Chris Valasek
Director of Product Security at Cruise (GM) | Famed Jeep Hacker | Autonomous Vehicle & IoT Cybersecurity Expert | DEF CON & Black Hat Speaker
Principal Autonomous Vehicle Security Architect, Cruise | Former NSA Hacker | 4x Pwn2Own Champion | Cybersecurity & IoT Expert
Few people on earth have hacked the iPhone, the Android, and a moving car on a highway — Dr. Charlie Miller has done all three. A former NSA operative and four-time Pwn2Own champion, he forced a 1.4 million-vehicle recall with a single live demonstration. His talks give senior audiences an insider view of how attackers think and where real organizational risk lives.
Want to book Charlie Miller as a speaker for your event? Please provide the info below and we’ll get in touch within 24h:
Cybersecurity speaker Charlie Miller is one of the most technically accomplished ethical hackers alive — a Ph.D. mathematician turned NSA operative whose career-defining discoveries have forced Apple, Fiat Chrysler, and the entire automotive industry to rethink how they defend their systems. Named by Foreign Policy magazine as one of the most skilled hackers in the world, Dr. Miller holds a doctorate in mathematics from the University of Notre Dame and spent five years as a computer hacker for the National Security Agency before bringing that tradecraft to the private sector.
His track record of high-impact, responsible disclosure is virtually unmatched. He was the first person ever to remotely compromise an iPhone — exploiting an SMS vulnerability that allowed complete device takeover without any user interaction — and replicated the feat on Android on its launch day. He won the Pwn2Own competition, widely regarded as the “Super Bowl” of computer hacking, four times, exposing critical flaws in Apple’s Safari browser and MacBook Air that earned him both prize money and the industry’s respect. Beyond mobile, Miller uncovered vulnerabilities in laptop battery firmware and NFC communications, consistently staying ahead of the threat landscape.
Working alongside researcher Chris Valasek at Wired‘s invitation, Dr. Miller demonstrated the most consequential automotive cybersecurity exploit on record: the remote takeover of a 2015 Jeep Cherokee via its cellular-connected infotainment system, with a journalist at the wheel on a St. Louis highway. The pair controlled steering, braking, acceleration, and entertainment — from ten miles away — without ever touching the vehicle. The disclosure forced Fiat Chrysler to recall 1.4 million vehicles and directly triggered new federal attention to automotive cybersecurity standards. It remains the defining moment that elevated vehicle hacking from theoretical concern to urgent industry priority.
Dr. Miller went on to apply that expertise at Twitter, Uber’s Advanced Technology Group, Didi Chuxing, and Cruise Automation, where he serves as Principal Autonomous Vehicle Security Architect. His work has been covered extensively by ABC World News Tonight, The Today Show, NPR, CNN, the New York Times, CNBC, USA Today, and Forbes. He is also co-author of The iOS Hacker’s Handbook, the definitive technical guide to Apple platform vulnerability research.
As a speaker, Charlie Miller translates deeply technical material into urgent, actionable insight for boards, executive teams, and security leaders. His presentations take audiences inside the mind of an attacker — showing not just how breaches happen, but why organizations systematically underestimate risk. Whether addressing enterprise network defense, connected vehicle security, IoT vulnerabilities, or the convergence of AI and cyber risk, Miller’s talks are grounded in real exploits he personally executed, making the threat landscape viscerally real. Senior audiences leave with a sharper understanding of where their exposure lies and what posture changes matter most.
Most cybersecurity strategies are built around compliance checklists — not the reality of how skilled attackers operate. Drawing on his own landmark exploits, Dr. Miller takes audiences inside the attacker mindset: how vulnerabilities are discovered, how systems are mapped, and how organizations consistently leave the same categories of exposure unaddressed. Attendees leave with a fundamentally different view of where their risk actually lives and what defenses move the needle.
The vehicle that proved a car could be hijacked from ten miles away was not a prototype — it was a production model on a public highway. Dr. Miller draws on the famous Jeep Cherokee exploit and his work as Principal Autonomous Vehicle Security Architect at Cruise to examine what secure connected vehicle design looks like, why legacy automotive architecture creates systemic risk, and what the industry must solve before autonomy scales. Essential for automotive, transportation, logistics, and smart infrastructure audiences.
Enterprise networks are defended by people who have rarely tried to break them. Charlie Miller has spent decades doing exactly that — across mobile devices, embedded systems, and complex connected infrastructure. In this session, he walks audiences through the reconnaissance, pivot, and exploitation techniques attackers use against real enterprise environments, translating each step into concrete defensive priorities. The result is a cybersecurity conversation that resonates with both the CISO and the board.
The proliferation of connected devices — from factory floors to smart buildings to consumer electronics — has dramatically expanded the attack surface available to adversaries. Dr. Miller examines how IoT and AI-enabled systems introduce new classes of vulnerability, how attackers are already exploiting them, and what organizations must prioritize as their environments grow more interconnected. A forward-looking session for technology, operations, and executive leadership audiences navigating digital transformation.
| Basic Data Protection Information | |
|---|---|
| Data controller | AURUM SPEAKERS BUREAU S.L. |
| Address | Parc Audiovisual de Catalunya 1, Oficina S11, 08225 Terrassa, Spain |
| Purposes | We will use your data to respond to your requests and deliver our services to you. |
| Marketing | We will only send you marketing correspondence if you have given your prior consent, which you can do by ticking the box for that purpose. |
| Lawful basis | We will only process your data if you have given your prior consent, which you can do by ticking the box for that purpose. |
| Recipients | Generally, only our members of staff who have been duly authorised may access the data that you have provided. |
| Your Rights | You have the right to know what information we hold about you, to rectify it and to erase it, as explained in the additional information available on our website. |
| Additional Information | For more information, please see “PRIVACY POLICY” on our website. |