❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

DNS Triage Cheatsheet

By: BHIS
6 August 2025 at 11:00

DNS Triage is a reconnaissance tool that finds information about an organization's infrastructure, software, and third-party services as fast as possible. The goal of DNS Triage is not to exhaustively find every technology asset that exists on the internet. The goal is to find the most commonly abused items of interest for real attackers.

The post DNS Triage Cheatsheet appeared first on Black Hills Information Security, Inc..

How to Test Adversary-in-the-Middle Without Hacking Tools

By: BHIS
24 March 2025 at 11:00

In this video, Michael Allen discusses how to test Adversary-in-the-Middle attacks without using hacking tools. He delves into the intricacies of credential harvesting, the evolution of multi-factor authentication (MFA), and how attackers adapt their strategies to bypass security measures.

The post How to Test Adversary-in-the-Middle Without Hacking Tools appeared first on Black Hills Information Security, Inc..

Introducing SlackEnum: A User Enumeration Tool for Slack

By: BHIS
27 June 2024 at 11:00

Recently, as part of our ANTISOC Continuous Penetration Testing (CPT) service, I had an opportunity to investigate how attackers can leverage Slack in cyber-attacks, similar to how we frequently use […]

The post Introducing SlackEnum: A User Enumeration Tool for Slack appeared first on Black Hills Information Security, Inc..

Is This Thing On?

By: BHIS
26 May 2021 at 15:09

How to makeΒ sureΒ your antivirus is workingΒ withoutΒ anyΒ malwareΒ  Michael Allen // Recently, a customer asked me if there was aΒ wayΒ they could generate alerts from the new antivirus product they deployed withoutΒ executing anyΒ actual […]

The post Is This Thing On? appeared first on Black Hills Information Security, Inc..

Webcast: OPSEC Fundamentals for Remote Red Teams

During remote red team exercises, it can be difficult to keep from leaking information to the target organization’s security team. Every interaction with the target’s website, every email sent, and […]

The post Webcast: OPSEC Fundamentals for Remote Red Teams appeared first on Black Hills Information Security, Inc..

πŸ’Ύ

The Paper Password Manager

By: BHIS
2 January 2020 at 09:58

Michael Allen // Every year around the holidays I end up having a conversation with at least one friend or family member about the importance of choosing unique passwords for […]

The post The Paper Password Manager appeared first on Black Hills Information Security, Inc..

❌
❌