The Black Hat series of international cybersecurity conferences brings together top IT security pros, researchers, and thought leaders to discuss the latest cyber techniques, vulnerabilities, threats, and more. Here’s the latest to know.
Black Hat USA
August 2-7, 2025
Las Vegas, NV
Black Hat USA 2025 returns to the Mandalay Bay Convention Center in Las Vegas on August 2-7. The annual event is a perennial magnet for cybersecurity professionals, researchers, vendors and others
The week kicks off on August 2 with four days of cybersecurity training courses. The courses cover a range of topics from reverse engineering malware to penetration testing. The main conference runs August 6 amd 7 amd featires presentations by security researchers and industry experts who offer insight into the latest vulnerabilities, hacks, and defense strategies.
Expect Black Hat USA 2025 to focus on the dual nature of AI as both a powerful tool for cyberdefense and a new weapon for threat actors.
Latest Black Hat news, insights, and analysis
Beef up AI security with zero trust principles
Aug. 7, 2025: Many CSOs worry about their firm’s AI agents spitting out advice to users on how to build a bomb, or citing non-existent legal decisions. But those are the least of their worries, said a security expert at this week’s Black Hat security conference in Las Vegas. Systems using large language models (LLMs) that connect to enterprise data contain other vulnerabilities that will be leveraged in dangerous ways unless developers and infosec leaders tighten security.
Researchers uncover RCE attack chains in popular enterprise credential vaults
Aug. 6, 2025: Researchers have found 14 logic flaws in various components of HashiCorp Vault and CyberArk Conjur, two open-source credential management systems, allowing attacks that could bypass authentication checks, access secrets, impersonate identities and execute arbitrary code.
ReVault flaws let attackers bypass Windows login or place malware implants on Dell laptops
Aug. 6, 2025: Vulnerabilities in the ControlVault3 (CV) firmware in Dell laptops, discovered by security researchers from Cisco Talos, allow attackers with physical access to bypass Windows login on vulnerable laptops or let a local user gain admin privileges. The most serious of the five vulnerabilities affects the Windows API associated with ControlVault3 and creates a means for attackers to install persistent malware capable of surviving even an operating system reinstallation.
HPE unveils AI-powered network security and data protection technology
Aug. 5, 2025: HPE has unveiled a secure access service edge (SASE) copilot to help networking teams make faster, better decisions using artificial intelligence as well as a new integration hub that lets third-party applications access HPE Zerto data to streamline operations.
2024 Black Hat news
Black Hat Europe 2024: Key takeaways for cybersecurity pros
Dec. 16, 2024: Technical talks and policy discussions took centre stage, including ERP in the crosshairs, problems with CVSS, and AI’s impact on cybercops.
SAP systems increasingly targeted by cyber attackers
Dec. 13, 2024: Long viewed as an opaque black box, attackers are increasingly focused upon hacking into enterprise systems from SAP, according to research presented at Black Hat Europe 2024.
Security researchers find deep flaws in CVSS vulnerability scoring system
Dec. 12, 2024: Cybersecurity experts from financial giant JPMorganChase say the cybersecurity community is being misled about the severity of vulnerabilities by the CVSS, which threatens to seriously hinder remediation efforts.
Back to the future: Windows Update is now a trojan horse for hackers
Aug. 8, 2024: SafeBreach security researcher Alon Leviev has unveiled at Black Hat a technique that lets malicious actors manipulate the Windows Update process to downgrade critical system components, rendering security patches useless.
Top new cybersecurity products at Black Hat USA 2024
Aug. 8, 2024: Find out the top cybersecurity tools, platforms, features, services, and technologies unveiled at Black Hat USA 2024 that you need to know about, with our rolling coverage of conference announcements.
Generative AI takes center stage at Black Hat USA 2024
Aug. 8, 2024: Top gen AI-driven cybersecurity tools, platforms, features, services, and technologies unveiled at Black Hat 2024 that you need to know about. Read about them here.
SUBSCRIBE TO OUR NEWSLETTER
From our editors straight to your inbox
Get started by entering your email address below.










