Posts on red-team
53 posts on red-team. Notes from public sources and my own test lab.
What Happens When You Change Just One Digit? The Silent Scream of IDOR
A deep dive into why authorization flaws like IDOR and business logic errors remain the 'invisible' threats that automated scanners often miss, told through real-world Red Team experience.
Bending the Bars: The Art of Escaping the Container Cage
Forget the fancy slides. Let's talk about how simple misconfigurations like mounting docker.sock or abuse of capabilities turn your sandbox into paper.
Walking the Minefield: From Reverse Engineering to Runtime Manipulation
Mobile security is more than just decompiling APKs. Here is my journey from being a rookie to mastering the art of runtime manipulation with Frida.
SSH into the Human Terminal: Why the 'Trust' Protocol is Still Unpatched
Red teaming isn't just about zero-days. It's about debugging the 'Human OS' and bypassing danger perception through context and HTML Smuggling.
Your Screen Isn’t Just Black, Your Heart Just Stopped: The Reality of Ransomware
A raw look at how ransomware actually works, why speed is everything, and what attackers are really doing inside your network before the big "lockdown."