Cookie theft has evolved. 🍪
Over the last year, stealing cookies on Windows devices has changed significantly for Chromium browsers like Chrome and Edge. Andrew Gomez dives into these changes, how threat actors adapt, & new detection opportunities. ghst.ly/45S1ZgW
I'm SO hyped to finally make MSSQLHound public! It's a new BloodHound collector that adds 37 new edges and 7 new nodes for MSSQL attack paths using the new OpenGraph feature for 8.0!. Let me know what you find with it!
- github.com/SpecterOps/MSS…
- specterops.io/blog/2025/07/2…
Free Offensive and Defensive Courses
AV/EDR Evasion Practical Techniques
Foundations of Log Analysis for Cyber Defense
Fundamentals of Game Hacking Development
Introduction to Bug Bounty
Introduction to Offensive Security with Artificial Intelligence
Introduction to Python for…
Bypassing AMSI with your own custom COM interfaces inside CLR process - an excellent piece by Joshua Magri (@passthehashbrwn).
The custom implementation allows to allocate and load assemblies from memory and invoke Load_2() method instead of typical call to Load_3(). This…
Facad1ng: An open-source URL masking tool designed to help you Hide Phishing URLs and make them look legit using social engineering techniques
GitHub: github.com/spyboy-product…
BYOVD is no longer required on modern Windows. a bunch of recent msft kernel patches just shove vulnerable kernel code behind a privilege check. I wonder if we will see threat actors leveraging this like they did BYOVD. no bringing along a driver and loading also means less IOCs
After today’s talk at #TROOPERS25 I’m releasing BitlockMove, a PoC to execute code on remote systems in the context of a loggedon user session 🔥
github.com/rtecCyberSec/B…
No need to steal credentials, no impersonation, no injection needed 👌
Releasing a side project of mine: wsuks - automating the WSUS mitm attack🔥
github.com/NeffIsBack/wsu…
TL;DR:
If the Windows Server Update Service (WSUS) is configured to use HTTP instead of HTTPS, it's possible to take control of any Windows machine on your local network.
1/4🧵
Here's our new blog on hiding your implant in VTL1, where even an EDR's kernel sensor can't see it.🧑🦯
Post includes full operational details. Plus our OST offering has been updated with a Cobalt Strike sleep mask exploiting secure enclaves.
Full read ➡️ outflank.nl/blog/2025/06/1…
single-threaded event driven sleep obfuscation poc for linux utilizing file descriptors, inspired by "pendulum" from @kyleavery_github.com/kozmer/silentp…
For the past two months, the media and Democrats have burnt to the ground any last shred of credibility they had left by glorifying Kilmar Abrego Garcia— a known MS-13 gang member, human trafficker, and serial domestic abuser.
Today, the United States of America confronts Kilmar…
It's 2 years old, but wanted to share this project again as I think it's still relevant. I recently ported DropSpawn to .Net for inclusion in a ClickOnce payload and it's still undetected by MDE. Neat trick to start a process and force it to load a DLL. github.com/Octoberfest7/D…
I'm super happy to announce an operationally weaponized version of @YuG0rd's BadSuccessor in .NET format! With a minimum of "CreateChild" privileges over any OU it allows for automatic escalation to Domain Admin (DA). Enjoy your inline .NET execution!
github.com/logangoins/Sha…
28K Followers 206 FollowingHacker at @OutsiderSec. Researches AD and Azure (AD) security. Likes to play around with Python and write tools that make work easier.
3K Followers 33 FollowingBallisKit provides tooling and services to professional Pentesters & Red Teams.
We develop MacroPack, ShellcodePack, and DarwinOps.
#redteam #infosec
5K Followers 427 FollowingCyberSecurity researcher and founder of BallisKit. I have a passion for all infosec subjects especially redteam and writing offensive tools!
4.0M Followers 256 FollowingOutplay the world in Apex Legends: Showdown
ESRB Rating T for Teen: Blood and Violence
Optional in-game purchases (includes random items)
9K Followers 2K FollowingThreat Researcher | Co-Host of Atomics on a Friday | LOLDrivers & Atomic Red Team Maintainer | I'm Everywhere and Nowhere - BSG.