c0kernel's profile picture. Interested in books, mathematics, running, rock climbing, and infosec.

jd

@c0kernel

Interested in books, mathematics, running, rock climbing, and infosec.

jd reposted

Just like chocolate and peanut butter, runZero and BloodHound are an amazing combination. Today we are introducing runZeroHound - an open source toolkit for bringing runZero Asset Inventory data into BloodHound attack graphs: runzero.com/blog/introduci…

hdmoore's tweet image. Just like chocolate and peanut butter, runZero and BloodHound are an amazing combination. Today we are introducing runZeroHound - an open source toolkit for bringing runZero Asset Inventory data into BloodHound attack graphs: runzero.com/blog/introduci…
hdmoore's tweet image. Just like chocolate and peanut butter, runZero and BloodHound are an amazing combination. Today we are introducing runZeroHound - an open source toolkit for bringing runZero Asset Inventory data into BloodHound attack graphs: runzero.com/blog/introduci…
hdmoore's tweet image. Just like chocolate and peanut butter, runZero and BloodHound are an amazing combination. Today we are introducing runZeroHound - an open source toolkit for bringing runZero Asset Inventory data into BloodHound attack graphs: runzero.com/blog/introduci…
hdmoore's tweet image. Just like chocolate and peanut butter, runZero and BloodHound are an amazing combination. Today we are introducing runZeroHound - an open source toolkit for bringing runZero Asset Inventory data into BloodHound attack graphs: runzero.com/blog/introduci…

jd reposted

Credential Guard was supposed to end credential dumping. It didn't. @bytewreck just dropped a new blog post detailing techniques for extracting credentials on fully patched Windows 11 & Server 2025 with modern protections enabled. Read for more ⤵️ ghst.ly/4qtl2rm


jd reposted
WebSecAcademy's tweet image. x.com/albinowax/stat…

HTTP is supposed to be stateless, but sometimes... it isn't! Some servers create invisible vulnerabilities by only validating the first request on each TCP/TLS connection. I've just published a Custom Action to help you detect & exploit this - here's a narrated demo:



jd reposted

As an attacker, I care more about the presence of canaries in an environment than about triggering them. Their existence lets me know they're either being automatically deployed (Cortex, etc.) or have someone who cares enough to build the environment this way and proceed…


jd reposted

BloodHound OpenGraph allows you to map attack paths across ANY platform. @jaredcatkinson spoke with @DarkReading during #BHUSA about how you can now connect the dots between Active Directory, GitHub repositories, and other sensitive assets. 👀: ghst.ly/4fAfwxQ


On Mastodon @louderquiet@infosec.exchange.


jd reposted

It's easy to see "red" and "blue" as being against each other, that blue is constantly trying to keep up with red. The reality is that red and blue are on the SAME SIDE. Together, we're trying to keep up with emergent risks created by legacy tech, new tech, and common configs:

_wald0's tweet image. It's easy to see "red" and "blue" as being against each other, that blue is constantly trying to keep up with red.

The reality is that red and blue are on the SAME SIDE.

Together, we're trying to keep up with emergent risks created by legacy tech, new tech, and common configs:
_wald0's tweet image. It's easy to see "red" and "blue" as being against each other, that blue is constantly trying to keep up with red.

The reality is that red and blue are on the SAME SIDE.

Together, we're trying to keep up with emergent risks created by legacy tech, new tech, and common configs:

jd reposted

Well... It's better then nothing I suppose...

brianwhelton's tweet image. Well... It's better then nothing I suppose...

jd reposted

interviewer: can you explain this gap in your CV me: yeah I was trying to make a complicated figure in TikZ and lost track of time and— interviewer: say no more


jd reposted

Now everyone cares about BGP, but when I tried to woo my wife with tales of prefixes and AS path prepending, she said “Michael no one cares” and “Michael please stop it’s 2AM”


jd reposted

Mathematics. This is a geometry joke.

pickover's tweet image. Mathematics.

This is a geometry joke.

made kabobs tonight. making omelettes in the morning with the leftovers. going to be kabomelettes.


jd reposted
Sci_Phile's tweet image.

jd reposted

the robot

PDLComics's tweet image. the robot

just came today! hot off the @nostarch press.

c0kernel's tweet image. just came today! hot off the @nostarch press.

jd reposted

Our DEF CON 28 Schedule is UP! aivillage.org/events Talks, workshops, panels! Check it out, and watch this space for future updates!


Worth a share as well... View my verified achievement from @CertifyGIAC. youracclaim.com/badges/e76a1a6…


First @SANSInstitute course and GIAC certification! View my verified achievement from @CertifyGIAC. youracclaim.com/badges/e0fe978…


jd reposted

capa Automatically Identify Malware Capabilities an awesome tool provided by @FireEye's FLARE team Blog fireeye.com/blog/threat-re… Repo github.com/fireeye/capa

cyb3rops's tweet image. capa
Automatically Identify Malware Capabilities

an awesome tool provided by @FireEye's FLARE team

Blog
fireeye.com/blog/threat-re…

Repo
github.com/fireeye/capa
cyb3rops's tweet image. capa
Automatically Identify Malware Capabilities

an awesome tool provided by @FireEye's FLARE team

Blog
fireeye.com/blog/threat-re…

Repo
github.com/fireeye/capa

United States Trends

Loading...

Something went wrong.


Something went wrong.