Keep pulling the thread on Travis Lanham and Evan Pena.
Nation-state actors from China are reportedly using AI to scale their cyber operations.
AI models can automatically orchestrate complex attacks in Microsoft Active Directory environments, such as the ADCS ESC1 privilege escalation.
The Chinese threat actor group GTG is developing and using AI technologies to make the creation of novel cyberattacks more feasible.
AI agents can generate exploit code in seconds for tasks that would have previously taken a human developer weeks or months, driving the cost of exploitation towards zero.
Travis Lanham predicts that within a few years, all offensive cyber operations will be conducted by autonomous AI agents.
Armadin's AI agents can perform the equivalent of a $60,000 human-led security assessment for a token cost of less than a cup of coffee.
In a recent engagement, a SQL injection vulnerability on an external web application was exploited to gain access to an internal IBM MQ messaging queue, allowing the reading and manipulation of sensitive flight manifest data, including passport information.
In one engagement, attackers compromised an RSA Security server, extracted soft token seed files, and bypassed two-factor authentication by exploiting the use of a single, non-unique password for all seed files.
Nation-state actors are leveraging AI tools like deepfakes and language models to create more compelling social engineering campaigns and overcome language barriers.
Google successfully improved its security posture by gradually implementing comprehensive security governance policies for identity management and application allow-listing.
During his 13-year tenure at Mandiant, Evan Pena's red team successfully accomplished its objectives in over 90% of its human-led penetration testing engagements.
Armadin's business model involves customers paying for security services, which in turn generates high-quality training data on effective hacking methods for its AI models.