blog category

Research & Tradecraft

image for Offensive Security Guide to SSH Tunnels and Proxies

Research & Tradecraft

Offensive Security Guide to SSH Tunnels and Proxies

Apr 22, 2021 • 0 min read
Read Post
image for Introducing BloodHound 4.0: The Azure Update

Research & Tradecraft

Introducing BloodHound 4.0: The Azure Update

Nov 20, 2020 • 0 min read
Read Post
image for Ghostwriter v2.0 Release

Research & Tradecraft

Ghostwriter v2.0 Release

Nov 20, 2020 • 0 min read
Read Post
image for Death from Above: Lateral Movement from Azure to On-Prem AD

Research & Tradecraft

Death from Above: Lateral Movement from Azure to On-Prem AD

Intro I’ve been looking into Azure attack primitives over the past couple of months to gain...

Aug 17, 2020 • 13 min read
Read Post
image for Requesting Azure AD Request Tokens on Azure-AD-joined Machines for Browser SSO

Research & Tradecraft

Requesting Azure AD Request Tokens on Azure-AD-joined Machines for Browser SSO

RequestAADRefreshToken is a tool that returns OAuth 2.0 refresh tokens for an Azure-AD-authenticated Windows user (i.e. the machine is joined to...

Jul 14, 2020 • 9 min read
Read Post
image for Move faster, Stay longer

Research & Tradecraft

Move faster, Stay longer

Jan 27, 2020 • 0 min read
Read Post
image for Revisiting Remote Desktop Lateral Movement

Research & Tradecraft

Revisiting Remote Desktop Lateral Movement

It’s no secret that attackers are looking for new techniques to execute lateral movement. However, there...

Jan 22, 2020 • 0 min read
Read Post
image for Merlin v0.8.0 Released

Research & Tradecraft

Merlin v0.8.0 Released

Aug 28, 2019 • 0 min read
Read Post
image for Merlin Goes OPAQUE for Key Exchange

Research & Tradecraft

Merlin Goes OPAQUE for Key Exchange

Aug 20, 2019 • 0 min read
Read Post