Posts on network-security
5 posts on network-security. Notes from public sources and my own test lab.
How BTR.sys, a Signed Driver, Becomes a Weapon
Check Point's research shows how Defender's own signed boot-time driver can be weaponized at kernel level to delete files and registry entries—a paradox of code signing that validates signatures, not intent.
5 Siemens PLC Models Targeted by AI-Powered Attacks
A joint NSA and CISA alert shows Python scripts generated with AI infiltrating S7 PLCs; how do we manage this in systems with no patch window?
Smart Devices, Dumb Security: IoT Backdoors and Silent Takeovers
From a coffee machine trying to talk to a Domain Controller to hardcoded secrets in firmware, let's dive into the Wild West of IoT security from a Red Teamer's perspective.
From Your Neighbor's Smart Bulb to the Corporate Network: The Backdoors of the IoT World
A deep dive into why everything labeled 'smart' is often a Trojan horse, and how we can secure the 'Internet of Troubles' based on real-world Red Teaming experience.
The Trojan Horse Inside the Fortress: Why Network Segmentation is Always Misunderstood
A deep dive into why 'flat networks' are a Red Teamer's dream and how proper segmentation is more than just VLANs—featuring a cautionary tale from my early days in the field.