Admin Rights are not Human Rights - Sami Laiho

Disobey 2026 · Main Stage

In his compelling talk, "Admin Rights are not Human Rights," Sami Laiho, a seasoned Microsoft Windows MVP and security auditor, delivers a stark warning about the futility of reactive security measures in today's threat landscape. Laiho argues that with approximately 1 million new pieces of malware appearing daily, 96% of which are unique, traditional antivirus and reactive protections are mathematically incapable of securing modern enterprises. Instead, he champions a proactive security posture, focusing heavily on the critical importance of removing local administrator rights from end-users and even developers.

AI review

A competent, well-structured evangelism talk on least privilege with live demos that land cleanly. Laiho clearly knows Windows internals cold and the BitLocker/Entra ID misconfiguration point is a genuinely useful practical finding — but the core thesis (remove local admin, implement app control, tier your AD) is material that's been circulating in Windows hardening circles since roughly the Vista era. Good execution on a well-worn topic.

Watch on YouTube