Cobalt Strike Review

  On a recent engagement I was lucky enough to be able to use Cobalt Strike on a sustained multi-week operation, and overall I was impressed with it’s performance. This particular engagement was all about adversary emulation, and as far as...

SCE: What is the shell shock security bug?

“Security Concepts Explained”  (formally”Security for Grandma” (SFG)) is a semiregular series attempting to explain the technical details of popular security concepts in way that anyone can understand. My target audience is the regular folks out there so if you’re an experienced security...

PWK/OSCP: Lessons Learned

“We are happy to inform you that you have successfully completed the Penetration Testing with Kali Linux certification challenge and have obtained your Offensive Security Certified Professional (OSCP) certification.”   I recently completed the Penetration Testing with Kali (PWK) course and...

pyHashcat v0.5 beta Released

pyHashcat v0.5 has been released on github. You can find it here. If you’re not familiar with pyHashcat you can read a little about it here. New features: Added support for hashcat via the HashcatWrapper class. Usage is similar to...

SCE: Security concepts from the Celebrity iCloud hack

Security Concepts Explained I have decided to start a routine blog post related to explaining security principals in a way that, hopefully, everyone should be able to understand. I’m calling these posts, Security For Grandma (SFG), because as I write these...