#redteaming — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #redteaming, aggregated by home.social.
-
Hacker Summer Camp is always our favorite time of the year, and this Black Hat and DEF CON week was easily our best one yet.
If we didn't get a chance to connect in Vegas, give us a follow here to stay up to date on our upcoming workshops and tools!
-
Kicking off #BlackHat2026 at Mandalay Bay! 🎲✈️
Yesterday, the BC Security team debuted our NEW Red Team Essentials: Foundations of C2 course at Black Hat USA and it was a huge success!
Huge thank you to everyone who joined us! You made it an awesome start to the week!
-
How an OpenAI safety test became a real‑world cyberattack on the Hugging Face platform
#Tech #AI #OpenAI #HuggingFace #AISafety #AISecurity #Cybersecurity #AIGovernance #Innovation #CyberAttack #RedTeaming #DigitalSecurity #MachineLearning #Cyberattack
https://the-14.com/how-an-openai-safety-test-became-a-real-world-cyberattack-on-the-hugging-face-platform/ -
Less than a week til #BlackHat2026! 🎲
We're excited to host RED Team Essentials: Foundations of Command and Control (C2) on August 3rd!
Last-minute registration is still open! Hope to see you there!
🔗: https://buff.ly/4APHjbZ -
📬 GPTFuzz: Automatisierte KI-Jailbreaks bringen selbst ChatGPT und Llama an ihre Grenzen
#ITSicherheit #KünstlicheIntelligenz #ChatGPT #GPTFuzz #Jailbreaks #KIJailbreaks #LargeLanguageModels #Llama #LLMSicherheit #OpenSource #PromptInjection #RedTeaming https://sc.tarnkappe.info/a4a1c9 -
New blog post!
I recently got to use both of the tools I published on Codeberg (Axmar and Tessera) during an engagement, and so I decided to make a brief writeup as a case study of what these tools can do.
https://ti-kallisti.com/infosec/tales/schedule.html
#infosec #pentesting #redteam #redteaming #Microsoft #ActiveDirectory #MSSQL
-
📬 Prompt-Injection: Studie erklärt Erfolg von Angriffen auf Sprachmodelle
#KünstlicheIntelligenz #CoTForgery #ICML2026 #KIAgenten #KISicherheit #LLM #OpenAI #PromptInjection #RedTeaming #RoleConfusion #Sprachmodelle https://sc.tarnkappe.info/17b147 -
More coding!
This one is not really anything new.
It's just a tool that allows to interact with Microsoft SQL from the command line in different ways.I used it in a few engagements I had and I thought it came in handy every time, so I decided to publish the code.
Maybe someone else will find it useful as well.
https://codeberg.org/ti-kallisti/Tessera
#foss #coding #InfoSec #pentesting #redteaming #codeberg #windows #mssql #csharp
-
New blog post!
I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.
Here are my thoughts on it:
-
HackTheBox. Прохождение Mini Pro Lab Unintended
Компания Unintended недавно перевела свою инфраструктуру на Active Directory . Руководство обеспокоено тем, что устаревшие методы и упущенные из виду ошибки конфигурации могут сделать среду уязвимой для внешних угроз. Вашей фирме поручено провести тестирование на проникновение с целью определения, может ли злоумышленник перейти от первоначального доступа к полному контролю над доменом. Unintended предоставляет практический опыт решения распространенных ошибок при развертывании Active Directory , демонстрируя, как злоумышленники могут переключаться между службами для повышения привилегий. Машина сочетает методы повышения привилегий в Linux с путями атак на Active Directory , что делает её ценной площадкой для практики как для специалистов по наступательной, так и по оборонительной безопасности. Unintended предназначена для тех, кто хочет расширить свои знания об эксплуатации Active Directory в среде, ориентированной на Linux . Машина хорошо подходит для тех, кто хочет понять реальные ошибки конфигурации в гибридной инфраструктуре. В этой лаборатории Red Team Operator уровня I игроки столкнутся со следующими темами: - Перечисление резервных копий Active Directory - Боковое перемещение - Пивотинг - Повышение привилегий в Linux - Криминалистический анализ резервных копий - Атаки на веб-приложения
