Jumpsec

How to Handle Development Projects in a Pentest Company

How Cloud Migration is Affecting AppSec - A Red Teamer's Perspective

<strong>Advisory CVE-2023-43042 – IBM Backup Products Superuser Information Disclosure</strong>

Red Teaming the Cloud: A Shift in Perspective

VECTR for Purple Team Engagements

Ligolo: Quality of Life on Red Team Engagements

Hunting for 'Snake'

<strong>Advisory CVE-2023-30382 – Half-Life Local Privilege Escalation</strong>

<strong>Advisory CVE-2022-37832 - Mutiny Network Monitoring Appliance hardcoded credentials</strong>

Can Depix deobfuscate your data?

Advisory CVE-2020-13769 – Ivanti Unified Endpoint Manager SQL injection

Advisory CVE-2020-13772 - Ivanti Unified Endpoint Manager system information disclosure

Advisory CVE-2020-13773 - Ivanti Unified Endpoint Manager Reflected XSS

Detecting known DLL hijacking and named pipe token impersonation attacks with Sysmon

Advisory CVE-2020-13774 - Ivanti Unified Endpoint Manager authenticated RCE via file upload

Advisory CVE-2020-13770 - Ivanti Unified Endpoint Manager named pipe token impersonation privilege escalation

Advisory CVE-2020-13771 - Ivanti Unified Endpoint Manager DLL search order hijacking privilege escalation

API Hooking Framework

Thunder Eye – Threat Intelligence Aggregator

A Defender’s Guide For Rootkit Detection: Episode 1 - Kernel Drivers

Bypassing Antivirus with Golang - Gopher it!

Enhanced logging to detect common attacks on Active Directory– Part 1