blog category

Research & Tradecraft

image for Ghostwriter v2.3.0 & 2022 Road Map

Research & Tradecraft

Ghostwriter v2.3.0 & 2022 Road Map

Ghostwriter is changing! We try to be transparent with our development work, but it has been...

By: Christopher Maddalena
Apr 6, 2022 • 5 min read
Read Post
image for Learning Machine Learning Part 1: Introduction and Revoke-Obfuscation

Research & Tradecraft

Learning Machine Learning Part 1: Introduction and Revoke-Obfuscation

For the past two years I’ve been trying to get a grasp on the field of...

By: Will Schroeder
Apr 5, 2022 • 34 min read
Read Post
image for Revisiting Phishing Simulations

Research & Tradecraft

Revisiting Phishing Simulations

This post was written by Matt Hand and the rest of the SpecterOps team. Overview SpecterOps...

By: SpecterOps
Mar 9, 2022 • 20 min read
Read Post
image for Introducing BloodHound 4.1 — The Three Headed Hound

Research & Tradecraft

Introducing BloodHound 4.1 — The Three Headed Hound

Introducing BloodHound 4.1 — The Three Headed Hound Prior Work Analyzing Active Directory attack paths using graph theory is...

By: Andy Robbins
Feb 9, 2022 • 6 min read
Read Post
image for Mythic 2.3 — An Interface Reborn

Research & Tradecraft

Mythic 2.3 — An Interface Reborn

Mythic 2.3 — An Interface Reborn New Mythic Search Mythic started off as a proof of concept, open source...

By: Cody Thomas
Jan 31, 2022 • 13 min read
Read Post
image for Ghostwriter: Looking Back at 2021

Research & Tradecraft

Ghostwriter: Looking Back at 2021

It has been a while since we last published details about the Ghostwriter project, but the...

By: Christopher Maddalena
Dec 22, 2021 • 6 min read
Read Post
image for Capability Abstraction Case Study: Detecting Malicious Boot Configuration Modifications

Research & Tradecraft

Capability Abstraction Case Study: Detecting Malicious Boot Configuration Modifications

By: Michael Barclay
Nov 9, 2021 • 24 min read
Read Post
image for AWS ReadOnlyAccess: Not Even Once

Research & Tradecraft

AWS ReadOnlyAccess: Not Even Once

By: Daniel Heinsen
Aug 27, 2021 • 9 min read
Read Post
image for Entity Based Detection Engineering with BloodHound Enterprise

Research & Tradecraft

Entity Based Detection Engineering with BloodHound Enterprise

Critical Attack Path with Auditing Table of Contents Introduction Enterprise Access Model BloodHound and Detection BloodHound Enterprise Entity Based...

By: Joshua Prager
Aug 18, 2021 • 13 min read
Read Post