[Speakers]
Adversary Village at
DEF CON 34

Jun Miura

Offensive Security Researcher at Fujitsu LTD

Jun Miura is a red team consultant and researcher at Fujitsu LTD, specializing in offensive security, red teaming and AI/LLM security. His recent research mainly focuses on utilizing and abusing local LLMs from an attacker's perspective. He has presented several research on this topic at Black Hat Europe, CERT-EU Annual Conference and BSides Las Vegas.

Reconstructing Red Team Engagements: Developing Your Own Red Agent

10:30-11:55 PDT | Sunday, Aug 9th 2026 | Adversary Village Hands-on Activity Area, Las Vegas Convention Center
Hands-on Activity

Abstract

With recent advances in AI technology, large language models (LLMs) are increasingly being applied to red team engagements. In this context, current uses of LLMs have mainly focused on automating or streamlining operations during the engagement itself. However, the potential benefits of LLMs extend beyond this. We have developed "Red Agent", a kind of AI agent system designed to enhance the entire lifecycle of red team engagements.


In a typical approach, after a red team engagement, blue team members should implement remediation measures based on the engagement report. It is necessary to evaluate their effectiveness, which often becomes a bottleneck because it requires substantial manual effort of both blue and red team members to interpret the findings on the report, reproduce relevant attack paths, and verify mitigations. In particular, "Red Agent" focuses on and automates this follow-up process, and significantly reduced the workload.


In contrast, the introduction of "Red Agent" also led to the optimization of key engagement artifacts produced by the red team, including operational logs and report structures, for the efficient follow-up process. Moreover, by accumulating refined data and knowledge and applying them to tasks such as model training, "Red Agent" can be utilized in the operations of red team engagements. As a result, "Red Agent" reconstructed the entire life cycle of red team engagements - by clearly defining the division of labor between manual tasks and AI-driven tasks, red team members were able to focus on more advanced operations, thereby successfully enhancing the value of the engagement itself.


This talk provides not only the technical details of Red Agent, but also demo and case-study.

Agency.


Join Adversary Village Discord Server.

Join Adversary Village official Discord server to connect with our amazing community of adversary simulation experts and offensive security researchers!