Uploaded February 2026 | Updated September 2026, 2 weeks ago
Unintentional Hackers: Students as the Weakest (and Wildest) Link
Presenter: Jacob Thompson
What is this talk about?
Unintentional Hackers: Students as the Weakest (and Wildest) Link explores how curiosity, mischief, and sometimes deliberate exploitation by students introduce real security risks in K–12 and higher education environments.
How do students accidentally or intentionally break systems?
This session examines real world incidents where students bypass content filters, access sensitive data, abuse administrative tools, or disrupt school systems. In some cases, the behavior is accidental. In others, it is executed with surprising technical precision.
Why are schools especially vulnerable?
School infrastructure often lags behind modern security standards due to limited budgets, legacy systems, and usability constraints. Traditional cybersecurity training also fails to resonate with student users, leaving gaps that are easily exploited.
Why does the insider threat model fall short in education?
Most insider threat models focus on employees or contractors. This talk challenges that assumption and explains why students represent a uniquely unpredictable risk profile that requires a different defensive mindset.
What mitigation strategies actually work?
Attendees will gain insight into risk mitigation strategies designed specifically for educational environments. Topics include behavioral monitoring, digital citizenship programs, policy design, and technical controls that balance security with accessibility.
Who should watch this talk?
Whether you are an educator, school administrator, IT professional, or security leader, this session will change how you think about insider threats in education.
What is the key takeaway?
The most dangerous insider threat in a school may not be malicious. It might be curious, bored, or sitting in the front row with a Chromebook.
Sign Up for WWHF
Register for this year’s Wild West Hackin Fest here:
wildwesthackinfest.com/register
Get access to workshops, labs, and sessions taught by experienced practitioners, all focused on real world defensive and investigative skills.
#cybersecurity #educationsecurity #insiderthreat #infosec #k12 #highereducation #edtech #digitalcitizenship #blueteam #cyberawareness
///Black Hills Infosec Socials
Twitter: twitter.com/BHinfoSecurity
Mastodon: https://infosec.exchange/@blackhillsinfosec
LinkedIn: linkedin.com/company/antisyphon-training
Discord: discord.gg/ffzdt3WUDe
///Black Hills Infosec Shirts & Hoodies
spearphish-general-store.myshopify.com/collections/bhis-shirt-collections
///Black Hills Infosec Services
Active SOC: blackhillsinfosec.com/services/active-soc
Penetration Testing: blackhillsinfosec.com/services
Incident Response: blackhillsinfosec.com/services/incident-response
///Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: backdoorsandbreaches.com
Play B&B Online: play.backdoorsandbreaches.com
///Antisyphon Training
Pay What You Can: antisyphontraining.com/pay-what-you-can
Live Training: antisyphontraining.com/course-catalog
On Demand Training: antisyphontraining.com/on-demand-course-catalog
Antisyphon Discord: discord.gg/antisyphon
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training
///Educational Infosec Content
Black Hills Infosec Blogs: blackhillsinfosec.com/blog
Wild West Hackin' Fest YouTube: youtube.com/wildwesthackinfest
Antisyphon Training YouTube: youtube.com/antisyphontraining
Active Countermeasures YouTube: youtube.com/activecountermeasures
Threat Hunter Community Discord: discord.gg/threathunter
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: wildwesthackinfest.com
Unintentional Hackers: Students as the Weakest (and Wildest) Link
Presenter: Jacob Thompson
What is this talk about?
Unintentional Hackers: Students as the Weakest (and Wildest) Link explores how curiosity, mischief, and sometimes deliberate exploitation by students introduce real security risks in K–12 and higher education environments.
How do students accidentally or intentionally break systems?
This session examines real world incidents where students bypass content filters, access sensitive data, abuse administrative tools, or disrupt school systems. In some cases, the behavior is accidental. In others, it is executed with surprising technical precision.
Why are schools especially vulnerable?
School infrastructure often lags behind modern security standards due to limited budgets, legacy systems, and usability constraints. Traditional cybersecurity training also fails to resonate with student users, leaving gaps that are easily exploited.
Why does the insider threat model fall short in education?
Most insider threat models focus on employees or contractors. This talk challenges that assumption and explains why students represent a uniquely unpredictable risk profile that requires a different defensive mindset.
What mitigation strategies actually work?
Attendees will gain insight into risk mitigation strategies designed specifically for educational environments. Topics include behavioral monitoring, digital citizenship programs, policy design, and technical controls that balance security with accessibility.
Who should watch this talk?
Whether you are an educator, school administrator, IT professional, or security leader, this session will change how you think about insider threats in education.
What is the key takeaway?
The most dangerous insider threat in a school may not be malicious. It might be curious, bored, or sitting in the front row with a Chromebook.
Sign Up for WWHF
Register for this year’s Wild West Hackin Fest here:
wildwesthackinfest.com/register
Get access to workshops, labs, and sessions taught by experienced practitioners, all focused on real world defensive and investigative skills.
#cybersecurity #educationsecurity #insiderthreat #infosec #k12 #highereducation #edtech #digitalcitizenship #blueteam #cyberawareness
///Black Hills Infosec Socials
Twitter: twitter.com/BHinfoSecurity
Mastodon: https://infosec.exchange/@blackhillsinfosec
LinkedIn: linkedin.com/company/antisyphon-training
Discord: discord.gg/ffzdt3WUDe
///Black Hills Infosec Shirts & Hoodies
spearphish-general-store.myshopify.com/collections/bhis-shirt-collections
///Black Hills Infosec Services
Active SOC: blackhillsinfosec.com/services/active-soc
Penetration Testing: blackhillsinfosec.com/services
Incident Response: blackhillsinfosec.com/services/incident-response
///Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: backdoorsandbreaches.com
Play B&B Online: play.backdoorsandbreaches.com
///Antisyphon Training
Pay What You Can: antisyphontraining.com/pay-what-you-can
Live Training: antisyphontraining.com/course-catalog
On Demand Training: antisyphontraining.com/on-demand-course-catalog
Antisyphon Discord: discord.gg/antisyphon
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training
///Educational Infosec Content
Black Hills Infosec Blogs: blackhillsinfosec.com/blog
Wild West Hackin' Fest YouTube: youtube.com/wildwesthackinfest
Antisyphon Training YouTube: youtube.com/antisyphontraining
Active Countermeasures YouTube: youtube.com/activecountermeasures
Threat Hunter Community Discord: discord.gg/threathunter
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: wildwesthackinfest.com










