logo

RSAC 2025 - Key Trends from 100s of ‘Hackers & Threats’ Talk Submissions

ID: a2c63f0a-76e2-5b0a-855b-0a36430e972b

STIX ID: report--a2c63f0a-76e2-5b0a-855b-0a36430e972b

Feed Name: Cybereason Blog

Date Published: 2025-01-29

Date Updated: 2026-04-27

Author: [email protected] (Greg Day)

...
...

A committee review of RSAC 2025 Hackers & Threats submissions finds **generative AI** pervasive across offense (prompt injection, jailbreaks, data poisoning, deepfakes, malware generation) and defense (detection, C2/honeypots), alongside renewed focus on **vulnerabilities** (Kubernetes, OT/IoT, user vs. kernel mode, and **identity/auth** such as OAuth, DMARC, Entra ID) and incremental **threat** evolutions (cloud, APTs, infostealers, supply chain, mobile/IoT/OT, deepfakes) with an emphasis on mitigation rather than novel techniques; the key takeaway is the prominence of identity-based exploits and a call for organizations to reassess how AI alters their risk profile and to scrutinize AI claims in security capabilities.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.