https://habr.com/ru/articles/1041376/
#hackthebox #htb #redteam #redteaming #pentest #pentestit #hacking
-
HackTheBox. Прохождение Mini Pro Lab Puppet
Вам поручено провести проверку на проникновение в компанию Puppet Inc . Компания не разрешает передачу данных за пределы внутренней сети, поэтому внутри компании был создан сервер управления и контроля ( C2 ), и сотрудник запустил вредоносную программу для имитации успешной атаки с использованием методов социальной инженерии. Puppet — это небольшой сценарий Active Directory , в котором вы начинаете с уже работающего маяка Sliver C2 на внутренней системе. Он предназначен для отработки работы в рамках C2 -инфраструктуры в современной, сложной гибридной среде. Puppet разработан для специалистов по тестированию на проникновение и « красных команд », ищущих быструю и сложную лабораторию с уже настроенной C2 -инфраструктурой для отработки операций C2 . Эта лаборатория « Оператор красной команды уровня I » познакомит игроков со следующими темами: - Перечисление - Перечисление и атаки на Active Directory - Эксплуатация инфраструктуры DevOps - Боковое перемещение - Локальное повышение привилегий - Операции C2
-
Viele denken, der Übergang vom Penetrationstest ins Red Teaming sei eine logische, graduelle Weiterentwicklung. In der Praxis zeigt sich schnell: Es ist ein echter Perspektivwechsel.
Die größten Unterschiede liegen nicht in den Tools, sondern im Mindset:
🔹 OPSEC first – Jede Aktion wird hinterfragt: Welche Spuren hinterlasse ich? Wie reagiert der Verteidiger?
🔹 Realismus vor Geschwindigkeit – Es geht nicht darum, möglichst schnell ans Ziel zu kommen, sondern einen echten Angreifer abzubilden.
🔹 Kontinuierliches Lernen – Standard-Tools werden zunehmend erkannt. Wer sich nicht weiterentwickelt, wird sichtbar.
🔹 Fehler als Lernmoment – Der Moment, in dem man erkannt wird, verändert die eigene Denkweise nachhaltig.
In unserem neuen Blogartikel beschreibt Marcel Heisel, wie wir neue Mitarbeitende auf genau diesen Wechsel vorbereiten – und was dabei wirklich den Unterschied macht.
👉 https://research.hisolutions.com/2026/05/vom-pentester-zum-red-teamer-wie-wir-neue-mitarbeitende-fit-machen/
#RedTeaming #Pentesting #CyberSecurity #OffensiveSecurity #OPSEC #InfoSec #ActiveDirectory -
I'm looking forward to our cybersecurity capture the flag trying out together afternoon! This event is free and open for all genders. No registration required, just show up with your computer (or borrow one from us).
More info on the website. :)And they're are always cockies, offline and with real life crumbles. 😅
#it #cybersecurity #fliNTA #feminist #Frauen #linux #meetup #opensource #ctf #ccc #c3w #tu #University #selforganized #vienna #Austria #Wien #meetup #learning #workshop #cyberchef #hacking #ethicalHacking #redteaming
#blueteaming
@totientfunction @c3wien -
Halo semua! Saya Analis Siber Purwakarta. Saya mendokumentasikan perjalanan belajar saya di bidang #CyberSecurity, fokus pada #RedTeaming, #PenetrationTesting, dan analisis #CVE.
Saat ini saya sedang mendalami Python untuk networking dan riset kerentanan. Cek dokumentasi teknis saya di sini: https://analis-siber-purwakarta.blogspot.com/
-
Here's the thing, there may be more people (if not 99% of the people) on other social networks, but at the end the day, I still need to actually *do something* with my projects or it is all just idle entertainment under the guise of not or I have no idea.
I just want to nerd out on things that are cool to nerd out on and be able to talk about it with people that get it. That is all here.
Here are all the hashtags of things I'm working on and will be posting about, what I'm interested in from others, and whatever adjacent from folks in those spheres bubble up (I want a clubhouse).
#Malware #RedTeaming #PurpleTeaming #SocialEngineering #Vishing #ReverseEngineering