home.social

#bhusa — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #bhusa, aggregated by home.social.

fetched live
  1. The runZero Yetis are back from Vegas! 🌵From #BSidesLV and #BHUSA to #DEFCON34, it was an unforgettable Hacker Summer Camp. We loved connecting with the community!

    If you missed us in Vegas, you can catch our full recap at: runzero.com/blog/hsc26-recap/

    Also, join us next Wednesday, Aug. 19 for the runZero Hour, as our research team shares their hot takes from Vegas and HD provides a deep-dive into his BMCs research.

    👉 Register for the live chat: runzero.com/research/runzero-h

  2. That’s a wrap on #BHUSA 2026! 🎉

    Huge thanks to everyone who stopped by the booth to chat, play games, see demos, grab swag, and connect. We loved meeting you all!

    Until next time, #BHUSA! ✌️See you all next year!

  3. Good morning #BHUSA! 🚀

    Stop by our booth (Bayside Foyer, near Starbucks) to meet the runZero team, snag swag, see demos, and snap a selfie with Zeti the Yeti.

    🏅 Plus, play "Zeti’s Odyssey" for a chance to win our top prizes TODAY at 3:45 PM PT!

    See you soon!

  4. Good morning Black Hat USA!

    You can find the runZero team and booth in Mandalay Bay across from the Business Hall entrance, near the Starbucks in the Bayside Foyer.

    Today's #BHUSA highlights:

    ✅ CEO HD Moore’s BMCs research talk in Oceanside A at 3:35 PM PT
    ✅ Play our epic interactive booth game: Prism of Truth: Zeti’s Odyssey
    ✅ Meet our experts and get a demo
    ✅ Snap a selfie with our beloved mascot, Zeti the Yeti
    ✅ Snag some legendary swag

    Come say hello!

    More: lnkd.in/gqNUA8ZC

  5. Kicking off #BlackHat2026 at Mandalay Bay! 🎲✈️

    Yesterday, the BC Security team debuted our NEW Red Team Essentials: Foundations of C2 course at Black Hat USA and it was a huge success!

    Huge thank you to everyone who joined us! You made it an awesome start to the week!

    #BHUSA #CyberSecurity #RedTeaming

  6. Hey Black Hat USA attendees!

    We’re taking over the Mandalay Bay for #BHUSA 2026. You can find our booth across from the Business Hall entrance in the Bayside Foyer starting today at 12PM PT. 🚀

    ✅ Come meet our experts
    ✅️ See a demo
    ✅️ Snag sweet swag
    ✅️ Snap a selfie with Zeti the Yeti
    ✅️ Play our epic interactive game: Prism of Truth: Zeti’s Odyssey. 🐉 (Think D&D meets Lord of the Rings, but with high-stakes cybersecurity challenges.)

    👉️ More at: runzero.com/hsc-2026/

  7. 🚀 Come hear runZero research & insights during #BSidesLV, #BHUSA, & #Defcon34!

    BSides Las Vegas
    ✅️ CEO HD Moore-Mind the Gap: Bridges, Backplanes, and BloodHound on 8/4 at 2PM PT.
    ✅️ Tod Beardsley, VP Security Research-I am CVE, AMA panel on 8/5 at 12PM PT.

    Black Hat USA
    ✅️ CEO HD Moore-Lights Out: BMCs Are Still Broken and Now We Have the Receipts on 8/5 at 3:35PM PT.

    DEF CON
    ✅️ CEO HD Moore-Lights Out: Out-of-Band, Out of Mind, Out of Control on 8/8 at 2PM PT.
    👉️ runzero.com/hsc-2026

  8. Your team is already using ChatGPT & AI agents—are you actually securing it?

    Skip the theory. Join Chris O'Rourke (Cloudflare) & Justin Tibbs (Presidio) at #BHUSA for real-world Zero Trust AI controls. No product pitches—just practical strategy.

    🗓️ Aug 5 | 4:45 PM
    🔗 cfl.re/3TmmRKF

  9. Ready to know every asset on your attack surface, uncover all types of exposures, map every attack path, and validate your segmentation integrity?

    runZero delivers deep intelligence across IT, OT, IoT, cloud, and mobile, so you can close the gaps and hold the line. 🚀

    If you want to win by default, even against AI, book a meeting with our team in Vegas during #BSidesLV #BHUSA #Defcon34 to see the runZero difference for yourself: runzero.com/hsc-2026/

  10. Are you attending #BSidesLV, #BHUSA, or #Defcon34? Our team will be onsite at every Hacker Summer Camp conference, and we cannot wait to connect with you!

