TrueCyber Blog
Cybersecurity Research & Insights
Technical deep-dives on red team operations, EDR evasion, payload development, offensive tooling, and the operator mindset - written by practitioners who still run engagements.
The Danger of Default: Entra ID Permissions and AzureRedOps
Azure Entra ID ships with permissive defaults that let any user register applications and read the whole directory. Here is how AzureRedOps weaponises that with a new register-app feature, and why you should lock it down today.
Read article →Thick-Client Penetration Testing with NetHook
Traditional proxies fall short when testing Windows thick clients that pin certificates or ignore proxy settings. NetHook hooks traffic before encryption, making it the ideal tool for this class of testing.
Read article →Welcome to the New TrueCyber Platform
TrueCyber has a new home: a redesigned platform bringing the blog, our Windows tooling, and live and self-paced training together in one place. Here is what is live today and what is coming next.
Read article →No articles match your search.