Advertisement · 728 × 90

Posts by Black Hat Events

Black Hat Black Hat

🚨 Call for Papers: #BHUSA 2026. Got groundbreaking research? A new exploit? A story that will shake the industry? Now’s your moment. The Black Hat USA 2026 CFP closes March 20! Submit your proposal today 👉 https://bit.ly/4tTD0EW

1 month ago 0 0 0 0
Post image

The #BHASIA 2026 Startup Spotlight Competition is your gateway to showcasing groundbreaking cybersecurity innovations to the world's most influential security professionals, investors, and industry leaders. Get your submission in by March 6 👉 https://blackhat.com/asia-26/spotlight.html

2 months ago 2 1 0 0
Post image

🚨 Last chance! Early Registration for Black Hat Asia 2026 ends Friday, Feb 6!
Hands‑on trainings, cutting‑edge research, and access to the global security community—you don’t want to miss this.
👉 Register now: https://blackhat.com/asia-26/
#BHAsia #Cybersecurity #InfoSec #LastCall

2 months ago 0 0 0 0
Post image

⏳ Time is running out! Early Registration Rates for Black Hat Asia close Feb 6—and once they’re gone, they’re gone.
Lock in the best rate today ➡️ https://blackhat.com/asia-26/
#BHASIA #CyberDefense #SecurityTraining #RegisterNow

2 months ago 0 0 0 0
Post image

Smartphones trust their Boot ROM absolutely—what if that trust is misplaced?🧠📱 #BHASIA Briefings "Practical Attacks Against Smartphone Boot ROMs" exposes real-world weaknesses at the very first instruction executed.
Learn more 🔗 https://bit.ly/49O9Wpq

3 months ago 0 0 0 0
Post image

🚨Don't miss #BHUSA Keynote Three Decades in Cybersecurity: Lessons Learned and What Comes Next.
Mikko takes us through the most pivotal shifts in cyber-attacks. 30 years on the cyber frontlines. An informed look ahead at what's likely coming next 🔐 Learn more >> bit.ly/3UoV6OC

8 months ago 1 0 0 0
Post image

📣Check out the #BlackHat Fall Interactive Online Trainings! From infrastructure hacking to incident response, there's a course for individuals of all experience levels. Expand your security talent in just four days, fully online this Fall! Register here >> bit.ly/4e8UZQz

8 months ago 0 0 0 0
Post image

Back @blackhatofficial.bsky.social with my flagship #cloud security class:

0wning the Cloud - AWS, Azure, GCP, DigitalOcean, Aliyun

🗓 2-3 Aug: www.blackhat.com/us-25/traini...

🗓 4-5 Aug: www.blackhat.com/us-25/traini...

🎯 80% hands-on
🎯 Real-world API & IAM attacks
🔥 Early bird closes May 23!

10 months ago 0 1 0 0
Post image

Estelle Ruellan and I were accepted at BlackHat USA!!

"Hackers Dropping Mid-Heist Selfies: LLM ldentifies Information Stealer Infection Vector and Extracts loCs"

Couldn't be happier sharing what we did on a worldwide stage!

p.s.: picture of us celebrating from Botconf after our talk today
#BHUSA

10 months ago 2 1 0 0
Post image

Last chance: today is the final day to get Early Bird pricing for all @blackhatevents.bsky.social courses. Prices go up after tonight.

Register today before prices increase:
blackhat.informafestivals.com/usa/2025/

#BHUSA #CyberSecurity #RedTeam

10 months ago 0 1 0 0
Advertisement
Advanced Active Directory to Entra ID Lateral Movement Techniques
Dirk-jan Mollema  |  Security Researcher, Outsider Security
Format: 40-Minute Briefings
Tracks: Cloud Security, Enterprise Security

Is there a security boundary between Active Directory and Entra ID in a hybrid environment? The answer to this question, while still somewhat unclear, has changed over the past few years as there has been more hardening of how much "the cloud" trusts data from on-premises. The reason for this is that many threat actors, including APTs, have been making use of known lateral movement techniques to compromise the cloud.

In this talk, we will take a deep dive together into Entra ID and hybrid trust internals. We will introduce several new lateral movement techniques that allow us to bypass authentication, MFA and stealthily exfiltrate data using on-premises AD as a starting point, even in environments where the classical techniques didn't work. All these techniques are new, not really vulnerabilities, but part of the design. Several of them have been remediated with recent hardening efforts by Microsoft. Very few of them leave useful logs behind when abused. As you would expect, none of these "features" are documented.

Join me for a wild ride into Entra ID internals, undocumented authentication flows and tenant compromise from on-premises AD.

Advanced Active Directory to Entra ID Lateral Movement Techniques Dirk-jan Mollema | Security Researcher, Outsider Security Format: 40-Minute Briefings Tracks: Cloud Security, Enterprise Security Is there a security boundary between Active Directory and Entra ID in a hybrid environment? The answer to this question, while still somewhat unclear, has changed over the past few years as there has been more hardening of how much "the cloud" trusts data from on-premises. The reason for this is that many threat actors, including APTs, have been making use of known lateral movement techniques to compromise the cloud. In this talk, we will take a deep dive together into Entra ID and hybrid trust internals. We will introduce several new lateral movement techniques that allow us to bypass authentication, MFA and stealthily exfiltrate data using on-premises AD as a starting point, even in environments where the classical techniques didn't work. All these techniques are new, not really vulnerabilities, but part of the design. Several of them have been remediated with recent hardening efforts by Microsoft. Very few of them leave useful logs behind when abused. As you would expect, none of these "features" are documented. Join me for a wild ride into Entra ID internals, undocumented authentication flows and tenant compromise from on-premises AD.

