0x74 0x68 0x65 0x72 0x65 0x20 0x61 0x72 0x65 0x20 0x31 0x30 0x20 0x74 0x79 0x70 0x65 0x73 0x20 0x6f 0x66 0x20 0x70 0x65 0x6f 0x70 0x6c 0x65 0x74 0x68 0x6f 0x73 0x65 0x20 0x77 0x68 0x6f 0x20 0x75 0x6e 0x64 0x65 0x72 0x73 0x74 0x61 0x6e 0x64 0x20 0x62 0x69 0x6e 0x61 0x72 0x79 0x20 0x61 0x6e 0x64 0x20 0x74 0x68 0x6f 0x73 0x65 0x20 0x77 0x68 0x6f 0x20 0x64 0x6f 0x6e 0x74
01110100 01101000 01100101 01110010 01100101 00100000 01100001 01110010 01100101 00100000 00110001 00110000 00100000 01110100 01111001 01110000 01100101 01110011 0xdeadbeef 0xcafebabe 0x1337
0x74 0x68 0x6f 0x73 0x65 0x20 0x77 0x68 0x6f 0x20 0x75 0x6e 0x64 0x65 0x72 0x73 0x74 0x61 0x6e 0x64 0x20 0x62 0x69 0x6e 0x61 0x72 0x79 0x20 0x61 0x6e 0x64 0x20 0x74 0x68 0x6f 0x73 0x65 0x20 0x77 0x68 0x6f 0x20 0x64 0x6f 0x6e 0x74 0x74 0x68 0x65 0x72 0x65 0x20 0x61 0x72 0x65 0x20 0x31 0x30 0x20 0x74 0x79 0x70 0x65 0x73 0x20 0x6f 0x66 0x20 0x70 0x65 0x6f 0x70 0x6c 0x65
01010111 01100101 00100000 01101000 01100001 01100011 01101011 00100000 01110100 01101000 01100101 00100000 01110000 01101100 01100001 01101110 01100101 01110100 01100110 00110000 01111000 01100110 00110100 01100100 01100101

0xf4de Feed

Public curated feed for visitors

Sign in

Active view

All watched feeds

12 of 12 entries

MDSec2026-05-28

Visual Studio Extensions Revisited

28/05/2026 Introduction A few years ago we looked at how Visual Studio Code extensions could be used for initial access in red team engagements; at the time, the results were... The post Visual Studio Extensions Revisited appeared first on MDSec.

MDSec2026-03-26

Disabling Security Features in a Locked BIOS

Overview This post explores how modifying a Dell UEFI firmware image at the flash level can fundamentally undermine platform security without leaving visible traces in the firmware interface. By directly... The post Disabling Security Features in a Locked BIOS appeared first on MDSec.

evasion
Read entry
MDSec2026-03-13

RIP RegPwn

13th March 2026 As part of MDSec’s R&D work, we often discover vulnerabilities and develop exploits to support our red team engagements. When researching widely used software, it is often... The post RIP RegPwn appeared first on MDSec.

MDSec2026-02-27

Total Recall – Retracing Your Steps Back to NT AUTHORITY\SYSTEM

27th February 2026 The MDSec red team are regularly performing research to identify privilege escalation vectors in Windows and macOS for use during red team engagements. Where the indicators in... The post Total Recall – Retracing Your Steps Back to NT AUTHORITY\SYSTEM appeared first on MDSec.

MDSec2025-10-27

Function Peekaboo: Crafting self masking functions using LLVM

Introduction LLVM compiler infrastructure is powerful because of its modular design, flexibility, and rich intermediate representation (IR) that enables deep analysis and transformation of code. Unlike traditional compilers, LLVM separates... The post Function Peekaboo: Crafting self masking functions using LLVM appeared first on MDSec.

MDSec2025-10-01

How Scattered Spider Exploited Weak Links in UK Retail Security

In recent months, a series of high-profile cyber attacks have hit the UK’s retail and automotive industries, targeting major companies like M&S, the Co-op, Harrods, and Jaguar Land Rover (JLR).... The post How Scattered Spider Exploited Weak Links in UK Retail Security appeared first on MDSec.

evasion
Read entry
MDSec2025-03-21

Red Teaming with ServiceNow

Introduction Over the course of numerous Red Team engagements MDSec has often gained privileged access to a target’s ServiceNow instance. This has, in turn, facilitated a variety of compromise actions... The post Red Teaming with ServiceNow appeared first on MDSec.

MDSec2024-11-29

Nighthawk 0.3.3 – Evanesco

Introduction Nov 29, 2024 Nighthawk C2 – This post is cross posted to the Nighthawk blog. Nighthawk 0.3.3; Evanesco, unveils our latest research. “Evanesco” is a Latin term that means “I... The post Nighthawk 0.3.3 – Evanesco appeared first on MDSec.

MDSec2024-10-29

From Panic to Prepared: How To Become DORA Compliant

Following on from our blog post in September, Finding Dora. DORA sets a new standard for how financial institutions and service providers within the EU should handle their digital operations.... The post From Panic to Prepared: How To Become DORA Compliant appeared first on MDSec.