Header image

Session 3.3e Update: Domain Zero: Instrumenting the Human Domain before AI Does

Tracks
Thursday, November 19, 2026
10:30 AM - 11:30 AM
Sutherland Theatre

Presentation Outline

We numbered the domains of warfare, land, sea, air, space, cyber, and built intelligence methodology for each. But every domain has a precondition: a human deciding to act. We have a human domain, but we've only pointed it outward: influence operations, cognitive warfare, at an adversary's population. It never accounted for our own people and systems, or the human under every other domain. The human domain isn't the sixth; it's the original and we've only built half of it. That gap was tolerable while harm stayed legible at human speed. AI ends that. AI is the first capability whose native actions are human-domain actions, persuasion, deception, manipulation, social engineering,now at machine scale. The domain we instrumented least is the one our future is most exposed through. For a force, this doesn't arrive as five separate problems. Social engineering against AI, insider threat, radicalisation, technology-facilitated abuse, intimate-partner violence are structurally identical behaviour; only the target and tooling change. It surfaces at once as a personnel crisis, an insider-threat surface, and a susceptibility to foreign influence: one un-instrumented domain, not five. This isn't the cognitive-warfare conversation rebadged. The same security and intelligence methodology (kill-chain analysis, STIX 2.1/TAXII, adversarial-behaviour modelling) extends to human-motivated, human- and AI-executed threats without modification. Behavioural threat intelligence becomes the detection layer for social-engineering attacks against AI that technical red-teaming can't surface alone. The same method that models the human adversary models the adversary's newest weapon. Domain Zero isn't a new attack surface: it's the original one.


Speaker

Agenda Item Image
Ms Emily Holyoake
CEO and Founder
Not A Standard

Biography

Emily Holyoake is the CEO and Founder of Not A Standard, a sovereign Australian security and intelligence company, and the creator of SAFE, a behavioural threat intelligence platform that applies structured cyber threat intelligence methodology to interpersonal harm (abuse and exploitation) domains. Her work sits at the intersection of intelligence tradecraft, criminology, behavioural science, and AI, building practical frameworks for pattern recognition and analysis that extend beyond traditional cyber boundaries.

A proud Wiradjuri woman and neurodiversity advocate, Emily's background spans human-centred security, intelligence analysis, and policy. She is driven by the conviction that effective security begins with seeing clearly and that the foundational skills of observation, reasoning under uncertainty, and evidence-based judgement are what make defenders effective, regardless of the tools they use.
loading