Anti-Tech Extremism - BHIS - Talkin' Bout [infosec] News 2026-06-01

Anti-Tech Extremism - BHIS - Talkin' Bout [infosec] News 2026-06-01

Source: YouTube · Black Hills Information Security · published Jun 1, 2026 · 1:13:28

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

The video discusses the challenges of using ChatGPT for low-level code tasks versus pen testing, highlighting specific denials related to exploit development and supply chain attacks.

Key Takeaways:
• Users attempting to break down tasks for low-level code often encounter issues, particularly with Windows Local Privilege Escalation (LPE) exploits, which the AI actively blocks 0:26.
• In contrast, general penetration testing activities are generally permitted and face fewer restrictions compared to raw exploit development 0:36.
• The speaker recently received a denial while building a supply chain attack tool, indicating that specific malicious frameworks trigger safety filters 0:40.

The discussion underscores the distinction between acceptable security research and prohibited malicious tooling in AI safety guidelines.

Sources:

  • 0:26 Discussion on AI denials for Windows LPE exploit development.
  • 0:36 Comparison of open pen testing versus restricted low-level code work.
  • 0:40 Mention of a denied supply chain attack tool.

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 1 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

break down my task. So like uh uh into small pieces because I've had that happen before. You're just like, "All right, we'll just solve this thing, right? Solve that thing." But anyway, >> I mean at BHIS we still have people that run into it, but it seems like the most of the people who are running into the CVP like denials are the people working on low-level code like the you know exploit development um like >> like especially messing around with those Windows LPEs and stuff like that. It's it's all over that. It doesn't want you to have that. But for just like pen testing stuff, it seems pretty open. Yeah. >> Yeah. I wasn't getting called out until recently, uh, last week. They really didn't like the supply chain attacking tool that I was building. Like it never >> it was like this is to…