Black Hat

Black Hat

Creator
0 followers

Cutting-edge enterprise security research talks

SecTor 2025 | Security and Safety Testing for Agentic AI
VideoApr 27, 2026

SecTor 2025 | Security and Safety Testing for Agentic AI

The SecTor 2025 talk highlighted the urgent need for robust security and safety testing of agentic AI systems. Presented by a ServiceNow AI R&D leader, the speaker framed the discussion around the explosive growth of AI adoption—200 million weekly ChatGPT users,...

By Black Hat
SecTor 2025 | Foreign Information Manipulation and Interference (FIMI) (Disinformation 2.0)
VideoApr 26, 2026

SecTor 2025 | Foreign Information Manipulation and Interference (FIMI) (Disinformation 2.0)

The SecTor 2025 session titled “Foreign Information Manipulation and Interference (FIMI)” examined how state‑backed actors deliberately inject distorted content into the information ecosystem to sway public opinion and policy. Speaker Frankie Sagerman traced disinformation from Cold‑War KGB operations to today’s AI‑enhanced...

By Black Hat
SecTor 2025 | Ghost SIM Attack: Hacking Mobile Network Authentication Policies
VideoApr 25, 2026

SecTor 2025 | Ghost SIM Attack: Hacking Mobile Network Authentication Policies

The SecTor 2025 presentation introduced the GOIM attack, a technique that extracts critical SIM card data—such as IMSI and ICCID—and leverages weak mobile‑network authentication policies to commit fraud across 2G, 3G, 4G, and 5G systems. The speakers detailed multiple extraction methods,...

By Black Hat
SecTor 2025 | CAN Bus for Car Nerds and Security People Who Should Know Better
VideoApr 25, 2026

SecTor 2025 | CAN Bus for Car Nerds and Security People Who Should Know Better

The presentation at SecTor 2025 focused on the Controller Area Network (CAN) bus, demystifying its operation for both automotive enthusiasts and security professionals. The speaker, a former IT security specialist turned EV builder, explained why modern vehicles—especially those built after...

By Black Hat
SecTor 2025 | Hacking Policy for the Public Good
VideoApr 24, 2026

SecTor 2025 | Hacking Policy for the Public Good

Tanya Jen, a former Canadian government security lead turned independent advocate, used her SecTor 2025 talk to spotlight the nation’s glaring absence of a mandatory, detailed secure‑coding policy for federal agencies. Drawing on her 13‑year tenure—including pentesting the prime minister’s...

By Black Hat
SecTor 2025 | Behind Closed Doors - Bypassing RFID Readers & Physical Access Controls
VideoApr 24, 2026

SecTor 2025 | Behind Closed Doors - Bypassing RFID Readers & Physical Access Controls

The SecTor 2025 presentation demonstrates practical methods for breaching physical access controls, emphasizing that RFID readers are only one layer of a broader security ecosystem. Julius Dunuk, a red‑team specialist, showcases low‑tech tactics—such as using an under‑door tool to catch...

By Black Hat
SecTor 2025 | Interactive Network Visualization of Data Poisoning Attacks
VideoApr 21, 2026

SecTor 2025 | Interactive Network Visualization of Data Poisoning Attacks

The SecTor 2025 talk introduced an interactive approach to visualizing data‑poisoning attacks by treating machine‑learning training sets as network graphs. By mapping nodes and edges that represent data points and their relationships, the presenter demonstrated how clean and compromised datasets...

By Black Hat
SecTor 2025 | EDR Bypass Testing: A Systematic Approach to Validating Endpoint Defenses
VideoApr 20, 2026

SecTor 2025 | EDR Bypass Testing: A Systematic Approach to Validating Endpoint Defenses

The SecTor 2025 session introduced a systematic methodology for testing endpoint detection and response (EDR) defenses, emphasizing that modern attackers focus on bypassing rather than merely evading these solutions. Jacob and Ryan from Canadian MDR provider Eentire traced the evolution...

