Microsoft BlueHat
@MSFTBlueHat
BlueHat is where the security research community and @Microsoft security pros come together as peers, to connect, share and learn. Run by @MSFTSecResponse
At just 13 years old, Dylan Ryan-Zilavy became the youngest security researcher to collaborate with MSRC. What started with Scratch and HTML quickly evolved into submitting impactful vulnerability reports, respectfully challenging scope decisions, and even helping shape MSRC’s…
Our previously published Most Valuable Researchers (MVR) leaderboard contained inaccuracies due to technical issues on our end. We apologize for the error and have since resolved the issue. We’re now sharing a fully refreshed and accurate leaderboard. The Microsoft Researcher…
The Microsoft Researcher Recognition Program offers public thanks and recognition to security researchers who help protect our customers by discovering and sharing security vulnerabilities under Coordinated Vulnerability Disclosure. Today, we are excited to recognize this year’s…
Ashish Dhone (@ashketchum_16), security researcher and Microsoft MVR, presented a BlueHat India session on one of the most elusive web security threats: Blind XSS. In his talk, “Breaking into Big Tech: The $50,000+ Blind XSS Bug Hunt,” Ashish walked through: •Advanced…

Congratulations to all the researchers recognized in this quarter’s MSRC 2025 Q2 Security Researcher Leaderboard! Thanks to all the researchers who partnered with us for your hard work and continued dedication to securing our customers. Learn more in our blog post:…
From MS-DOS to Copilot, we’ve come a long way. This year, in honor of Microsoft’s 50th anniversary, MSRC is throwing it back (way back) with a "Microsoft Through the Decades" security researcher celebration during Black Hat. 🗓 August 7, 2025 📍Skyfall Lounge, W Las Vegas This…
At BlueHat India 2025, George Hughey (@ecthr0s), Senior Security Research Manager at Microsoft, walked through how MSRC turns competition exploits into long-term security wins through variant hunting. By analyzing every submitted exploit, MSRC has uncovered entire classes of…
At BlueHat India 2025, Ram Shankar Siva Kumar (@ram_ssk), Data Cowboy and Head of the AI Red Team at Microsoft, delivered a keynote breaking down the future of red teaming in the era of generative AI. As GenAI systems grow more complex and autonomous, Microsoft’s AI Red Team is…
At BlueHat India 2025, David "DWIZZZLE" Weston (@dwizzzleMSFT), CVP of OS Security at Microsoft, opened Day 1 with a keynote titled "AI at the Edge: Attacks and Defense." As AI becomes deeply embedded in everyday devices, the security landscape is shifting fast. David broke down…
Missed BlueHat India 2025? Catch up now! Talks from Microsoft & global security experts are live on the @msftsecresponse YouTube channel: youtube.com/@msftsecrespon… From AI threats to ransomware ops, mobile red teaming and more, don’t miss these deep-dive sessions. #BlueHatIndia

Thank you to everyone who joined us this week. BlueHat is more than just a conference, it’s a community. One where the security community from inside and outside Microsoft come together as peers to share, challenge, and learn from one another. From deep technical talks to…




We kicked off Day 2 of BlueHat India with opening remarks from Charu Srinivasan, CVP of Engineering at Microsoft, who explored the rise of Agentic AI: autonomous agents that will soon play a role in nearly every system we build. Her message was clear: defenders must secure these…



This badge has seperate fan base @MSFTBlueHat #BlueHat2025 #BlueHatIndia #security
I'm attending @MSFTBlueHat , if you're here let's catch-up! Attending this two day conference, participated in appsecvillage_bluehat. #msrc_bluehat #BlueHatIndia
At #BlueHatIndia, Manish Gupta and Yash Bharadwaj (@flopyash) from CyberWarFare Labs took us deep into the evolving playbook of modern APTs in their talk “Serverless Phishing 2.0.” Their core message: Attackers aren’t breaking in—they’re logging in. With MFA fatigue and session…


Even though it's only half a day into Day 2, we've already experienced incredible sessions — a mind-blowing talk on Agentic AIs & their responsible usage, insightful session on ML exploitation techniques, & an eye-opening discussion on DeepFakes #BlueHatIndia @MSFTBlueHat