Penetration Testing, Purple Team, Red Team & Adversary Emulation, Security Posture Review and Training
Let our Offense, Prepare your Defense.
#weareoffensive
Offense for Defense is now On-Demand: Brought to you by CEO @TimMedin and Security Consultant Jason Downey 🔗 training.redsiege.com
Your Lab, On Your Time
0️⃣ Zero setup. Total control.
🏰 Built for defenders who want to think like attackers
Red Siege is heading back to @WWHackinFest Deadwood!
Training. Talks. Workshops. Vishing CTF. Swag. And a whole crew of Red Siegers.
See everything we’ve got planned for WWHF 🔗
redsiege.com/deadwood-guide2…
Loading... The Siege Stack [▰▰▰▰▰▰▰▱] 90%
We’re stacking up the latest cybersecurity news, industry insights, and everything happening at Red Siege and sending it straight to your inbox.
Get on the list before the next edition drops 🔗 redsiege.com/signup
Huge thanks to Jason Downey for leading this week’s WedOff on payload delivery and C2.
See you next time for the final week of Jason's takeover 🔗 redsiege.com/wedoff
It. Is. Wednesday. You know that means it's time for the 2nd Best Show on the Internet: The Wednesday Offensive!
Today, Security Consultant Jason Downey is continuing his takeover with a discussion about code execution.
See you at 130pm ET 🔗 redsiege.com/wedoff
Red Siege Senior Security Consultant Justin Palk continues his series on expanding a Windows AD lab, this time walking through how to add Microsoft SQL Server Express to Windows Server 2022 Server Core Edition. 🔗 redsiege.com/ms-sql-server#hacking#infosec#cybersecurity
Want to learn Kerberoasting? Learn it from the guy who created it.
Go under the hood of Kerberos with Red Siege CEO Tim Medin and get hands-on with Kerberoasting, Silver Tickets, Golden Tickets & more.
🔗 redsiege.com/kerb-workshop
🔔 Friendly Neighborhood Reminder 🔔
Tomorrow, our Security Consultant Jason Downey continues his takeover of The Wednesday Offensive!
This week: we're talking about code execution.
Join the conversation at 130pm ET 🔗 redsiege.com/wedoff
Microsoft is urging Entra ID admins to move users to passkeys and other phishing-resistant authentication before SMS first-factor sign-in is retired in February 2027.
Via @BleepinComputerbleepingcomputer.com/news/mi…
Red Siege turns 9 today!
Do you remember
The 21st night of September?
Red Siege was changin’ the minds of defenders
While breaching the gates our way
To our clients, students, WedOff crew & everyone we’ve met along the way: WE APPRECIATE YOU! ❤️⚔️
piped.video/Gs069dndIYk?si=8pBA…
Here's what we've got coming up!
As always, join us for The Wednesday Offensive. This week Red Siege Security Consultant Jason Downey is continuing his takeover with a discussion on code execution. 🔗 redsiege.com/wedoff#hacking#infosec#cybersecurity
Ready to take your pentesting skills further?
Join Red Siege CEO @TimMedin for Penetration Testing: Beyond the Basics at @WWHackinFest Deadwood, Oct. 6–7.
Go beyond the fundamentals and add new techniques to your toolkit.
There's still time to register! 🔗👇
Thanks to Jason Downey, TJ Toterhi & everyone who joined the WedOff for a great discussion on web app pentesting!
We'll see you next week for Jason's discussion on code execution! 🔗 redsiege.com/wedoff
It's Wednesday! You know that means it's time for the 2nd Best Show on the Internet: The Wednesday Offensive
Today, Security Consultant Jason Downey is continuing his takeover with a discussion about web application testing.
See you at 130pm ET 🔗 redsiege.com/wedoff
Generated your shellcode. Now what? In Modern Shellcode Obfuscation, Principal Security Consultant Mike Saunders digs into practical techniques, detection tradeoffs, and what actually gets noticed.
🔗 redsiege.com/modsho#hacking#infosec#cybersecurity#training
🔔 Friendly Neighborhood Reminder 🔔
Tomorrow, Security Consultant Jason Downey continues his takeover of The Wednesday Offensive!
This week: we're talking about web application testing.
Join the conversation at 130pm ET 🔗 redsiege.com/wedoff
Researchers disclosed DDRop, a new hardware attack that can break memory protections in Intel and AMD confidential computing. The attack requires physical access, and there’s no simple patch for the underlying hardware weakness.
via @TheHackersNewsthehackernews.com/2026/09/ne…
CISA warns attackers are exploiting a critical GitLab flaw that can expose credentials, secrets, and other sensitive data. GitLab has released fixes, and organizations are urged to patch ASAP.
via @BleepinComputerbleepingcomputer.com/news/se…