Profile avatar
bishopfox.bsky.social
A leading provider of #offensivesecurity solutions & contributor to the #infosec community. #pentesting #hacking
62 posts 123 followers 25 following
Prolific Poster

Cybersecurity meets comic book culture. At #SDCC 2025, @defcon.bsky.social Black Badge winner and Senior Security Consultant @alethe.bsky.social joins forces with @dentthefuture.bsky.social for "Inside the Hacker’s Mind." More: bishopfox.com/events/sdcc-...

Still grinding through Sliver the hard way? Automate! Join us July 9 on Discord for a hands-on workshop on staging, automation, pivots, and SliverPy with Senior Red Teamer Timothy Makram Ghatas. bishopfox.com/resources/sl...

Join us for Part 2 of our Discord Workshop series! This time we’re diving into implant staging, pivoting, and CLI automation with Sliver and SliverPy. Hosted by Timothy Makram Ghatas. July 9 - Live on Discord: discord.gg/ANytASyDFr?e... #Sliver #C2 #SliverPy

In this Safe Mode Podcast clip, @theoradical.bsky.social explains how Bishop Fox is building AI agents that “wake up” with the right tools and context, ready to act fast. “I see my calling. I’m coming in here to help.” Full ep via @cyberscoop.bsky.social bfx.social/3ZCfvmD

Cloud red teaming ≠ cloud pentesting. On June 18, we’re breaking down the differences, plus how to test cloud environments with GenAI. Join us along with ScaleSec at 2pm EDT. Save your seat: bishopfox.com/resources/ar...

🔴 WE'RE LIVE! Attacking & Defending Deepfakes: A Red Teamer’s Perspective Senior Security Consultant Brandon Kovacs is live breaking down how deepfakes are being weaponized and how to fight back: bishopfox.com/resources/at...

Tomorrow, Senior Security Consultant Brandon Kovacs breaks down how red teamers are attacking deepfake defenses and what blue teams can do about it. Save your seat: bishopfox.com/resources/at....

NahamCon 2025 starts today at 12 p.m. EDT! Be sure to catch Senior Security Engineer @tomnomnom.com's keynote tomorrow. nahamcon.com

Offsec testing under #PCI DSS 4.0 demands more rigor and visibility. Learn how to validate attack paths, integrate findings, and prove remediation from our CISO Christie Terrill and guests Adam Bush (Schellman) and Zach Fasel (UrbaneSec). #cybersecurity #pentesting youtu.be/B5QJ2vJfQgA?...

Join Senior Security Consultant Brandon Kovacs as he breaks down how attackers are using AI-powered video and voice cloning to bypass defenses and what you can do to stay ahead. #deepfakes #socialengineering #redteam May 28, 2 p.m. ET / 7 p.m. BST Save your seat: bishopfox.com/resources/at...

At Bishop Fox, we know that good coffee can fuel great conversations. That’s why we’re proud to sponsor the Coffee/Espresso Bar at #BSidesNOLA on May 13. If you’re attending, have a cup on us. ☕️ Get your ticket while they last: https//nolabsides....

Tomorrow at GISEC Global: Senior Security Consultant Brandon Kovacs is presenting “Attacking & Defending Deepfakes: A Red Teamer's Perspective.” Don’t miss if you’re in Dubai. #redteam #deepfakes More: bfx.social/43eA8aq

How do you really measure the value of an #ASM solution? On May 7, Bishop Fox and @gigaom.com.web.brid.gy cut through the buzz to share what matters, from ROI to real-world threats. Join experts from #Cosmos, TEA, ASI, and GigaOm to sharpen your strategy. Save a seat: bishopfox.com/resources/as...

We’re hosting a live Discord workshop on Sliver, our open-source C2 for Red Teams. Sr. Red Teamer Tim Makram Ghatas will cover how listeners, beacons, and sessions work, how Sliver hides gRPC traffic, and what’s new in 1.6. Save your spot: discord.gg/ANytASyDFr?e... #SliverC2 #RedTeam #offsec

A #SonicWall SSL VPN vuln. A deep dive with the engineer who found it. And insights you won’t find anywhere else. This client-exclusive Bishop Fox briefing covers discovery, impact, and mitigation — with a live Q&A. www.linkedin.com/events/techn...

