_wald0 Profile Banner
Andy Robbins Profile
Andy Robbins

@_wald0

Followers
36K
Following
5K
Media
737
Statuses
5K

Co-founder of SpecterOps. Co-creator of BloodHound. https://t.co/rub1i3Fs9g

Seattle, WA
Joined March 2011
Don't wanna be here? Send us removal request.
@_wald0
Andy Robbins
1 year
I'm on Bluesky here:
0
68
8
@SpecterOps
SpecterOps
10 days
Stack spoofing isn’t dead. Hear from @klezvirus at #BHEU on how modern detection still breaks, and unveils the first CET-compliant stack spoofing framework. Learn more ➡️ https://t.co/3ffbujgNPE
2
20
44
@unsigned_sh0rt
Garrett
9 days
See you all next week...excited to present with @breakfix at #BHEU! 💣
@SpecterOps
SpecterOps
9 days
SCOM monitors critical systems, but insecure defaults make it a powerful attack vector. At #BHEU, @unsigned_sh0rt & @breakfix show how to abuse SCOM for credential theft, lateral movement, and domain escalation, plus how to defend it. https://t.co/bxW5PYyhyl
3
38
133
@SpecterOps
SpecterOps
9 days
SCOM monitors critical systems, but insecure defaults make it a powerful attack vector. At #BHEU, @unsigned_sh0rt & @breakfix show how to abuse SCOM for credential theft, lateral movement, and domain escalation, plus how to defend it. https://t.co/bxW5PYyhyl
0
31
70
@ltx_model
LTX-2
1 month
Bring the LTX-2 API into real production pipelines, powering 4K, 50fps, synchronized-audio video generation
2
18
169
@its_a_feature_
Cody Thomas
16 days
Just in time for the holidays, I wanted to share something that a lot of people have asked for: https://t.co/DfXyf2TTBp Short videos about Mythic development and customizations. This is just the start - I'll release a survey soon that'll get feedback for the next batch :)
1
18
47
@SpecterOps
SpecterOps
2 months
Credential Guard was supposed to end credential dumping. It didn't. @bytewreck just dropped a new blog post detailing techniques for extracting credentials on fully patched Windows 11 & Server 2025 with modern protections enabled. Read for more ⤵️
Tweet card summary image
specterops.io
Uncovering the protection mechanisms provided by modern Windows security features and identifying new methods for credential dumping.
4
307
657
@jaredcatkinson
Jared Atkinson
2 months
In this post @_wald0 introduces PingOneHound, a BloodHound OpenGraph extension that allows users to visualize, audit, and remediate attack paths in their PingOne environment. The blog post also serves as an introduction to the PingOne architecture. https://t.co/BjD5DPiih1
Tweet card summary image
specterops.io
You can use PingOneHound in conjunction with BloodHound Community Edition to discover, analyze, execute, and remediate identity-based attack paths in PingOne instances.
0
24
50
@SpecterOps
SpecterOps
3 months
BloodHound isn't just for Active Directory anymore. 🤯 @SadProcessor dives into the BloodHound OpenGraph functionality & demonstrates the new PowerShell cmdlets added to the BloodHound Operator module to work with the OpenGraph feature.
Tweet card summary image
specterops.io
A Technical Dive Into BloodHound OpenGraph With BloodHound Operator & Master Yoda… TL;DR: The latest version of BloodHound introduces BloodHound OpenGraph. This new feature allows for ingestion of...
1
22
79
@SpecterOps
SpecterOps
3 months
ICYMI: BloodHound OpenGraph, introduced with BloodHound v8.0, allows you to map attack paths across your entire tech stack. @JustinKohler10 & @_wald0 recently joined @_JohnHammond to discuss the new feature and share a demo. Watch the conversation 👉 https://t.co/Hq7bs6HAIN
0
3
17
@_wald0
Andy Robbins
4 months
🚨 New #BloodHound shirt alert 🚨 ✅ - Unisex and ladies sizes available ✅ - Cool design :) ✅ - ALL profits go to charity: Hope for HIE, which supports families suffering the effects of hypoxic ischemic encephalopathy Get your shirt here:
1
11
22
@thetorchmvmt
The Torch Movement
3 days
Another delay on crypto rules and all eyes are on @SenLummis. Is this about policy… or a generational gap in understanding tech? https://t.co/easJqaldUa
Tweet card summary image
dailycaller.com
President Donald Trump came into office promising to bring forth a golden age. He has sought to modernize American industry.
2
4
36
@SpecterOps
SpecterOps
4 months
