blog category

Research & Tradecraft

image for Revisiting Remote Desktop Lateral Movement

Research & Tradecraft

Revisiting Remote Desktop Lateral Movement

It’s no secret that attackers are looking for new techniques to execute lateral movement. However, there...

By: Steven Flores
Jan 22, 2020 • 8 min read
Read Post
image for Satellite: A Payload and Proxy Service for Red Team Operations

Research & Tradecraft

Satellite: A Payload and Proxy Service for Red Team Operations

By: Max Harley
Jan 21, 2020 • 8 min read
Read Post
image for Attacking FreeIPA — Part II Enumeration

Research & Tradecraft

Attacking FreeIPA — Part II Enumeration

In Part I of this series, we reviewed some of the background and underlying technologies utilized...

By: Julian Catrambone
Dec 4, 2019 • 10 min read
Read Post
image for Attacking FreeIPA — Part I Authentication

Research & Tradecraft

Attacking FreeIPA — Part I Authentication

Recently I had the opportunity to operate inside of an environment managed by FreeIPA. I wanted...

By: Julian Catrambone
Nov 25, 2019 • 9 min read
Read Post
image for Introducing the Funnel of Fidelity

Research & Tradecraft

Introducing the Funnel of Fidelity

By: Jared Atkinson
Nov 20, 2019 • 10 min read
Read Post
image for CVE-2019–12757: Local Privilege Escalation in Symantec Endpoint Protection

Research & Tradecraft

CVE-2019–12757: Local Privilege Escalation in Symantec Endpoint Protection

By: Matt Nelson
Nov 15, 2019 • 5 min read
Read Post
image for When Kirbi walks the Bifrost

Research & Tradecraft

When Kirbi walks the Bifrost

By: Cody Thomas
Nov 14, 2019 • 18 min read
Read Post
image for Covenant: Developing Custom C2 Communication Protocols

Research & Tradecraft

Covenant: Developing Custom C2 Communication Protocols

By: Ryan Cobb
Oct 30, 2019 • 18 min read
Read Post
image for Avira Optimizer Local Privilege Escalation

Research & Tradecraft

Avira Optimizer Local Privilege Escalation

By: Matt Nelson
Aug 29, 2019 • 8 min read
Read Post