Posts on red-teaming
43 posts on red-teaming. Notes from public sources and my own test lab.
The Art of Pen Testing: A Red Team Journey Beyond Automated Tools
It’s 3:15 AM. That hypnotic terminal glow is burning my eyes, but the real hunt has just begun. Here is why penetration testing is more than just clicking 'Scan' and why manual analysis is the true game changer.
Saving Pennies or Stashing Bugs? Tales from the Bug Bounty Trenches
Bug bounty isn't just about finding flaws; it’s about outsmarting the system and staying patient. Here’s a look at the real grind behind the hunt.
Hunting for Treasure in the IOC Trash: The ‘Real’ Face of Threat Intel
Stop chasing static IPs and hashes. If you want to actually hurt an attacker, you need to climb the Pyramid of Pain and start targeting our TTPs.
Why Isn’t That Cursor Blinking? Terminal Ghosts and Red Team Realities
It’s 3 AM, your reverse shell finally lands, but the terminal is dead silent. Let's talk about WAF bypasses, DNS exfiltration, and "blind" hacking.
Beyond `mov eax, 1`: Diving Into the Binary Mind and Chasing Lost Logic
0x55 0x48 0x89 E5 — more than just bytes. It's the heartbeat of a function. Let's talk Reverse Engineering, the "meat grinder" effect, and finding logic.
The "Root" Illusion in Container Land: How Not to Score an Own Goal
Just because it's in a container doesn't mean it's secure. Let's talk about the common mistakes that turn your isolated box into an open door.
Hunting Digital Footprints: Why Google is Just the Tip of the Iceberg
Forget basic dorking. Let’s talk about how to find the hidden gaps in a company’s attack surface using subdomains and GitHub leaks.