DeepHack Demo - Exploiting SQLi by Using an Open-source Hacking AI Tool
Bishop Fox lead researcher, Dan Petro, previews how pen testers can use the DeepHack tool.
Transcript
Hi everyone. Alt F4 here. What you're watching is a computer program hacking into a web applications database by exploiting a sequel injection vulnerability. But what makes this
program special that we never coded it to do this. Instead, it learned how you see nowhere in DeepHack's source code where you find any sequel injection strings sequel syntax or structure. Instead, it uses a neural network to figure out how to extract information from this web vulnerability. DeepHack is the beginning of a new class of tools that adds artificial intelligence to the
hackers playbook. Moreover, AI frameworks are more accessible than ever, making it easy for you to create your very own doomsday or pen testing machines. For more information, come check out our DEF CON presentations, Sunday July 30th. Details below, and thanks for watching.