☠️ Brandon (@__mez0__) 's Twitter Profile
☠️ Brandon

@__mez0__

👽 UNC1194 🔥 Targeted Ops @TrustedSec 🤖 Dev @preemptdev

"purveyors of the prettiest log files"

ID: 1000443969506086912

linkhttps://mez0.cc/ calendar_today26-05-2018 18:30:04

1,1K Tweet

2,2K Takipçi

424 Takip Edilen

5pider (@c5pider) 's Twitter Profile Photo

Introducing Havoc Professional: A Lethal Presence We’re excited to share a first look at Havoc Professional, a next-generation, highly modular Command and Control framework, and Kaine-kit our fully Position Independent Code agent engineered for stealth! infinitycurve.org/blog/introduct…

pre.empt (@preemptdev) 's Twitter Profile Photo

throwback to our first blog in 2022. still fun, relevant, and still a headache to detect - despite the meme: pre.empt.blog/posts/bluffy/

Jason Lang (@curi0usjack) 's Twitter Profile Photo

In terms of offsec, I have significant respect for technical skill, but a truly great practitioner knows to deliver information tactfully, and can carefully "read the room" (and the customer), tweaking the message on the fly to achieve not only the desired impact for the target

☠️ Brandon (@__mez0__) 's Twitter Profile Photo

Its always interesting to read research in the malware detection space. This is a good one I stumbled across today: mdpi.com/1999-5903/16/1…

codewhisperer84 (@codewhisperer84) 's Twitter Profile Photo

Check out Titanis, my new C#-based protocol library! It features implementations of SMB and various Windows RPC protocols along with Kerberos and NTLM. github.com/trustedsec/Tit…

☠️ Brandon (@__mez0__) 's Twitter Profile Photo

Pushed my update to Citadel which has a ton of QOL and UI updates, as well as better analysis, more datapoints, and some data-driven classifications: github.com/mez-0/citadel

MDSec (@mdseclabs) 's Twitter Profile Photo

The MDSec red team is hiring! If you're an experienced red team operator interested in conducting multi-month operations within a small and technically gifted team reach out to us! ✊

The <a href="/MDSecLabs/">MDSec</a> red team is hiring! If you're an experienced red team operator interested in conducting multi-month operations within a small and technically gifted team reach out to us! ✊
codewhisperer84 (@codewhisperer84) 's Twitter Profile Photo

New Titanis release => github.com/trustedsec/Tit… Mostly Kerberos enhancements: - S4U2self and S4U2proxy - Change/Set password - Generate crypto key on command line ASN.1 saw some major changes to pave the way for some upcoming enhancements

deceptiq (@deceptiq_) 's Twitter Profile Photo

Once in a blue moon as a red teamer, we encountered environments with canary technology deployed across their infrastructure. The tables flipped. Blue teams caught us immediately. Canary technology uniquely detects adversaries by exploiting their behavior - digital assets with

Once in a blue moon as a red teamer, we encountered environments with canary technology deployed across their infrastructure. The tables flipped. Blue teams caught us immediately. 

Canary technology uniquely detects adversaries by exploiting their behavior - digital assets with
deceptiq (@deceptiq_) 's Twitter Profile Photo

As former Red Teamers, we always were looking for low-risk, high-reward decisions. Actions where the upside-lateral movement outweighed the likelihood of detection. This risk calculus has held for years. Early warning honey tokens exist to break it. deceptiq.com/blog/early-war…

As former Red Teamers, we always were looking for low-risk, high-reward decisions. 

Actions where the upside-lateral movement outweighed the likelihood of detection.

This risk calculus has held for years. 

Early warning honey tokens exist to break it.

deceptiq.com/blog/early-war…