Again, I started at 6 and watched the sunrise light up NYC as I peeked out my window on the 33rd floor in The New Yorker while writing. I spent my first hours writing a blog about 2026 and my experiences in NYC. And while I was not rushing, I wanted to get breakfast and still be early to look around the vendor tables and villages at Hope 2026. I wrote with expediency.
I decided on a dress shirt, a sweater vest, and dress shoes today. I always feel more comfortable dressed up. I noticed that I became more invisible because many hackers ignored me as part of the staff. Interesting.

Again, though I thought of trying somewhere else, I went with Liberty Bagels and only switched from a poppy to an everything bagel. I ate again, sharing a table outside with a man from Mumbai, India, who was carrying his luggage. His accent sounded like he had been in the USA quite a while, and he shared that he works here. We talked about him getting presents for his sisters back in Mumbai from New York City. I suggested a postcard from NYC with cash paper-clipped to it, and called it “an American historical portrait” and a postcard. He liked the idea; we wished each other well after finishing and headed out. I saw him picking up his bags and carrying them into the subway.

My first session was “Harvest Now, Decrypt Later” by redshiftzero. This was actually about the challenge of Quantum Computing breaking current encryption. Redshiftzero, a physicist, covered the main types of encryption used for traffic and explained that it will be broken if Shor’s Algorithm can be reliably used on a Quantum Computer. The physicist then noted that, in March, Google reported success in breaking some encryption and is now working on the next step to bring this technology to fruition. This paper has been peer-reviewed, and most believe it shows real progress; the paper did not release the circuit (the name for the weird coding/pricess of running stuff on quantum computers. Instead, another related problem was presented that is solvable; it would imply that encryption could be broken. Oddly, the presenter shared that there is a website contest to improve the circuit, with many creating better runtimes.
The presentation then focused on the state of the change to post-quantum computers and hardened encryption based on unsolvable lattice and other mathematical problems. President Trump has issued an executive order ordering the Federal Government to move to these protections by 2030 and 2031.
Next, I listened to a panel discuss “The Adversary in Your Bed: Stalkware, Domestic Violence, and the Hacker Defense” by a group of NY prosecutors. The message was dark. The law is not keeping up, and judges do not understand technology and will not make adjustments for it. That until violence is provable, a person can get no legal protection from stalking and domestic violence in New York. The warning was that even after you do all the right things to remove tracking, a stalker will often also bug and track friends and family to get access to you. Kids’ toys with computers may be hacked into listening devices, mutual friends’ cars might have squares in them, and phones hacked to listen in.
“Non-Human Identity – The Gaping Security Hole That Agents Are Making Worse!” by Michael Morgenstern was alarmist, but not an area I know well. He is a consultant and has discovered that AI tools and other software are being granted access via administrative users, creating easy hacking vectors. These non-human accounts are granted high-level access, and then AIs use them to create even more access. This then becomes a means to gain access for dark agents. Most attacks are moving from malware to exploits of these accounts.
“Honey Potting AI Agents” by Abdel Fane covered more of this. Fane set up honeypots to attract non-human agents to see how many were out there scanning. The MCPs (a type of AI agent) scanned his honeypots millions of times but did not try to take the bait; only a very few did. He concluded that most of the AI agents are not malicious but are studying the Internet. The presenter believes that the agent tool OpenClaw, available to anyone, has sent out many of these agents for various tasks.
I sat through two poorly done presentations. The presenters, I believe, did not understand that it was a presentation intended to inform and maybe inspire action. Instead, it seemed to be a brain dump.
Jamie Theophilos, a PhD candidate, is researching doxing and has covered the history of Doxing (or Doxxing), with information on over 1,000 incidents (there was a request for Jamie to share this in digital form, which Jamie said is now under discussion). The message was that both the left and right have used this as a punishment and often misidentify people and release harmful attacks on innocent folks. Jamie’s interest in doxing began when they were mistaken for someone else and doxed.
I could not understand much about 44net other than that it seems to be a Ham Radio version of the Internet from a talk by John Birwell: “Decentralized Networking Is A Social Problem.” There are nuggets there and a story.

“We need to talk about Signal” by HelpMeRob was about Signal, a type of messaging software. The presenter ran out of time, but covered some flaws in the software, some surprising ones, and shared that WhatsApp and Google use the underlying Signal software. He tried to explain, I believe, that perfectly secure texting is not possible, but the user needs to decide what they require and accept the security compromises the software makes to provide the service.
Dave, whom I met this year, sat with me for the closing ceremonies. The NOC (Network Operations Center) report was fun. The very secure network was fully protected this year from tens of thousands of attacks. And while it may seem counterintuitive for Hope 2026, they provided a complete log of every connected device, its location, and demoed it. They found one device that had hit 19 of the 20 WiFi connections, and then mapped its movements for the audience. There were many laughs as they played an animation of the device moving. Next, they mapped the device to exact presentations and events in Hope 2026. More laughs. And while you, dear reader, may find this strange, this is a hacker conference, and we know what is possible. But it was fun to see how easily we can be tracked. The motto of NOC, “We See What You Have Done.”
All the logs, along with software to process them, some preprocessed for faster access, are now available to everyone on the Hope 2026 website. And while this may seem strange again, it was a reminder to everyone of what is possible. The hackers were hacked at Hope 2026 by the friendly folks of NOC.

Aside: The NOC folks congratulated those who rotated the MAC address on their devices, making tracking more difficult. They, of course, identified most of them anyway. Fewer laughs! All the data is available for the hackers to explore how they were identified.
The final words and a conga line finished the conference. I did one loop with Dave and a person in powered scooter.
Dinner for me was at Lady Wilde’s down the street. I had a drink, nearly perfect lamb chops, and an OK dessert. I ordered No Starch Press’s book on Quantum Computing, recommended by redshiftzero, I spoke to her later, and she recommended that IBM is letting folks sometimes try a circuit on their computer. I looked at that website too. I loaded Rust on my Apple laptop.
Returning to the hotel after it rained, I revised my Rust setup, got it to a stable version, and partially used Visual Studio to write a “Hello World” program, then executed it from the command line. I will figure out how to get VS working for Rust later.
I went to bed a bit early and soon slept. Tomorrow is a travel day, but I still get part of the day in NYC.
Thanks for reading!






























