Media Summary: SecureBoot, designed to protect against firmware-level tampering, has long been dismissed as a "local-only" attack surface. What would happen if I simply logged in to this internal In our highly rated 2023 talk "Evil Digital Twin", we warned that large language models (LLMs) were exploiting the cognitive ...

Black Hat Usa 2025 Windows - Detailed Analysis & Overview

SecureBoot, designed to protect against firmware-level tampering, has long been dismissed as a "local-only" attack surface. What would happen if I simply logged in to this internal In our highly rated 2023 talk "Evil Digital Twin", we warned that large language models (LLMs) were exploiting the cognitive ... Is there a security boundary between Active Directory and Entra ID in a hybrid environment? The answer to this question, while ... You get what you optimize for. The current trajectory of major AI research labs emphasizes training large language models (LLMs) ... The flexibility and power of large language models (LLMs) are now well understood, driving their integration into a wide array of ...

Anti-cheat is a gold mine of interesting, novel defenses—battle-hardened from years of attrition in a defender's worst nightmare. Compromising a well-protected enterprise used to require careful planning, proper resources, and the ability to execute. Keynote: From Slide Rules to GenAi - Musings of a Graybeard Public Servant on What's Changing, What's Not, and What Should ...

Photo Gallery

Black Hat USA 2025 | Windows Hell No for Business
Black Hat USA 2025 | Booting into Breaches: Hunting Windows SecureBoot's Remote Attack Surfaces
Black Hat USA 2025 | Unveiling Hidden Preauth Vulnerabilities in Windows HTTP Services
Black Hat USA 2025 | Abusing Entra OAuth for Fun and Access to Internal Microsoft Applications
Black Hat USA 2025 | The First 30 Months of Psychological Manipulation of Humans by AI
Black Hat USA 2025 | BitUnlocker: Leveraging Windows Recovery to Extract BitLocker Secrets
Black Hat USA 2025 | Advanced Active Directory to Entra ID Lateral Movement Techniques
Black Hat USA 2025 | Training Specialist Models: Automating Malware Development
Black Hat USA 2025 | From Prompts to Pwns: Exploiting and Securing AI Agents
Black Hat USA 2025 | Watching the Watchers: Exploring and Testing Defenses of Anti-Cheat Systems
Black Hat USA 2025 | AI Enterprise Compromise - 0click Exploit Methods
Black Hat USA 2025 Keynote | From Slide Rules to GenAi
Sponsored
Sponsored
View Detailed Profile
Black Hat USA 2025 | Windows Hell No for Business

Black Hat USA 2025 | Windows Hell No for Business

Windows

Black Hat USA 2025 | Booting into Breaches: Hunting Windows SecureBoot's Remote Attack Surfaces

Black Hat USA 2025 | Booting into Breaches: Hunting Windows SecureBoot's Remote Attack Surfaces

SecureBoot, designed to protect against firmware-level tampering, has long been dismissed as a "local-only" attack surface.

Sponsored
Black Hat USA 2025 | Unveiling Hidden Preauth Vulnerabilities in Windows HTTP Services

Black Hat USA 2025 | Unveiling Hidden Preauth Vulnerabilities in Windows HTTP Services

Diving into

Black Hat USA 2025 | Abusing Entra OAuth for Fun and Access to Internal Microsoft Applications

Black Hat USA 2025 | Abusing Entra OAuth for Fun and Access to Internal Microsoft Applications

What would happen if I simply logged in to this internal

Black Hat USA 2025 | The First 30 Months of Psychological Manipulation of Humans by AI

Black Hat USA 2025 | The First 30 Months of Psychological Manipulation of Humans by AI

In our highly rated 2023 talk "Evil Digital Twin", we warned that large language models (LLMs) were exploiting the cognitive ...

Sponsored
Black Hat USA 2025 | BitUnlocker: Leveraging Windows Recovery to Extract BitLocker Secrets

Black Hat USA 2025 | BitUnlocker: Leveraging Windows Recovery to Extract BitLocker Secrets

In

Black Hat USA 2025 | Advanced Active Directory to Entra ID Lateral Movement Techniques

Black Hat USA 2025 | Advanced Active Directory to Entra ID Lateral Movement Techniques

Is there a security boundary between Active Directory and Entra ID in a hybrid environment? The answer to this question, while ...

Black Hat USA 2025 | Training Specialist Models: Automating Malware Development

Black Hat USA 2025 | Training Specialist Models: Automating Malware Development

You get what you optimize for. The current trajectory of major AI research labs emphasizes training large language models (LLMs) ...

Black Hat USA 2025 | From Prompts to Pwns: Exploiting and Securing AI Agents

Black Hat USA 2025 | From Prompts to Pwns: Exploiting and Securing AI Agents

The flexibility and power of large language models (LLMs) are now well understood, driving their integration into a wide array of ...

Black Hat USA 2025 | Watching the Watchers: Exploring and Testing Defenses of Anti-Cheat Systems

Black Hat USA 2025 | Watching the Watchers: Exploring and Testing Defenses of Anti-Cheat Systems

Anti-cheat is a gold mine of interesting, novel defenses—battle-hardened from years of attrition in a defender's worst nightmare.

Black Hat USA 2025 | AI Enterprise Compromise - 0click Exploit Methods

Black Hat USA 2025 | AI Enterprise Compromise - 0click Exploit Methods

Compromising a well-protected enterprise used to require careful planning, proper resources, and the ability to execute.

Black Hat USA 2025 Keynote | From Slide Rules to GenAi

Black Hat USA 2025 Keynote | From Slide Rules to GenAi

Keynote: From Slide Rules to GenAi - Musings of a Graybeard Public Servant on What's Changing, What's Not, and What Should ...

Black Hat USA 2025 | How KCFG and KCET Redefine Control Flow Integrity in the Windows Kernel

Black Hat USA 2025 | How KCFG and KCET Redefine Control Flow Integrity in the Windows Kernel

Virtual Secure Mode, or VSM, on