By Black Hat
SecTor 2025 | Tracing Adversary Steps Through Cyber-Physical Attack Lifecycle
VideoApr 20, 2026

SecTor 2025 | Tracing Adversary Steps Through Cyber-Physical Attack Lifecycle

The SecTor 2025 presentation examined why breaching a cyber‑physical system does not automatically translate into physical damage. Using recent water‑utility incidents and a live HMI demonstration, the speaker showed that system safeguards—such as valve‑size limits and automatic shut‑offs—can absorb malicious...

By Black Hat
SecTor 2025 | Unmasking a North Korean IT Farm
VideoApr 19, 2026

SecTor 2025 | Unmasking a North Korean IT Farm

Signia’s director Abby Samira presented at SecTor 2025 a detailed case study of a North Korean‑run “IT farm,” where threat actors masquerade as legitimate IT employees to breach enterprises worldwide. The briefing linked the operation to recent FBI alerts that...

By Black Hat
SecTor 2025 | How Adversaries Beat User-Mode Protection Engines for Over a Decade
VideoApr 19, 2026

SecTor 2025 | How Adversaries Beat User-Mode Protection Engines for Over a Decade

At SecTor 2025, researcher Omri Misgav presented a decade‑long study of how adversaries bypass user‑mode endpoint protection engines. By analyzing open‑source tools, 55 data sources and high‑profile malware families such as Emotet, Hive ransomware and Winnti, the team identified 27...

By Black Hat
SecTor 2025 | Investigate & Respond to Attacks on GenAI Chatbots
VideoApr 18, 2026

SecTor 2025 | Investigate & Respond to Attacks on GenAI Chatbots

The SecTor 2025 session, led by Airbnb senior engineer Alan Sto, examined how organizations can investigate and respond to attacks on generative‑AI chatbots. Sto framed the discussion around a practical incident‑response playbook, emphasizing the need to understand chatbot architecture, threat...

By Black Hat
SecTor 2025 | From Days to Hours: Accelerating Cyber Threat Response with AI Agents
VideoApr 18, 2026

SecTor 2025 | From Days to Hours: Accelerating Cyber Threat Response with AI Agents

At SecTor 2025, Ival, a veteran of Israel’s 8200 unit and director of security research at Hunters, unveiled a weekend‑project AI platform that compresses cyber‑threat response cycles from days into hours. The talk framed the problem around the "black" and...

By Black Hat
SecTor 2025 | The (Un)Rightful Heir: My dMSA Is Your New Domain Admin
VideoApr 17, 2026

SecTor 2025 | The (Un)Rightful Heir: My dMSA Is Your New Domain Admin

The SecTor 2025 talk unveiled a critical Active Directory flaw tied to the newly introduced Delegated Managed Service Account (DMSA). The speaker, Yval Gordon, walked through the DMSA migration workflow—linking a legacy service account, granting temporary authentication rights, and finally...

By Black Hat
SecTor 2025 | What Happens When Your Digital Voice Clone Goes Rogue
VideoApr 17, 2026

SecTor 2025 | What Happens When Your Digital Voice Clone Goes Rogue

The presentation detailed Microsoft’s experimental "Speak for Me" feature, an accessibility tool that records a user’s voice before it deteriorates and later synthesizes speech in that personal voice. The workflow involves capturing voice samples, uploading them to Azure’s Custom Neural...

By Black Hat
Black Hat Stories | David Oswald, Cyber Security Professor at Durham University
VideoApr 16, 2026

Black Hat Stories | David Oswald, Cyber Security Professor at Durham University

Professor David Oswald of Durham University explains why Black Hat is valuable for academia, highlighting its practical, hands‑on keynotes that differ from traditional scholarly conferences. He notes the event brings together a diverse crowd—academics, independent consultants, and security‑focused companies—creating a fertile...

By Black Hat
SecTor 2025 | DriveThru Hacking: Now with Delivery
VideoApr 15, 2026

SecTor 2025 | DriveThru Hacking: Now with Delivery

The video presents a research project titled “Drive‑Thru Hacking: Now with Delivery,” demonstrating how dash‑cam devices can be compromised when a vehicle stops at a drive‑through. The team, led by Benjamin So and colleagues, scanned over 1,000 Wi‑Fi SSIDs in...

