Hacking the Hacker: How AI Agents are Changing the Game of Penetration Testing (2024)

By Kyle Haefner, Ph.D., CableLabs; Craig Pratt, CableLabs

The accelerating field of AI Agents that use Large Language Models (LLMs) holds immense potential for the automation of various highly complex tasks. Penetration testing and ethical hacking is a very complex activity that requires both depth and breadth of knowledge as well as a high degree of adaptability. This paper explores the feasibility of utilizing AI agents for completely autonomous penetration testing and ethical hacking within the confines of the popular "Hack the Box" challenge. Weconsider three different agent architectures based on how agents are constructed and how they converse with each other: a simple two-agent model, a central coordinator model, and a team-lead based model.

Additionally, we explore agents that use online closed-source LLMs versus agents backed by locally run open-source LLMs contrasting the advantages and disadvantages of both. Finally, the paper examines the ethical and security considerations surrounding the use of LLMs for autonomous penetration testing and suggests guidelines for responsible implementation.

By clicking the "Download Paper" button, you are agreeing to our terms and conditions.

Similar Papers

The Conversational Network: AI-powered Language Models for Smarter Cable Operations
By Tyler Glenn, CableLabs; Jason Rupe Ph.D., CableLabs; Kyle Haefner Ph.D., CableLabs
2024
Gremlins in the Network: How Adversarial AI Can Evade Network Detection
By Kyle Haefner, Ph.D., CableLabs; Chad Schwenke, CableLabs
2024
Matter - What It Is, How It Works and Why It Matters To The Cable Industry
By Haefner, Kyle, Ph.D., CableLabs; Haque, Asad, Comcast; Page, Jason, Charter Communications
2022
Smart Gateways: Active A.I. in Subscriber Networks
By Kyle Haefner, CableLabs
2020
CableLabs' Ghost Canceller Testing Project
By Tom Williams, Cable Television Laboratories, Inc.
1992
CableLabs ATV Testing Status Report
By Brian James, Cable Television Laboratories, Inc.
1992
Advanced Television Research Activities At Cablelabs
By Craig K. Tanner, Cable Television Laboratories, Inc.
1991
CableLabs® Custom Connectivity An Architecture To Bridge The Digital Divide
By Darshak Thakore, CableLabs; Craig Pratt, CableLabs; Mohan Gundu, Veea Inc.; Roger Lucas, Veea Inc.; Jose Quintero, Liberty Latin America
2022
Constructing a Convergence Lab: Lessons Learned From Building a Converged Network at CableLabs
By Matthew Schmitt, CableLabs
2020
Lessons Learned: Embedding AI in Cable Customer Experience to Better Serve Agents and Customers
By Rachel Knaster, ASAPP
2021
More Results >>