Open security and OffSec projects
negativepid.blog/ope...
#OpenSource #OffSec #OffensiveSecurity #Cybersecurity #onlineSecurity #Internet #tech #IT #science #STEM #computing #AI #innovation #negativepid
Most red team techniques live in tribal knowledge and private Discord channels. Casey Erdmann finally wrote down the operational engineering that actually matters.
Get the print book, ebook bundle included.
#redteam #offsec
https://nostarch.com/red-team-engineering
Exploiting CVE-2023-52271 and evading AV/EDR by terminating their PPL processes via BYOVD. One of the few times I've dealt with #ReverseEngineering a PE and I must admit it was fun.
#infosec #hacking #securityresearch #offsec
RCE-class bugs in GitHub Copilot and Visual Studio (CVE-2026-21256, CVE-2026-21523). Both need user interaction; one needs local access. Chain with DWM or RDS EoP to SYSTEM, harvest creds, pivot. Dev workstations are treasure chests. If the path exists, you'll find domain. #RedTeam #OffSec
Let's go back to the beginning... A handy guide for people starting out in the world of offensive security!
#hacking #security #offsec #beginners
forum.0x00sec.org/t/hacking-fo...
We're riding through the HackGate to Wild West Hackin’ Fest #MileHigh2026 and looking forward to seeing fellow code slingers and security wranglers!
Catch our trail at Booth #12, where the #redteam crew will be ready to talk shop, trade stories, and share some high‑noon #offsec expertise.
SIM swap and SIM recycling attacks remain a practical account-takeover vector. Read how number recycling, carrier processes, and downstream account recovery flows combine into real-world risk that’s still widely underestimated.
forum.0x00sec.org/t/sim-card-s...
#hacking #cyber #simswap #offsec
Between the chaos, overstimulation and just being down with the sickness, I tickled my brain with something fun on Monday.
Not much effort put into it but these are my #OffSec #AppSec & #AISec findings on the "agent" formally known as Clawdbot.
LOL what a mess and people are using this 😂😂😂.
📢 Big News! @mgeeky.bsky.social is joining Outflank! He ticks all the boxes:
Experienced #offsec researcher ✓
Respected name in red teaming ✓
Built RMF tooling for initial access ✓
His work is coming to OST✓
The red hoodie fits perfectly ✓
Welcome Mariusz!
https://ow.ly/epnS50Y0IV0
Welcome back, hackers.
0x00sec is live again with new security research, active forums, and community-driven offensive security content.
0x00sec.org/welcome-back...
#infosec #hacking #offsec #securityresearch #ctf #0x00sec
If you're considering offensive security as your next step in your career, there are a few certifications that are the gold standard in the industry. We compared CEH, OSCP, and GPEN to help you decide what's best for you.
#cybersecurity #certifications #offsec
negativepid.blog/breaking-int...
APT31 isn’t breaking in. They’re blending in.
Microsoft Dev Tunnels, cloud storage, signed binaries, all abused as stealthy C2.
This is trust exploitation at scale.
🔗 blackcastle.com.au/blog/apt31-t...
#APT #ThreatIntelligence #CloudSecurity #DetectionEngineering #CyberSecurity #Maldev #offsec
Kali Linux 2025.4: New tools and “quality-of-life” improvements OffSec has released Kali Linux 2025.4, a new version of its widely used penetration testing and digital forensics platform. Most ...
#Don't #miss #Hot #stuff #News #Kali #Linux #OffSec #penetration #testing
Origin | Interest | Match
If you're considering offensive security as your next step in your career, there are a few certifications that are the gold standard in the industry. We compared CEH, OSCP, and GPEN to help you decide what's best for you.
#cybersecurity #certifications #offsec
negativepid.blog/breaking-int...
If you're considering offensive security as your next step in your career, there are a few certifications that are the gold standard in the industry. We compared CEH, OSCP, and GPEN to help you decide what's best for you.
#cybersecurity #certifications #offsec
negativepid.blog/breaking-int...
NahamCon is BACK. 100% FREE. Workshops, Talks, CTF. Streamed live on YouTube/Twitch. Schedule drops soon! nahamcon.com #NahamCon #OffSec @nahamsec.bsky.social
With Outflank Security Tooling, red teamers can make sure attackers are left out in the cold. Join our #offsec experts for an upcoming demo on December 15 to see how our toolset covers every step in the attacker kill chain.
Register now: https://ow.ly/RrRr50XGZ4Y
Landed in London for Black Hat Europe? We're ready and waiting to talk all things #offsec in the Business Hall at Booth 117! See you there! #BHEU
Enjoying Black Hat Europe? So are we! Be sure to stop by Booth 117 to chat all things #offsec with Cobalt Strike and @outflank.bsky.social experts! #BHEU
Landed in London for Black Hat Europe? We're ready and waiting to talk all things #offsec at Booth 117! #BHEU
Enjoying Black Hat Europe? So are we! Be sure to stop by Booth 117 to chat all things #offsec with Cobalt Strike and @outflank.bsky.social experts!
Fortinet FortiWeb WAFs are in the news again with CVE 2025 64446 and CVE 2025 58034. If your WAF shows up in the KEV list, it belongs in threat models, log review, and red team scope, not just in the change window. #OffSec #AppSec #Fortinet
i'm really starting to think that #offsec is a small company that just started teaching selling some cyber security stuff 🤔
This month we're celebrating our own Devin Cleary achieving the OSEP certification! One step closer to the ultimate OSCE3 challenge! More found on this moths blog:
hexxedbitheadz.com/aromak-gets-...
Next stop, WEB-300!
#offsec #osep #CyberSecurity #Hacking
So, who's gonna blood my new @hackinghub.bsky.social challenge? 😼
Challenge 🔗 app.hackinghub.io/hubs/mother-...
First 3 solves will earn the "Hacker Cat" role in my discord server ➡️ discord.cryptocat.me
#ctf #capturetheflag #ethicalhacking #cybersecurity #infosec #offsec
Hey, I’m _nuru, a Python & Frontend dev learning Offensive Security.
Goal: become a Red Teamer.
Joined TryHackMe and hunting for free rooms & resources to practice adversary emulation, any recs or study buddies? 💻
#TryHackMe #RedTeam #CyberSecurity #EthicalHacking #OffSec #InfoSec
Last chance to register for a free training on #AI in #OffSec engagements! Join Cobalt Strike and Outflank experts TOMORROW to gain practical experience to architect AI-powered attack chains and navigate AI assisted adversary simulation.
https://ow.ly/ySlC50Xf2Yl
Last chance to register for a free training on #AI in #OffSec engagements! Join Cobalt Strike and Outflank experts TOMORROW to gain practical experience to architect AI-powered attack chains and navigate AI assisted adversary simulation.
https://ow.ly/Vh8j50Xf2Em
ANNACON is next week! Bent u er klaar voor? Be sure to stop by our booth to grab some swag and talk all things #OffSec!