Today’s the day! #GITEXAsia kicks off in Singapore. Catch Brandon Kovacs' presenting Cyber Mirage, including a live #deepfake demo making its regional debut. Learn how #AI deception is evolving and how to stay ahead. bfx.social/4ixCgib

Our live Discord workshop on Sliver C2 is happening May 8. Learn how it handles listeners, gRPC traffic, and what’s new in 1.6. Save your spot: discord.gg/ANytASyDFr?e... #RedTeam #SliverC2 #offsec #C2Framework

🎱Keynote Speaker Alethe Denis!🎱 We're honored to have @alethe.bsky.social keynote Layer 8 Con. Alethe is a Sr. Security Consultant for @bishopfox.bsky.social. She's been on Darknet Diaries, in the WSJ and Dark Reading. She earned the coveted DefCon Black Badge in the Social Engineering Village!

AI is changing the game for attackers and defenders. @theoradical.bsky.social joins a @darkreading.bsky.social panel to talk #deepfakes, agentic #AI, and what security teams need to do next. Watch the full interview: bishopfox.com/resources/da...

Deidre Diamond and Juliet Okafor are two women in cybersecurity who are changing the conversation. This is a must-watch for anyone thinking about what it means to build something bold in this space. Hosted by our own Christie Terrill. cybersn.com/cyber-resour...

Senior Security Consultant Brandon Kovacs is bringing his live demo to #GITEX Asia in Singapore for the first time! “Cyber Mirage” explores how AI is reshaping deception—and what it means for security. bishopfox.com/events/brand...

We’re live! Join @alethe.bsky.social now for Epic Fails & Heist Tales—a webcast packed with Red Team stories, lessons learned, and moments that didn’t go according to plan (and what came from it). Watch live: bishopfox.com/resources/re...

👑 #BloodHound(dot)py takes the crown! Your 2025 Ultimate Red Team Tool has been decided. After a stacked bracket and six rounds of voting, AD mapping reigns supreme. Shoutout to #AzureHound for a strong finals run—and everyone who showed up to vote. #cybersecurity #redteam

Join @alethe.bsky.social for a behind-the-scenes look at real #RedTeam ops: successes, failures, and the lessons that could level up your security game. #cybersecurity bishopfox.com/resources/re...

Just finished my 3rd year talking to K–6 students about cybersecurity careers—Zootopia-themed red + blue team storyline, real tools, and stories (redacted, of course). Huge thanks to @bishopfox.bsky.social for the support. These kid make me optimistic for the future. #CyberSecurity #STEM #CareerDay

The #FinalFour are here. From 32 tools to just 4 contenders—our Ultimate #RedTeam Tool Showdown is down to the best of the best. • Sliver vs BloodHound.py • AzureHound vs Scapy Cast your vote and help crown the champion! Voting is live now: bishopfox.com/redteam-tool...

New report reveals a surge in third-party breaches across industries — with nearly 1 in 3 breaches tied to vendors. Retail, tech, and energy sectors were hit hardest. #cybersecurity #riskmanagement siliconangle.com/2025/03/26/s...

Rust is gaining traction in malware development—offering evasion advantages over C. Security Consultant Nick Cerne breaks down why, compares reverse engineering challenges, and builds a Rust-based dropper to stage Sliver. bishopfox.com/blog/rust-fo...

The top Red Team tools are battling for a spot in the Final Four. Who moves on? You decide. • Sliver vs. Metasploit • BloodHound vs. GhostPack • AzureHound vs. MicroBurst • Scapy vs. EvilGinx Voting is live through Monday! bishopfox.com/redteam-tool...

Jake Krasnov: From Aerospace to Cybersecurity podcasters.spotify.c...

Tomcat CVE-2025-24813: What You Need to Know A lot of noise is swirling around this Apache Tomcat RCE chain—but should you be worried? Our security researcher Jon Williams breaks it down. Subscribe to our blog for all the latest updates: bishopfox.com/blog

Keeping up with vulnerabilities shouldn’t slow you down. With Cosmos now integrated with Jira, security teams can automatically sync exposures, reduce manual tracking, and keep remediation moving—without the extra hassle. #AttackSurfaceManagement #ASM Less friction, faster fixes. See how it works:

The first round is in the books and the 2025 Ultimate Red Team Tool Showdown is heating up! We’re down to our "Sweet 16" tools, the top 4 from each division. Only 8 will advance—who makes the cut? Cast your vote now and decide who moves on. bishopfox.com/redteam-tool...

