Blog One Shot, One Kill – An Intelligent Web Drive-by Exploit Server One of my favorite features in Cobalt Strike is the system profiler. This web application digs deep into your browser to discover the client-side applications
Blog My exploits can beat up your exploits TL;DR Rapid7 wrote a blog post claiming that their exploits are better. I think the Metasploit Framework’s coverage is fine, but some other vendors do
Blog Using AV-safe Executables with Cortana Part of a penetration tester’s job is to deal with security products, such as anti-virus. Those of us that use the open source Metasploit Framework
Blog Post-Mortem of a Metasploit Framework Bug Two weekends ago, I ran my Advanced Threat Tactics course with a group of 19 people. During the end exercise, one of the teams was frustrated. Their