Tagged
Red Team
Two DGX Sparks, 33 Local Models, One Question: Can Local AI Actually Red Team?
TL;DR: I built a two-node NVIDIA DGX Spark cluster and benchmarked 33 local, open-weight models for real red-team work: BloodHound attack-path analysis, …
Adversarial Mindset: A Role, Not a Personality
The two previous posts in this series made a case for the adversarial mindset and then got honest about what it costs. This one is about something different: …
Cultivating a Hacker Mindset in Cybersecurity Defense
A piece for Dark Reading on why defenders need the adversarial mindset, and what it costs to build one.
On Red Teams - Part 2
Introduction This article is a continuation (and correction/accuracy) of a previous article I wrote in 2017, titled “Red Team and its Role in Penetration …
BSidesLV24: Adversaries Also Lift & Shift: Cloud Threats Through the Eyes of an Adversary
In August, Adi Belnikov and I had the opportunity to present at BSidesLV on a topic that’s become increasingly critical: the evolving nature of cloud threats …
Intelligize your Red Team
Yesterday, I had the pleasure of speaking @ Microsoft Innovation & Technology center with my fantastic colleague & a friend, Ohad Zaidenberg, about how we can …
Meet Caldera - Microsoft community meetup
This time, I’ve made sure to upload the deck as soon as possible. I’ve had the pleasure to present in a recent Microsoft Community meetup about providing …
Pentesting Isn't Red Teaming
A bit overdue, but I’m releasing the presentation I delivered in the DC9723 in November 2019. The main take away from it was - Penetration testing is not red …
Introducing: Disruption - automated AD-based environment deployment
Recently I’ve had the need to spin up AD domain-based environment to test stuff. Sometimes it’s specific tools, bypasses, or how configuration change affects …