Explaining Mass Assignment Vulnerabilities 25 Jan 2022 Programming frameworks have gained popularity due to their ability to make software development easier than using the underlying... Read more
Introducing Process Hiving & RunPE 2 Sep 2021 High quality red team operations are research-led. Being able to simulate current and emerging threats at an accurate... Read more
CVE-2020-26153: Event Espresso Core - Cross Site Scripting 25 Jun 2021 Nettitude have identified a Cross Site Scripting (XSS) vulnerability within Event Espresso Core. Event Espresso is a WordPress plugin which... Read more
PoshC2 - Introducing Native macOS Implants 14 Apr 2021 Over the past few years, we have seen an increase in the number of macOS environments we are... Read more
VM Detection Tricks, Part 3: Hyper-V RAW Network Protocol 7 Apr 2021 This month’s virtual machine detection trick involves detecting the presence of the Hyper-V RAW network protocol. This protocol... Read more
VM Detection Tricks, Part 2: Driver Thread Fingerprinting 12 Mar 2021 This year we’re documenting a series of new and as-yet undocumented VM detection tricks. These detection tricks will... Read more
CVE-2020-24550: Open Redirect in Episerver Find 11 Feb 2021 During the course of our work, we discovered an open redirect vulnerability in Episerver Find. This has... Read more
Introducing FComm - C2 Lateral Movement 27 Jan 2021 Over the past few years, we have found a few edge cases where the traditional lateral movement communication... Read more
VM Detection Tricks, Part 1: Physical memory resource maps 20 Jan 2021 In this series we’ll document a novel and as-yet-undocumented Virtual Machine detection trick for each month of 2021.... Read more
PoshC2 Improved HTML Reports 6 Jan 2021 Red team operators need detailed and accurate C2 report output in order to conduct high quality work. Consequently,... Read more
Best seller New Price from Limited availability Course type Course length Dates and location x *PLEASE NOTE: Course is available in more countries, languages and dates*