training
Offensive Recon: AI Exposures & Modern Attack Surfaces
- Host
- Black Hat USA 2026
- Location
- Mandalay Bay, Las Vegas, NV, USA
- Audience
- Penetration Testers, Red Teamers, Security Researchers, Bug Bounty Hunters, ASM/CTEM Teams, Threat Intelligence Teams
- Duration
- 2 days
Co-presenters
Sudhanshu Chauhan
,
Shubham Mittal
Delivering RedHunt Labs’ Offensive Recon training at Black Hat USA 2026, focused on the way modern attack surfaces now extend beyond domains, IPs, and ports into AI systems, exposed prompts, shadow SaaS, cloud assets, supply-chain weak points, leaked data, and internet-scale intelligence.
The course is built around practical offensive reconnaissance workflows: discovering exposed assets, turning noisy public signals into targeted attack paths, and chaining findings into realistic exploitation scenarios against modern environments.
Key areas covered include:
- Mapping modern attack surfaces, including AI systems and public agents
- Advanced subdomain enumeration and asset discovery
- Hunting for AI exposures, prompts, models, datasets, and RAG pipelines
- Finding and attacking API endpoints
- Exploring dark web and leak-market intelligence
- Fingerprinting targets with templates and scanning workflows
- Attacking Docker images, cloud snapshots, and exposed infrastructure
- Using AI-augmented social engineering in offensive security workflows