zlacker

[parent] [thread] 8 comments
1. moyix+(OP)[view] [source] 2025-06-24 18:52:01
You should come to my upcoming BlackHat talk on how we did this while avoiding false positives :D

https://www.blackhat.com/us-25/briefings/schedule/#ai-agents...

replies(2): >>tptace+m3 >>nickps+Ci2
2. tptace+m3[view] [source] 2025-06-24 19:05:21
>>moyix+(OP)
You should publish the paper quietly here (I'm a Black Hat reviewer, FWIW) so people can see where you're coming from.

I know you've been on HN for awhile, and that you're doing interesting stuff; HN just has a really intense immune system against vendor-y stuff.

replies(1): >>moyix+I4
◧◩
3. moyix+I4[view] [source] [discussion] 2025-06-24 19:12:19
>>tptace+m3
Yeah, it's been very strange being on the other side of that after 10 years in academia! But it's totally reasonable for people to be skeptical when there's a bunch of money sloshing around.

I'll see if I can get time to do a paper to accompany the BH talk. And hopefully the agent traces of individual vulns will also help.

replies(1): >>tptace+35
◧◩◪
4. tptace+35[view] [source] [discussion] 2025-06-24 19:13:51
>>moyix+I4
J'accuse! You were required to do a paper for BH anyways! :)
replies(2): >>moyix+16 >>leenif+PF1
◧◩◪◨
5. moyix+16[view] [source] [discussion] 2025-06-24 19:19:24
>>tptace+35
Wait a sec, I thought they were optional?

> White Paper/Slide Deck/Supporting Materials (optional)

> • If you have a completed white paper or draft, slide deck, or other supporting materials, you can optionally provide a link for review by the board.

> • Please note: Submission must be self-contained for evaluation, supporting materials are optional.

> • PDF or online viewable links are preferred, where no authentication/log-in is required.

(From the link on the BHUSA CFP page, which confusingly goes to the BH Asia doc: https://i.blackhat.com/Asia-25/BlackHat-Asia-2025-CFP-Prepar... )

replies(1): >>tptace+y8
◧◩◪◨⬒
6. tptace+y8[view] [source] [discussion] 2025-06-24 19:32:16
>>moyix+16
I think you're fine, most people don't take the paper bit seriously. It's not due until the end of July regardless (you don't need a paper to submit for the CFP).
replies(1): >>daeken+uB
◧◩◪◨⬒⬓
7. daeken+uB[view] [source] [discussion] 2025-06-24 22:48:24
>>tptace+y8
The scramble to get your paper done in time is traditional! (And why my final paper for the onity lock hack ended up with an entire section I decided was better off left unsaid; woops)
◧◩◪◨
8. leenif+PF1[view] [source] [discussion] 2025-06-25 11:21:17
>>tptace+35
Hmm, is that really true? I spoke at BH last year and was not required to submit a paper. And based on the briefings link, there surely isn't a paper link, only slides and tool.
9. nickps+Ci2[view] [source] 2025-06-25 15:24:32
>>moyix+(OP)
"we"

I remember your work on seeding vulnerabilities into C programs. I didnt know you got into AI-assisted pentesting. I already have more confidence in the product. :)

[go to top]