Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

blog.xpnsec.com

XPN InfoSec Blog

Get the latest updates from XPN InfoSec Blog directly as they happen.

Follow now 37 followers

Latest posts

Last updated 3 days ago

Administrator Protection Review

3 days ago

Microsoft will be introducing Administrator Protection into Windows 11, so I wanted...

Tokenization Confusion

19 days ago

In this post we look at the new Prompt Guard 2 model...

The SQL Server Crypto Detour

2 months ago

One of the things that I love about my role at SpecterOps...

ADFS - Living in the Legacy of DRS

5 months ago

In this post we’re going to focus on some ADFS internals. We’ll...

Identity Providers for RedTeamers

over 1 year ago

Originally presented at SOCON-2024, and continuing the series into post-exploitation techniques against...

Building a Custom Mach-O Memory Loader for macOS - Part 1

over 2 years ago

In this blog we'll look at what it takes to construct an...

Restoring Dyld Memory Loading

over 2 years ago

Up until recently, we've enjoyed in-memory loading of Mach-O bundles courtesy of...

WAM BAM - Recovering Web Tokens From Office

over 2 years ago

This post looks at the recent trend of pulling Azure tokens from...

Exploring SCCM by Unobfuscating Network Access Accounts

almost 3 years ago

In this post we'll explore just how SCCM uses its HTTP API...

Exploring SCCM by Unobfuscating Network Access Accounts

almost 3 years ago

In this post we'll explore just how SCCM uses its HTTP API...

g_CiOptions in a Virtualized World

about 3 years ago

With the leaking of code signing certificates and exploits for vulnerable drivers...

NTLMquic

about 3 years ago

In this post, we'll dig into just how SMB over QUIC works...