World Congress 2023 Oct 6, 2023

Thinking Differently - How to Make Money from Cyber Attacks & Cheats

Tom Tovar

Automated attacks hit mobile games just 137 milliseconds after launch. Instead of banning these exploiters, discover how to transform game cheats into a massive, untapped revenue stream.

Pause
Mute Enter Fullscreen
#1 about 5 min

Embracing a new perspective on mobile cyber attacks

Viewing threat vectors as potential monetization channels changes how teams approach application security.

#2 about 4 min

Understanding the speed and scale of app attacks

Automated attack vectors target new mobile applications within milliseconds of deployment to production environments.

#3 about 3 min

Monetizing gray market emulation platforms in mobile games

Detecting players on unauthorized emulation platforms creates opportunities to negotiate bounties with underlying platform providers.

#4 about 3 min

Converting memory editing attempts into paid user upgrades

Identifying runtime memory modifications allows publishers to prompt malicious actors to legally purchase injected currency.

#5 about 2 min

Offering subscription paths for advanced cheat tool users

Intercepting multi-purpose utility tampering tools creates an avenue to upsell features natively via paid subscriptions.

#6 about 3 min

Creating competitive environments for automated bot execution scripts

Isolating automated gameplay scripts into dedicated server clusters retains bot developers within isolated competitive environments.

#7 about 2 min

Differentiating monetizable gameplay manipulation from malicious fraud

Separating economy enhancement tools from destructive financial malware is critical when engineering responsive application business logic.

#8 about 2 min

Implementing runtime threat event frameworks for attack telemetry

Passing attack metadata from embedded control frameworks empowers engineering teams to define downstream application business logic.

#9 about 2 min

Best practices for integrating attack monetization business logic

Separating security detection responsibilities from user experience development teams prevents operational friction during implementation.

#10 about 3 min

Audience questions on memory editing and patch detection

A breakdown of standard patching identification techniques alongside insights into automated defensive framework compilation architectures.

Matching moments

5:15 min

Conceptualizing app security defense using gaming mechanics

Ramona Schwering Ramona Schwering · World Congress 2024

2:10 min

Examining common exploitation techniques against software organizations

Vandana Verma · LIVE

3:11 min

Evaluating mobile game prospects and encountering missed investment opportunities

Monty Munford · LIVE

1:15 min

Retaining the defender advantage in the cybersecurity race

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

13:13 min

Answering audience questions on practical application security

Thomas Konrad · World Congress 2021

4:31 min

Analyzing bizarre technology headlines and software engineering news

Chris Heilmann +2 · LIVE

Upcoming sessions on this topic

Open session

World Congress 2026 North America

September 25, 2026 · 16:50–17:20

Stage 5

The Things Your AI Isn't Telling You

Desmond Lamptey

Lead Software Engineer at Capital One

Desmond Lamptey
Open session

World Congress 2026 North America

September 24, 2026 · 14:50–15:20

Stage 9

How to generate business value through performance optimizations

Nikolai Sidiropulo

Software Engineer at Meta

Nikolai Sidiropulo
Open session

World Congress 2026 North America

September 25, 2026 · 09:00–09:30

Stage 6

Red Teaming Your LLM App -- A Hands-On Threat Model You Can Reuse

Saloni Garg

Senior ML Engineer at Adobe

Saloni Garg
Open session

World Congress 2026 North America

September 24, 2026 · 14:50–15:20

Stage 1

The Era of Machine-Driven Defense is Here: Headless Security

Loris Degioanni

Founder & CTO of Sysdig

Loris Degioanni
Open session

World Congress 2026 North America

September 24, 2026 · 14:10–14:40

Stage 2

Know Your Enemies: Live Exploit of a PHP Engine Security Breach

Alexandre Daubois

CTO of Les-Tilleuls.coop / Symfony Core Team / PHP & FrankenPHP Core Maintainer

Alexandre Daubois
Open session

World Congress 2026 North America

September 25, 2026 · 13:30–14:00

Stage 9

On the Public Clock: Open-Source Defense When You're Not in the Club

Nicholas Muy

VP Engineering Platform and Security at Scrut.io

Nicholas Muy