blog category

Research & Tradecraft

image for Building a FreeIPA Lab

Research & Tradecraft

Building a FreeIPA Lab

Recently I started a series of blog posts detailing some of the lessons I learned about...

By: Julian Catrambone
May 14, 2020 • 7 min read
Read Post
image for Detection in Depth

Research & Tradecraft

Detection in Depth

By: Joshua Prager
May 8, 2020 • 17 min read
Read Post
image for Methodology for Static Reverse Engineering of Windows Kernel Drivers

Research & Tradecraft

Methodology for Static Reverse Engineering of Windows Kernel Drivers

Introduction Attacks against Windows kernel mode software drivers, especially those published by third parties, have been...

By: Matt Hand
Apr 15, 2020 • 15 min read
Read Post
image for Through the Looking Glass

Research & Tradecraft

Through the Looking Glass

By: Luke Paine
Mar 11, 2020 • 9 min read
Read Post
image for Abusing Slack for Offensive Operations

Research & Tradecraft

Abusing Slack for Offensive Operations

By: Cody Thomas
Mar 4, 2020 • 9 min read
Read Post
image for Detection Spectrum

Research & Tradecraft

Detection Spectrum

By: Jared Atkinson
Feb 21, 2020 • 11 min read
Read Post
image for War Never Changes: Attacks Against WPA3’s “Enhanced Open” — Part 3: OWE Nearly Indistinguishable From Open Wireless In Terms of Risk

Research & Tradecraft

War Never Changes: Attacks Against WPA3’s “Enhanced Open” — Part 3: OWE Nearly Indistinguishable From Open Wireless In Terms of Risk

In early 2019, myself and fellow Denver-based researcher Steve Darracott (@theDarracott) set out to answer the question...

By: Gabriel Ryan
Feb 12, 2020 • 12 min read
Read Post
image for Capability Abstraction

Research & Tradecraft

Capability Abstraction

By: Jared Atkinson
Feb 6, 2020 • 15 min read
Read Post
image for Ghostwriter: 2020 Feature Update

Research & Tradecraft

Ghostwriter: 2020 Feature Update

We introduced Ghostwriter in July 2019 when we felt it was a good v1.0, but active development never...

By: Christopher Maddalena
Jan 29, 2020 • 8 min read
Read Post