Father Bobcat

1.3K posts

Father Bobcat banner
Father Bobcat

Father Bobcat

@0xF4B0

Shamelessly uses twitter retweets as a bookmark management tool for things I want to read later.

Katılım Ağustos 2016
215 Takip Edilen88 Takipçiler
Father Bobcat retweetledi
RedTeamVillage
RedTeamVillage@RedTeamVillage_·
🚨 RTVCron Ep. 5 is LIVE NOW 🎙️ @c4ch3c4d3 Local Large Language Models Join us for a practical walkthrough of running LLMs on your own hardware, including real constraints and strategies 📺 Watch now youtube.com/live/L8bYnzq4J…
YouTube video
YouTube
English
0
7
16
1.4K
Father Bobcat retweetledi
Sean Metcalf
Sean Metcalf@PyroTek3·
Updated my PowerShell script "Invoke-ADLabBuildOut.ps1" so it now creates AD sites, subnets, and site links (based on the created sites). This script takes a newly built AD lab environment and makes it look like a production environment along with common security issues. github.com/PyroTek3/ADLab
Sean Metcalf tweet media
English
5
43
213
13.5K
Father Bobcat retweetledi
Vaishnavi
Vaishnavi@_vmlops·
MICROSOFT OPEN-SOURCED THEIR ENTIRE SENTINEL SECURITY TOOLKIT most teams building on azure figure out threat detection the hard way trial and error, custom KQL, dashboards built from nothing, playbooks written by hand nobody told them it was already done the sentinel github repo has: ▫️ 1000+ pre-built threat detection rules ▫️ hunting queries for active threat investigation ▫️ automated response playbooks ▫️ security workbooks + dashboards ▫️ data connectors for 100s of sources the hard part was already done github.com/Azure/Azure-Se…
English
16
191
938
92K
Father Bobcat retweetledi
Octoberfest7
Octoberfest7@Octoberfest73·
Here is my BOF POC (emphasis on POC...) of this research. As the README states it's not an operationally-ready tool, but it was neat research and I figure the code might be useful for someone else. Thanks to @lildylannn and his colleague for their work! github.com/Octoberfest7/D…
dylan davis@lildylannn

I just dropped some research: DSCourier and would love for your opinion and to check it out!! It’s a novel post-exploitation technique abusing WinGet’s COM API to execute code through Microsoft-signed binaries. GitHub: github.com/DylanDavis1/DS… Blog: dylansec.com/DSCourier/

English
2
26
124
20.8K
Father Bobcat retweetledi
Doug Burks
Doug Burks@dougburks·
Introducing a new PCAP tool - OhMyPCAP OhMyPCAP is a standalone web application for analyzing PCAP files. View security alerts, browse network metadata (DNS, HTTP, TLS, flows), extract ASCII transcripts, and carve individual streams - all from a single-page UI.
Doug Burks tweet mediaDoug Burks tweet media
English
6
98
421
72.9K
Father Bobcat retweetledi
incursion
incursion@Incursi0n·
Made a quick BOF to exploit the currently unpatched BlueHammer vulnerability to dump SAM hashes from a low integrity context. github.com/incursi0n/Blue…
English
2
87
296
11.7K
Father Bobcat retweetledi
SpecterOps
SpecterOps@SpecterOps·
Relayed NTLM creds are powerful, if you can use them. @senderend shows why browsers fail through ntlmrelayx SOCKS and introduces ghostsurf to make NTLM-authenticated web apps accessible. Read more ⤵️ ghst.ly/4tnJOtx
English
2
89
273
17.7K
Father Bobcat retweetledi
Steve Borosh
Steve Borosh@rvrsh3ll·
@SecurityAura Yes. EDR will block "SSH.exe" bring your own named different and it works most times. Connect to a different port than 22, say 31337,443,80 to test egress and protocol inspection. Similar to this I made/use github.com/rvrsh3ll/Bolth…
English
1
8
59
3.4K
Father Bobcat retweetledi
mthcht
mthcht@mthcht2·
LOLFSAAS Living off Free SaaS Hundreds of SaaS platforms with free tiers, documenting abuse surface, opsec risks, authent methods, C2 framework mappings, and operational limits. lolfsaas.github.io
English
7
135
617
45.4K
Father Bobcat retweetledi
RedTeamVillage
RedTeamVillage@RedTeamVillage_·
PDFs aren’t just documents. They’re attack surfaces. At RTV Overflow, @FilipiPires breaks down how attackers exploit PDFs to execute malicious JavaScript, inject shellcode, trigger heap sprays, exploit Adobe Reader, and exfiltrate data. 🗓 Feb 21, 2026 ⏰ 10:00 AM Offensive security pros won’t want to miss this. Watch live: youtube.com/live/r6rZ1QggZ…
YouTube video
YouTube
RedTeamVillage tweet media
English
8
74
345
15.7K
Father Bobcat
Father Bobcat@0xF4B0·
@ryuketsumilly 私は歌が下手なだけで、自分が実力で負けているって分かってたよ🤣
日本語
1
0
0
39
流血ブリザードのミリー・バイソン/ Milly Bison
ユダ様飲みに来てくれてうれしいけど、外国人に気を遣わせるくらいの勢いでフランク・シナトラ(またはシド・ヴィシャス)の"MY WAY"を朗々と歌い上げてるのウケる🥹💦 #スター館 #ロワンディシー #カラオケ
日本語
4
7
155
8.7K
Father Bobcat retweetledi
Clandestine
Clandestine@akaclandestine·
ADCS Attack Techniques Cheatsheet - Google Drive #gid=0" target="_blank" rel="nofollow noopener">docs.google.com/spreadsheets/d…
English
0
34
177
9.3K
Father Bobcat retweetledi
Jonny Johnson
Jonny Johnson@JonnyJohnson_·
@_subTee reminded me that the Projected File System existed on Windows recently, so I decided to do a deep dive. Turns out - this is probably the best base technology for canary/deception features out there. There is also a splash of offensive use cases😎 @HuntressLabs Blog: huntress.com/blog/windows-p…
English
1
38
113
11.4K