19 min read
On Resilience to Uncertainty, Psychological Endurance and the Ranger Program
An interdisciplinary examination of uncertainty, psychological hardiness and how the Ranger Program develops resilience, adaptability and critical thinking.
Resources / Journal
Long-form interdisciplinary analysis connecting cybersecurity with intelligence, conflict, human performance and operational readiness.
19 min read
An interdisciplinary examination of uncertainty, psychological hardiness and how the Ranger Program develops resilience, adaptability and critical thinking.

12 min read
How process-focused feedback, neuroplasticity and a growth mindset reshape our relationship with effort, challenge and cybersecurity readiness.

7 min read
A technical exploration of Windows Component Object Model hijacking, including discovery, persistence techniques, scheduled-task abuse and defensive detection.

9 min read
During these quarantine times, our team focusses on creating new updated topics for courses, analyses evasion, and threat hunting methods. For doing better threat hunting it is essential to know even better than the attacker.

2 min read
This morning, Microsoft released patches for CVE-2020-0796 SMBv3 RCE Microsoft’s advisory said a crafted SMBv3 packet could be used to achieve remote code execution on a vulnerable SMB Endpoint with a large scope of windows versions:

5 min read
The discipline of “Intelligence” is often assumed to be practiced only by governmental agencies. However, in the field of cybersecurity, it is applied more than you think. Common practices in an ordinary SOC environment, such as; alert triaging, incident investigation, penetration testing, and threat intelligence, are all different…

5 min read
In Red Teaming, it is essential to keep your tactical, mechanical skills, and operational competence updated with researches and drills. For operational competence against endpoint security solutions, we regularly research bypass methods, and separately combine our findings with tactical abilities like hiding and to operate undetected…

3 min read
During our SOC and Red Team researches, we like to give some time to understand the endpoints and their protection methods. EDR records system activities and events taking place on endpoints and provides security teams with the visibility they need to uncover incidents.

1 min read
Last month, a critical vulnerability in Citrix ADC and Citrix Gateway was published under CVE-2019-19781. The vulnerability caught our attention as it suggested that an unauthenticated adversary could leverage it to compromise the device.

4 min read
Implicit-type coercion conditions in dynamically typed programming languages have always led to tricky outcomes. If you have ever programmed in a language like Javascript, you have probably come across some funny cases like one of these;

3 min read
A practical guide to identifying and preventing insecure direct object reference vulnerabilities in Django applications through authorization-aware design and code review.

11 min read
The history of criminal profiling goes back to the first profiling study of Jack the Ripper in the 1880s. But I don’t think mentioning the history of profiling is enough to understand it. Therefore, in my article I will talk about the conditions that led to the emergence of profiling and leave the research of history to our esteemed…

6 min read
Microsoft patch Tuesday, May (2019) comes with a patch for critical RDP RCE Vulnerability, CVE-2019-0708 Remote Code Execution Vulnerability exists in Remote Desktop Services (RDP) pre-authentication and requires no user interaction Microsoft described it as “Wormable” so we could see new Wannacry hit the world! unfortunately, the…

5 min read
This is the analysis report of a sample which is tied to a campaign conducted against South Korean Unification Ministry – 1 January 2019. We have identified that the aforementioned malware possesses information collection capabilities. We also suspect that the malware possesses remote command execution capabilities. Anti analysis…

3 min read
This is the analysis report of a malicious Word document used in a Phishing campaign targeting financial organizations and cryptocurrency exchanges. This dropper file is exploiting a vulnerability in Adobe Flash in order to download & execute the second stage malware. The components and general outline is shown in the image below.

1 min read
This is the analysis report of a sample which is tied to a campaign conducted against South Korean Unification Ministry – 1 January 2019. We have identified that aforementioned malware possess information collection capabilities. We also suspect that the malware possesses remote command execution capabilities. Anti analysis techniques…

12 min read
In this article, we will perform a simple analysis of the WannaCry ransomware given to CS Ranger candidates as homework in Hell Week. The purpose of this article is not to be a detailed analysis of WannaCry, but to inform trainees and of course you about some of the methods and strategies used during malware analysis.

5 min read
In 1988, psychologist Joel Norris, after 500 interviews, revealed his work based on the fact that serial killers undergo 7 psychological stages. Some of these phases shifted to activities in the cyber world, while our cyber world and our kinetic world are tangled together like ivies. This began to make it difficult to detect a…
