Offensive Security: From OSCE to OSCE3 8 Aug 2022 OSCE3 (Offensive Security Certified Expert 3) is a certification from Offensive Security which has replaced the (now retired)... Read more
Logparser Query Files 7 Aug 2022 We have created a set of queries for sysmon log files that will process each of the Event... Read more
CVE-2022-24004 & CVE-2022-24127: Vanderbilt REDCap - Stored Cross Site... 15 Jun 2022 Nettitude identified two stored Cross Site Scripting (XSS) vulnerabilities within Vanderbilt REDCap. These have been assigned CVE-2022-24004... Read more
How we found a second critical Microsoft vpn vulnerability 11 May 2022 Our latest blog delves into how we found a second critical Microsoft VPN vulnerability, and exactly how you... Read more
CVE-2022-23270 - Windows Server VPN Remote Kernel Use After... 11 May 2022 Following yesterday’s Microsoft VPN vulnerability, today we’re presenting CVE-2022-23270, which is another windows VPN Use after Free (UaF)... Read more
CVE-2022-21972: Windows Server VPN Remote Kernel Use After Free... 10 May 2022 CVE-2022-21972 is a Windows VPN Use after Free (UaF) vulnerability that was discovered through reverse engineering the raspptp.sys... Read more
Introducing SharpWSUS 5 May 2022 Today, we’re releasing a new tool called SharpWSUS. This is a continuation of existing WSUS attack tooling... Read more
Introducing MalSCCM 4 May 2022 During red team operations the goal is often to compromise a system of high value. These systems will... Read more
Repurposing Real TTPs for use on Red Team Engagements 7 Apr 2022 I recently read an interesting article by Elastic. It provides new analysis of a sophisticated, targeted campaign against... Read more
PoshC2 documentation 31 Mar 2022 We maintain PoshC2 documentation over at https://poshc2.readthedocs.io/en/latest/. For your convenience, we have also embedded it below. Read more
Best seller New Price from Limited availability Course type Course length Dates and location x *PLEASE NOTE: Course is available in more countries, languages and dates*