's Avatar

@jessefmoore.bsky.social

8 Followers  |  48 Following  |  3 Posts  |  Joined: 22.11.2024  |  1.8679

Latest posts by jessefmoore.bsky.social on Bluesky

DCTV logo

DCTV logo

#DCTV is online! Jump on dctv.defcon.org for links to the #defcon33 live streams on #youtube and #twitch.

Get that #defcon however works best for you.

08.08.2025 16:44 β€” πŸ‘ 26    πŸ” 17    πŸ’¬ 1    πŸ“Œ 1

Yo! Practice Pentesting, Red Teaming, and MalDev in Ludus!πŸ₯°πŸ˜ŽπŸ‘»

08.08.2025 02:10 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
It's DEFCON time! Time to break out the tshirts.

It's DEFCON time! Time to break out the tshirts.

Black Hat is done, now it's time for the final con of the week, and probably the best.

08.08.2025 00:51 β€” πŸ‘ 12    πŸ” 1    πŸ’¬ 1    πŸ“Œ 0
Container Security Capture the Flag Container Security Capture the Flag

Come play in one of the two Kubernetes Capture the Flag events we're facilitating at #DEFCON 33!

Fri – Sun : Learning CTF w/ Walkthrough

Saturday: Competitive CTF

First Place Prize (for a team on-site at DEF CON) is a Bambu Labs A1 Mini 3D printer!

containersecurityctf.com

@defcon.bsky.social

07.08.2025 00:32 β€” πŸ‘ 21    πŸ” 13    πŸ’¬ 1    πŸ“Œ 3
DEF CON Las Vegas Food Map

In Vegas for hacker summer camp and trying to get food without breaking the bank? I vibed a simple map site: defconfood.badsectorlabs.com

Come see Ludus at the embedded Systems Village - hack an IP camera, see the new UI, and get a sticker!

07.08.2025 20:50 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Last Week in Security (LWiS) - 2025-07-28 VMware Tools LPE (@justbronzebee), Adaptix C2 0.7 (@hacker_ralf), Ludus MCP (@__Mastadon), SOAP(y) (@_logangoins), and more!

VMware Tools LPE (@justbronzebee), Adaptix C2 0.7 (@hacker_ralf), Ludus MCP (@__Mastadon), SOAP(y) (@_logangoins), and more!

blog.badsectorlabs.com/last-week-in...

29.07.2025 15:58 β€” πŸ‘ 2    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Preview
ATT&CKcon 6.0 MITRE ATT&CKcon | October 14 - 15, 2025

In-person ATT&CKcon 6.0 ticket sales are open! Come join us October 14-15 at ATT&CK HQ in McLean, VA. na.eventscloud.com/attackcon6/

We're almost set to announce this year's exciting speaker lineup and will open virtual registration Sep 3rd, so stay tuned!

30.07.2025 16:01 β€” πŸ‘ 3    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
What’s Your Secret?: Secret Scanning by DeepPass2Β  - SpecterOps Discover DeepPass2 - a secret scanning tool combining BERT-based model and LLMs to detect free-form passwords, and other structured tokens and secrets with high accuracy.

Red teamers know the drill: endless file churning, hunting for passwords & tokens. πŸ”

Meet DeepPass2, our new secret scanning tool that goes beyond structured tokens to catch those tricky free-form passwords too. Read Neeraj Gupta's blog post for more. ghst.ly/40HLNNA

31.07.2025 17:36 β€” πŸ‘ 12    πŸ” 4    πŸ’¬ 0    πŸ“Œ 1
Vaporwave flavored picture of the main pool at the Sahara Hotel and Casino in Las Vegas .

Vaporwave flavored picture of the main pool at the Sahara Hotel and Casino in Las Vegas .

Greetings, luminous humans of #defcon! Welcome to the last weekend before #DEFCON33!

Join us Thursday from 7:30 to 10:30 at the Sahara for the KEVOPS Sellout Pool Party! Refreshing pool, delicious tacos, and DEF CON DJ’s on the ones and twos. DEF CON badge required for entry.

See you there.

01.08.2025 21:32 β€” πŸ‘ 34    πŸ” 6    πŸ’¬ 3    πŸ“Œ 1

The ATT&CK team is out at #hackersummercamp and happy to chat, meet up, or just share some stickers. Drop a DM or stop by an appearance if you’re interested in saying hi!

05.08.2025 14:20 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
BloodHound 8.0 debuts with major upgrades in attack path management - Help Net Security BloodHound 8.0, the open-source Attack Path Management platform, features major enhancements and expanded capabilities.

BloodHound 8.0 debuts with major upgrades in attack path management

πŸ“– Read more: www.helpnetsecurity.com/2025/08/05/b...

#cybersecurity #cybersecuritynews #opensource @specterops.io

05.08.2025 12:11 β€” πŸ‘ 2    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
Last Week in Security (LWiS) - 2025-08-04 AEM RCE (@infosec_au), Intune cert abuse (@_dirkjan), Entra tradecraft (@hotnops), LLMs for R&D (@kyleavery_), File System API research (@Print3M_), and more!

Last LWIS before DEF CON. Come see us in the Embedded Systems Village where we have a mini-workshop hosting an emulated camera on Ludus for you to hack!

blog.badsectorlabs.com/last-week-in...

