Shellstorm's Avatar

Shellstorm

@shellstorm

The Bman; Canadian, hacker, dad, martial artist, gamer.

32
Followers
103
Following
16
Posts
23.09.2024
Joined
Posts Following

Latest posts by Shellstorm @shellstorm

Preview
MAE - Malwareless Adversary Emulation Advanced red team training — 13 modules on adversary emulation without traditional malware. Learn the techniques that bypass modern defences.

Today’s the day, finally got around to publishing my red team course, with video, written and self spin up labs. lms.zsec.red

14.02.2026 11:09 👍 4 🔁 5 💬 0 📌 1

As someone in a non-US (and mostly allied) country, and has wondered about this during annexation comments were flying around, I would love to know more. Alot more.

18.11.2025 20:07 👍 1 🔁 0 💬 1 📌 0

Canadian here: we stopped making pennies in 2012. You won't miss them.

13.11.2025 15:09 👍 0 🔁 0 💬 0 📌 0
Preview
GitHub - mubix/Find-WSUS: Helps defenders find their WSUS configurations in the wake of CVE-2025-59287 Helps defenders find their WSUS configurations in the wake of CVE-2025-59287 - mubix/Find-WSUS

I know something like this already exists somewhere, and absolutely open to learning better ways:

github.com/mubix/Find-W...

For finding what might be affected by CVE-2025-59287 or you can use an EDR / OSQuery to find systems with the WSUSService service.

28.10.2025 01:17 👍 8 🔁 3 💬 0 📌 0
Post image

It's another #BloodHoundBasics day with Stephen Hinck!

Go back ⬅️, forward ➡️, & share your BloodHound view 👀. Earlier this year, we added Back button support directly through your browser. You can also copy your current URL & share it with a teammate so they see what you see.

24.10.2025 18:27 👍 0 🔁 1 💬 0 📌 0

If you're using Mac in enterprise, you're going to be fighting an uphill battle trying to achieve feature parity for compliance and security tooling with the rest of your Windows fleet. Which leads to the obvious question: is the total cost worth it?

24.10.2025 19:19 👍 13 🔁 1 💬 7 📌 0
Preview
Kevin Beaumont (@GossiTheDog@cyberplace.social) Attached: 1 image Not sure if anybody else has played with CVE-2025-59287 (out of band update for WSUS) but I just had a play in a lab - after getting RCE on the WSUS server, I was able to tamper wit...

Patch that WSUS vuln or Barry will cry beans

cyberplace.social/@GossiTheDog...

24.10.2025 17:55 👍 32 🔁 5 💬 4 📌 0
Preview
a blurred image of a red sphere with a black background ALT: a blurred image of a red sphere with a black background

@tommorelloofficial.bsky.social the offer still stands: when you're in Guelph this weekend you're more than welcome at our D&D table for a one-shot. Let me know your class and species and we'll have a miniature printed and painted for you. Now to roll for Persuasion...

20.10.2025 22:30 👍 2 🔁 0 💬 0 📌 0

Lucky!

30.07.2025 21:01 👍 1 🔁 0 💬 0 📌 0
Post image Post image Post image

@tommorelloofficial.bsky.social I see you're going to be in Guelph in October. You want to come play some D&D with my group while you're in town? If you can join, let me know your species and class and I'll have a miniature ready for you.

29.05.2025 13:09 👍 4 🔁 0 💬 0 📌 0
Preview
You Don’t Need PKINIT To Win It Explore LDAP privilege escalation in pentests using Certipy's ldap-shell. Learn how to bypass PKINIT issues and escalate privileges with advanced techniques.

Great blog from Ben Goodman

www.secureideas.com/blog/you-don...

24.04.2025 13:01 👍 2 🔁 0 💬 0 📌 0
Post image

Hello everyone! I’m proud and honored to introduce my very first academic white paper through SANS, which discusses the nuances and needs for planning for #ransomware in OT / industrial networks. www.sans.org/mlp/ics-ot-m...

16.04.2025 03:39 👍 256 🔁 51 💬 12 📌 2
Preview
a man is standing in front of a cloudy sky with the words `` i hate waiting '' written on the screen . ALT: a man is standing in front of a cloudy sky with the words `` i hate waiting '' written on the screen .
16.04.2025 00:43 👍 1 🔁 0 💬 0 📌 0

@colbypoulson.bsky.social any chance for a few more BG3 builds now that patch 8 is out?

16.04.2025 00:16 👍 2 🔁 0 💬 1 📌 0
Post image

Had a great time attending and speaking at AtlSecCon this year! Thanks to everyone who came to my talk!

12.04.2025 16:04 👍 2 🔁 0 💬 0 📌 0

Keys From the Golden Vault has a great one-shot robbing a museum with ample opportunities for SE, lock picking and sneaking.

09.03.2025 13:21 👍 0 🔁 0 💬 0 📌 0

Elbows up, fellow Canadians. Elbows up.

04.03.2025 18:59 👍 0 🔁 0 💬 0 📌 0

Woot, I have this one on my wall.

17.02.2025 16:49 👍 0 🔁 0 💬 0 📌 0

2024 rules, but 1-2 legacy character builds in the party from a campaign that started with 2014 rules.

13.02.2025 01:36 👍 2 🔁 0 💬 0 📌 0

Reminds me of the look of confusion my mother gave me when I asked for one of those books for Christmas.

"Don't you want something fun for Christmas?"

"This is fun..."

28.11.2024 14:12 👍 0 🔁 0 💬 0 📌 0

Happily finding friends here. Hey buddy.

26.11.2024 14:34 👍 1 🔁 0 💬 0 📌 0
Preview
GitHub - decoder-it/KrbRelayEx Contribute to decoder-it/KrbRelayEx development by creating an account on GitHub.

KrbRelayEx - a tool designed for performing Man-in-the-Middle (MitM) attacks by relaying Kerberos AP-REQ tickets. It listens for incoming SMB connections and forwards the AP-REQ to the target host, enabling access to SMB shares or HTTP ADCS endpoints on behalf of the targeted identity.

25.11.2024 17:31 👍 20 🔁 5 💬 0 📌 0

Trying to rebuild my follow list here. Hopefuly the infosec scene on BlueSky is as good as it was on Twitter before things....changed.

21.11.2024 15:38 👍 3 🔁 0 💬 0 📌 0