Offensive Security, Adversary Emulation, Red Team Tradecraft, Infrastructure, and Methodology. Jesus is my Lord and Savior.linktr.ee/hackhermanosJoined October 2023
A secret to finding stealth rootkits on Linux is asking the same question multiple ways to see if the answers match. These inconsistencies can reveal the malware. Here we have a rootkit that hid its port from lsof, but ss shows something with a missing owner process.
As it turns out AWS not only made changes to their TOS, they are actively enforcing them. Thus, the current public release of TeamFiltration has been rendered more or less useless for enum and spraying EntraId tenants.
Every company’s cyber arch nemesis, Scattered Spider, is back in the news, and they hit a US-based bank. Considering their reliance on social engineering as an attack vector, I’m sharing a few control recommendations to help mitigate risk:
Maintain a “Do Not Touch” List of…
The craziest thing about the entire Scattered Spider trilogy is how simple they operated and how effective it was
They didn't utilize 0day exploits. They didn't utilize novel and "undetectable" malware. They didn't exploit N-days or try to find vulnerable external facing…
Introducing AIRTBench, an AI red teaming benchmark for evaluating language models’ ability to autonomously discover and exploit AI/ML security vulnerabilities.
Read the paper on arXiv: arxiv.org/abs/2506.14682
Open-source dataset and benchmark eval code repo:…
Win32_Process has been the go to WMI class for remote command execution for years.
@0xthirteen explores a new WMI class that functions like Win32_Process and offers further capability. Read more ⤵️ ghst.ly/4gyPbkr
In our latest blog post, we detail how you can leverage the Nighthawk API to streamline your Red Team Ops.... Automating Operations with Nighthawk - nighthawkc2.io/automating-ope…
Dawg, one of the Scattered Spider guys ransomed a bunch of companies, made $36,000,000, then used the money for Uber Eats and Steam 😭
They had him from Uber Eats bro 😭
Recommandations from the “inventor” of Kerberoasting.
Also check out FAST / kerberos armoring. Article from @SteveSyfuhs :
syfuhs.net/kerberos-fast-…
And if you are using g/dMSA (managed service accounts) it will automatically set and rotate a long password.
Recommandations from the “inventor” of Kerberoasting.
Also check out FAST / kerberos armoring. Article from @SteveSyfuhs :
syfuhs.net/kerberos-fast-…
And if you are using g/dMSA (managed service accounts) it will automatically set and rotate a long password. https://t.co/kuKxw3c54l
I'm not sure how I missed this article on Entra Kerberos, but it's the most comprehensive documentation I've seen yet, absolutely fantastic
If this is the "Introduction to Microsoft Entra Kerberos", I'm honestly a little scared to see the deep dive 🫣😅
learn.microsoft.com/en-us/entra/id…
Even with HTTPS, Windows Server Update Services can be abused if attackers obtain a trusted certificate, allowing authentication relay. In our blog, @Coontzy1 explains how WSUS traffic can be found and abused, and what sparked his investigation. Read now! trustedsec.com/blog/wsus-is-s…
5K Followers 3K FollowingLess noise, more signal. Work at @TheBTCAdviser #Bitcoin will save your energy. #Truth will save your culture. #Jesus will save your soul.
8K Followers 4K Followingdesigner, engineer, design engineer? • Interested in the things I don't yet understand and building things to help me understand them.
11K Followers 314 FollowingAgentless Linux security. No endpoint agents and no drama. Linux malware, forensics, intrusion detection, and hacking. Founder @SandflySecurity.
272 Followers 4 FollowingReal-time intel on malicious extensions & packages across dev marketplaces. Governance + risk scoring for binary/non-binary software. By Koi.
38K Followers 132 FollowingDetect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
2K Followers 3K FollowingFounder/CEO of Graphlit (@graphlit): managed knowledge API + MCP server. 🚀 Try out @zine_ai app for free 👋 ex-MSFT, PA born, Seattle bred. Dad to dogs/humans
523K Followers 234 FollowingAI investor, engineer, and entrepreneur. Tweets on tech, business and marketing. Newsletter read by industry leaders at Nike, OpenAI & Disney:
428K Followers 223 FollowingEducate. Connect. Inspire • Helping you LEVEL UP your life • Join the GROWTH“Labs” to uplift yourself everyday: https://t.co/YlFWnFv9uj
2K Followers 398 FollowingAdversary Sim @ X-Force Red | Head of Capability R&D | Offensive AI | Implant Dev | Work In Progress | Thoughts My Own | https://t.co/eNspx7jLvm
7K Followers 629 FollowingFather of 5, interested in many things from music to AI, philosophy, history, programming, politics, beauty, religions and life. Views here are my own.
774 Followers 14 FollowingThe first con dedicated to exploring the offensive use of AI.
Agenda: https://t.co/OnaPkgpS5T
Oct 5-8, 2025 | Oceanside, CA
#OffensiveAICon