MrSquid

1.4K posts

MrSquid

MrSquid

@MrSquid25

I 🖤 ink!

Underwater Katılım Mayıs 2012
201 Takip Edilen403 Takipçiler
MrSquid retweetledi
Security BSides Prague
Security BSides Prague@bsidesprg·
🚨 Workshop Announcement – #BSidesPrague2026 🛠 Jorge Escabias Unveiling the Obscurity: Decrypting Agent-Server Communications Learn how to intercept and decrypt agent-server traffic (HTTP, TLS, mTLS) using binary analysis & Frida—plus hands-on labs and a Sliver C2 case study.
Security BSides Prague tweet media
English
0
3
5
308
MrSquid retweetledi
Justin Elze
Justin Elze@HackingLZ·
Sunday R&D thoughts, we built a model where all our red team members have R&D time and a dedicated research team. Often, the red teamers kick over PoCs from gigs for future development to the research team to turn into more robust projects, continue to take on the project themselves or make it a joint effort. We first started using our in house implant in 2018 mainly because we couldn't control IoCs end to end inside CobaltStrike, and at the time, there was no concept of BoFs. Today, there are a few great paid options, for example, Nighthawk. If I had to do it over, I would still choose the in house route for our use case mainly for complete code control. However, your milage may vary and purchasing could be a better option. Today, the majority of our tooling is internally developed(We release a bunch of randomness here github.com/trustedsec/The… and the primary repo or via blogs). While we have access to several commercial tools like CobaltStrike, Macropack, and Shellcodepack, we prioritize our internally written tooling for engagements. The nice thing for internal red teams is you now have the option to acquire these capabilities vs. adding headcount, which is often significantly harder. This space and evasion become harder year over year, so while everyone should be able to script and code in the red team space, the speed at which they can do things in C, for example, is significantly different if their primary job role is operating effectively in target environments rather than developing capabilities. If you look at the next ten years, I expect to continue to see operator and developer roles pushing in different directions. The goal here is to keep and retain talent over a long period. People might work nights or in their free time on side projects because they love the space, but this isn't sustainable forever. People have families or different life circumstances and rebalance their priorities more healthily to sustain a career in this space and not set themselves up for burnout. Employers must recognize, understand, and plan for if they're serious about long term success.
English
10
34
182
22.5K
MrSquid retweetledi
/RootedCON
/RootedCON@rootedcon·
¡Abrimos el registro para las formaciones de #RootedCON2024! 😎 Tanto los #Bootcamps (3 días) como los #RootedLabs (8h) se realizarán durante los días previos al congreso. Además, el registro a cualquier Bootcamp incluye la entrada a RootedCON.  + info en rootedcon.com
/RootedCON tweet media/RootedCON tweet media
Español
0
19
26
4.6K
MrSquid retweetledi
EuskalHack
EuskalHack@EuskalHack·
🗣 Call For Papers for EuskalHack Security Congress VII is now open > If you have an innovative talk or workshop we would like to count on you > You can send us your proposal until next April > euskalhack.org/CFP/CFP_Euskal… #SecurityCongress #CFP
EuskalHack tweet media
English
1
6
10
1.7K
Gon Valencia
Gon Valencia@iso1600_net·
@MrSquid25 muchas gracias por el taller de esta mañana, ha sido interesantísimo. Sabes cuándo estarán disponibles las transparencias?
Español
1
0
0
12
MrSquid retweetledi
Zerolynx
Zerolynx@ZerolynxOficial·
📆Hoy tenemos a parte del equipo en las jornadas de Ciberdefensa organizadas por @CCNCERT y apoyando a nuestro antiguo compañero @MrSquid25 🙌🏻durante su taller tras el cual los usuarios se pensarán dos veces qué protocolo están utilizando para administrar los equipos de su red💻
Zerolynx tweet media
Español
0
6
12
552
MrSquid retweetledi
/RootedCON
/RootedCON@rootedcon·
¡Menos de dos semanas para que arranque RootedCON Valencia y, por supuesto, sus formaciones! ⚠️ ¡Ojo! Últimas plazas en algunos de nuestros RootedLabs. 📍 @ADEITUV 📅 15 de septiembre 🗳️ Inscripciones: #trainings" target="_blank" rel="nofollow noopener">rootedcon.com/rootedvlc2023-… Abrimos hilo con todos ellos 👇
Español
1
6
5
1.3K