I'll be returning to #BHUSA @blackhatevents.bsky.social this summer for a brand talk about moving laterally from AD to Entra ID. I don't think I've ever been this excited about a talk, with lots of cool stuff to share 🎢 😄.

11 months ago 15 1 1 0
Post image

🚀 Exciting News! 🚀

I'm thrilled to announce that our talk, "Burning, Trashing, Spacecraft Crashing: A Collection of Vulnerabilities That Will End Your Space Mission," has been accepted for Black Hat USA 2025!
lnkd.in/espb_dAq
#BlackHatUSA
#BHUSA
@blackhatofficial.bsky.social

11 months ago 0 1 0 0
Post image

Last chance to grab early bird tickets for our Azure Intrusion training at #BHUSA 2025! Join us in Las Vegas for 100% offensive, hands-on content showcasing real-world attack techniques against modern Azure environments! @blackhatevents.bsky.social outline at www.blackhat.com/us-25/traini...

11 months ago 2 3 0 0
Post image

Heads up! Prices for all courses at @blackhatevents.bsky.social go up on May 23rd. Lock in your spot now before the end of Early Bird pricing! #BHUSA #CyberSecurityTraining #RedTeam

blackhat.informafestivals.com/usa/2025/

11 months ago 2 2 0 0
Preview
Black Hat Europe 2025 Arsenal

The #BHEU Arsenal call for Tools is open! Arsenal is an open-source tool demo area where researchers & developers showcase their latest projects in an interactive environment. Share your tools with the community & watch cutting-edge demos. Apply until July 9 >> bit.ly/4mdUecj

11 months ago 0 0 0 0
Video

Last week to save before prices go up on 23rd May!

Unless you Accelerate your AppSec Programme, you are going to get left behind..

Join me @blackhatofficial.bsky.social #BHUSA this summer in Las Vegas (4-5 Aug) for a practical guide on how to build bridges with developers and build securely!

11 months ago 1 1 0 0
Post image

Don’t miss our Active Directory course at @blackhatevents.bsky.social! Master techniques for infiltrating Windows Domains and put your skills to the test in an immersive hands-on lab environment. #Pentest #RedTeam #ActiveDirectory #BHUSA #Cybersecurity

www.blackhat.com/us-25/traini...

11 months ago 0 1 0 0
Post image

I'm thrilled to announce "HTTP/1 Must Die! The Desync Endgame", at #BHUSA! This is going to be epic, check out the abstract for a teaser ↓

11 months ago 38 18 2 1
Post image

Think your tools are stealthy? Think again. This course teaches how to break detection, unhook APIs, bypass ETW/AMSI, and weaponize obfuscation like top-tier APTs. If you're not evading, you're just noisy. Meet us at @blackhatevents.bsky.social! #RedTeam #MalwareDev #CyberSecurity #BHUSA #Obfuscatio

11 months ago 0 1 0 0
Post image

🚨 Our first Breaking BitLocker training at Black Hat USA 2025 is 30% SOLD OUT – weeks before early bird ends!

Learn to break TPM-only BitLocker with real hardware & hands-on techniques. Don’t wait – spots are flying!

Aug 2&3:
hos.direct/bhusa25-23aug
Aug 4&5:
hos.direct/bhusa25-45aug

#BHUSA

11 months ago 0 1 0 0
Advertisement
Post image

its been 9 months since #BHUSA and living off microsoft copilot

ppl have been asking if things are better now

well.. they are much better. but for whom? 😈😈😈

catch the sequel at hacker summer camp featuring very disturbing shenanigans
@blackhatevents.bsky.social

11 months ago 0 1 1 0
Preview
Black Hat Black Hat

Learn 📝 about this emerging topic in a first-of-its-kind #BHUSA training from @retbandit.bsky.social and I where you will use hands-on labs to perform attacks such as model theft, model poisoning and much more 🤖

blackhat.com/us-25/traini...

1 year ago 1 1 0 0
Post image

At @BlackHatEvents #BHUSA on 4-5 Aug in Las Vegas, you can attend "Accelerated AppSec: Hacking your Product Security Programme for Velocity and Value".

This course helps you build a successful programme to bridge the gap between developers and security, without losing speed.
4/5

1 year ago 0 1 1 0
Post image

📣 Enter the #BHUSA Startup Spotlight Competition for the opportunity to gain unparalleled visibility, connect with industry leaders, & accelerate your growth in the #cybersecurity sector. Showcase your innovative solutions to a live audience & judges. Learn more: bit.ly/3YF6Vmk

11 months ago 2 0 0 0
Post image

The #BHUSA Early Registration Rate ends May 23rd! Register today to lock-in the lowest rate before it increases. Register here >> bit.ly/4jnXIa5

#BHUSA #Cybersecurity

11 months ago 1 1 0 0
Preview
Take your training to the next level by taking the Black Hat Self Assessment

Elevate your training journey with the #BlackHat self-assessment tool! 💻 Dive into an evaluation of your expertise across 12 essential areas of cybersecurity. Learn more >> bit.ly/3EicWyy

11 months ago 1 1 0 0
Post image

The #BHUSA 2025 Early Registration rate ends MAY 23! Secure your spot today at the lowest rates available>> bit.ly/4l9aYRH

11 months ago 1 1 0 0
Post image

📣 Black Hat is now on Bluesky! Follow us for the latest in #cybersecurity research, industry insights, and exclusive event updates. Don't miss out!

Check out this year's biggest event, Black Hat USA 2025 >> www.blackhat.com/us-25/?_mc=s...

11 months ago 1 0 0 0