@SpecterOpsi
iAccount based inUnited States
About this account
- Account based in
- United States
- Connected via
- United States App Store
Account-level information from X, not a live location or the device used for a specific post.
Creators of BloodHound | Experts in Adversary Tradecraft | Leaders in Identity Attack Path Management
Joined January 2017
- Tweets4.1K
- Following403
- Followers42.3K
- Likes2.3K
Pinned Tweet
#SpecterBash is back! 😎
Join us October 5-8 in Denver, CO for four days of adversary tradecraft courses, evening events, and the most fun you’ll have leveling up your infosec skills.
🎃 Registration is open: ghst.ly/45COqlF
SpecterOps retweeted
New content for AP:A will be debuting at SpecterBash 🎉 This will be the first time the new Agents and Identities section will be taught as part of the course AND there is a brand new CTF for participants.
See Azure and Entra ID the way attackers do. 👀
During our Azure course at #SpecterBash, learn to identify the misconfigs and attack paths that matter, including those involving agents and identities.
Get the attacker’s perspective: ghst.ly/45COqlF
A #BloodHoundBasics reminder from @ScoubiMtl ⤵️
Not into live chat? Join our new SpecterOps & BloodHound Community subreddit!
Come for the AMA, stay for the discussions: reddit.com/r/SpecterOpsCommu…
See Azure and Entra ID the way attackers do. 👀
During our Azure course at #SpecterBash, learn to identify the misconfigs and attack paths that matter, including those involving agents and identities.
Get the attacker’s perspective: ghst.ly/45COqlF
Where is AI useful in offensive security today?
Our latest research covers analysis, tool development, vulnerability discovery and reporting, plus what still fails and how offsec teams can adopt AI in their workflows.
Read more from @ne0nd0g ⤵️ ghst.ly/4hqiS7Y
At #OffensiveAICon, @harmj0y & @tifkin_ will explore optimized evasion attacks & their transferability across EDR products.
They’ll share findings from reverse engineering four EDRs and experimenting with LLMs & GEPA to expand the search space for effective obfuscation.
Your detection program is only as strong as what it catches.
At #SpecterBash, our Detection course digs into adversary behavior and TTPs to build sustainable detections across toolsets. Less alert fatigue. More signals that matter. 👻 Learn more: ghst.ly/45COqlF
Introducing Ghostwriter Skills 👻
The first release helps with report templates, template QA, report readiness checks and executive summary drafts. Practitioners remain responsible for the final analysis.
Read more from @cmaddalena & explore each skill: ghst.ly/46zigYS
Introducing SO:Brief, our new series delivering quick insights from SpecterOps experts. 🎥
First up: @MGrafnetter breaks down what passkey phishing can actually look like.
Watch the brief, then go deeper in tomorrow’s webinar 👉 ghst.ly/4hDFeUS
We’re up and running at the Gartner Security & Risk Management Summit in London 🇬🇧
Stop by booth #615 to meet our team and learn how BloodHound Enterprise helps organizations eliminate identity attack paths before attackers can exploit them.
Come say hello! #GartnerSEC
This is your sign to reserve your spot for @MGrafnetter's webinar this week!✨
Hear about Pass-the-Passkey, a novel & actively researched category of malware-initiated attack techniques targeting passkey auth that can enable cloud user impersonation.
👉 ghst.ly/4cpVSoa
New #BloodHoundBasics post c/o @ScoubiMtl! 🎉
As of v9.7 BH supports multiple destinations in Pathfindings. You can force a path to traverse a specific node. It is also possible to rearrange the order of the nodes a path must traverse.
For more info 👉 ghst.ly/4cOBtt9
Our team is at #InfosecNashville 🤠
Stop by to say hi to the team, discuss your burning questions on identity attack path management & BloodHound, and grab some swag!
And don't forget to check out @JustinKohler10's session this afternoon!
nitter.cf/SpecterOps/status/2100…
Don't miss @JustinKohler10's session at Infosec Nashville TOMORROW!
Justin will explore why defenders need to shift focus to the identity layer as agents, non-human identities, and hidden trust introduce new risk. ghst.ly/4yCNTg1
Introducing CiliumHound, a new BloodHound OpenGraph extension from @Sw4mp_f0x!
Feed it your Cilium network policies (YAML/JSON), get back a searchable graph scoped to each K8s namespace.
Check it out ⤵️ ghst.ly/4hdLHEQ
Don't miss @JustinKohler10's session at Infosec Nashville TOMORROW!
Justin will explore why defenders need to shift focus to the identity layer as agents, non-human identities, and hidden trust introduce new risk. ghst.ly/4yCNTg1
🔜
Don't miss our webinar TOMORROW!
Hear from @ne0nd0g, @AndrewChiles & @_xpn_ on how AI is reshaping how adversaries operate and what red teams need to evaluate.
➡️ ghst.ly/4r78mqJ
Don't miss our webinar TOMORROW!
Hear from @ne0nd0g, @AndrewChiles & @_xpn_ on how AI is reshaping how adversaries operate and what red teams need to evaluate.
➡️ ghst.ly/4r78mqJ
A fresh new look is coming to Ghostwriter. 👻
v7.3.0 brings a redesigned dashboard, new engagement bar, customizable sidebar, accessibility improvements, and a UI refresh across the application.
@cmaddalena unpacks what’s new. 👇 ghst.ly/46xaley
Ghostwriter v7.3.0 is currently in testing through September 30, and we want your feedback. Try it out and let us know what you think!
ghst.ly/ghostwriter-v730
New #KnowYourAdversary 🚨
Visibility is the foundation of effective exposure mgmt.
Vlad Rotshteyn joins @jaredcatkinson & @JustinKohler10 to discuss prioritizing risk w/ context, Attack Path Management, AI & why security fundamentals still matter.
🎧: ghst.ly/4gS0KFc