By Black Hat
SecTor 2025 | Sharing Is Caring About an RCE Attack Chain on Quick Share
VideoApr 14, 2026

SecTor 2025 | Sharing Is Caring About an RCE Attack Chain on Quick Share

At SecTor 2025, SafeReach researchers Orya and Cohen unveiled a sophisticated remote‑code‑execution (RCE) attack chain targeting Google’s Quick Share, now available on Windows. The talk detailed how the team reverse‑engineered the Nearby Connections protocol, built a custom "QuickSniff" logger, and leveraged...

By Black Hat
SecTor 2025 | Leading Across the Generations
VideoApr 14, 2026

SecTor 2025 | Leading Across the Generations

The talk at SecTor 2025 focused on leading across generations in cybersecurity, emphasizing that technical expertise alone isn’t enough; leaders must grasp the cultural and motivational traits of each age cohort. The speaker highlighted how adoption timelines for technologies have shrunk—from...

By Black Hat
SecTor 2025 | One Agent to Rule Them All: How One Malicious Agent Hijacks A2A System
VideoApr 13, 2026

SecTor 2025 | One Agent to Rule Them All: How One Malicious Agent Hijacks A2A System

The SecTor 2025 talk highlighted a growing security dilemma: multi‑agent generative‑AI systems, exemplified by Google’s A2A (Agent‑to‑Agent) protocol, can be weaponized by a single malicious agent that hijacks an entire automation ecosystem. The presenters, senior AI security researchers from Zenity...

By Black Hat
Black Hat USA 2025 | ReVault! Compromised by Your Secure SoC
VideoApr 10, 2026

Black Hat USA 2025 | ReVault! Compromised by Your Secure SoC

At Black Hat USA 2025, Cisco Talos senior researcher Firo Verity presented his findings on Dell’s Control Vault secure‑on‑chip (SoC) and how it can be compromised. Verity showed that the Broadcom‑based BCM58202 chip, used in over 100 Dell Latitude and Precision models,...

By Black Hat
Black Hat USA 2025 | LLM-Driven Reasoning for Automated Vulnerability Discovery Behind Hall-of-Fame
VideoApr 8, 2026

Black Hat USA 2025 | LLM-Driven Reasoning for Automated Vulnerability Discovery Behind Hall-of-Fame

The Black Hat USA 2025 talk introduced “Whisper,” a large‑language‑model‑driven system that automatically discovers vulnerabilities in stripped ARM64 binaries. The presenter, a researcher guiding an undergraduate team, explained how the tool earned a Hall of Fame award at Samsung...

By Black Hat
Black Hat USA 2025 | Leveraging Jamf for Red Teaming in Enterprise Environments
VideoApr 7, 2026

Black Hat USA 2025 | Leveraging Jamf for Red Teaming in Enterprise Environments

The Black Hat USA 2025 session highlighted how adversary emulation teams can weaponize Jamf Pro—Apple’s enterprise‑device management platform—to conduct red‑team operations in Fortune‑500 environments. Speakers Lance Kane and Dan Mayer described Jamf’s prevalence in developer‑heavy organizations, its default “set‑and‑forget” configuration,...

By Black Hat
Black Hat USA 2025 | 2 Cops 2 Broadcasting: TETRA End-To-End Under Scrutiny
VideoApr 7, 2026

Black Hat USA 2025 | 2 Cops 2 Broadcasting: TETRA End-To-End Under Scrutiny

Midnight Blue, a Dutch cyber‑security consultancy, presented at Black Hat USA 2025 a deep dive into the end‑to‑end encryption layer of the Tetra terrestrial trunked radio standard. Tetra, widely adopted for police, military and SCADA communications, has long kept its...

By Black Hat
Black Hat USA 2025 | The 5G Titanic
VideoApr 6, 2026

Black Hat USA 2025 | The 5G Titanic

The presentation likened the 5G architecture to the Titanic, arguing that, like the ship’s supposedly watertight compartments, 5G’s control‑plane and user‑plane are assumed to be isolated but in practice lack vertical sealing. The speaker outlined how the network’s design—AMF, SMF...