    We've packed the week with exciting activities, including:
    ✅ Presenting intriguing research at every conference
    ✅ Booth games: Ceasar Cipher and the Prism of Truth: Zeti’s Odyssey
    ✅ Demos, incredible swag, and Zeti the Yeti!
    ✅ And more!

    👉️ Learn more about what we have planned by reading our preview blog now: runzero.com/blog/runzero-vegas/

  11. Right before we are going to @BlackHatEvents and the #hackersummercamp in Las Vegas we released our #BHUSA edition of EMBA (v2.0.3). This time with a huge amount of refactoring, unit tests. Additionally, we are now able to handle legacy systems much better. github.com/e-m-b-a/emba/releas

  12. #DEFCON 32 Matt (@emptynebuli) released 6 CE bugs affecting Diebold Nixdorf.. and now he is back with 9 more via the CryptoPro supply chain! 👀 Come join his #BHUSA briefing on Wednesday August 5th - you won't want to miss it! 🏧 🏦
    blackhat.com/us-26/briefings/s

  13. Useful information can lead to real impacts. Visit RFJ at #BlackHat booth #1967 to learn about our up-to-$10 million reward offers for information on foreign government-linked malicious cyber actors. Learn more: rfj.tips/seAvzy

    #BHUSA #BlackHatUSA #BlackHat2026

  14. ATE: Active Directory, is being offered at #BHUSA! Come learn all the nuances behind delegation attacks, forest trusts, certificate abuse, and more! AD is one of the largest attack surfaces in modern environments, so upgrade those skills today.
    @BlackHatEvents

    Prices go up on May 22nd! Don't miss out!

    blackhat.com/us-26/training/sc

  15. Tickets are still selling for both our Hacking and Defending Enterprises trainings at Black Hat USA #BHUSA. Join us for a full scale enterprise attack from OSINT through multi-domain compromise, or for detection engineering and threat hunting, or both!💪

    in.security/events/

  16. I just did an interview with Application Security Weekly with teasers for my upcoming #BHUSA presentation "Can AI Do Novel Vulnerability Research: Meet the HTTP Terminator", plus reflections on the Top Ten Web Hacking Techniques of 2025 & 2026. Watch it here:
    youtube.com/watch?v=fOWhhTrGtoI

  17. Back by popular demand, we will be teaching ATE: Active Directory again at #BHUSA this year! One of our most popular classes every year. Prices go up at the end of May, don't miss out!

    blackhat.com/us-26/training/sc

  18. How is every doing? I wouldn't call it comfortable, but I'm starting to savor the experience of rediscovering where the new frontier is, every few weeks. It feels like replaying the early stages of my research career. Looking forward to making my own contribution at #BHUSA!🤞

  19. We're back and ready to rock at the Black Hat Masterclass in May for a 1-day virtual Insider Threat training and then at #BHUSA in-person with the 2026 editions of both our Hacking Enterprises and Defending Enterprises trainings.

    Join us to attack, defend, or both!

    in.security/events/

  20. CFTs for both @BlackHatEvents #BHUSA and @owasp Global AppSec EU (Vienna) are now open and close in early December!

    Thinking of submitting? Check out my blog series for @BounceSecurity "So you want to train at Black Hat (or other conferences)?"

    bouncesecurity.com/blog/2025/0

  21. Our August Newsletter 🗞️ is now live featuring #CyberCanon Hall of Fame winners, candidates, and cyber author-focused recaps from #BlackHat and #defcon.

    Definitely worth taking a peek 👉 tinyurl.com/canon-aug25-nl

    #CyberSecurityBooks #CyberCanonHoF #HackerSummerCamp #BHUSA

  22. Several people were arrested during an undercover operation targeting child sex predators in Nevada. One of them is Tom Alexandrovich, who turns out to be the Executive Director of the Israel Cyber Directorate. The child predator was released.

    I believe the security community must denounce this person and be banned from the conferences, including BlackHat and DefCon.

    fr0gger since, unfortunately, you are in the picture with this person (LinkedIn account of him was deleted already), and you have a good reputation within our community, would be super cool if you'd take a lead and get in touch with the BlackHat/DefCon organizers.

    Link to news: msn.com/en-us/tv/news/israeli-

    #BlackHat #BHUSA #BlackHatUSA2025 #Cybersecurity #ThreatIntelligence #DefCon #Israel #DEFCON33 #TomAlexandrovich

  23. 🎯 FINAL POST FROM THE FLOOR: #BlackHatUSA 2025 Coverage!

    Access Roulette: How to Stop Betting Your Security on Standing Privileges

    This wraps up our on-location content from Las Vegas!

