nemo™ 🇺🇦 · @nemo
852 followers · 21896 posts · Server mas.to
Who Let The Dogs Out 🐾 · @ashed
107 followers · 8946 posts · Server mastodon.ml

Remove my passwords from lists so hackers won't be able to hack me.

#offsec #hacking #humor

Last updated 2 years ago

Who Let The Dogs Out 🐾 · @ashed
106 followers · 8939 posts · Server mastodon.ml

LDAP Queries for Offensive and Defensive Operations

The intention of this post is to provide basic queries for targeted AD DS information gathering used in penetration testing.

politoinc.com/post/ldap-querie

#pentest #ldap #offsec

Last updated 2 years ago

Leonard/Janis Robert König · @ljrk
384 followers · 14287 posts · Server todon.eu

OMFG, the whole stuff is such a shitshow. They recently revamped the course material and their "learning platform". This removed the possibility to start any challenge from a browser that is not in their VPN, meaning I need to run my Kali VM with graphics *just in order to have a browser open to click the "start challenge" button*. All in all it's completely ridiculous that everything is so Kali focused and just about running the right script. It's just a cert "how to become a script kiddie".

A complete sham and I cannot understand how this cert holds any real value. With the most recent update they even removed buffer overflow exploitation techniques, now it's really only scanning for known vulnerabilities and misconfigurations. That's no "attacker mindset". It's just boring keeping track of known vulns and exploiting them. There's *no worth* in that at all.

Of course, 90% of the market is not looking for "new vulns" but about looking for misconfigurations. But these aren't properly addressed by pentests anyway, but by actual proper security operations. This is a general misconception anyway: Some companies even think pentests make them more secure. Slightly less worse, they think that pentests evaluate the security of their product. Not completely wrong, but...

#offsec #oscp

Last updated 2 years ago

Adversary Village · @AdversaryVillage
23 followers · 3 posts · Server defcon.social
Jonas Lejon · @jonasl
352 followers · 18 posts · Server infosec.exchange

OffSec (tidigare Offensive Security) har släppt en ny Linux-distribution vid namn Kali Purple, läs mer här: kryptera.se/kali-purple-fran-o

#offensivesecurity #linux #offsec #kali #cybersecurity #purpleteam #blueteaming #blueteam

Last updated 2 years ago

sk3w :verified: :unverified: · @sk3w
65 followers · 74 posts · Server infosec.exchange

Today at 2pm EST I will be speaking about mathematics and offensive security at the free-to-attend virtual @Antisy_Training Summit. There will be a bunch of other (better) talks as well, and there is still time to register! If that sounds interesting to you, check it out at antisyphontraining.com/2023-mo

#mathematics #offsec #redteam

Last updated 3 years ago

Joe Słowik · @jfslowik
2719 followers · 1292 posts · Server infosec.exchange

If a "private sector" company can call their research/exploit team "Team82," I'm going to found an organization where our folks are in a team named or

#ics #ot #infosec #offsec #rocstars #taoofpenetration

Last updated 3 years ago

Nathan C :verified: - 💡😈 · @ncc826
100 followers · 335 posts · Server infosec.exchange

How many orgs do you think are ready to handle IPv6 detections?
Any fun tricks you've done that are IPv6 related in the attack or defense space?

#ipv6 #hacking #redteam #blueteam #purpleteam #magentateam #beigeteam #eggshellwhiteteam #offsec #cybersecurity #infosec

Last updated 3 years ago

alexia · @TypeErr0r
130 followers · 158 posts · Server hachyderm.io

I am proud of myself because today I got my first root shell on a prod network! :blobfoxcomputerowonotice:

Some of you may remember back when I only dreamed of hacking for my day job. Many people supported me in various ways like by being welcoming and helpful, providing mentorship, and boosting my work/words. (RIP) was a huge part of my journey.

#InfoSecTwitter #hacking #infosec #offsec

Last updated 3 years ago

Rémi Menegon · @firewave
10 followers · 2 posts · Server infosec.exchange

Beep! That was way too easy!

#offsec #physec #redteam

Last updated 3 years ago

Always interesting to see blue teamers write up tools I’ve written. I like how they spent time figuring our TCP packets out to write a snort rule.

trendmicro.com/en_us/research/

#offsec #infosec #security #pentesting #blueteam #redteam

Last updated 3 years ago

Bishop Fox · @BishopFox
800 followers · 139 posts · Server infosec.exchange

Just a few weeks until @cactuscon 11! We can't wait; @dnsprincess is presenting, there will be plenty of 🦊 swag on hand, and you can chat with our team about at Bishop Fox or our industry-leading solutions. bishopfox.com/events/cactuscon

#infosecjobs #offsec

Last updated 3 years ago

Shawn Webb · @lattera
1418 followers · 5295 posts · Server bsd.network
Lucid.H3X · @lucidh3x
237 followers · 197 posts · Server infosec.exchange

Looking for a good encrypted cloud storage low cost or free and a good email provider that's not protonmail

#offsec #infosec #cybersecurity #hacking

Last updated 3 years ago

tomchop · @tomchop
690 followers · 91 posts · Server infosec.exchange

We're looking for interns to work with in Zürich over the summer on a variety of topics: , platform hardening, sandboxing and of course ✨

The deadline for applications is pretty tight: Jan 20, so please submit soon!

careers.google.com/jobs/result

#offsec #dfir #internship #job #blueteam #infosec #redteam #google

Last updated 3 years ago

Astra Kernel :verified: · @AstraKernel
768 followers · 797 posts · Server infosec.exchange

Offensive Security has banned ChatGPT from the OSCP exam

What do you think,is it the right decision or not?

Image credit: @whitecyberduck

#infosec #chatgpt #openai #artificialintelligence #oscp #offsec #pentesters

Last updated 3 years ago

Bishop Fox · @BishopFox
785 followers · 121 posts · Server infosec.exchange

What skill sets do you plan to build up in 2023? We surveyed some of the consultants and the Cosmos operators of the Fox Den, and here’s what we found as the areas to shore up in this coming year:

- security
- and automation
- technology
- attack surface management
- Proper code development
- Mobile security

Read more about our New Year’s Resolutions here: bishopfox.com/blog/2023-securi

#security #cloud #ai #blockchain #metaverse #offsec

Last updated 3 years ago

Jesse Spangenberger · @azuleonyx
140 followers · 473 posts · Server infosec.exchange

RT @binaryz0ne@twitter.com

Important note to those new to this account. The course below is completely FREE. I know someone (maybe more) has ripped the videos & probably now the labs & is selling them on @udemy@twitter.com. Please do not pay for this course, it is FREE!
exploitation.ashemery.com/

🐦🔗: twitter.com/binaryz0ne/status/

#exploitdev #offsec

Last updated 3 years ago

I dreamt about this gear some years ago; not figuratively. Capabilities expanding hourly, these are some of the most powerful blue/red tools available. CIA level tech by @mg.

#offsec #recon #purpleteam #hak5

Last updated 3 years ago