shifttymike.bsky.social
@shifttymike.bsky.social
Reposted
Need to open doors from the outside without touching anything? Turns out thats possible with no touch sensors as @shifttymike.bsky.social details in his latest blog post.

sensepost.com/blog/2025/no...
November 19, 2025 at 1:29 PM
Reposted
Wifi hacking can be a useful tool, but people are out here grinding on WPA2 handshake cracking tutorials & menu driven attack tooling. When we built the 3rd and latest iteration of the wifi hacking course for BlackHat - we did it to show what really works and how it really works. 1/7
June 4, 2025 at 12:01 PM
What an incredible event. The talks, the CTF, everything. Just touched down back in South Africa and I’m already plotting how I’m going to get there again next year 😁
Congratulations to the organisers!
March 16, 2025 at 8:39 AM
Reposted
Some great research writeups and tool releases hitting the @sensepost.com blog and GitHub the last few days:
March 13, 2025 at 10:55 PM
Reposted
Attacks against AD CS are de rigueur these days, but sometimes a working attack doesn’t work somewhere else, and the inscrutable error messages are no help. Jacques replicated the most infuriating and explains what’s happening under the hood in this post: sensepost.com/blog/2025/di...
SensePost | Diving into ad cs: exploring some common error messages
Leaders in Information Security
sensepost.com
March 7, 2025 at 1:15 PM
Reposted
Want some handy powershell scripts to make your AD auditing life easier, Niels has your back with InvokeADCheck. Includes easy to add module system as well as consistent output and excel exports.

sensepost.com/blog/2025/in...
March 6, 2025 at 12:24 PM
Reposted
@shifttymike.bsky.social will share insights at Insomni’hack 2025 with the talk "The Spy Who Flashed Me: Exploring and defeating physical access control systems".

🔍Find the full schedule and register: insomnihack.ch/talks/the-sp...

#INSO25 #Cybersecurity #EthicalHacking #Switzerland
March 3, 2025 at 11:10 AM
Reposted
I noticed a common architecture in some manufactures' desktop software and started poking. Surely others have been here!? Queue a stream of "(lpe|rce) in $vendor" videos spamming @singe.bsky.social 🙃😂.

I finally reported all of the bugs I found (8 of them) after about a weeks work between things.
February 24, 2025 at 8:45 AM
Reposted
SensePost turned 25 today. The founders RT & Charl visited. BSides CPT sent us Orange cupcakes and nice words. Leon got LPE on a driver. Shiftty got to hacking with the new MikroTik. There was an escape room. We collected food for the local animal shelter. I like these people. I like this place.
February 14, 2025 at 6:30 PM
Reposted
Instead of relying on RemCom, what if we had a python client to interact with the latest, Microsoft signed PSExec? In this post Aurélien details how he and the team did exactly this, including a tool, some PSExec internals and detection opportunities!

sensepost.com/blog/2025/ps...
February 11, 2025 at 3:25 PM
There’s no way I could have predicted that turnout! What a privilege to kick this off, really hope to be back soon :)
Such a great turnout and talk by @shifttymike.bsky.social (so far) for the inaugural 0xC0FFEE Pretoria. Nice work organisers.
February 11, 2025 at 9:14 PM