bohops

7.7K posts

bohops banner
bohops

bohops

@bohops

Red/Purple/Research | Adversary Services @xforce red

The Land of Pleasant Living Katılım Ağustos 2017
481 Takip Edilen14.8K Takipçiler
Sabitlenmiş Tweet
bohops
bohops@bohops·
[Blog] Abusing .NET Core CLR Diagnostic Features (+ CVE-2023-33127) - Analysis of .NET diagnostic features and tradecraft - Walkthrough of a .NET Cross-Session Local Priv Esc (LPE) - Defensive Recommendations bohops.com/2023/11/27/abu…
English
3
85
203
45.6K
bohops retweetledi
TrendAI Zero Day Initiative
Confirmed! @chompie1337 of IBM X-Force Offensive Research (XOR) used a race condition to escalate privileges on Red Hat Enterprise Linux for Workstations, earning $20,000 and 2 Master of Pwn points. #Pwn2Own #P2OBerlin
TrendAI Zero Day Initiative tweet mediaTrendAI Zero Day Initiative tweet mediaTrendAI Zero Day Initiative tweet media
English
11
44
577
87.9K
Justin Elze
Justin Elze@HackingLZ·
Trying to plan the drive down to Texas for next month. Several hotel chains have a restriction on dogs over 75lbs I do wonder if they actually care.
English
10
0
10
2.4K
bohops retweetledi
Adam Chester 🏴‍☠️
If you came to SOCON, you may have seen the fireside chat on Ouroboros (if you weren't too busy counting my "urm"s 😝). The blog post is now live, detailing how we can use Dev-Tunnels for lateral movement, and allow pivoting from GitHub/Entra ID access. specterops.io/blog/2026/05/0…
English
6
48
184
26.1K
bohops
bohops@bohops·
Loving Wife [and Family] Retirement Plan [and Comfortable Living] Reduced Taxes [and Responsible Government] Fulfilled Life
English
0
0
6
591
bohops
bohops@bohops·
Ok, while I do appreciate the perspective and can relate (I was a sysadmin in a budget constrained IT dept once), the intent of the post was not to knock sysadmins but to simply (semi-jokingly) highlight the disparity of security-related prioritizations in the era of AI. If at all, those other things that have been issues for years and decades matter more - problems related to hygiene should be addressed in an organization before worrying about perspective AI threats. Sysadmins should be empowered to resolve issues and not lost in a cycle of technical debt, long hours, and underappreciation. These issues often are not caused by the sysadmin, but unfortunately they get to deal with the fallout from the misaligned priorities of the organization or leadership.
English
0
0
1
23
on error resume next
on error resume next@FlorianHeigl1·
@bohops like if there was a second ninja IT departement that has everything under control and this is the canary.
English
1
0
0
18
bohops
bohops@bohops·
- LLM 0-day panic: 10/10 - Windows 2003 still on the network: 😶 - ColdFusion in 2026: 💀 Don't get me started on default credentials...
English
4
8
94
6.6K
☁️
☁️@OneCloudEmoji·
@bohops Last year my team did a test on a cold fusion app it produced the single largest pentest report the company has ever delivered.
English
1
0
2
230
Jonny Johnson
Jonny Johnson@JonnyJohnson_·
Mr. and Mrs. Johnson 04.25.2026
Jonny Johnson tweet media
English
25
1
91
6.6K
Justin Elze
Justin Elze@HackingLZ·
My first big Texas choice next month Chevy truck or Ford 😂
English
32
0
48
5.6K
bohops
bohops@bohops·
@_subTee And then the LOL-ecosystem was born
English
0
0
1
21
bohops
bohops@bohops·
@_subTee And don't worry, I'm not convinced the mothership will truly ever resolve the script host problem 😬
English
0
0
1
19
bohops
bohops@bohops·
@_subTee Maybe cliché, but this quote resonates - "What matters most is the friends we made along the way."
English
0
0
1
17