Introduction This talk will demonstrate how to use Crystal Palace to rapidly develop novel PIC tradecraft/capabilities and immediately deploy them in Cobalt Strike. It will
Introduction This presentation traces the evolution of post-exploitation tradecraft, from executable files and reflective DLLs to in-memory techniques designed to balance capability, developer usability, and
Introduction Traditional C2 frameworks often present operators with streams of raw command output spread across multiple implants, making it difficult to retain context, revisit earlier
Introduction While common macOS applications are protected by the hardened runtime, shellcode execution is often still possible because of various entitlements permitting unsigned executable memory.
Get RTO and RTO II on a single purchase, at a discounted price. Course, lab access, and exam attempts are all included. Training Content Red Team Operations
Get the ‘BOF Development & Tradecraft’ and ‘URDL & Sleepmask Development’ courses, created by Alex Reid and Zero-Point Security, in a single purchase, at a
Hack Glasgow is Scotland’s premier community‑led information security and hacking conference, bringing together security professionals, researchers, enthusiasts, and newcomers for a day of learning, collaboration,
Cobalt Strike 4.13 is now available. This release brings C scripting directly into Cobalt Strike via the new Beacon Interpreter, solves some long-standing issues with
This UDRL and Sleepmask Development course, created by Alex Reid and Zero-Point Security, teaches students how to apply low-level Windows knowledge and offensive tradecraft in the writing and development of Cobalt
This BOF Development & Tradecraft course, created by Alex Reid and Zero-Point Security, teaches how to write and unit test Beacon Object Files (BOFs) for