By Black Hat
Black Hat USA 2025 | AI Agents for Offsec with Zero False Positives
VideoApr 5, 2026

Black Hat USA 2025 | AI Agents for Offsec with Zero False Positives

Brendan Dolan‑Gavitt opened his Black Hat USA 2025 talk by warning that the promise of AI‑driven offensive security is haunted by a spectre of false positives. Drawing on his decade‑long experience in software security and recent work on GitHub Copilot,...

By Black Hat
Black Hat USA 2025 | Protecting Small Organizations in the Era of AI Bots
VideoApr 5, 2026

Black Hat USA 2025 | Protecting Small Organizations in the Era of AI Bots

The presentation at Black Hat USA 2025 focused on defending small, resource‑constrained organizations against the surge of AI‑driven bots. Citing the Impreva 2025 BadBot report, the speaker highlighted that 51% of all internet traffic is now non‑human, and that 80%...

By Black Hat
Black Hat USA 2025 | Kernel-Enforced DNS Exfiltration Security
VideoApr 4, 2026

Black Hat USA 2025 | Kernel-Enforced DNS Exfiltration Security

The presentation by independent researcher Vang Parnes focuses on the growing threat of DNS‑based command‑and‑control (C2) and tunneling techniques targeting Linux systems, especially in cloud environments. He outlines why DNS is the favored back‑door for advanced persistent threats (APTs), citing...

By Black Hat
Black Hat USA 2025 | Burning, Trashing, Spacecraft Crashing
VideoApr 4, 2026

Black Hat USA 2025 | Burning, Trashing, Spacecraft Crashing

The Black Hat USA 2025 session, led by Mileno Star and Andre of Vision Space, highlighted the growing cyber‑risk landscape for space systems. With commercial constellations such as Starlink and OneWeb proliferating alongside renewed military satellite launches, the orbital environment now presents a...

By Black Hat
Black Hat USA 2025 | Universal and Context-Independent Triggers for Precise Control of LLM Outputs
VideoApr 4, 2026

Black Hat USA 2025 | Universal and Context-Independent Triggers for Precise Control of LLM Outputs

The Black Hat presentation introduced a novel class of prompt‑injection attacks called universal adversarial triggers, which allow attackers to hijack large language model (LLM) outputs with a single, reusable token sequence. By decoupling the malicious payload from the trigger,...

By Black Hat
Black Hat Stories | Or Yair, Security Research Team Lead at SafeBreach
VideoApr 2, 2026

Black Hat Stories | Or Yair, Security Research Team Lead at SafeBreach

Ori Yair, security research team lead at SafeBreach, reflects on his Black Hat experiences, from his first nerve‑wracking speaking slot to his ongoing focus on Windows‑based vulnerability research. He frames the conference as a catalyst for turning technical curiosity into...

By Black Hat
Black Hat USA 2025 | Ghost Calls: Abusing Web Conferencing for Covert Command & Control
VideoApr 1, 2026

Black Hat USA 2025 | Ghost Calls: Abusing Web Conferencing for Covert Command & Control

The Black Hat USA 2025 talk introduced “ghost calls,” a technique that hijacks commercial web‑conferencing platforms to create covert, short‑term command‑and‑control (C2) channels. Presenter Adam Crosser explained that traditional C2 methods—socks proxies, long‑term implants, or peer‑to‑peer tunnels—often suffer from latency,...

By Black Hat
Black Hat USA 2025 | Practical Attacks on Nostr, a Decentralized Censorship-Resistant Protocol
VideoApr 1, 2026

Black Hat USA 2025 | Practical Attacks on Nostr, a Decentralized Censorship-Resistant Protocol

The Black Hat USA 2025 session, led by HKuma of NICT Japan, examined practical attacks on Nostr, a decentralized, censorship‑resistant social networking protocol. The talk highlighted how Nostr shifts trust to client devices, eliminating central servers, and presented the researchers’...

