Skip to content

BKSecurity – Security Training and Penetration Testing

  • Home
  • Services, Books and Projects
    • Personal Projects
    • Books
  • Privacy Policy
  • Who Am I ?
  • My account

Category: Red Team

Encrypted Data Exfiltration with DNS

Posted on January 11, 2024January 11, 2024

Hi folks! Long time no see 😀 In this post we will write our exfiltration tool with python and DNS. We will use; First at first, we have to understand some of the DNS basics. What is DNS? Why weContinue readingEncrypted Data Exfiltration with DNS

Berk KIRAS Cat Links Penetration Testing, Red Team, Research

Weaponizing with ChatGPT

Posted on March 25, 2023March 25, 2023

Hello everyone! I’m sure you’ve heard of ChatGPT, the language model trained by OpenAI. In this blog post, we’ll explore how we can use ChatGPT to create scripts or projects for testing systems or applications. However, it’s important to noteContinue readingWeaponizing with ChatGPT

Berk KIRAS Cat Links Programming, Red Team

Analysis of Fake Application and Phishing Campaign in Turkey

Posted on September 23, 2022September 23, 2022

Hi, there! While watching videos on Youtube, I saw a Google advertisement which one of wrote a well-paid job. That seemed interesting and weird. The advertisement was about an android application on Google Play. Let’s take a look at thisContinue readingAnalysis of Fake Application and Phishing Campaign in Turkey

Berk KIRAS Cat Links Araştırma, Red Team

Chaining the Vulns (SSRF-Deserialization to RCE)

Posted on August 9, 2022August 9, 2022

Hi everyone, in this blog post we will cover SSRF, RCE and Deserialization vulnerabilities with a scenario. Despite of the knowing these vulnerabilities not enough for some red teaming / adversarial emulation operations. We should think how we can useContinue readingChaining the Vulns (SSRF-Deserialization to RCE)

Berk KIRAS Cat Links Penetration Testing, Red Team

AV Evasion – Behavioral/Heuristic Engine

Posted on May 10, 2022May 10, 2022

AV Evasion P3 – Behavioral/Heuristic Engine We discussed Static and Dynamic Engines. In this post I will try to explain heuristic engine bypassing. I don’t like to give direct techniques, like “you must use X codes or Y techniques”. TheContinue readingAV Evasion – Behavioral/Heuristic Engine

Berk KIRAS Cat Links Penetration Testing, Red Team

AV Evasion – Static and Dynamic Engines

Posted on May 9, 2022May 9, 2022

Malware Development – AV Evasion P2 Hi everyone in this post we will talk about bypassing AV Engines which we talked about on YouTube videos. Firstly, let’s remember the static and dynamic engines. What do these mean? Static Engine: TheContinue readingAV Evasion – Static and Dynamic Engines

Berk KIRAS Cat Links Araştırma, Penetration Testing, Red Team

Evasion P1 – How the Antiviruses Works?

Posted on March 6, 2022March 6, 2022

Hi everyone, welcome back. I couldn’t write any blogs due to some extra projects and my OSEP Journey. In this post series, we will talk about evasion techniques and bypassing security solutions. But, firstly we must start with understanding theseContinue readingEvasion P1 – How the Antiviruses Works?

Berk KIRAS Cat Links Penetration Testing, Red Team

Initial Access with XSS and HTML Smuggling – Theory

Posted on November 29, 2021February 27, 2022

Hi there! In this blog, we will discuss how to compromise an employee system with some tricks. We will cover a client-side attack and some chaining of techniques like phishing, HTML Smuggling, Droppers, etc. I couldn’t develop the demo labContinue readingInitial Access with XSS and HTML Smuggling – Theory

Berk KIRAS Cat Links Araştırma, Awareness, Red Team

Pivoting for Pentesters/Red Teamers

Posted on March 15, 2021March 15, 2021

Hi everyone. In this article, ı want to explain what is pivoting and telling some keywords about it. Firstly, we should know post exploitation phase or something like this 🙂 What is Post-Exploitation? We could exploit an RCE vulnerability andContinue readingPivoting for Pentesters/Red Teamers

Berk KIRAS Cat Links Penetration Testing, Red Team

Book Review: Red Team – Development and Operations

Posted on February 28, 2021March 1, 2021

Book Name: Red Team – Development And Operations Author: Joe VEST & James TUBBERVILLE Docs: https://redteam.guide/docs/ Topic: Red Teaming Level: Advanced Hi all!.. I’m here with a new book review. I’m interested in security topics like offensive security, red teaming,Continue readingBook Review: Red Team – Development and Operations

Berk KIRAS Cat Links Penetration Testing, Red Team

Posts navigation

Older posts

Location

Address

Munich, Germany

Search

What is that site ?

I am with you with a brand new recipe with book recommendations, little research, some salt, some pepper, and cybersecurity.

Copyright © 2025 Privacy Policy | Focus Stock Dark by Catch Themes
Scroll Up