We are back with our BloodHound t-shirt fundraiser! 🙌 Grab your BloodHound 8.0 shirt today. All funds raised will go directly to @HopeforHIE, the global voice for families affected by Hypoxic Ischemic Encephalopathy. 👕: https://t.co/qG7e34U7mh
0
12
33
@Icemoonhsv
Hope Walker
4 months
Check out my new blog on nested app authentication and brokered authentication.
@SpecterOps
SpecterOps
4 months
Why should Microsoft's Nested App Authentication (NAA) should be on your security team's radar? @Icemoonhsv breaks down NAA and shows how attackers can pivot between Azure resources using brokered authentication.
2
17
42
@m0rd4vid
MOR DAVID
4 months
Dear fellow pentesters & red teamers, How often do you run into a vCenter in your client’s environment? 🖥️ I just built one for vCenter - meet vCenterHound 🐾😉 This is just the beginning… more collectors and surprises are on the way. #Pentesting #RedTeam #BloodHound #vCenter
1
38
158
@_Mayyhem
Chris Thompson
4 months
This post about MSSQLHound, a PowerShell collector that adds 7 new nodes and 37 new edges to BloodHound, details my experience and lessons learned designing and implementing the tool using OpenGraph and provides examples of how to research and discover MSSQL attack paths.
@SpecterOps
SpecterOps
4 months
MSSQLHound leverages BloodHound's OpenGraph to visualize MSSQL attack paths with 7 new nodes & 37 new edges, all without touching the SharpHound & BloodHound codebases. @_Mayyhem unpacks this new feature in his blog post. 👇
0
30
93
@SpecterOps
SpecterOps
4 months
MSSQL support just landed in BloodHound! You can now map out how attackers might use SQL servers to move laterally. This is incredibly useful in hybrid and legacy heavy environments. Let us know what you find. Learn more ➡️ https://t.co/30pNgVHvBj
1
20
64
@SpecterOps
SpecterOps
4 months
MSSQLHound leverages BloodHound's OpenGraph to visualize MSSQL attack paths with 7 new nodes & 37 new edges, all without touching the SharpHound & BloodHound codebases. @_Mayyhem unpacks this new feature in his blog post. 👇
Tweet card summary image
specterops.io
TL;DR MSSQLHound is a standalone PowerShell collector that adds 7 new nodes and 37 new MSSQL attack path edges to BloodHound using the new OpenGraph feature that was released in version 8.0. This...
1
52
132
@G0ldenGunSec
Dave Cossa
4 months
More on BH OpenGraph: Ran into some issues when attempting to map objects collected with partial info back to existing BH objects. Built out a small tool that allows for connecting objects in a more flexible manner:
github.com
Middleware utility for enriching and uploading data gathered with arbitrary collectors - G0ldenGunSec/OpenImporter
1
24
60
@ridetheferry
NY Waterway
22 days
Take the Ferry to NYC. Kids Ride Free Thru Jan 4. All Terminals & Routes. Free Shuttles to Attractions. Watch Video. Click for Routes & Schedules.
0
5
25
@_wald0
Andy Robbins
4 months
In this blog post I explain the fundamental building blocks, vocabulary, and principles of attack graph design for BloodHound:
Tweet card summary image
specterops.io
TL;DR OpenGraph makes it easy to add new nodes and edges into BloodHound, but doesn’t design your data model for you. This blog post has everything you need to get started with proper attack graph...
1
42
95
@SpecterOps
SpecterOps
5 months
Entra Connect sync accounts can be exploited to hijack device userCertificate properties, enabling device impersonation and conditional access bypass. @hotnops explores cross-domain compromise tradecraft within the same tenant. Read more ⤵️
Tweet card summary image
specterops.io
How Entra Connect and Intune can be abused via userCertificate hijacking to bypass conditional access and compromise hybrid domains
2
59
118
@_Mayyhem
Chris Thompson
5 months
I'm SO hyped to finally make MSSQLHound public! It's a new BloodHound collector that adds 37 new edges and 7 new nodes for MSSQL attack paths using the new OpenGraph feature for 8.0!. Let me know what you find with it! - https://t.co/Hh089SaVOS - https://t.co/geO0HXTykf
6
215
632
@SpecterOps
SpecterOps
5 months
Join us for the BloodHound v8.0 deep dive this Thursday! @JustinKohler10, @_wald0, @jaredcatkinson & @StephenHinck will walk through all the new features & show you how to implement these updates in your environment. Register at https://t.co/gKyorlMSDz 🧵: 7/7
0
2
8
@AHteestore
AHteestore
2 months
Stand proud for ocean life. Add your turtle tee to cart now.
1
7
59