Bypassing Signature-Based AV
By Red Siege | August 25, 2021
If you want to execute arbitrary code on an endpoint during a penetration test, red team, or assumed breach, chances are you’ll have to evade some kind of antivirus solution. […]
Learn MoreSiegeCast: The Way of the Spray
By Red Siege | August 24, 2021
August 24th at 3pm Eastern. In a world where the security landscape is ever changing, weak passwords and an attackers ability to leverage that weakness is the gift that keeps […]
Learn MoreNow Streaming SiegeCasts!
By Red Siege | August 17, 2021
We are excited to bring you this brand new SiegeCast in a fresh new format! On August 24th at 3pm Eastern the new SiegeCast from Security Consultant Jason Downey will […]
Learn MoreSans Core Netwars Tournament of Champions Europe
By Red Siege | August 9, 2021
From Justin Palk, Security Consultant: I’ll be honest, it feels good to win. Popping a shell sends a shiver down my spine. But getting into a duel with another team […]
Learn MoreCustomizing C2Concealer – Part 2
By Red Siege | August 2, 2021
If you haven’t read Part I, we recommend starting there. If you’re ready for further C2Concealer customization, then let’s dive in. The bulk of C2Concealer’s operations are done in […]
Learn MoreCustomizing C2Concealer – Part 1
By Red Siege | July 12, 2021
About a year ago, we publicly released our C2 malleable profile generator for Cobalt Strike, C2Concealer. You can read the initial blog post here. In the GitHub Readme page and […]
Learn MoreOrdinal Values, Windows Functions, and C#
By Red Siege | June 8, 2021
There’s many different techniques that an offensive security professional could use to try to have their code avoid detection by various AV and EDR products. Various options include encrypting part […]
Learn MoreHacking OAuth2.0
By Red Siege | March 22, 2021
The intent of this blog is to help penetration testers and security researchers get a deeper understanding of the OAuth protocol. We are going to learn how to bypass authentication […]
Learn MoreNetworking Fundamentals Part I
By Red Siege | February 10, 2021
This blog is the first of three in a series to go over some basic networking fundamentals that every security professional should know. These blogs are geared towards the absolute […]
Learn MoreSiegeCast : Web Api Weaknesses
By Justin Connors | January 11, 2021
Learn More