
Black Hat Presentations Drive Cybersecurity Research Advancements Through Shared Techniques
James Kettle, Director of Research at PortSwigger, discusses how Black Hat presentations enable the advancement of cybersecurity research by building on shared techniques. He highlights a 2021 Black Hat Europe talk by Daniel Thatcher, which introduced a fingerprinting method to detect a subtype of request smuggling vulnerabilities by analyzing how front-end and back-end servers process obfuscated headers. Kettle expanded this technique, making it more generic, and used it to uncover vulnerabilities affecting nearly 30 million websites, where successful attacks could misroute responses—such as exposing secret keys to unauthorized users. The core primitive exploited involves hiding headers from either the front-end or back-end server, a critical step in request smuggling. Kettle emphasizes that Black Hat showcases cutting-edge research, often preempting attacker adoption by months, allowing defenders to anticipate future threats. His upcoming 2024 Black Hat presentation will explore whether AI can independently conduct novel security research, based on nine months of investigation.