
Cedric Owens
@cedowens
Proud Husband to @sgowens0716 and Father | Offensive Security Engineer | github.com/cedowens
ID: 1375674354
https://cedowens.medium.com 23-04-2013 23:21:34
1,1K Tweet
2,2K Takipçi
663 Takip Edilen





If you missed the BSidesLV talk AdamTheAnalyst and I gave on TTPForge last week, you're in luck! It's already on youtube, enjoy: youtu.be/H9YqJ1Ry1l8?t=…


During a Azeria training, Tom found stack smashing protection was broken for GCC AArch64 under a certain (not uncommon) condition. GCC + Arm have fixed it, but lots of exploitable overflows will remain compiled in the wild. Sometimes it is the compiler! rtx.meta.security/mitigation/202…

My Okta for Red Teamers post is up! We look at how Kerberos SSO works, how to intercept credentials via a fake AD Agent, decrypting AD Agent tokens, adding skeleton key's, and even how to deploy a janky SAML IdP server to auth as any user for good measure. trustedsec.com/blog/okta-for-…




💺 SwiftBelt A macOS enumeration tool Stealthy: uses Swift instead of CLI tools, avoids pop-ups Checks: * Full disk access * Presence of security tools * Searches for SSH and cloud creds * Browser history * Slack cookies + more By Cedric Owens #redteam github.com/cedowens/Swift…


Mythic just got an update! ✨ Check out Cody Thomas's latest blog post for a rundown of the updates made in Mythic v3.2, including: ✅ Push C2 ✅ Interactive Async Tasking ✅ Dynamic File Browser Read more! ghst.ly/46zRFsg






Alright here’s a new blog post for a new macOS malware by Adam Kohler and I! This was a fun one to reverse: stripped, encoded strings, persistence, and more :) Enjoy!! blog.kandji.io/malware-cuckoo…