Black Hills Information Security, Inc.
RSS
  • All Services
    • Penetration Testing
    • Continuous Penetration Testing
    • Web Application Testing
    • Active SOC
    • AI Security Assessments
    • Incident Response
    • Blue Team Services
    • Blockchain Security
    • High-Profile Risk Assessments
    • Complete Service Guide
  • Contact Us
    • Contact Us
    • Email Sign-Up
  • About Us
    • Security Consultants
    • Admin Team
    • Active SOC Team
    • Antisyphon Training
    • BHIS Tribe of Companies
  • Free Resources
    • Blogs
    • Free Cybersecurity Tools
    • Free Cybersecurity Webcasts
    • Podcasts
    • RITA
  • Training
    • BHIS & Antisyphon Training
    • WWHF Conference
  • Community
    • Discord
    • LinkedIn
    • YouTube
    • Bluesky
    • Twitter/X
    • Upcoming Events
  • Fun Stuff
    • Backdoors & Breaches
    • Merch, Zines & More
    • PROMPT# Zine
    • REKCAH
    • Books
Rita_Sierra

InfoSec 101 Don't wait to say nice things to people you love, Office Mom

The Courage to be Vulnerable: An Ode to Rita

Sierra Ward // The other day I went to get some food with a co-worker.  When the counter boy asked for my name I told him.  The co-worker said she could […]

Read the entire post here
Lawrence Hoffman

News canonical, Digital Millennium Copyright Act, free wifi, long passwords, opensshd, snark

Lawrence’s List 072216

Lawrence Hoffman // The list this week is a little shorter, I didn’t include a tool or POC link as I usually do. No particular reason, just didn’t run across […]

Read the entire post here
66619265

C2, Red Team building, C2, http 404, network traffic

How to Build a 404 page not found C2

A Guest blog by Matthew Pawelski // A C2, or command-and-control, is used by attackers to control compromised systems. Most of these C2s are in control of large botnets, yet […]

Read the entire post here
employee_sc

InfoSec 201 anonymization, aol, data mining, facial recognition, netflix, personal data, pokemon go, privacy, social security

Data Mining & Privacy: How Anonymous Are You Really?

Sam Carroll // When I started at BHIS I was surprised at the sensitivity of personal data, such as my birthday. I was soon reminded of a data mining class […]

Read the entire post here
Lawrence Hoffman

News AWS, BSidesPhilly, Linus, Linux, MIT, printer attacks, printer drivers, Riffle

Lawrence’s List 071516

Lawrence Hoffman // Hey, I’m back! Vacation was great. I spent part of last week on an Island so I was unable to scratch the keep-up-with-the-media itch. Now that I’m […]

Read the entire post here

Fun & Games

Get to Know a Tester: Sally

Note: A few months ago we did a short interview with a tester when we talked to Ethan.  This month we had a conversation with Sally Vandeven, who’s only been […]

Read the entire post here
employee jd 5

Author, Blue Team, Blue Team Tools, Jordan Drysdale ansible, Ansible Galaxy, Linux

Securing Your Way to Restful Sleep with Ansible Galaxy

Jordan Drysdale //   Life as a ‘blue-teamer’ can often be a stressful experience. Working in an environment with a strong Linux infrastructure  can help some, but Ansible  can help […]

Read the entire post here
Three Simple Disguises for Evading Antivirus

Red Team 64-bit, anti-virus, AV, meterpreter, meterpreter vs. antivirus

Three Simple Disguises for Evading Antivirus

Logan Lembke // Antivirus has been a key component in defending computer systems since the 1990s. Over the years, antivirus began to dominate the discussion of PC security with other […]

Read the entire post here
Question:  What Can I Learn from Password Spraying a 2FA Microsoft Web App Portal?

External/Internal, Red Team 2 factor authentication, 2FA, fun fun fun, MFA, Microsoft, Microsoft Web App Portal, password spraying, passwords

Question:  What Can I Learn from Password Spraying a 2FA Microsoft Web App Portal?

Carrie Roberts // Answer: Enough to make it worth it! Penetration testers love to perform password spraying attacks against publicly available email portals as described here in this great post by Beau Bullock. […]

Read the entire post here
«‹ 72 73 74 75›»

Looking For Something?

Browse by category

Recent Posts

  • badge_headerThe Art of the Badge: A Hard Truth About Physical Security
    He walked into the lobby with a fake badge clipped to
  • cicd_header (1)Auditing GitLab: The CI/CD Kill Chain
    Welcome to GoGatoZ — a purpose-built Go tool for
  • antisocop_headerBad Habits: An ANTISOC Operation
    ANTISOC uses a mix of techniques from traditional

Browse by topic

Active Directory ADHD AI anti-virus Attack Tactics AV Beau Bullock BHIS Blue Team C2 Carrie Roberts cloud Cyber Deception hacking infosec Infosec for Beginners InfoSec Survival Guide Joff Thyer john strand Jordan Drysdale Kent Ickler Kerberos Linux MailSniper Malware Microsoft Nessus Nmap passwords password spraying pen-testing penetration testing pentest Pentesting phishing PowerShell Python Red Team red teaming RITA Sysmon tools webcast webcasts Windows

Archives

Back to top
Black Hills Information Security, Inc.

890 Lazelle Street, Sturgis, SD 57785-1611 | 701-484-BHIS (2447)
© 2008


About Us | BHIS Tribe of Companies | Privacy Policy | Contact

Links
Search the site