Introducing a certipy parse command to perform stealthy offline AD CS enumeration based on local registry data.

Read more

This blog post introduces our new custom queries for BloodHound Community Edition (CE) and explains how you can use them effectively to analyze your…

Read more

Over the past few years, we have had the opportunity to conduct several Purple Teaming exercises together with our customers.

 

Particularly after…

Read more

Red Teaming engagements are “realistic” attack simulations designed to test the security posture of an organization and its Blue Team. This term is…

Read more

TLDR: Scan GitLab job logs for credentials using https://github.com/CompassSecurity/pipeleak Many organizations use (self-hosted) GitLab instances to…

Read more