blog category

Research & Tradecraft

image for 🧙‍ Merlin Adds Module Support 🔌

Research & Tradecraft

🧙‍ Merlin Adds Module Support 🔌

By: Russel Van Tuyl
Mar 13, 2018 • 3 min read
Read Post
image for Defenders Think in Graphs Too! Part 1

Research & Tradecraft

Defenders Think in Graphs Too! Part 1

By: Jared Atkinson
Mar 12, 2018 • 7 min read
Read Post
image for A Red Teamer’s Guide to GPOs and OUs

Research & Tradecraft

A Red Teamer’s Guide to GPOs and OUs

By: Andy Robbins
Feb 26, 2018 • 20 min read
Read Post
image for Reviving DDE: Using OneNote and Excel for Code Execution

Research & Tradecraft

Reviving DDE: Using OneNote and Excel for Code Execution

By: Matt Nelson
Jan 29, 2018 • 7 min read
Read Post
image for Threat Mitigation Strategies: Observations and Recommendations

Research & Tradecraft

Threat Mitigation Strategies: Observations and Recommendations

Full disclosure: This post is heavy on text. Much of the content is very broad and...

By: James Tubberville
Jan 25, 2018 • 22 min read
Read Post
image for Cobalt Strike OPSEC Profiles

Research & Tradecraft

Cobalt Strike OPSEC Profiles

By: Jeff Dimmock
Jan 22, 2018 • 7 min read
Read Post
image for Merlin 💖 JavaScript — All up in Your Browsers

Research & Tradecraft

Merlin 💖 JavaScript — All up in Your Browsers

By: Russel Van Tuyl
Jan 18, 2018 • 7 min read
Read Post
image for HostEnum: Updates and Usage Guide

Research & Tradecraft

HostEnum: Updates and Usage Guide

HostEnum (formerly Invoke-HostEnum) has received some much needed attention in recent weeks and a new version is...

By: Andrew Chiles
Jan 10, 2018 • 4 min read
Read Post
image for Introducing Merlin — A cross-platform post-exploitation HTTP/2 Command & Control Tool

Research & Tradecraft

Introducing Merlin — A cross-platform post-exploitation HTTP/2 Command & Control Tool

By: Russel Van Tuyl
Dec 18, 2017 • 8 min read
Read Post