05.08.2025 15:46 β€” πŸ‘ 1    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Preview
GitHub - olafhartong/BamboozlEDR: A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes. A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes. - olafhartong/BamboozlEDR

During my #BHUSA talk I've released many ETW research tools, of which the most notable is BamboozlEDR. This tool allows you to inject events into ETW, allowing you to generate fake alerts and blind EDRs.

github.com/olafhartong/...

Slides available here:
github.com/olafhartong/...

06.08.2025 20:49 β€” πŸ‘ 22    πŸ” 16    πŸ’¬ 0    πŸ“Œ 1
Post image

So, here's a little thread on my new open source project:

The Tradecraft Garden.

tradecraftgarden.org

It's Crystal Palace, an open-source linker and linker script specialized to writing PIC DLL loaders.

And, a corpora of DLL loaders demonstrating design patterns building tradecraft with it.

05.06.2025 14:36 β€” πŸ‘ 24    πŸ” 13    πŸ’¬ 1    πŸ“Œ 2
Preview
The Ultimate Guide to Windows Coercion Techniques in 2025 Windows authentication coercion often feels like a magic bullet against the average Active Directory. With any old low-privileged account, it usually allows us to gain full administrative access to al...
05.06.2025 17:35 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Video thumbnail

Getting started w/ Mythic? We've got you covered.

@its-a-feature.bsky.social walks through the web UI basics, login process, & how to configure your default username/password. Check it out! ▢️ ghst.ly/user-interface

Watch the full series: ghst.ly/mythic-op

17.04.2025 20:12 β€” πŸ‘ 7    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Post image

It's #BloodHoundBasics day!

Let's talk Tier 0 inheritance. If you're trying to unravel why some of the objects in your environment show up as Tier 0, this query will demonstrate the nuances of inheritance in 2 ways: inheritance up w/ OUs, & inheritance down w/ Groups.

🧡 1/3

18.04.2025 17:50 β€” πŸ‘ 5    πŸ” 2    πŸ’¬ 1    πŸ“Œ 0

This has been a LONG time coming! This is just the beginning though :) I'll be recording more videos for updates, new features, workflow enhancements, and yes - a developer series too! Be sure to let me know what you do/don't like about this format and what kinds of things you'd like to see!

15.04.2025 20:14 β€” πŸ‘ 12    πŸ” 4    πŸ’¬ 1    πŸ“Œ 0

Congratulations πŸ₯³ to the top 3 teams at #PRCCDC!
1st Oregon State University
2nd George Fox University
3rd The Evergreen State College
---------------------------
Oregon State University
George Fox University
The Evergreen State College

Thank you National Collegiate Cyber Defense Competition!

24.03.2025 18:24 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1
Preview
ludus 1.9.2 Β· Bad Sector Labs / Ludus Β· GitLab Changelog All notable changes to this project will be documented in this file. [1.9.2]...

πŸ“’ 🏟️ Ludus 1.9.2 is now available! New features include:
βœ… Install Linux packages easily from range config
βœ… Control Wireguard subnet traffic with custom network rules
βœ… Fixed domain joining for non-English Windows and more!

Full changelog: gitlab.com/badsectorlab...

22.03.2025 15:24 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
GOAD - part 14 - ADCS 5/7/9/10/11/13/14/15 In the previous blog post on ADCS (Goad Pwning Part 6), ESC1, ESC2, ESC3, ESC4, ESC6, and ESC8 were exploited.

mayfly277.github.io/posts/ADCS-p...

11.03.2025 10:49 β€” πŸ‘ 4    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

Regular Pricing is $560 ($540 + $20 proc.) and is available until July 18.

Late Pricing is $580 ($560 +$20 proc.) from July 19 to the close of Online Reg.

Online registration is not required. Cash-at-the-door price is$500, and you get the bonus of our world-famous LineCon.

(more)

04.03.2025 19:59 β€” πŸ‘ 7    πŸ” 2    πŸ’¬ 1    πŸ“Œ 0

Looking forward to running some of the new Ludus Ansible roles πŸ’œ

11.02.2025 19:32 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Our team just dropped BloodHound v7.0! 😎

Check out our latest blog post from Dev Bhatt to learn about the enhancements in this update, aimed at helping security teams visualize #AttackPaths, prioritize risks, & track remediation. ghst.ly/3CPDQwT

🧡: 1/4

11.02.2025 18:20 β€” πŸ‘ 5    πŸ” 4    πŸ’¬ 1    πŸ“Œ 0

We would like to congratulate the 8 teams who will be proceeding to WRCCDC Regionals 2025! We also want to recognize all the 27 teams who participated at qualifiers!

The schools who will be going to regionals are UCI, Stanford SDSU, UNR, UCSC, CSUSB, CSUN, UCD!

10.02.2025 03:57 β€” πŸ‘ 7    πŸ” 2    πŸ’¬ 1    πŸ“Œ 2
Post image

Congratulations to all the teams who participated in WRCCDC's 2025 Invitational 3! Hope everyone had a ton of fun!

28.01.2025 03:15 β€” πŸ‘ 4    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

@jessefmoore is following 20 prominent accounts