By Black Hat
Black Hat USA 2025 | Uncovering and Responding to the Tj-Actions Supply Chain Breach
VideoApr 1, 2026

Black Hat USA 2025 | Uncovering and Responding to the Tj-Actions Supply Chain Breach

The presentation detailed a supply‑chain breach that hit the popular TJ‑actions/change‑files GitHub Action. On March 14, an automated alert flagged an unexpected outbound request, leading the Step Security team to discover that the action’s release tags had been repointed to a...

By Black Hat
Black Hat USA 2025 | More Flows, More Bugs: Empowering SAST with LLMs and Customized DFA
VideoMar 31, 2026

Black Hat USA 2025 | More Flows, More Bugs: Empowering SAST with LLMs and Customized DFA

The Black Hat USA 2025 talk, presented by Yuan of Tencent Security Winding Lab, detailed a novel approach to strengthening static application security testing (SAST) by marrying large language models (LLMs) with a customized data‑flow analysis (DFA) engine. The session...

By Black Hat
Black Hat Asia 2026 Welcome Video
VideoMar 31, 2026

Black Hat Asia 2026 Welcome Video

Black Hat Asia 2026, the premier cybersecurity conference for the Asia‑Pacific region, will convene at Singapore’s Marina Bay Sands this April. President Susie Pallet’s welcome video frames the event as a critical gathering of the region’s top security professionals. The agenda...

By Black Hat
Black Hat USA 2025 | Evaluating Autonomous Vehicle Resilience
VideoMar 27, 2026

Black Hat USA 2025 | Evaluating Autonomous Vehicle Resilience

The Black Hat USA 2025 presentation from Zuks engineers focused on the resilience of autonomous‑driving vehicles through a human‑in‑the‑loop teleoperation model. Jan Hu and Shane Gupta explained how a remote operator can intervene when the AI’s confidence drops, sending waypoint...

By Black Hat
Black Hat USA 2025 | Use and Abuse of Personal Information -- Politics Edition
VideoMar 26, 2026

Black Hat USA 2025 | Use and Abuse of Personal Information -- Politics Edition

The Black Hat USA 2025 presentation revealed a five‑year research project that generated 1,400 realistic fake voter identities to probe how political campaigns collect and use personal data during the 2024 election cycle. By automating sign‑ups for newsletters and phone lines, the...

By Black Hat
Black Hat USA 2025 | Smart Charging, Smarter Hackers: The Unseen Risks of ISO 15118
VideoMar 25, 2026

Black Hat USA 2025 | Smart Charging, Smarter Hackers: The Unseen Risks of ISO 15118

The Black Hat USA 2025 talk examined ISO 15118, the emerging standard that underpins smart‑charging and vehicle‑to‑grid (V2G) communication for electric vehicles. By allowing chargers to modulate demand and feed power back to the grid, the protocol promises to alleviate...

By Black Hat
Black Hat Asia 2026 Speaker Spotlight - Tal Be'ery
VideoMar 24, 2026

Black Hat Asia 2026 Speaker Spotlight - Tal Be'ery

Tal Be'ery returned to Black Hat Asia 2026 to spotlight a growing crisis: billions of WhatsApp users are exposed to newly uncovered flaws that allow strangers to hijack their devices. Leveraging the conference’s blend of cutting‑edge research and Singapore’s relaxed vibe, he framed the...

By Black Hat
Black Hat USA 2025 | HTTP/1.1 Must Die! The Desync Endgame
VideoMar 23, 2026

Black Hat USA 2025 | HTTP/1.1 Must Die! The Desync Endgame

The Black Hat presentation titled “HTTP/1.1 Must Die! The Desync Endgame” warned that the fundamental design flaw in HTTP/1.1—its inability to reliably delineate where one request ends and the next begins—continues to enable powerful desynchronisation attacks. While many organisations have...

