💡 WHAT IS PURPLE TEAMING AT SPECTEROPS?
SpecterOps recently introduced our Purple Team service offering, but what is it? We define it as "the evaluation of security control efficacy through atomic testing using deliberately selected test cases."
https://t.co/SSwnzSxUGK
New episode of #KnowYourAdversary! 🚨
@jaredcatkinson & @JustinKohler10 are joined by @0xr0BIT to discuss TaskHound, an open-source BloodHound OpenGraph extension that uncovers credential exposure and attack paths hidden in Windows Scheduled Tasks. https://t.co/9VB4YQeW9L
AI and non-human identities are changing identity security.
Join @jaredcatkinson & @JustinKohler10 for a webinar on our latest research into Identity APM adoption, challenges, and operational maturity.
Save your spot: https://t.co/jBMD9dqGPl
If MSSQL isn't in your attack path visibility yet, this is your sign. @Mayyhem just shipped a major MSSQLHound upgrade with Javier Azofra Ovejero (https://t.co/StUSLqH9NZ): faster, cross-platform, and pathfinding-ready in BloodHound.
Check it out! https://t.co/7sEapEGKV8
A compromised AI tool became an attack path into enterprise identity.
@jaredcatkinson breaks down the lesson from the recent Vercel breach: AI tools are non-human identities w/ delegated access. If compromised, attackers inherit it.
Read more ⤵️ https://t.co/Oj2CaoqPhv
Anthropic’s Mythos points to a future of machine-speed attacks.
What changes for defenders? 🤔
Join @JustinKohler10 & @jaredcatkinson and learn how AI is accelerating compromise, why identity attack paths matter, and what you can do now.
Register → https://t.co/8MFNps1Kq1
Not all attackers want data or money. Some aim for disruption.
@jaredcatkinson spoke w/ @TechJournalist on why orgs need to model impact, not just attacker type. If your risk model is still centered on theft or #ransomware, it’s outdated. https://t.co/gQWddcXFHu
Don't miss this one!
Join @JustinKohler10 & @jaredcatkinson TOMORROW for a walkthrough of how BloodHound Enterprise now maps risk across Okta, GitHub, and Mac environments.
There's still time to register 👉 https://t.co/tSq17Re9ua
Identity moves across systems like AD, Okta, Entra, & GitHub. A compromise in one place can quickly turn into control somewhere else.
@jaredcatkinson breaks down how we modeled Okta in BloodHound Enterprise to make those attack paths visible.
Learn more: https://t.co/pkrbItsZGL
@ImposeCost@ctlyle1@zacharyebell Yea it was 100% genuine. She was like, you don’t qualify… get your ass to the back. The rack and stack conversation just reminded me of that moment where my civilian wife participated.
@ImposeCost@ctlyle1@zacharyebell My wife once told me I was not allowed to park in the veteran spot at The Home Depot. When I asked why, she genuinely thought I wasn’t a veteran because I sat in basement in San Antonio the whole time.
What do hundreds of incident response engagements reveal? Identity is the battleground. ⚔️
Steve Elovitz from @Unit42_Intel joins #KnowYourAdversary to break down how attacks unfold, from phishing to privilege escalation to SaaS expansion.
🎧: https://t.co/o9fdK3rIGZ
GitHub isn’t just a code platform anymore. It’s a security boundary.
New from @jaredcatkinson: how GitHub creates real attack paths into repos, secrets, CI/CD, and even cloud environments.
Read more: https://t.co/E8sLYPmEKL
BloodHound Enterprise is expanding.
New OpenGraph extensions now uncover identity attack paths across Okta, GitHub, and Jamf-managed macOS—connecting identities, repositories, and endpoints across hybrid environments.
https://t.co/aMZDr4irg5
🧵: 1/3
Can AI agents conduct advanced cyber-attacks autonomously?
We tested seven models released between August 2024 and February 2026 on two custom-built cyber ranges designed to replicate complex attack environments.
Here’s what we found🧵
Releasing PrivHound — Bloodhound collector to model Windows local Privilege Escalation as a graph.
Still early — bugs and PRs welcome.
https://t.co/9MkcK3QdgE
Check out GoLinHound:
- Discovers Linux & SSH attack paths
- Outputs OpenGraph JSON for BloodHound ingestion
- Integrates with SharpHound and AzureHound data to unveil cross-technology attack paths
https://t.co/HPh2xiiCzl
Incredibly proud of the team over here at @HuntressLabs as we announce a new really cool feature in our EDR - the “Attack Disruption Engine”. This new capability allows us to identify threats quicker on the endpoint and change response time from minutes to seconds. Full blog:
https://t.co/yIkbxzDk5L
Identity risk isn’t just about who has access. It’s about how access connects.
@jaredcatkinson dives into how Attack Path Management reframes modern security strategy in his article for @IdentityWeek_ID. https://t.co/oLMg4q5Go1
Introducing BloodHound Scentry: Accelerating Attack Path Management
Join Duane Michael and Robby Winchester as they discuss BloodHound Scentry
https://t.co/hBIrsnhInm