Blog
Red Siege at Wild West Hackin’ Fest 2025: What to Expect
By Red Siege | October 2, 2025
As proud sponsors of Wild West Hackin’ Fest, Red Siege is excited to return to Deadwood for another year of cutting-edge training, engaging talks, and unique experiences. The event is […]
Threat Detection Made Simple: Splunk Attack Range Basics
By Red Siege | September 22, 2025
by Ian Briley Let’s be honest, when starting a new skill or interest, one of the largest hurdles is setting up an environment//playground//attack range for your learning activities. Sometimes it […]
Kerberoasting, Microsoft, and a Senator
By Tim Medin | September 11, 2025
Kerberoasting, Microsoft, and a Senator When I came up with Kerberoasting in 2014, I never thought it would live for more than a year or two. I (erroneously) thought that […]
Stupid Simple: Windows Data Exfiltration
By Red Siege | September 8, 2025
by Ian Briley To get around a DLP (Data Loss Prevention) implementation, you don’t need a fancy C2 setup to exfil your treasures. In fact, it’s incredibly easy using native […]
How to Set Up Proxifier for Penetration Testing
By Red Siege | September 8, 2025
by Justin Palk ProxyChains is a great tool for running Linux-based tools, such as those in Impacket, and everything built on top of them, but sometimes there’s a .NET tool […]
Getting Started with Proxy Chains
By Red Siege | September 8, 2025
by Justin Palk Oftentimes on an assumed breach test, we need or want to run tools on our local Kali VM and proxy them into the client’s network over a […]
Breaking Clean: Dodging Sanitization with Event Handler Tricks
By Red Siege | August 14, 2025
by Larry Ellis Background Coming off my time in the defensive world in the military, I’ve always had an interest in web application testing. Flipping the script from out-thinking an […]
Changing Directions: Attacking with Open Redirects
By Red Siege | August 7, 2025
by Stuart Rorer Open Redirection Whenever I think of open redirection, I think of Super Mario games and the green plumbing pipes. By hopping into one I can easily transport […]
Eagle Eye: Efficient Directory and File Enumeration
By Red Siege | August 7, 2025
by Stuart Rorer Hide and Seek I always loved playing hide and seek as a kid, our house had a laundry chute in the upstairs bathroom which made it easy […]
Penetration Testing in SDLC
By Red Siege | July 2, 2025
by Douglas Berdeaux Determining where in your software development lifecycle (SDLC) to have a penetration test carried out can be tricky. This article aims to guide new development shops at […]