Blog

Enhancing AtlasReaper

For red teamers, adaptability is everything. The ability to pivot…
15/01/2025/by Aldo Mihasi

Enhancing ScheduleRunner

In the arsenal of a red team operator, adaptability and stealth…
18/12/2024/by Aldo Mihasi

A Native Application Subsystem Backdoor

What is a Native Application?
Most Windows applications come…
03/12/2024/by Nick Aliferopoulos
SQL-Hacking

Microsoft SQL Server Hacking — TDS Downgrade Attack

Hey there, fellow hackers!  As we kick off this new year, it's the perfect time to dive into some research. That’s why we wanted to share an intriguing observation from a deep dive into Microsoft SQL Server hacking via its TDS protocol, conducted by our team member NeCro aka Giannis Christodoulakos. While exploring how SQL […]

XWizard

XWizard: From XML to ShellExec Using Wizardry

Intro Red Teaming in the day and age of EDRs often involves finding niche and obscure ways, to perform actions usually under specific constraints, or as we call them internally, bypass primitives. While hunting for such primitives, an interesting small ecosystem became the center of attention for further research, that of XWizard. It should be […]

Red Teaming

Red Teaming: Beyond Compliance to Real Cyber Resilience

In today's ever-evolving cybersecurity landscape, organizations face an overwhelming array of threats that demand not just robust defenses but also a heightened state of readiness against potential attacks. Gone are the days when simply ticking off compliance boxes was enough to protect digital assets. Red Teaming offers a powerful approach that pushes beyond checkboxes to […]