Blog Archive

Check out all blog posts in my blog archive. Click on a headline to read the teaser.

Investigating Outbound Connections › upgradeapi.PySimpleGUI.com Is Malware?
upgradeapi.PySimpleGUI.com Is Not Malware? Read More ›

Threat Hunting in PyPI › CSAPP
Finding Malicious Packages in PyPI Read More ›

Python Supply Chain Attack › PyTorch Dependency Confusion Attack
Or is Pip to blame for it's install behaivor? Read More ›

End of Year Review › What Companies did Hackers Target in 2022?
A year in review of which companies had the most vulnerabilities targeted in the wild Read More ›

Multiprocessing › Breach-parse
Reading 40 GB of data with efficiency Read More ›

From idea to reality › Making the cisaCatalogBot
Keeping up-to-date with the latest vulnerabilities Read More ›

Lateral Movement Technique › Automated Lateral Movement Through SSH
Abusing SSH keys for lateral movement Read More ›

Cyber Tools of War #1 › NoWarDDoS
Using Python to DDoS Russian web sites. Read More ›

Phishing Site Attack › Browser in The Browser (BITB) Attack
Stealing credentials by using a phishing site within a phishing site. Read More ›

New Tool Tuesday #2 › Sherlock
The fastest user account discovery tool for OSINT. Read More ›

New Tool Tuesday #1 › WinSuperMem
The fastest Windows memory forensic artifact collector. Read More ›