Black Hat 2025: Five things worth your time, and the traps to avoid
The Las Vegas conference still produces genuinely useful research. Getting to it means ignoring a lot of expensive noise.

Key points
- Black Hat was founded in 1997 as a more corporate spin-off of DEF CON, then sold to CMP Media (now Informa) in 2005 for $14 million.
- This year's RSA Conference attracted nearly 44,000 attendees, illustrating the scale that enterprise cybersecurity events now reach.
- Five research areas dominate the 2025 Black Hat agenda: AI agent attacks, state-sponsored hacker infrastructure, AI-powered exploit tools, modern threat hunting, and criminal use of AI.
- Security professionals are advised to skip sponsored parties and vendor pitches in favour of researcher-led sessions.
- The conference takes place in Las Vegas, where the gap between useful content and marketing spectacle is wide.
Black Hat began in 1997 as a practical fix to an awkward problem. DEF CON, the long-running hacker gathering, was too rough-edged for corporate attendees. So its founders created a tamer version: same technical depth, fewer theatrical stunts. For years it worked well.
Then, in 2005, the conference sold to CMP Media (since absorbed into events giant Informa) for $14 million. The sale brought money and scale. It also brought an identity problem that, according to CSO Online, Informa is now paying a New York branding agency to help resolve.
The tension is straightforward. Researchers, reverse engineers, and threat analysts still show up with genuinely important findings. Vendors also show up, paying premium rates for floor space and the chance to run themed cocktail parties. The two crowds want different things from the same event.
For anyone attending, the practical advice is simple: book the research sessions first and treat the exhibition floor as optional.
What research actually matters this year?
Five topic areas stand out as worth a security professional's time.
| Topic | Why it matters now |
|---|---|
| Agentic AI exploitation | Organisations are giving AI agents (software that takes actions automatically, without a human approving each step) access to databases and internal systems. Criminals are studying how to hijack those agents. |
| APT infrastructure | APT stands for Advanced Persistent Threat, meaning well-funded hackers, often state-sponsored, who stay inside a network for months. Their methods now include hijacking home routers and stealing login sessions. |
| AI-powered exploit tools | The gap between a software flaw being discovered and criminals weaponising it has shrunk to near-zero. Automated patching pipelines are now a necessity, not a luxury. |
| AI-era threat hunting | Static watchlists of known bad IP addresses are no longer enough. Defenders need continuous behaviour monitoring that flags unusual patterns rather than known signatures. |
| Criminal use of AI | Attackers use AI to write malware on demand, scrub their digital footprints, and build convincing fake online identities. Understanding the full attack chain is the prerequisite for choosing any defensive tool. |
These five areas connect. Criminals are using AI to move faster, hide better, and target the newer automated systems that defenders have only just started deploying. The conference sessions addressing each area are where the substantive answers sit.
Should ordinary workers care about any of this?
Yes, concretely. Criminals using AI to generate fake personas means phishing emails, which are fraudulent messages designed to trick recipients into handing over passwords or clicking malicious links, are now harder to spot. They are better written, better targeted, and arriving faster than before.
For anyone who uses work email or handles customer data, the baseline habit remains the same: treat unexpected requests for credentials or payments with scepticism, regardless of how plausible they look. Report anything odd to your IT team rather than deciding alone.
Black Hat's real value, buried under the sales pitches, is that it surfaces the specific techniques criminals are refining right now. The professionals who attend and extract that knowledge are the ones building the defences that protect everyone else.



