r/redteamsec bot's Avatar

r/redteamsec bot

@r-redteamsec

Mirrors r/redteamsec, "dedicated to red and blue teaming content." Unofficial. Operated by @tweedge.net, open source @ https://github.com/tweedge/xpost-reddit-to-fediverse

172
Followers
4
Following
647
Posts
10.11.2024
Joined
Posts Following

Latest posts by r/redteamsec bot @r-redteamsec

When Proxies Become the Attack Vectors in Web Architectures

When Proxies Become the Attack Vectors in Web Architectures

12.03.2026 17:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Recent experiences with BallisKit (MacroPack Pro, ShellcodePack, etc.)?

Recent experiences with BallisKit (MacroPack Pro, ShellcodePack, etc.)?

12.03.2026 17:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
GitHub - iss4cf0ng/Elfina: Elfina is a multi-architecture ELF loader supporting x86 and x86-64 binaries.

GitHub - iss4cf0ng/Elfina: Elfina is a multi-architecture ELF loader supporting x86 and x86-64 binaries.

12.03.2026 13:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
I built a local AI assistant for pentesters/blue teamers and i have decided i am giving it away free forever (no subscription, no cloud, runs on your machine)
I built a local AI assistant for pentesters/blue teamers and i have decided i am giving it away free forever (no subscription, no cloud, runs on your machine)

I built a local AI assistant for pentesters/blue teamers and i have decided i am giving it away free forever (no subscription, no cloud, runs on your machine)

12.03.2026 02:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
CVE-2026-26117: Hijacking Azure Arc on Windows for Local Privilege Escalation & Cloud Identity Takeover

CVE-2026-26117: Hijacking Azure Arc on Windows for Local Privilege Escalation & Cloud Identity Takeover

11.03.2026 07:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
OpenShellβ€”β€”An open-source reverse shell management server written in Go.

OpenShellβ€”β€”An open-source reverse shell management server written in Go.

11.03.2026 03:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
The new security frontier for LLMs; SIEM evasion

The new security frontier for LLMs; SIEM evasion

11.03.2026 03:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
OAuth Device Code Phishing: A New Microsoft 365 Account Breach Vector

OAuth Device Code Phishing: A New Microsoft 365 Account Breach Vector

11.03.2026 00:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
IronPE - Minimal Windows PE manual loader written in Rust.

IronPE - Minimal Windows PE manual loader written in Rust.

10.03.2026 09:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Prompt injection defense lessons from building an adversarial LLM application (game) for a hackathon

Prompt injection defense lessons from building an adversarial LLM application (game) for a hackathon

10.03.2026 05:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
GitHub - Macmod/flashingestor: A TUI for Active Directory collection.

GitHub - Macmod/flashingestor: A TUI for Active Directory collection.

09.03.2026 07:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Cisco Ethical Hacker Course Now Open: 70 Hours of Free Cybersecurity Training"

Cisco Ethical Hacker Course Now Open: 70 Hours of Free Cybersecurity Training"

07.03.2026 20:39 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
GitHub - dereeqw/BitLock-Crypto-Research: Framework de investigaciΓ³n sobre criptovirologΓ­a avanzada. ImplementaciΓ³n de Handshake ECDHE, cifrado autenticado AES-GCM y ejecuciΓ³n fileless en memoria para entornos de laboratorio.

GitHub - dereeqw/BitLock-Crypto-Research: Framework de investigaciΓ³n sobre criptovirologΓ­a avanzada. ImplementaciΓ³n de Handshake ECDHE, cifrado autenticado AES-GCM y ejecuciΓ³n fileless en memoria para entornos de laboratorio.

06.03.2026 22:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
We released Trajan: open-source CI/CD attack and detection tool covering GitHub Actions, GitLab, ADO, and Jenkins in one binary

We released Trajan: open-source CI/CD attack and detection tool covering GitHub Actions, GitLab, ADO, and Jenkins in one binary

06.03.2026 20:39 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Coercing machine accounts through MsSense.exe β€” MDE becomes the attack vector
Coercing machine accounts through MsSense.exe β€” MDE becomes the attack vector

Coercing machine accounts through MsSense.exe β€” MDE becomes the attack vector

05.03.2026 16:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Major Cyber Attacks in February 2026

Major Cyber Attacks in February 2026

04.03.2026 14:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
[Tool Release] DLLHijackHunter - Automated DLL hijacking detection with canary confirmation

[Tool Release] DLLHijackHunter - Automated DLL hijacking detection with canary confirmation

03.03.2026 16:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
What’s Running on That Port? Introducing Nerva for Service Fingerprinting

What’s Running on That Port? Introducing Nerva for Service Fingerprinting

02.03.2026 17:39 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
PHP 8 disable_functions bypass PoC

PHP 8 disable_functions bypass PoC

02.03.2026 14:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
PowerShell script to enumerate CLSID and AppID linked to Windows services

PowerShell script to enumerate CLSID and AppID linked to Windows services

28.02.2026 08:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Total Recall - Retracing Your Steps Back to NT AUTHORITY @MDSecLabs

Total Recall - Retracing Your Steps Back to NT AUTHORITY @MDSecLabs

27.02.2026 11:54 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
GLPI Agent: The β€œNo-CVE” That Still Bought Us Domain Compromise Two Years Later

GLPI Agent: The β€œNo-CVE” That Still Bought Us Domain Compromise Two Years Later

25.02.2026 11:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Moonrise RAT: A New Low-Detection Threat with High-Cost Consequences

Moonrise RAT: A New Low-Detection Threat with High-Cost Consequences

24.02.2026 23:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
CREST Certified Red Team Manager (CCRTM)

CREST Certified Red Team Manager (CCRTM)

24.02.2026 19:39 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
We are going to kill the $50k/year Enterprise Security market by going Open Source

We are going to kill the $50k/year Enterprise Security market by going Open Source

23.02.2026 14:54 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Kittysploit: Exploitation Framework with proxy web

Kittysploit: Exploitation Framework with proxy web

22.02.2026 05:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Titus: open source secrets scanner with live credential validation, binary extraction, and a Burp/Chrome extension (Go, 450+ rules)

Titus: open source secrets scanner with live credential validation, binary extraction, and a Burp/Chrome extension (Go, 450+ rules)

20.02.2026 21:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Does killing EDR with a vulnerable driver still work in 2026?
Does killing EDR with a vulnerable driver still work in 2026?

Does killing EDR with a vulnerable driver still work in 2026?

19.02.2026 22:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
A new Tool for Silent Device Tracking

A new Tool for Silent Device Tracking

19.02.2026 21:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
CVE-2025-64669: Uncovering Local Privilege Escalation Vulnerability in Windows Admin Center

CVE-2025-64669: Uncovering Local Privilege Escalation Vulnerability in Windows Admin Center

19.02.2026 21:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0