RIP RegPwn
Mar 13th, 2026
Written by: Admin
ActiveBreach
13th March 2026 As part of MDSec’s R&D work, we often discover vulnerabilities and develop exploits to support our red team engagements. When researching widely used software, it is often…
Mar 13th, 2026
Written by: Admin
ActiveBreach
13th March 2026 As part of MDSec’s R&D work, we often discover vulnerabilities and develop exploits to support our red team engagements. When researching widely used software, it is often…
Oct 27th, 2025
Written by: Admin
ActiveBreach
Introduction LLVM compiler infrastructure is powerful because of its modular design, flexibility, and rich intermediate representation (IR) that enables deep analysis and transformation of code. Unlike traditional compilers, LLVM separates…
Mar 21st, 2025
Written by: Tim Carrington
ActiveBreach
Introduction Over the course of numerous Red Team engagements MDSec has often gained privileged access to a target’s ServiceNow instance. This has, in turn, facilitated a variety of compromise actions…
Dec 3rd, 2024
Written by: Admin
ActiveBreach
Introduction On a recent Red Team for a particularly hardened client, we were looking to escalate our privileges in order to move off the endpoint and pivot into the server…
Nov 29th, 2024
Written by: Admin
ActiveBreach
Introduction Nov 29, 2024 Nighthawk C2 – This post is cross posted to the Nighthawk blog. Nighthawk 0.3.3; Evanesco, unveils our latest research. “Evanesco” is a Latin term that means “I…
Sep 13th, 2024
Written by: Admin
ActiveBreach
The Digital Operational Resilience Act (DORA) is a landmark European Union (EU) regulatory framework that requires mandatory compliance from January 2025. DORA emphasises the importance of resilience for digital assets…
Jun 17th, 2024
Written by: Admin
ActiveBreach
OpSec and evasion are two of the most important factors for red team success in modern day operations, and Nighthawk continues to lead the way in innovation on this front….
Apr 25th, 2024
Written by: Admin
ActiveBreach
VirtualBox is a popular open source, cross-platform, virtualization software developed by Oracle Corporation. Earlier this year we identified an arbitrary file move vulnerability in the VirtualBox system service service that…
Mar 21st, 2024
Written by: Admin
ActiveBreach
March, 2024 Last week, the Bank of England announced the introduction of a new regulatory framework, STAR-FS, to support the financial sector in its cyber resilience operations. Over 4 years…
Feb 12th, 2024
Written by: Admin
ActiveBreach
The Directory Service is the heart and soul of many organisations, and whether its Active Directory, OpenLDAP or something more exotic, as a source of much knowledge it often acts…