- Azure Storage Account Attacks and Detections
- Azure Virtual Machine Execution Techniques
- Abusing and Detecting Alternative Data Channel Command Execution on Azure Virtual Machines
- PowerZure 2.1 Update
- Attacking Azure & Azure AD, Part II
- AzureHound Cypher Cheatsheet
- Defense and Detection for Attacks Within Azure
- Attacking Azure, Azure AD, and Introducing PowerZure
- Kerberosity Killed the Domain: An Offensive Kerberos Overview
- BloodHound Cypher Cheatsheet
- CypherDog Cheatsheet
- Penetration Testing Active Directory, Part II
- Penetration Testing Active Directory, Part I
- Active Directory Assessment and Privilege Escalation Script 2.0
- Domain Penetration Testing: Using BloodHound, Crackmapexec, & Mimikatz to get Domain Admin
- Domain Penetration Testing: Privilege Escalation via Group Policy Preferences (GPP)
- Domain Penetration Testing: Credential Harvesting via LLMNR Poisoning
- Using Bloodhound to Map the Domain
- Cobalt Strike and Tradecraft
- Using a C# Shellcode Runner and ConfuserEx to Bypass UAC while Evading AV
- Offensive Lateral Movement
- Creating a Red & Blue Team Homelab
- Windows Privilege Escalation via Unquoted Service Paths
- Simple Buffer Overflows (x32)
- Using ETERNALBLUE & DOUBLEPULSAR (Shadowbroker's Dump/NSA Tools)
- How to set up Fuzzbunch (Shadowbroker's Dump/NSA Tools)
- How to get root privileges using dirtyc0w [the harder way]
| Name | Description |
|---|---|
| Azure Threat Research Matrix | Azure-based tactics, techniques, and procedures matrix |
| PowerZure | PowerShell project created to assess and exploit resources within Microsoft’s cloud platform |
| AzureHound | Azure & Entra Component to BloodHound |
| Active Directory & Privilege Escalation Script | Script to automate a bunch of pentesting tasks |
| CVE |
|---|
| CVE-2026-9258 |
| CVE-2026-9259 |
| CVE-2026-9260 |
| CVE-2026-9261 |
| CVE-2026-9262 |
| Conference | Talk |
|---|---|
| BSides Raleigh, SecureWorld Charlotte, & Hybrid Identity Conference 2020 | [Attack]tive Directory: Compromising a Network in 20 Minutes Through Active Directory |
| DEFCON 34 | Wrestling with a Python: Escaping Copilot Studio's AI-Guarded Sandbox |

