Skip to main content
  • Conferences
  • Speakers
  • Skillcamp
Notifications
  • Strategies for Online and Offline Success
    ×
  • That Will Get You Speaking Engagements in 2024
    ×
  • For a Meeting or Talk
    ×
  • SpeakerHub's commitment to innovation and user-centric design.
    ×
  • How to Make Your Public Speech Professional and Memorable
    ×
  • SIGN UP
  • SIGN IN
  1. Home
  2. Find a speaker
  3. Remco Sprooten
Remco Sprooten's picture
He/Him/His

Remco Sprooten

Principal Security Research Engineer
Country or state 
Netherlands
City 
Heerlen
Fee 
Ask for pricing
Languages 
Dutch,
English
Volunteer
Yes
Timezone 
Europe/Amsterdam

Personal Details

Bio

Remco is a Senior Security Researcher at Elastic's Security Labs, specializing in reversing and analyzing malware, particularly in the Linux domain. With a rich background as a forensic investigator for the Dutch Police, he brings a unique blend of law enforcement and cybersecurity expertise. At Elastic, Remco focuses on dissecting malware families, contributing to the development of innovative security strategies. His work is integral in understanding and mitigating emerging cyber threats, leveraging his extensive experience in digital forensics and threat analysis.

Current position (1)

Principal Security Research Engineer

Presentations

Presentations (2)
Enhancing Malware Code Similarity Detection through Vectorsearch

Imagine you're a detective solving complex crimes. Each crime scene is unique, but you notice small similarities—like similar footprints or cigarette butts. To solve the mystery, you need to connect these dots, even if they come from different places. This is what we do in cybersecurity, using creativity to make different tools work together.

In our research, we faced the challenge of detecting similarities in malware. We used Locality Sensitive Hash (TLSH) and an Intermediate Language (IL). On their own, these tools are useful, but by combining them, we found a powerful way to uncover relationships between malware samples.

TLSH creates compact "fingerprints" of malware, while IL provides a consistent view of code across different platforms. By merging these tools, we could find similar code fragments across malware, revealing patterns that would otherwise be missed.

This combination made our analysis faster and more accurate, helping us tackle real-world cybersecurity challenges.

Effortless Linux Malware Reversing with LLMs

Despite Linux’s pervasive use, the landscape of Linux malware remains significantly under-researched, often leading to an overestimation of its sophistication. This talk challenges that perception by highlighting the surprising ease with which many Linux malware samples can be detected and analyzed. A core premise is that malware authors, perhaps due to this perceived obscurity, frequently forgo robust obfuscation techniques, leaving their malicious intent remarkably transparent.

Building upon this accessibility, the second part of the presentation will delve into an innovative approach for large-scale malware analysis. We will demonstrate how Large Language Models (LLMs), when integrated with a disassembler, can revolutionize the reverse engineering workflow. The inherent “straightforwardness” of many Linux malware samples makes them ideal candidates for LLM-assisted analysis, allowing for rapid and automated reporting on sample functionality within minutes.

Workshops (1)
Malware Analysis and Event Collection Workshop
4 hours
(View workshop agenda)

Join us at the upcoming upcoming cybersecurity conference for an engaging and hands-on workshop focused on Malware Analysis and Event Collection. In this workshop, participants will gain practical knowledge and valuable insights into setting up a small malware lab using popular hypervisor platforms.

Past talks (5)
Effortless Linux Malware Reversing with LLMs
Effortless Linux Malware Reversing with LLMs
Oslo
October 30, 2025
Unmasking the unseen: a deep dive into modern Linux rootkits and their detection
Virusbullitin
Berlin
September 26, 2025
Malware Code Similarity Detection through Vectorsearch
Bsides Belfast
Belfast
September 12, 2024
Malware Code Similarity Detection through Vectorsearch
FirstCTI 2024
Berlin
April 16, 2024
E-Evidence Collection in Enterprises
ERA
Tallin
June 21, 2024
  • All
  • Videos
  • Photos
This speaker hasn't uploaded any media content yet.

Books & Articles (7)

FlipSwitch: a Novel Syscall Hooking Technique
Betting on Bots: Investigating Linux malware, crypto mining, and gambling API abuse
An Elastic approach to large- scale dynamic malware analysis
Bit Hamming in Golang: SIMD Supported Code
NAPLISTENER: more bad dreams from developers of SIESTAGRAPH
REF2924: how to maintain persistence as an (advanced?) threat
EMOTET Dynamic Configuration Extraction

Expertise (2)

Security
Community
Recommendations
Affiliations
Elastic Speaker Hub Portal
Similar to Remco
  • Charlene Holmes's picture
    Charlene
    Holmes
    Podcast Host
    Talk Bari To Me
  • Dr. Chase Cunningham's picture
    Dr. Chase
    Cunningham
    principal analyst
    forrester research
  • Sobha Crystal Meadows's picture
    Sobha
    Crystal Meadows
    Data Analyst
    Sobha Limited
  • Saad Ur Rehman's picture
    Saad
    Ur Rehman
    SEO Specialist & Technical Writer
    Torque360
  • Teresa Cruz Foley's picture
    Teresa
    Cruz Foley
    CEO
    Brave Space Consulting
  • Speakers
  • Agencies
  • Events
  • How it works
  • Blog
  • Upgrade
  • Podcast
  • About us
  • Organizers
  • Terms of use
  • Privacy policy
  • FAQ
  • API
  • Contact
  • Corporate Speakers Bureau & CRM
  • Motivational speakers
  • Leadership speakers
  • Business speakers
  • Inspirational speakers
  • Keynote speakers
  • Corporate speakers
  • Celebrity speakers
  • Top 50 Business Speakers
  • Top 50 Leadership Speakers
  • Top 50 Motivational Speakers
  • Top 50 Technology Speakers

Get speaking tips & so much more!

Twice a month we send you speaking tips, training ideas and lots of useful updates.

© 2026 SpeakerHub
All rights reserved.

  • Facebook
  • Twitter
  • LinkedIn
  • SoundCloud