• Our Services
  • Knowledge Centre
  • About
  • Contact
  • Our Services
    • Adversary Simulation
    • Application Security
    • Penetration Testing
    • Response
  • Knowledge Centre
    • Insights
    • Research
    • Training
  • About
  • Contact
  • Adversary

    Adversary Simulation

    Our best in class red team can deliver a holistic cyber attack simulation to provide a true evaluation of your organisation’s cyber resilience.

  • Application Security

    Application
    Security

    Leverage the team behind the industry-leading Web Application and Mobile Hacker’s Handbook series.

  • Penetration Testing

    Penetration
    Testing

    MDSec’s penetration testing team is trusted by companies from the world’s leading technology firms to global financial institutions.

  • Response

    Response

    Our certified team work with customers at all stages of the Incident Response lifecycle through our range of proactive and reactive services.

  • Research

    MDSec’s dedicated research team periodically releases white papers, blog posts, and tooling.

  • Training

    MDSec’s training courses are informed by our security consultancy and research functions, ensuring you benefit from the latest and most applicable trends in the field.

  • Insights

    View insights from MDSec’s consultancy and research teams.

  • Process Injection via Component Object Model (COM) IRundown::DoCallback()

    Apr 5th, 2022

    Written by: Admin

    ActiveBreach

    Introduction The MDSec red team are continually performing research in to new and innovative techniques for code injection enabling us to integrate them in to tools used for our red…

  • ABC-Code Execution for Veeam

    Mar 29th, 2022

    Written by: Admin

    ActiveBreach

    This blog post details several recently patched vulnerabilities in the Veeam Backup & Replication and Veeam Agent for Microsoft Windows. We’ll detail MDSec’s process for identifying these 1Day vulnerabilities, writing…

  • EDR Parallel-asis through Analysis

    Jan 7th, 2022

    Written by: Admin

    ActiveBreach

    Introduction Post-exploitation tooling designed to operate within mature environments is frequently required to slip past endpoint detection and response (EDR) software running on the target. EDR frequently operate by hooking…

  • Nighthawk 0.1 – New Beginnings

    Dec 16th, 2021

    Written by: Admin

    ActiveBreach

    Introduction MDSec’s ActiveBreach red team operate in the some of the highest maturity environments, where a significant degree of in-memory and post-exploitation operational security is often required to counteract defensive…

  • Detecting and Advancing In-Memory .NET Tradecraft

    Jun 10th, 2020

    Written by: Admin

    ActiveBreach

    Introduction In-memory tradecraft is becoming more and more important for remaining undetected during a red team operation, with it becoming common practice for blue teams to peek in to running…

  • Analysis of CVE-2020-0605 – Code Execution using XPS Files in .NET

    Awaiting Image

    May 10th, 2020

    Written by: Admin

    All

    Introduction Microsoft patched a number of deserialisation issues using the XPS files. Although the patch for CVE-2020-0605 was released in January 2020, it was incomplete and an additional update was released in…

  • Mattermost Enterprise Denial of Service

    Awaiting Image

    May 10th, 2020

    Written by: Admin

    All

    Introduction LaTeX is a document typesetting system that takes a plaintext file, stylised using mark-up tags similar to HTML or CSS, and converts this into a high-quality document for displaying…

  • T1111: Two Factor Interception, RSA SecurID Software Tokens

    Awaiting Image

    May 10th, 2020

    Written by: Admin

    ActiveBreach

    Introduction During Red Team Operations, it is not uncommon to find systems or applications related to the engagement objectives being protected by Two Factor Authentication. One of the solutions that…

  • Abusing Firefox in Enterprise Environments

    Awaiting Image

    Apr 10th, 2020

    Written by: Admin

    ActiveBreach

    Introduction In this blogpost, we will describe a technique that abuses legacy Firefox functionality to achieve command execution in enterprise environments. These capabilities can be used for lateral movement, persistence…

  • Designing The Adversary Simulation Lab

    Awaiting Image

    Apr 10th, 2020

    Written by: Admin

    ActiveBreach

    As some of you will know, we have recently entered into the Red Team training space. Before deciding to create our course now known as “Adversary Simulation and Red Team…

Page 3 of 4First«2 3 4»

Recent Posts:

  • When it Snows it Pours – Anatomy of a ServiceNow Red Team
  • ARM64 stack internals and obfuscation on Apple Silicon
  • Dell BIOS Passwords: Weak XOR Encryption Allows Recovery from SPI Flash (CVE-2026-40639)
  • Visual Studio Extensions Revisited
  • Disabling Security Features in a Locked BIOS

Archive:

  • August 2026
  • July 2026
  • May 2026
  • March 2026
  • February 2026
  • October 2025
  • March 2025
  • December 2024
  • November 2024
  • October 2024

Page Links:

  • Responsible Disclosure Policy
  • Nighthawk
  • Privacy Policy
  • MUTUAL NON-DISCLOSURE AGREEMENT
  • Home
  • Our Services
    • Adversary Simulation
      • Red Team Operations
      • Purple Teaming
    • Application Security
      • Application Security
      • Large Language Models
      • Mobile Security
    • Penetration Testing
      • Infrastructure Security
      • Product Assessment
      • Cloud Security Assessment
    • Response
      • Retained Response
      • Emergency Response
      • Cyber Readiness
  • Knowledge Centre
    • Insights
    • Research
    • Training
  • About
  • Careers
  • News
  • Contact
MDsec

Services

  • Adversary Simulation
  • Application Security
  • Penetration Testing
  • Response

Resource Centre

  • Research
  • Training
  • Insights

Company

  • About
  • Contact
  • Careers
  • Privacy

t: +44 (0) 1625 263 503
e: contact@mdsec.co.uk

32A Park Green
Macclesfield
Cheshire
SK11 7NA

Accreditations

Best
IT Health Check Service
Crest Star
Crest
Cyber Essentials
British Assessment Bureau
Copyright 2026 MDSec