AI & Security | I hack into things sometimes. Opinions are mine. Fortis fortuna adiuvat. Nostalgia is not a strategy. It's a good time to cause a little chaos.

The view from the @Horizon3ai Attack Path Tour in Washington DC is incredible!! Hacking and baseball make for a great event!! ⚾️⚾️⚾️😈😈😈
1
2
319
Rey Bango retweeted
Part 2 of our Empire C2 series with @reybango is up, featuring a special giveaway! 🎁 Watch the latest demo, then check the caption to find out how you can win a Hack Smarter All-Access Voucher! piped.video/watch?v=HA_bMzlR… #redteaming #empirec2 #infosec
1
2
319
Using the Empire C2 on Hack Smarter's DarkHaven Range - Part 2 is now out. Once again I partner with @_Hubbl3 on how he would approach this Active Directory cyber range from Hack Smarter as a red team operator. In addition, @Tyler_Ramsbey has generously donated a 12 month All Access voucher which I've added into the video as a giveway! Go check out the vide here: piped.video/HA_bMzlRJ9Y @EmpireC2Project @bcsecurity
1
532
Rey Bango retweeted
New: from 404 Media. The catastrophic FBI hack also exposed the FBI's own hacking unit. The Remote Operations Unit is a highly secretive part of the FBI, responsible for making tools to break into peoples' devices. Some of their names are in the data 404media.co/fbi-hack-exposed…
52
689
1,916
88,206
I wonder when/if they'll talk about Axon or Motorola?
Cybersecurity researcher: I found that Flock did not require their clients to use multi-factor authentication. This led me to find Flock law enforcement accounts for sale by a Russian vendor on a dark web marketplace. In addition to this, we found insufficiently protected sensitive information stored on Flock cameras, including photos, license plate data, logs, API keys, passwords, and communications.
1
7
882
Atlanta, the Horizon3 Attack Path Tour is coming to your city! Horizon3 is bringing the Attack Path Tour to Bold Monk Brewing Co. on Oct 1, with sessions covering AI and cyber warfare, hacking hackers, EDR evasion, and how AI is changing offensive security. It’s a great gathering at an amazing location around one idea: understand how attackers actually move through a network so you can focus on the exposure that matters. If you're a practitioner and want a great opportunity to learn more about how offensive security is evolving, be sure to register below! I'm looking forward to meeting you there! events.horizon3.ai/horizon3-…
1
500
Rey Bango retweeted
Always great teaming up with @reybango! In his latest video, we dive into the DarkHaven range using Empire C2—focusing on deliberate tradecraft over quick wins.
The Empire C2 has come a long way with the help of @bcsecurity and I was able to grab time from Jacob Krasnov, co-maintainer of the Empire C2 open-source framework, to run through the Hack Smarter Labs cyber range, DarkHaven. We focus on using a real red teaming mindset as Jake shares his perspective on how he would approach the range as a true assessment. We also go through the capabilities of the Empire C2 framework showing how it's evolved into a stable and capable environment for red team operators. Special thanks to @Tyler_Ramsbey for giving us access to the range. piped.video/cq15PWfOrYE
1
2
712
Rey Bango retweeted
Regarding AI we really are in the fuck around and find out stage.
1
2
6
1,121
This is wild, if true. Microsoft has some strict policies around retaliation so I can’t imagine a VP doing this but then again, it’s not the Microsoft that I knew anymore.
Nightmare Eclipse, the person who has been dropping Windows zero-days, has finally decided to share his story. He's an ex-Microsoft employee, we had dinner together, and I've known him and his story for some time. His real name is Abdelhamid Naceri. He's a very talented and intelligent individual, and he came across as someone who'd be a real professional to work with. "If only I didn't pour my soul into that job with countless of stupid non sleep nights, i would have gotten over it..." - Naceri He loved Microsoft. I wouldn't say that what he did, releasing all those zero-days, was normal, but he felt he had no other option because of the injustice Microsoft did to him. They fired him, and you can read the vague reason they gave in the email sent to him by the Vice President of Engineering at MSRC, below. According to Abdel's account, VP Tom Gallagher met with him after the firing to tell him they were blacklisting him from Microsoft and writing him a bad reference so he'd never be able to get a job again. Normally you'd think, well, big deal, just find another job, right? But Abdel doesn't have a European passport, and he was only a couple of months away from getting permanent EU residence. So instead of granting him those couple of months, Microsoft fired him for a reason that, as far as we can tell, was never made clear, then fought him in court and offered him €55,000 plus a year's pay to drop the case. All while Abdel was releasing zero-days. Abdel continued suing Microsoft for unfair termination in Germany, a fight that has cost him over $200,000. He says Microsoft refused to reveal any details about the security breach and went another direction. If you are reading this, and you can offer him a LEGAL job, this is his e-mail: msnightmare@proton.me
1
6
2,656
The Empire C2 has come a long way with the help of @bcsecurity and I was able to grab time from Jacob Krasnov, co-maintainer of the Empire C2 open-source framework, to run through the Hack Smarter Labs cyber range, DarkHaven. We focus on using a real red teaming mindset as Jake shares his perspective on how he would approach the range as a true assessment. We also go through the capabilities of the Empire C2 framework showing how it's evolved into a stable and capable environment for red team operators. Special thanks to @Tyler_Ramsbey for giving us access to the range. piped.video/cq15PWfOrYE
1
3
18
3,098
Rey Bango retweeted
SURPRISE.
