Carel van Rooyen
banner
carelvanrooyen.bsky.social
Carel van Rooyen
@carelvanrooyen.bsky.social
red & purple team operations,*nix plumber,bass,org-(mode/roam),🇨🇭🇿🇦,🌶 & 🎶 addict. SMI²LE. Herbivore.

Opinions my own, not that of my employer
Reposted by Carel van Rooyen
Chatbots — LLMs — do not know facts and are not designed to be able to accurately answer factual questions. They are designed to find and mimic patterns of words, probabilistically. When they’re “right” it’s because correct things are often written down, so those patterns are frequent. That’s all.
June 19, 2025 at 11:21 AM
Reposted by Carel van Rooyen
I'm thrilled to announce "HTTP/1 Must Die! The Desync Endgame", at #BHUSA! This is going to be epic, check out the abstract for a teaser ↓
May 14, 2025 at 1:31 PM
Reposted by Carel van Rooyen
In his latest blog post, Marc Tanner @brain-dump.org shows how to bypass BitLocker using BitPixie (CVE-2023-21563) and signed Microsoft components only. Check out the blog post for a PoC and a demo. #BitLocker #RedTeam

blog.compass-security.com/2025/05/bypa...
May 13, 2025 at 12:38 PM
SO-CON 2025 videos are out.

youtu.be/PCZRpYGLzCQ?...
The Domain is Not a Trust Boundary – Tenant Edition | SO-CON 2025
YouTube video by SpecterOps
youtu.be
May 7, 2025 at 6:04 AM