin America's largest hacking conference, bringing together researchers, hackers, and security leaders from across the region for three days of talks, villages, CTFs, and hands on hacking. Bishop Fox is glad to be part of this year's event.

Jon Williams, Staff Security Engineer on Bishop Fox's Threat Enablement & Analysis team, will present "Prompt Critical: AI-Driven Weaponization of a UniFi OS RCE Chain." Jon will demonstrate a full, unauthenticated takeover of the UniFi console that runs office networks, cameras, and door locks, an exploit chain that keeps working even after the official patch. The twist: he didn't reverse engineer it by hand. He built a vulnerability research lab out of off the shelf AI tools and let it carry the work from raw firmware to a finished exploit.

For more details, visit: Ekoparty Buenos Aires 2026

Prompt Critical: AI-driven Weaponization of a UniFi OS RCE Chain

Speakers: Jon Williams, Staff Security Engineer, Bishop Fox

Abstract: The UniFi console that runs your office network, right down to the cameras and door locks attached to it, can be taken over with a single web request and no password, and that access keeps working even after the official fix is applied. I demonstrate the full takeover live. Then I tell the more surprising part of the story: I did not reverse engineer the product by hand. I built a vulnerability research lab out of ordinary, off the shelf AI tools and let it carry the work from raw firmware all the way to a finished exploit. You will come away knowing how the attack actually works and how the same setup could be pointed at the next target, with an honest account of where the AI proved genuinely capable and where it fell flat.


Jon Williams

About the speaker, Jon Williams

Staff Security Engineer

As a researcher for the Bishop Fox Threat Enablement & Analysis team, Jon spends his time hunting for vulnerabilities and writing exploits for software on our customers' attack surface. Jon has written and presented research on various topics including enterprise wireless network attacks, bypassing network access controls, and reverse-engineering edge security device firmware.

Ready to get started? We can help.

Contact Us