Title: Antivirus (In)Security Abstract: Now a days Antivirus Software are the larger defense deployed in corporations and final user desktops (mail servers, file servers, http and ftp internet gateways, workstations, etc) and their engines are reused in the IPSs that the same vendors develop. This talk will be about the findings and lessons learned while targeting the antivirus software that most of companies and users use. The talk will focus mainly in the type of Bugs found (stack based buffer overflows, heap overflows, integer issues, uninitialized variables, traversals, etc) and the techniques used to find them. BIO: Sergio 'shadown' Alvarez is a security researcher that enjoys playing with technology, breaking things and coding exploits. Sergio has been working for the last 2 years as a Security Solution Consultant at n.runs GmbH, conducting Security Code Reviews, Binary analysis, and Pen-Testing for large corporations.