Black Hat 2025 Recap: A take a look at new choices introduced on the present
Aug. 7, 2025: AI dominated the dialog at Black Hat 2025, from the rise of autonomous brokers and shadow AI to surging identity-based assaults and hardware-level exploits, and product bulletins mirrored that development.
Beef up AI safety with zero belief ideas
Aug. 7, 2025: Many CSOs fear about their agency’s AI brokers spitting out recommendation to customers on the way to construct a bomb, or citing non-existent authorized selections. However these are the least of their worries, stated a safety knowledgeable at this week’s Black Hat safety convention in Las Vegas. Methods utilizing giant language fashions (LLMs) that connect with enterprise knowledge comprise different vulnerabilities that might be leveraged in harmful methods until builders and infosec leaders tighten safety.
Researchers uncover RCE assault chains in widespread enterprise credential vaults
Aug. 6, 2025: Researchers have discovered 14 logic flaws in varied parts of HashiCorp Vault and CyberArk Conjur, two open-source credential administration programs, permitting assaults that would bypass authentication checks, entry secrets and techniques, impersonate identities and execute arbitrary code.