Dylan Shroll

Cybersecurity and Adversary Engagement

My Story

I got into cybersecurity the way a lot of people do — through curiosity and a healthy dose of "wait, that's not supposed to work like that." But the reason I stayed? That's a different story. Early on, I realized something that changed how I think about this whole field: every vulnerability has a person on the other end of it. A nurse who clicked a link because she was rushing between patients. A teenager who didn't know their location was being shared with someone who shouldn't have it. A small company that couldn't afford the tools the big players take for granted. Security isn't really about systems — it's about the people those systems are supposed to protect. That belief shapes everything I do.

Passion Projects

Application Security

I’ve been working in application security on-and-off for the duration of my career. I’ve designed and implemented application security programs for everything from legacy .Net applications to cloud-native Python and JS applications. I’ve worked through dynamic and static testing regimens, change management procedures, and code reviews, all resulting in a more secure, value-driven application process.

Lies, Lures, and LLM’s

Beginning in 2021, I’ve been researching the potential applications of large language models on cyber-deception operations. Having realized the ability of LLM’s to automate deception operations targeting the recon phase of the Cyber Kill Chain, I’ve designed and implemented a fine-tuned model that delivers higher fidelity simulacra and personas. These personas were able to engage with targets semi-autonomously, allowing over 100 adversary accounts to be identified and turned over to platforms for violating TOS.

QYRC.org

As a board member for the Des Moines, Iowa, Queer Youth Resource Center, I’ve been fortunate enough to contribute to the digital infrastructure of the organization, most notably putting together a website, centralizing communications management, and facilitating growth. Keep in touch with us at qyrc.org, we’ve got some amazing events we’re planning for this year!

Interests

Adversary Engagement
Application Security
Cyber Deception
House Plants
LangChain
LangGraph
Operations Management
Python
Threat Hunting
XDR

Where to Find Me