AndrewChiles Profile Banner
Andrew Chiles Profile
Andrew Chiles

@AndrewChiles

Followers
2K
Following
2K
Media
20
Statuses
1K

Works @ SpecterOps, Red Teamer, Amateur Photographer, Health Nut, Husband, Father, #wreckingball

Huntsville, AL
Joined March 2009
Don't wanna be here? Send us removal request.
@SpecterOps
SpecterOps
5 days
BloodHound isn't just for Active Directory anymore. 🤯 @SadProcessor dives into the BloodHound OpenGraph functionality & demonstrates the new PowerShell cmdlets added to the BloodHound Operator module to work with the OpenGraph feature.
Tweet card summary image
specterops.io
A Technical Dive Into BloodHound OpenGraph With BloodHound Operator & Master Yoda… TL;DR: The latest version of BloodHound introduces BloodHound OpenGraph. This new feature allows for ingestion of...
1
22
79
@SpecterOps
SpecterOps
20 days
Join our webinar, happening next Thursday and get a full break down of the report from authors @jaredcatkinson, @AndrewChiles, and @elad_shamir. Register at https://t.co/ptlsSuhfbx
Tweet media one
0
1
2
@kyleavery_
Kyle Avery
22 days
if you want to train a model yourself with GRPO: 1. find a verifiable task: https://t.co/bergh3xuBi 2. add a new reward function to open-r1:
Tweet card summary image
github.com
Fully open reproduction of DeepSeek-R1. Contribute to huggingface/open-r1 development by creating an account on GitHub.
4
13
54
@SpecterOps
SpecterOps
27 days
We are breaking down our State of Attack Path Management report. Join @jaredcatkinson, @AndrewChiles, & @elad_shamir as they discuss some key takeaways from the report to help you understand & address attack paths before they're exploited. Register 👉 https://t.co/ptlsSugHlZ
Tweet media one
0
6
13
@SpecterOps
SpecterOps
29 days
The AD CS security landscape keeps evolving, and so does our tooling. 🛠️ @bytewreck drops info on Certify 2.0, including a suite of new capabilities and refined usability improvements.
Tweet card summary image
specterops.io
Certify 2.0 features a suite of new capabilities and usability enhancements. This blogpost introduces changes and features additions.
0
98
236
@OutflankNL
Outflank
1 month
We're at BlackHat USA. At 1.30 PM our Outflank researcher @kyleavery_ will present his work on how he trained a 7B parameter LLM to defeat Microsoft Defender for Endpoint. An accompanying blog post will go out later today and we'll release the model on Hugging Face. Stay tuned!
0
9
46
@olafhartong
Olaf Hartong
1 month
During my #BHUSA talk I've released many ETW research tools, of which the most notable is BamboozlEDR. This tool allows you to inject events into ETW, allowing you to generate fake alerts and blind EDRs. https://t.co/Gnz0ssUXYN Slides available here: https://t.co/2zhhBe83Df
Tweet card summary image
github.com
My conference presentations. Contribute to olafhartong/Presentations development by creating an account on GitHub.
3
118
317
@SpecterOps
SpecterOps
1 month
MSSQLHound leverages BloodHound's OpenGraph to visualize MSSQL attack paths with 7 new nodes & 37 new edges, all without touching the SharpHound & BloodHound codebases. @_Mayyhem unpacks this new feature in his blog post. 👇
Tweet card summary image
specterops.io
TL;DR MSSQLHound is a standalone PowerShell collector that adds 7 new nodes and 37 new MSSQL attack path edges to BloodHound using the new OpenGraph feature that was released in version 8.0. This...
1
53
127
@SpecterOps
SpecterOps
1 month
BloodHound OpenGraph makes adding nodes and edges simple, but building effective attack graph models? That's where the real work begins. @_wald0 breaks down the theory, best practices, and requirements you need to know. https://t.co/N5qrfkZIHP
Tweet card summary image
specterops.io
TL;DR OpenGraph makes it easy to add new nodes and edges into BloodHound, but doesn’t design your data model for you. This blog post has everything you need to get started with proper attack graph...
1
21
60
