PhysSecHound Has Entered the Building – OpenGraphing Physical Security

Is it possible to visualize physical security attack paths? PhysSecHound is my attempt to answer that question by treating facilities, doors, readers, locks, badges, spaces, and physical assets as an attack graph rather than a set of disconnected systems. The core problem with previous attempts to visualize physical security models is that physical security data usually lives in silos: physical access control systems (PACS), floor plans, asset inventories, and other systems each describe only part of the physical security model. Any attempt to interface with one of these technologies rather than holistically would result in an incomplete graph by default. To overcome this complexity, PhysSecHound does not wait for one system to tell the whole story. Instead of waiting for one system to reveal the whole picture, it lets users model a facility directly, then enrich that model with imported OpenGraph data as collectors become available. Human actors carry credentials, credentials satisfy or bypass controls, controls authorize movement, and movement creates attack paths; every piece can be added as it reveals itself due to the adaptive nature of PhysSecHound. This talk walks the audience through the thought process, modelling challenges, operational workflows and reasoning behind the tool. It also demonstrates live how a modeled facility can reveal physical-to-digital and digital-to-physical attacks. The result is a practical way to unify disconnected physical-security data, making physical security more tangible than ever before.

    Speaker

    FURTHER SESSIONS

  • 1979 called. They already figured it out.

  • A Few Dollars to Disappear: Breaking C2 Beaconing Detection

  • Ants, Bricks and Spiders: Threat Emulation on the VMware Stack

  • Capture The Flag

  • Join us in Amsterdam!

    November 19, 2026

    Hang out, learn something awesome and make new friends.

    Get Tickets