Segmentation Theater: Finding the routes attackers use with HD Moore

The air gap is dead, but the illusion of segmentation is thriving.

From the SANS Winter Cyber Solutions Fest 2026: Utilities and Critical Infrastructure event, HD Moore presents Segmentation Theater. Attackers don't respect network diagrams; they exploit edge device zero-days, abuse forgotten cellular backup links, and pivot through multi-homed systems that quietly route around every control you've deployed. Meanwhile, passive monitoring, vulnerability scanners, and OEM tools consistently miss the exposure paths that matter most.

HD Moore explains:

  • Real-world bypass techniques from recent incidents where segmentation catastrophically failed
  • Why traditional verification methods fail** to identify hidden connectivity between IT, OT, and the internet
  • An attacker-centric model for segmentation verification that asks "What is reachable?" instead of "What should be isolated?"
  • Practical techniques to identify unintended pathways, prioritize critical chokepoints, and close routes before they become incidents

This session includes a live demonstration of active discovery techniques that reveal the hidden network paths defenders miss but attackers always find.

Meet Our Speakers

HD Moore

Founder & CEO, runZero

Subscribe Now

Get the latest news and expert insights delivered in your inbox.

Welcome to the club! Your subscription to our newsletter is successful.


Related Resources

Webcasts
runZero Hour, Ep. 27: KEVology 101 – observing exploit trajectories in the KEV Collider
In this episode or runZero Hour, Tod Beardsley, Rob King, and special guest Wade Sparks (CISA and VulnCheck KEV veteran) explore the science of...
Webcasts
How TeamSystem accelerates M&A integration with runZero
Learn how TeamSystem used runZero to accelerate M&A integration, reduce risk, and maintain confidence while scaling.
Webcasts
runZero Hour, Ep. 26: Exploring offseason resorts and OT networks with Brianna Cluck
In the first 2026 episode of runZero Hour, Rob King and Tod Beardsley chat it up with fan-favorite OT expert Brianna Cluck from GreyNoise...
Webcasts
runZero Hour, Ep. 25: The Holiday Hackstravaganza!
Tod Beardsley, Rob King, (and special guests!) look back at 2025’s wildest vulnerabilities, standout research, and make bold predictions for 2026.

See Results in Minutes

See & secure your total attack surface. Even the unknowns & unmanageable.