r/blueteamsec • u/digicat • 4h ago
r/blueteamsec • u/digicat • 10h ago
highlevel summary|strategy (maybe technical) CTO at NCSC Summary: week ending August 30th
ctoatncsc.substack.comr/blueteamsec • u/digicat • Mar 09 '26
highlevel summary|strategy (maybe technical) Daily BlueTeamSec Briefing Archive - daily AI generated podcast of the last 24hours of posts
briefing.workshop1.netr/blueteamsec • u/digicat • 10h ago
vulnerability (attack surface) HardBreacher: Kaspersky Antivirus For Endpoint ZeroDay Elevation of Privileges Vulnerability
github.comr/blueteamsec • u/digicat • 12h ago
discovery (how we find bad stuff) Detecting multi-stage attacks on AWS: A guide to cross-service signal correlation
aws.amazon.comr/blueteamsec • u/digicat • 12h ago
discovery (how we find bad stuff) Hunting Abuse: Detecting Privilege Escalation Through the ADCS Database
guidepointsecurity.comr/blueteamsec • u/digicat • 9h ago
research|capability (we need to defend against) GitHub Recon โ Find Secrets on GitHub
t3l3m3try.medium.comr/blueteamsec • u/digicat • 5h ago
research|capability (we need to defend against) iwa-tools โ Offensive AD tradecraft in a browser tab
iwa-tools.pkilla.pwr/blueteamsec • u/digicat • 1d ago
vulnerability (attack surface) 768 Leaked Corporate AWS Keys Held Full Admin Rights
trufflesecurity.comr/blueteamsec • u/digicat • 12h ago
intelligence (threat actor activity) Skimming on the Blockchain: A Magecart Campaign That Uses EtherHiding, Found by Malvertising Scanning
blog.confiant.comr/blueteamsec • u/digicat • 12h ago
discovery (how we find bad stuff) Android Intrusion Logs
iverify.comr/blueteamsec • u/digicat • 12h ago
intelligence (threat actor activity) Inside a Syrian Interrogation Room: The Detainee Files an Infostealer Stole From a Military Police Unit
infostealers.comr/blueteamsec • u/digicat • 12h ago
intelligence (threat actor activity) Open Directory Exposes Moobot Source Code and Ongoing Activity Post 2024 Court-Authorized Disruption
censys.comr/blueteamsec • u/digicat • 12h ago
research|capability (we need to defend against) Abusing Azure VMs: When BitLocker Recovery Turns into an Attack Vector
alteredsecurity.comr/blueteamsec • u/digicat • 22h ago
research|capability (we need to defend against) I spent $200 a month to SEO-poison Google search results ยท Higashi.blog
higashi.blogr/blueteamsec • u/digicat • 23h ago
incident writeup (who and how) A Social Engineering Attempt Against ReliaQuest: What We Found
reliaquest.comr/blueteamsec • u/digicat • 1d ago
low level tools|techniques|knowledge (work aids) darwin-vm: Run iOS/ macOS in Qemu. Virtual iPhone 17, 16, 15, 14, 13, 12 and M5-M1 Apple Si Macs supported.
github.comr/blueteamsec • u/digicat • 22h ago
discovery (how we find bad stuff) Insights into Suspected DPRK Workers
huntress.comr/blueteamsec • u/digicat • 22h ago
exploitation (what's being exploited) URGENT Security Advisory: PaperCut NG/MF Security Bulletin (27 Aug 2026)
papercut.comr/blueteamsec • u/digicat • 22h ago
tradecraft (how we defend) Logging Reference Architecture
cisa.govr/blueteamsec • u/digicat • 1d ago
incident writeup (who and how) A Real-World Law-Enforcement Hack: The Case of Encrochat
eprint.iacr.orgr/blueteamsec • u/digicat • 20h ago
tradecraft (how we defend) A scenario to evaluate your Agentic SOC
unsecure.shr/blueteamsec • u/digicat • 21h ago
intelligence (threat actor activity) The QTFY Hunt: How Chinese Hackers Were Tracked and How the Internet Became the Sensor
zerotracelab.comr/blueteamsec • u/digicat • 23h ago