Red Siege Information Security
@RedSiege
Followers
10K
Following
3K
Media
2K
Statuses
4K
Penetration Testing, Purple Team, Red Team & Adversary Emulation, Security Posture Review and Training Let our Offense, Prepare your Defense. #weareoffensive
Worldwide
Joined September 2017
Offense for Defense is now On-Demand: Brought to you by CEO @TimMedin and Security Consultant Jason Downey π https://t.co/WWAShmRUBI Your Lab, On Your Time 0οΈβ£ Zero setup. Total control. π° Built for defenders who want to think like attackers
1
2
9
π§ πΆ Document it or it didn't happen. π https://t.co/VJqXiSYrqL
#hacking #infosec #cybersecurity
0
0
1
Don't forget to grab yer tickets for WWHF @ Mile High 2026! -> https://t.co/QLA9JGyq6Q Check out @TimMedin's talk, "Death by Dashboards : Moving the Needle on What Actually Matters," from Wild West Hackin' Fest - Deadwood 2025!
0
2
6
Security Consultant Jason Downey flips the script in his blog series βThe Aftermath.β Instead of tools and exploits, he dives into the business impact of security findings- what they mean, how theyβre fixed, and the challenges uncovered. Check it out π https://t.co/L4ueb5udLJ
0
0
1
Microsoft created Get-KerbEncryptionUsage.ps1 to query the event log to see which encryption types Kerberos used within your environment. Run this, find the ones that MUST use RC4, and burn the rest. Then figure out how to upgrade the others from RC4 or pick a great password.
"By mid-2026, ... Windows Server 2008 and later to only allow AES-SHA1 encryption. RC4 will be disabled by default and only used if a domain administrator explicitly configures an account or the KDC to use it." https://t.co/l3gL0gzFC7
0
5
3
Thank you Chris Crowley for leading a fantastic discussion today about using machine learning to break a simple CAPTCHA! Next week we have @PyroTek3 from @TrustedSec for our last Wednesday Offensive of the year! π https://t.co/HgPkoGT5M7
#hacking #infosec #cybersecurity
0
2
8
EyeWitness by @RedSiege is the perfect tool for capturing screenshots of websites, identifying default creds and providing server header info. Chris Traynor provided us with the perfect cheat sheet to help you add this tool to your arsenal. Download -- https://t.co/oIcqhQnAZ4
1
4
17
It's Wednesday Offensive day! Today, Chris Crowley will be giving us a conceptual overview of a machine-learning method for breaking a simple CAPTCHA! See you at 130pm ET π https://t.co/HgPkoGTDBF
#hacking #infosec #cybersecurity
1
0
0
Ivanti is urging customers to patch a critical EPM vulnerability that allows remote code execution via XSS, with hundreds of internet-exposed systems at risk. via @BleepinComputer
https://t.co/yMoSzNWkB6
#hacking #infosec #cybersecurity
bleepingcomputer.com
American IT software company Ivanti warned customers today to patch a newly disclosed vulnerability in its Endpoint Manager (EPM) solution that could allow attackers to execute code remotely.
0
0
0
πHeads up!πChris Crowley is joining The Wednesday Offense tomorrow to share a conceptual look at a machine-learning method for breaking a simple CAPTCHA! Join the conversation at 130pm ET π https://t.co/HgPkoGT5M7
0
0
0
0
0
0
0
0
0
ICYMI: Check out Security Consultant Stuart Rorer's quick guide to spotting and exploiting Content Security Policy (CSP) gaps. π https://t.co/4JFYz9Jgm0
#hacking #infosec #cybersecurity
0
0
1
Jump into The Siege Stack for December! Our monthly newsletter keeping you up to date on all things offensive and cybersecurity π https://t.co/lFP2Xsva5k Get it delivered directly to your inbox every month π https://t.co/A7RLlROiYJ
0
1
1
In this Red Siege Knowledge Brief, Principal Security Consultant Mike Saunders breaks down how to hide shellcode inside image files π https://t.co/yukYXapPss
#hacking #infosec #cybersecurity
0
0
1
Thank you Brett Fernicola for leading an insightful discussion about authentication threat modeling! Next week we have Christopher Crowley! See you next Wednesday at 130pm ET π https://t.co/HgPkoGT5M7
#hacking #infosec #cybersecurity
0
0
0
Wake up, it's Wednesday!! Today on the Wednesday Offensive we have Brett Fernicola returning to talk about tracking bad actors with authentication threat modeling! See you at 130pm ET π https://t.co/HgPkoGT5M7
#hacking #infosec #cybersecurity
1
0
0
A phishing campaign is spoofing Calendly invites from major brands to steal Google Workspace and Facebook Business credentials, often targeting ad manager accounts. Via @BleepinComputer
https://t.co/TwoMidQpvN
#hacking #infosec #cybersecurity
bleepingcomputer.com
An ongoing phishing campaign impersonates popular brands, such as Unilever, Disney, MasterCard, LVMH, and Uber, in Calendly-themed lures to steal Google Workspace and Facebook business account...
1
1
2
New edition of the SiegeStack coming soon! Stay up to date on the latest happenings in cybersecurity, insights from industry professionals, and what we here at RedSiege have in store for you! Subscribe π https://t.co/A7RLlROiYJ
#hacking #infosec #cybersecurity
0
1
2