blog category

Research & Tradecraft

image for Being a Good Domain Shepherd

Research & Tradecraft

Being a Good Domain Shepherd

By: Christopher Maddalena
Dec 14, 2018 • 5 min read
Read Post
image for SharpShell: The Worst Scripting Engine of All-Time

Research & Tradecraft

SharpShell: The Worst Scripting Engine of All-Time

By: Ryan Cobb
Dec 11, 2018 • 8 min read
Read Post
image for Hunting in Active Directory: Unconstrained Delegation & Forests Trusts

Research & Tradecraft

Hunting in Active Directory: Unconstrained Delegation & Forests Trusts

During DerbyCon 2018 this past October, my teammates gave an awesome presentation titled “The Unintended Risks of...

By: Roberto Rodriguez
Nov 28, 2018 • 18 min read
Read Post
image for Not A Security Boundary: Breaking Forest Trusts

Research & Tradecraft

Not A Security Boundary: Breaking Forest Trusts

By: Will Schroeder
Nov 28, 2018 • 17 min read
Read Post
image for Operational Challenges in Offensive C#

Research & Tradecraft

Operational Challenges in Offensive C#

By: Ryan Cobb
Nov 7, 2018 • 30 min read
Read Post
image for Another Word on Delegation

Research & Tradecraft

Another Word on Delegation

By: Will Schroeder
Oct 25, 2018 • 8 min read
Read Post
image for CVE-2018–8414: A Case Study in Responsible Disclosure

Research & Tradecraft

CVE-2018–8414: A Case Study in Responsible Disclosure

By: Matt Nelson
Oct 23, 2018 • 13 min read
Read Post
image for CVE-2018–8212: Device Guard/CLM bypass using MSFT_ScriptResource

Research & Tradecraft

CVE-2018–8212: Device Guard/CLM bypass using MSFT_ScriptResource

Device Guard and the enlightened scripting environments that come with it are a lethal combination for...

By: Matt Nelson
Oct 10, 2018 • 4 min read
Read Post
image for Rubeus — Now With More Kekeo

Research & Tradecraft

Rubeus — Now With More Kekeo

By: Will Schroeder
Oct 4, 2018 • 14 min read
Read Post