Cerbersec (@cerbersec) 's Twitter Profile
Cerbersec

@cerbersec

I make things to break things | non-Blue Team @NVISOSecurity | Opinions are my own

ID: 1215526979467993089

linkhttp://cerbersec.com calendar_today10-01-2020 06:53:46

776 Tweet

3,3K Takipçi

185 Takip Edilen

Cerbersec (@cerbersec) 's Twitter Profile Photo

Hey Dirk-jan I've added Shadow Credentials options to krbrelay.py, however using coercion + AD DNS I cannot seem to relay to LDAP. Do you know if this is a protocol limitation? github.com/dirkjanm/krbre…

Alex Martirosyan (@almartiros) 's Twitter Profile Photo

RedTeamTP is now public, link below. The repo is a proof of concept of how to utilize GitHub Actions to automate offensive infrastructure. Looking forward to presenting the tool soon HackSpaceCon #HSC2025 #HackSpaceCon github.com/CultCornholio/…

Cerbersec (@cerbersec) 's Twitter Profile Photo

For other people wondering about the shellcode part mem2019.github.io/jekyll/update/… chovid99.github.io/posts/hitcon-c…

Yehuda Smirnov (@yudasm_) 's Twitter Profile Photo

What if you skipped VirtualAlloc, skipped WriteProcessMemory and still got code execution? We explored process injection using nothing but thread context. Full write-up + PoCs: blog.fndsec.net/2025/05/16/the…

Cerbersec (@cerbersec) 's Twitter Profile Photo

Malware development =/= red teaming. If you want to land an offensive security/RT role, go get some fundamental training as an operator. Good places to start are Hack The Box and Zero-Point Security 's RTO certifications

Cerbersec (@cerbersec) 's Twitter Profile Photo

Some people out here posting old tech and slapping a new sticker on it, steal other people's code and publish it as their own original work, acting big because they've got a bunch of skids in their comments, yet offended when actual infosec sees right through the bs. Be humble

winterknife 🌻 (@_winterknife_) 's Twitter Profile Photo

Cerbersec Here is the actual code if anyone wants to play with it: github.com/winterknife/EV… Just a random experiment lol In theory, it could be helpful to craft a multi-mode PE that branches based on CPL idk

Cerbersec (@cerbersec) 's Twitter Profile Photo

Responder not working? LLMNR/NBNS enabled in the environment? Check for ADIDNS wildcard records preventing the fallback to older protocols. #redteam #redteamtips

Cerbersec (@cerbersec) 's Twitter Profile Photo

Went down the buying-a-car rabbithole... to EV or not to EV that's the question. Maybe a plugin hybrid is the answer. So many options

TrustedSec (@trustedsec) 's Twitter Profile Photo

We all know the “this is fine” meme—when it comes to burnout, it’s anything but. In our newest blog, confused_binary serves up practical tips to help testers and teams recognize, manage, and avoid going up in flames. Read it now! trustedsec.com/blog/pen-testi…