Devfest Belgium is a full day, two tracks, inclusive conference for all developers. We aim to bring top speakers from around the world to our stage to share their knowledge and experience in various technologies.
Date: 28-11-2025
Event
Domaine
About project
08:00 - 09:00 WELCOMING and Badge collection
09:00 - 09:25 Opening KEYNOTE - Anonymous Speaker (EN)
09:35 - 10:15
10:25 - 11:55
12:05 - 12:40
12:40 - 13:30 LUNCH 🥪🥤
13:30 - 14:10
14:25 - 15:05
15:15 - 16:00
16:10 - 16:35 WRAP UP KEYNOTE - Anonymous Speaker (EN)
Malik Bouhou, Research engineer in Cybersecurity, CETIC, will present a study in two phases exploring the potential use of Large Language Models (LLMs) in supporting the development of penetration test scripts.
We will explain the exploration phase where we experimented with multiple LLMs such as chatGPT variants but also local models using Ollama such as llama3, qwen2, gemma2, etc... These LLMs were experimented with different use cases that were chosen according to opportunities we had during the study. As we initially have a focus on Cyber-Physical Systems, we experimented with use cases based on ROS (Robot Operating System), DDS (Data Distribution Service), Redis, Industrial Systems, etc...
At the end of this exploration, a selection was made of the models and use cases kept for comparison. We will present our choices made in order to extract as much useful information as possible from this comparison. This phase revealed a long and arduous work were each use case was combined with each LLMs to generate 5 scripts. Each script was tested on real use cases and analysed. This phase provided interesting conclusions on the use of online or local LLMs but also on the possible use of this kind of tool.
Finally, we will introduce our future work around this topic. We are currenly thinking of how that could extend other tools such as our penetration testing platform (PRACTIS) to fasten the development of reusable penetration test scripts.