By Black Hat
Black Hat USA 2025 | Peril at the Plug: Investigating EV Charger Security and Safety Failures
VideoMar 22, 2026

Black Hat USA 2025 | Peril at the Plug: Investigating EV Charger Security and Safety Failures

The Black Hat USA 2025 presentation titled “Peril at the Plug” examined the alarming security and safety gaps in electric‑vehicle (EV) chargers, drawing on findings from the PON (Pon Automotive) hacking contest. The speakers outlined the extensive attack surface—multiple CPUs,...

By Black Hat
Black Hat USA 2025 | Hackers Dropping Mid-Heist Selfies
VideoMar 21, 2026

Black Hat USA 2025 | Hackers Dropping Mid-Heist Selfies

The Black Hat USA 2025 talk focused on a novel AI‑driven approach to dissecting “mid‑heist selfies” – screenshots harvested by information‑stealer malware. These malware families exfiltrate credentials, crypto wallets, password managers and system details without needing admin rights, then...

By Black Hat
Black Hat USA 2025 | Analyzing Smart Farming Automation Systems for Fun and Profit
VideoMar 19, 2026

Black Hat USA 2025 | Analyzing Smart Farming Automation Systems for Fun and Profit

The Black Hat USA 2025 talk examined the rapid rise of smart‑farming automation kits that retrofit conventional tractors with GPS‑guided steering, tablet HMI, and cloud‑connected services. The presenters, Felix and Bernhard, highlighted how inexpensive add‑on solutions—typically $5‑10 k—are being sold...

By Black Hat
Black Hat USA 2025 | BitUnlocker: Leveraging Windows Recovery to Extract BitLocker Secrets
VideoMar 19, 2026

Black Hat USA 2025 | BitUnlocker: Leveraging Windows Recovery to Extract BitLocker Secrets

At Black Hat USA 2025, Microsoft’s Storm team unveiled “Bit Unlocker,” a proof‑of‑concept that abuses the Windows Recovery Environment (WinRE) to extract BitLocker keys and decrypt protected volumes. The researchers explained that WinRE runs from a separate recovery partition and loads...

By Black Hat
Black Hat USA 2025 | ECS-Cape – Hijacking IAM Privileges in Amazon ECS
VideoMar 18, 2026

Black Hat USA 2025 | ECS-Cape – Hijacking IAM Privileges in Amazon ECS

The Black Hat talk unveiled a critical flaw dubbed “EC escape” that lets a single container running on an Amazon ECS‑EC2 instance hijack IAM credentials of every other container on the same host. By abusing the internal Agent Communication Service...

By Black Hat
Black Hat USA 2025 | Shade BIOS: Unleashing the Full Stealth of UEFI Malware
VideoMar 17, 2026

Black Hat USA 2025 | Shade BIOS: Unleashing the Full Stealth of UEFI Malware

At Black Hat USA 2025, Kazuk Kimatsu of FFR Security presented “Shade BIOS,” a method for extending UEFI firmware functionality into runtime to create fully stealthy BIOS‑level malware. He explained that today’s UEFI bootkits and SMM backdoors are limited by either...

By Black Hat
Black Hat USA 2025 | Ransomware, Tracking, DoS, and Data Leaks on Xiaomi Electric Scooters
VideoMar 17, 2026

Black Hat USA 2025 | Ransomware, Tracking, DoS, and Data Leaks on Xiaomi Electric Scooters

At Black Hat USA 2025, researchers from KTH, URIM and the ITROANS project presented a deep‑dive into the security flaws of Xiaomi’s flagship electric scooters, the M365 and Mi 3. The talk detailed how proprietary Bluetooth‑Low‑Energy protocols and over‑the‑air firmware updates...

By Black Hat
Black Hat USA 2025 | No Hoodies Here: Organized Crime in AdTech
VideoMar 16, 2026

Black Hat USA 2025 | No Hoodies Here: Organized Crime in AdTech

The Black Hat USA 2025 talk unveiled how the advertising ecosystem has become a lucrative conduit for organized crime. Speakers Dave Mitchell and Renee Burton detailed the rise of malicious ad‑tech networks—most notably VEX Trio—showing how they infiltrate legitimate ad...

By Black Hat