Media Summary: In our highly rated 2023 talk "Evil Digital Twin", we warned that large language models (LLMs) were exploiting the cognitive ... Is there a security boundary between Active Directory and Entra ID in a hybrid environment? The answer to this question, while ... What would happen if I simply logged in to this internal

Black Hat Usa 2025 Windows - Detailed Analysis & Overview

In our highly rated 2023 talk "Evil Digital Twin", we warned that large language models (LLMs) were exploiting the cognitive ... Is there a security boundary between Active Directory and Entra ID in a hybrid environment? The answer to this question, while ... What would happen if I simply logged in to this internal You get what you optimize for. The current trajectory of major AI research labs emphasizes training large language models (LLMs) ... Anti-cheat is a gold mine of interesting, novel defenses—battle-hardened from years of attrition in a defender's worst nightmare. The flexibility and power of large language models (LLMs) are now well understood, driving their integration into a wide array of ...

Compromising a well-protected enterprise used to require careful planning, proper resources, and the ability to execute. For nearly a decade, traffic distribution systems (TDSs) have enabled cybercriminals to hide the true nature of their operations. Keynote: From Slide Rules to GenAi - Musings of a Graybeard Public Servant on What's Changing, What's Not, and What Should ... The overwhelming majority of AI applications run on NVIDIA hardware and software and use NVIDIA tools to containerize and ... AI red teaming has proven that eliminating prompt injection is a lost cause. Worse, many developers consider guardrails a ...

Photo Gallery

Black Hat USA 2025 | Windows Hell No for Business
Black Hat USA 2025 | The First 30 Months of Psychological Manipulation of Humans by AI
Black Hat USA 2025 | Advanced Active Directory to Entra ID Lateral Movement Techniques
Black Hat USA 2025 | Abusing Entra OAuth for Fun and Access to Internal Microsoft Applications
Black Hat USA 2025 | Training Specialist Models: Automating Malware Development
Black Hat USA 2025 | Watching the Watchers: Exploring and Testing Defenses of Anti-Cheat Systems
Black Hat USA 2025 | Unveiling Hidden Preauth Vulnerabilities in Windows HTTP Services
Black Hat USA 2025 | From Prompts to Pwns: Exploiting and Securing AI Agents
Black Hat USA 2025 | AI Enterprise Compromise - 0click Exploit Methods
Black Hat USA 2025 | No Hoodies Here: Organized Crime in AdTech
Black Hat USA 2025 Keynote | From Slide Rules to GenAi
Black Hat USA 2025 | Breaking Out of The AI Cage: Pwning AI Providers with NVIDIA Vulnerabilities
View Detailed Profile
Black Hat USA 2025 | Windows Hell No for Business

Black Hat USA 2025 | Windows Hell No for Business

Windows

Black Hat USA 2025 | The First 30 Months of Psychological Manipulation of Humans by AI

Black Hat USA 2025 | The First 30 Months of Psychological Manipulation of Humans by AI

In our highly rated 2023 talk "Evil Digital Twin", we warned that large language models (LLMs) were exploiting the cognitive ...

Black Hat USA 2025 | Advanced Active Directory to Entra ID Lateral Movement Techniques

Black Hat USA 2025 | Advanced Active Directory to Entra ID Lateral Movement Techniques

Is there a security boundary between Active Directory and Entra ID in a hybrid environment? The answer to this question, while ...

Black Hat USA 2025 | Abusing Entra OAuth for Fun and Access to Internal Microsoft Applications

Black Hat USA 2025 | Abusing Entra OAuth for Fun and Access to Internal Microsoft Applications

What would happen if I simply logged in to this internal

Black Hat USA 2025 | Training Specialist Models: Automating Malware Development

Black Hat USA 2025 | Training Specialist Models: Automating Malware Development

You get what you optimize for. The current trajectory of major AI research labs emphasizes training large language models (LLMs) ...

Black Hat USA 2025 | Watching the Watchers: Exploring and Testing Defenses of Anti-Cheat Systems

Black Hat USA 2025 | Watching the Watchers: Exploring and Testing Defenses of Anti-Cheat Systems

Anti-cheat is a gold mine of interesting, novel defenses—battle-hardened from years of attrition in a defender's worst nightmare.

Black Hat USA 2025 | Unveiling Hidden Preauth Vulnerabilities in Windows HTTP Services

Black Hat USA 2025 | Unveiling Hidden Preauth Vulnerabilities in Windows HTTP Services

Diving into

Black Hat USA 2025 | From Prompts to Pwns: Exploiting and Securing AI Agents

Black Hat USA 2025 | From Prompts to Pwns: Exploiting and Securing AI Agents

The flexibility and power of large language models (LLMs) are now well understood, driving their integration into a wide array of ...

Black Hat USA 2025 | AI Enterprise Compromise - 0click Exploit Methods

Black Hat USA 2025 | AI Enterprise Compromise - 0click Exploit Methods

Compromising a well-protected enterprise used to require careful planning, proper resources, and the ability to execute.

Black Hat USA 2025 | No Hoodies Here: Organized Crime in AdTech

Black Hat USA 2025 | No Hoodies Here: Organized Crime in AdTech

For nearly a decade, traffic distribution systems (TDSs) have enabled cybercriminals to hide the true nature of their operations.

Black Hat USA 2025 Keynote | From Slide Rules to GenAi

Black Hat USA 2025 Keynote | From Slide Rules to GenAi

Keynote: From Slide Rules to GenAi - Musings of a Graybeard Public Servant on What's Changing, What's Not, and What Should ...

Black Hat USA 2025 | Breaking Out of The AI Cage: Pwning AI Providers with NVIDIA Vulnerabilities

Black Hat USA 2025 | Breaking Out of The AI Cage: Pwning AI Providers with NVIDIA Vulnerabilities

The overwhelming majority of AI applications run on NVIDIA hardware and software and use NVIDIA tools to containerize and ...

Black Hat USA 2025 | Reinventing Agentic AI Security With Architectural Controls

Black Hat USA 2025 | Reinventing Agentic AI Security With Architectural Controls

AI red teaming has proven that eliminating prompt injection is a lost cause. Worse, many developers consider guardrails a ...