@OutflankNL
Outflank
1 month
New blog! Here's our case study on using LLMs for accelerating offensive R&D. Our post details how we used Large Language Models to identify and exploit trapped COM objects. Next week at BlackHat we'll drop even hotter stuff on offensive AI research. 🔥 https://t.co/PFKGjc4sVX
Tweet card summary image
outflank.nl
By leveraging AI as a research accelerator, we can dedicate more time to refining, testing, and hardening the techniques that ultimately make it into OST.
3
66
173
@SpecterOps
SpecterOps
1 month
Entra Connect sync accounts can be exploited to hijack device userCertificate properties, enabling device impersonation and conditional access bypass. @hotnops explores cross-domain compromise tradecraft within the same tenant. Read more ⤵️
Tweet card summary image
specterops.io
How Entra Connect and Intune can be abused via userCertificate hijacking to bypass conditional access and compromise hybrid domains
2
59
120
@_Mayyhem
Chris Thompson
1 month
I'm SO hyped to finally make MSSQLHound public! It's a new BloodHound collector that adds 37 new edges and 7 new nodes for MSSQL attack paths using the new OpenGraph feature for 8.0!. Let me know what you find with it! - https://t.co/Hh089SaVOS - https://t.co/geO0HXTykf
Tweet media one
6
206
586
@JustinKohler10
Justin Kohler
1 month
Is that attack paths in #1Password via #BloodHound? Learn more about the future Attack Path Management and BloodHound 8.0 this Thursday: https://t.co/wiVi18Udbp
Tweet media one
2
19
70
@SpecterOps
SpecterOps
1 month
The industry recommendation for DPAPI backup key compromise remediation is to destroy and rebuild the environment. @sou_predictable explores why this is the current industry guidance.
Tweet card summary image
specterops.io
Industry guidance for DPAPI backup key compromise remediation is drastic. Let's explore why.
1
50
127
@jaredcatkinson
Jared Atkinson
1 month
Looks like BloodHound has picked up the scent of something new :) Join us Thursday to see where the trail leads.
Tweet media one
@SpecterOps
SpecterOps
2 months
Big updates are coming to BloodHound! Join our webinar July 31 to hear from @JustinKohler10, @StephenHinck, @_wald0 & @jaredcatkinson on some of the new features the team is rolling out. Register ▶️ https://t.co/1JNp4vwTHL
Tweet media one
3
30
98
@ethanhays
Ethan Hays
2 months
Cloudflare CEO @eastdakota is having the most honest conversations I've come across about the current & future of content creation "6 months ago, 75% of queries to Google get answered on Google. Which means if you're an original content creator, your content is getting
@carlhendy
Carl Hendy
2 months
If you’re in media, this is worth a watch. Cloudflare handles ≈20% of global traffic, so when CEO Matthew Prince warns at Cannes that AI bots are reshaping the web, publishers need to adapt or risk being left behind.
119
792
4K
@_dirkjan
Dirk-jan
3 months
Last two weeks I talked about BYO Identity Providers in Entra ID and backdoors to External Auth Methods to bypass MFA. Only possible because MSFT doesn't implement the mandatory OIDC security measures. Slides with optional dark mode on:
dirkjanm.io
6
70
249
@SpecterOps
SpecterOps
3 months
LLMs can expedite parts of the writing/editing process, but still require human oversight & guidance to provide accurate & helpful responses. Read more from Sarah Miles' experiments using LLMs from the perspective of a technical writer: https://t.co/pu6mCGnTQG
Tweet media one
2
11
38
@SpecterOps
SpecterOps
3 months
Introducing the BloodHound Query Library! 📚 @martinsohndk & @joeydreijer explore the new collection of Cypher queries designed to help BloodHound users to unlock the full potential of the BloodHound platform by creating an open query ecosystem.
Tweet card summary image
specterops.io
The BloodHound Query Library is a community-driven collection of BloodHound Cypher available at https://queries.specterops.io
3
112
281