This video walks through a history of Cobalt Strike's use of PowerShell, Reflective DLLs, .NET, and Beacon Object Files. The discussion ends with a preview of some ideas I expect to act on and socialize next.| Adversary Fan Fiction Writers Guild
Is Offensive Security just security testing? No. Offensive security is a way of thinking about the current security context, predicting what’s next, exploring those hypotheses, and adding to the se…| Adversary Fan Fiction Writers Guild
I learn about cryptographic vulnerabilities all the time, and they generally fill me with some combination of jealousy (“oh, why didn’t I think of that”) or else they impress me w…| A Few Thoughts on Cryptographic Engineering
Our commitment to protecting customers from vulnerabilities in our software, services, and devices includes providing security updates and guidance that address vulnerabilities when they are reported to Microsoft. We also want to be transparent with security researchers and our customers in our approach. This document helps to describe the criteria the Microsoft Security Response Center (MSRC) uses to determine whether a reported vulnerability affecting up-to-date and currently supported vers...| www.microsoft.com