    Next week we'll reconnect with our main event sponsors— BLACKCLOAK, Dropzone AI, Stellar Cyber, and Akamai Technologies—to bring you their post-event insights and feedback. Of course ThreatLocker's recap was already captured on the floor and published earlier today. Plus, watch for our closing reflection articles from me Marco Ciappelli and Sean Martin, CISSP!

    Our final floor conversation comes thanks to our friends at Apono 🙏

    Modern enterprises are gambling with security every day. Static permissions, manual approvals, and periodic audits create "privilege creep" that turns every over-privileged account into a potential breach waiting to happen.

    At #BlackHat USA 2025, Ofir Stein from #Apono reveals how to break this dangerous cycle.

    The stakes keep rising:
    • Non-human identities (service accounts, #APIs, #AIagents) retain high-level privileges long after tasks complete
    • Organizations discover risks during audits but lack scalable remediation
    #Business teams need rapid access while security teams battle expanding #attacksurfaces

    Apono's Zero Standing Privilege model:
    • Removes ALL permanent access by default
    • Grants access dynamically based on business context
    • Automatically revokes permissions when tasks complete
    • Works for both human AND non-human identities
    • Integrates with existing #identity providers—no rip and replace

    Key capabilities:
    • Context-based policy management aligned with business objectives
    • Continuous discovery of identities, privileges
    • Automated remediation of unnecessary privileges
    • Real-time anomaly detection feeding #SOC workflows
    • Scalable across centralized and decentralized environments

    The result?
    Engineers gain control over their access (building trust), security teams maintain tight governance, and organizations can finally stop betting their security on standing privileges.

    📺 Watch the video: youtu.be/ciBsH84PVQU

    🎧 Listen to the podcast: brand-stories-podcast.simpleca

    📖 Read the blog: itspmagazine.com/their-stories

    ➤ Learn more about Apono: itspm.ag/apono-1034

    ✦ Catch more stories from Apono: itspmagazine.com/directory/apo

    🎪 Follow all of our #BHUSA 2025 coverage: itspmagazine.com/bhusa25

    #Cybersecurity #IdentityManagement #ZeroTrust #AccessControl #BlackHatUSA #BHUSA25 #PrivilegeManagement #IAM #SecurityAutomation #NonHumanIdentities

  24. 🎯 WRAPPING UP: #BlackHat USA 2025 Coverage Nearly Complete!
    With nearly all our on-location content from Las Vegas now published, we're excited to share this recap story.

    Stay tuned for the closing reflections (Newsletter Articles and Audio version) from Marco Ciappelli and Sean Martin, CISSP coming soon!

    🔔 Follow ITSPmagazine, Sean Martin, CISSP, and Marco Ciappelli to catch those final insights when they drop!

    This is an event recap from the expo floor with our friends at ThreatLocker 🙏

    #ThreatLocker Unveils Configuration Defense & Achieves #FedRAMP Status at #BlackHat2025

    #Zerotrust evolved from theory to practical business solution at Black Hat 2025, as Kieran Human from ThreatLocker revealed game-changing announcements that address real-world security challenges.

    The standout:
    Defense Against Configuration (#DAC)—a monitoring tool that solves a critical zero trust gap. Organizations invest heavily in security but often leave systems vulnerable through poor configuration management. DAC changes this by:
    • Continuously monitoring configurations and alerting to potential issues
    • Mapping findings to compliance frameworks including Essential 8
    • Providing weekly executive reports to ensure oversight
    • Preventing the "overly permissive rules" that compromise security

    ThreatLocker's "denied by default, allowed by exception" approach fundamentally differs from traditional EDR solutions. With 10,000+ built-in application profiles and learning mode capabilities, deployment no longer means business disruption.

    Major milestone:
    FedRAMP certification opens government sector opportunities, answering strong customer demand from highly regulated environments that previously couldn't adopt their zero trust capabilities.

    Real impact:
    One customer reported preventing THREE breaches after implementing ThreatLocker's solution—proving that properly implemented zero trust delivers measurable security improvements.

    The key insight? Security must enable business, not hinder it. ThreatLocker's least privilege implementation focuses on meeting business requirements with minimal necessary permissions—protecting assets without hampering productivity.

    📺 Watch the video: youtu.be/AN5k5-aBwWc

    🎧 Listen to the podcast: brand-stories-podcast.simpleca

    📖 Read the blog: itspmagazine.com/their-stories

    ➤ Learn more about ThreatLocker: itspm.ag/threatlocker-r974

    ✦ Catch more stories from ThreatLocker: itspmagazine.com/directory/thr

    🎪 Follow all of our #BHUSA 2025 coverage: itspmagazine.com/bhusa25

    #Cybersecurity #BlackHatUSA #BHUSA25 #Compliance #SecurityAutomation #GovTech