The pitch from every AI company sounds roughly the same: our models make complex tasks accessible to everyone. Dylan Ayrey, CEO of Truffle Security, would like to point out that “everyone” includes hackers.

At Black Hat USA 2026, running August 4 through 6 in Las Vegas, Ayrey’s company is set to demonstrate just how quickly AI agents can sniff out and misuse sensitive credentials, a pace that consistently outstrips most organizations’ ability to respond. The core argument is straightforward: AI models now function as on-demand subject matter experts, effectively lowering the skill floor required to breach systems.

The democratization nobody asked for

Rather than replacing traditional attack methods, AI is turbocharging them. Phishing campaigns, credential abuse, identity theft, supply-chain vulnerabilities: these aren’t new tricks. But they’re suddenly a lot easier to execute when an AI model can walk an attacker through the process step by step, filling in knowledge gaps that previously kept less-skilled threat actors on the sidelines.

Truffle Security, best known for its open-source TruffleHog secrets-scanning tool, will be showcasing its latest capabilities at booth 5727. The company’s focus is on detecting leaked credentials and secrets before attackers can exploit them.