#NahamCon2025 Day 1 Keynote: Hacking, Prompt Engineering, and the Future of Pentesting with AI

#NahamCon2025 Day 1 Keynote: Hacking, Prompt Engineering, and the Future of Pentesting with AI

The speakers discuss how AI is transforming hacking and cybersecurity, emphasizing that AI is more of a tool shift rather than a replacement for human hackers. They highlight the importance of prompt engineering, security considerations in AI development, and the evolving threat landscape with AI-driven tools. #PromptInjection #AIPenetrationTests

Keypoints :

  • The session features live discussion on AI hacking, emphasizing real-time interaction and not a recording.
  • Jason Hadex and Reszo share their backgrounds in offensive security, bug bounty, and AI security research.
  • Choosing AI models involves factors like rejection rate, intelligence, and context size, with benchmarks varying across security tasks.
  • Prompts are a crucial art in effective AI hacking, with techniques like role prompting and related research terms boosting outcomes.
  • AI significantly automates reconnaissance, mutates attack strings, and streamlines reporting, improving efficiency.
  • Concerns about prompt injection, prompt leakage, and tool hijacking emphasize the need for security protocols in AI tools.
  • AI’s future impact is viewed as a shift in work and skill requirements rather than outright job replacement, with hackers emphasizing creativity and technical prowess.