Join Principal Researcher @theoradical.bsky.social for a @darkreading.bsky.social panel on “The Promise and Perils of AI.” Learn: • How attackers are using #AI • AI’s role in #DevSecOps and #SecOps • Strategies for security teams March 20, 2025 2:35-3:20 p.m. ET bishopfox.com/events/rob-r...

🚨 The 2025 Ultimate Red Team Tool Showdown is here! 🚨 We’re putting the top offensive security tools head-to-head, but only ONE will take the crown. And it’s all up to YOU! Check out the full bracket & cast your votes: bishopfox.com/redteam-tool...

Vulnerability management just got smoother. Cosmos now integrates with #Jira! 🔹 Auto-create structured tickets 🔹 Get real-time alerts 🔹 Secure authentication Faster remediation, better workflows, and more automation for security teams. Learn more: bishopfox.com/news/bishop-...

Missed our live webcast? No worries—it’s now available on demand! Red Team Practice Director Trevin Edgeworth covers when (and when NOT) to #RedTeam, must-have security practices, and whether to build or buy your Red Team program. bishopfox.com/resources/re...

Traditional security models often focus on individual vulnerabilities, but attack graphs provide a big-picture view, showing how weaknesses can be chained together to create real-world attack paths. From @thehackernews.bsky.social thehackernews.com/2025/03/outs...

We’re excited to officially welcome Christopher Martin as our new COO! With a track record of scaling startups into multi-billion-dollar companies while keeping culture and quality at the forefront, he’s already making an impact. Welcome to the #FoxDen! bishopfox.com/news/bishop-...

Cisco has rolled out a fix, but admins shouldn’t just wait for updates. Rotate credentials now, enforce secure transport, and audit logs for exposure.

New research from #tamnoon analyzed 4.76 million #CNAPP alerts over 12 months, revealing why critical vulnerabilities sit open for months and what security teams can do about it. tamnoon.io/state-of-clo...

History repeats itself—even in cybersecurity. In his new article for @securityweek.bsky.social, Red Team Practice Director Trevin Edgeworth breaks down five security failures that keep showing up in real-world incidents and how to avoid them. www.securityweek.com/failure-rins...

Now available on demand: "Red Teaming: Is Your Security Program Ready for the Ultimate Test?" #RedTeam Practice Director Trevin Edgeworth breaks down when Red Teaming is the right move, key security practices, and whether to build or buy. bishopfox.com/resources/re...

Headed to #HackGDL this weekend? Don’t miss our lineup of talks & hands-on experiences! Fri & Sat: Talks on mobile security, red teaming, #socialengineering & cloud threats. Sat: Test your #vishing skills at the Vishing Village, hosted by Bishop Fox. #cybersecurity #redteam #appsec

We decrypted #SonicOSX firmware—here’s how. Our latest research reveals what’s behind SonicWall’s encryption, plus we’re releasing #SoniCrack, an open-source tool for security research. bishopfox.com/blog/sonicwa...

Is your security program ready for a #RedTeam assessment? Join Trevin Edgeworth on Feb 25 @ 1 p.m. ET to learn: -When to Red Team (and when not to) -Must-have security practices -Build vs. buy: In-house vs. external Red Teaming bishopfox.com/resources/re...

Happening today @districtcon.bsky.social! “Tearing Down (Sonic)Walls: Reverse-Engineering SonicOSX Firmware Encryption” at 1:30 p.m. w/ @br4inde4d.bsky.social & @noperator.bsky.social. Also, get energized with free drinks at our Coffee Cart ☕️! #SonicWall #firewall bishopfox.com/events/bisho...

Feeling lost in the vast world of #cybersecurity? Catch Yael Basurto at #HackGDL: “Don’t Worry, Be Hacky: Survival Guide for Today’s Hacker” on March 1, at 12 p.m. CT. bishopfox.com/events/bisho...

Catch Iván Sánchez and Jorge Gibbs at HackGDL for: “Post-exploitation Techniques Used by Threat Actors in the Cloud” March 1 | 2 p.m. CT. Learn how attackers escalate privileges and expand access post-compromise.

Is your security program ready for a #RedTeam assessment? Before you dive in, make sure your defenses can handle real-world adversaries. Join Trevin Edgeworth on Feb 25 at 1 p.m. ET / 10 a.m. PT for a webcast on when to Red Team (and when not to) Register now: bishopfox.com/resources/re...