Log inSign up
Orange Cyberdefense's SensePost Team
1,529 posts
Orange Cyberdefense's SensePost Team profile banner
@sensepost

Orange Cyberdefense's SensePost Team

@sensepost
Work like hell, Share all you know, Abide by your handshake, Have fun. - Dan Geer
The World
sensepost.com
Joined May 2010
317
Following
9,011
Followers
RepliesRepliesRepostsRepostsMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • @sensepost
    Orange Cyberdefense's SensePost Team
    @sensepost
    Dec 8, 2025
    A huge post detailing the discovery of 6 CVE's, and another announcing pipetap, a new Windows named pipe proxy/tool!
    @leonjza
    _leon_jacobs(💥)
    @leonjza
    Dec 7, 2025
    Two blog posts just dropped - one with the details on the bloatware pwning shenanigans I was up to earlier in the year, and another on pipetap, a new Windows named pipe proxy/tool. sensepost.com/blog/2025/pwni… sensepost.com/blog/2025/pipe…
    Image
  • @sensepost
    Orange Cyberdefense's SensePost Team
    @sensepost
    Nov 19, 2025
    Need to open doors from the outside without touching anything? Turns out thats possible with no touch sensors as @shifttymike details in his latest blog post. Link in 🧵👇
    Image
    1
  • @sensepost
    Orange Cyberdefense's SensePost Team
    @sensepost
    Jul 31, 2025
    Reverse engineering Microsoft’s SQLCMD.exe to implement Channel Binding support for MSSQL into Impacket’s mssqlclient.py. Storytime from Aurelien (@Defte_), including instructions for reproducing the test environment yourself. (link below)
    A screenshot of two windows. The top is a view of the Microsoft SQL management GUI showing that “Extended Protection” is enabled for NTLM authentication. The bottom is a terminal showing an invocation of Impacket’s mssqlclient.py successfully connecting using channel binding.
    4
  • @sensepost
    Orange Cyberdefense's SensePost Team
    @sensepost
    Jun 26, 2025
    Adriaan was struggling to get an interactive shell on the *nix application server he had popped, so he wrote a turn-based mini binary to give you a semi-interactive shell in restrictive environments. Writeup & code 👇🧵
    A screenshot of the tool in action firing up an ssh session to another host.
./shellnot --daemon &
./shellnot --session 1 --input "ssh root@2.domain.com"
./shellnot --session 1 --output
ssh root@2.domain.com

root@2.domain.com”s password:
./shellnot --session 1 --input "toor"
./shellnot --session 1 --output

Last login: Sat May 24 16:45:40 2025 from 10.0.0.2
[root@localhost ~]$ ? 
./shellnot --session 1 --input "id"
./shellnot --session 1 --output
id
uid=1001(root) gid=1001(root) groups=1001(root),970(docker),998(wheel)
    4
  • @sensepost
    Orange Cyberdefense's SensePost Team
    @sensepost
    Jun 11, 2025
    After @felmoltor argued about dependency confusion & supply chain attacks & was confused with the feasibility of doing this in 2025, he decided to take a practical approach & create his own tool 📷 to detect Orphan and Misspelled packages 📷: sensepost.com/blog/2025/deps…
Advertisement
Advertisement