1
3
48
13,889
The new Empire C2 is 🔥
Empire 7.0 is live! 🔥 What’s new: • Full crypto rewrite (AES-GCM, PBKDF2) • Pivots on all agents • Multi-tab terminal & dedicated shells • 75+ new BOFs • New Starkiller UI & Agent Graph github.com/BC-SECURITY/Empir…
2
735
Bear C2 v2 is out. If you're not familiar with it, it's definitely something to add to your list. It's created by my friend @S3N4T0R_0X0 and is built to help emulate different adversary scenarios by switching between different protocols, encryption methods, C2 profiles, OPSEC techniques and other components without rebuilding the C2 from scratch. If you wanted to emulate threat actor scenarios from prolific groups like Cozy Bear, Charming Kitten, Famous Cholima and more, definitely check this out. github.com/S3N4T0R-0X0/BEAR-…
3
28
108
7,427
"An anonymous security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldCrash" right after Microsoft rolled out its September 2026 Patch Tuesday security updates." @MSNightmare2000 just keeps rolling them out. Sometimes you need to listen to the researchers instead of blowing them off. 😈😈 bleepingcomputer.com/news/se…
Microsoft has failed to properly patch ShieldBreak CVE-2026-69414 - msrc.microsoft.com/update-gu… ShieldCrash demonstrates a full bypass of the patch - github.com/MSNightmare/Shiel… Works with latest September 2026 patch
2
757
Rey Bango retweeted
This is fucking insane..... this is not how it works..... I have a lab, I will gladly show people..... what the hell, people have lost their bloody minds! This type of post is not only scientifically inaccurate, it's also risky for society.....
174
38
599
49,506
I'm so excited about The Attack Path Tour, our multi-city tour to connect with cybersecurity practitioners on how to defend against evolving attack chains. I'll be at all of these stops and look forward to meeting the community in a city near you! 📍 Washington, DC: Sept. 29 📍 Atlanta: Oct. 1 📍 Dallas/Fort Worth: Oct. 14 📍 Houston: Oct. 15 📍 Toronto: Nov. 4 📍 Chicago: Nov. 10 📍 New York City: Nov. 12 Find your stop and join us: lnkd.in/etcFuh5G
366
Rey Bango retweeted
Replying to @Pirat_Nation
1
6
276
966 vulnerabilities fixed, the largest Patch Tuesday update Microsoft has released so far. 😶
Microsoft’s September 2026 Patch Tuesday is a massive one, fixing 966 security flaws, including two zero-days that are already being exploited. -966 vulnerabilities fixed, the largest Patch Tuesday update Microsoft has released so far. -105 are rated Critical, including 81 remote-code-execution flaws. -2 zero-days are being actively exploited, both affecting Windows and allowing attackers to gain SYSTEM-level privileges. -One affects the Windows Update Stack, while the other targets Windows ALPC. Microsoft says the increase in reported vulnerabilities is partly linked to its use of an AI-powered vulnerability discovery system. The September total only counts flaws released on Patch Tuesday itself, 204 additional vulnerabilities were fixed earlier this month. This is one of those updates where installing the latest security patches is especially important, given that two of the vulnerabilities are already being used in attacks.
1
1
3
741
‼️ BREAKING: Microsoft’s September 2026 Patch Tuesday fixes a record-breaking 966 flaws. ⚠️ 2 actively exploited zero-days 🔴 105 total Critical flaws, including: 💥 81 remote code execution ⬆️ 20 privilege escalation ➡️ Learn more: bleepingcomputer.com/news/mi…
30
228
789
91,094