Red Siege
banner
redsiege.com
Red Siege
@redsiege.com
Penetration Testing, Purple Team, Red Team & Adversary Emulation.
Let our Offense, Prepare your Defense. https://redsiege.com

#weareoffensive
Pinned
Offense for Defense is now On-Demand: Brought to you by CEO @timmedin.bsky.social and Security Consultant Jason Downey 🔗 training.redsiege.com

Your Lab, On Your Time

0️⃣ Zero setup. Total control.
🏰 Built for defenders who want to think like attackers
🖥️ No virtual machines. No VPNs. No downloads.
Attackers launched two campaigns hitting exposed LLM APIs with 91K+ probes, mapping AI infrastructure and hunting misconfigurations for future attacks.

via @darkreading.bsky.social

www.darkreading.com/endpoint-sec...

#hacking #infosec #cybersecurity
Two Separate Campaigns Target Exposed LLM Services
A total of 91,403 sessions targeted public LLM endpoints to find leaks in organizations' use of AI and map an expanding attack surface.
www.darkreading.com
January 12, 2026 at 9:47 PM
BreachForums suffered a leak exposing ~324K user records, including names and some public IPs; admins say an old backup was briefly exposed.

via @bleepingcomputer.com

#hacking #infosec #cybersecurity

www.bleepingcomputer.com/news/securit...
BreachForums hacking forum database leaked, exposing 324,000 accounts
The latest incarnation of the notorious BreachForums hacking forum has suffered a data breach, with its user database table leaked online.
www.bleepingcomputer.com
January 12, 2026 at 6:46 PM
Here's what we have coming up this week!

#hacking #infosec #cybersecurity
January 12, 2026 at 2:47 PM
January 9, 2026 at 2:33 PM
SSL pinning is great for security, until you need to test. Security Consultant Stuart Rorer shows you how to bypass it without breaking your flow 🔗 redsiege.com/bypass

#hacking #infosec #cybersecurity
January 8, 2026 at 6:20 PM
Thanks to our Senior Security Consultant Corey Overstreet for leading the first Wednesday Offensive of 2026! Great discussion about our approach to assumed breach assessments in the cloud.

We'll see y'all next week 🔗 redsiege.com/wedoff

#hacking #infosec #cybersecurity
January 7, 2026 at 7:32 PM
Your 2nd favorite show on the internet has returned! We're back with the Wednesday Offensive!

Today we have our very own Corey Overstreet with "The Red Siege Approach to Assumed Breach Assessments in the Cloud"

See you at 130pm ET 🔗 redsiege.com/wedoff

#hacking #infosec #cybersecurity
January 7, 2026 at 2:41 PM
How do attackers stay stealthy without burning the endpoint? In this SiegeCast, Red Siege consultants Justin Palk and Ian Briley break down proxy-based evasion techniques.

🔗 redsiege.com/notrace

#hacking #infosec #cybersecurity
January 6, 2026 at 9:34 PM
In this Red Siege Knowledge Brief, CEO @timmedin.bsky.social sits down with Principal Security Consultant Mike Saunders to explore a clever red team technique: concealing shellcode within image files to enable stealthy payload delivery.

youtu.be/_XKDH5rjixc?...
Hiding Shellcode in Images
YouTube video by Red Siege
youtu.be
January 6, 2026 at 2:34 PM
Kimwolf botnet has infected ~2M devices via insecure Android TV boxes and proxy networks, letting attackers breach networks and launch fraud and DDoS.

via KrebsonSecurity

krebsonsecurity.com/2026/01/the-...

#hacking #infosec #cybersecurity
The Kimwolf Botnet is Stalking Your Local Network
The story you are reading is a series of scoops nestled inside a far more urgent Internet-wide security advisory. The vulnerability at issue has been exploited for months already, and it's time for a…
krebsonsecurity.com
January 5, 2026 at 6:03 PM
Here's what we have coming up!

#hacking #infosec #cybersecurity
January 5, 2026 at 2:33 PM
New Year. Same Mission. Let's get to work!

#hacking #infosec #cybersecurity
January 1, 2026 at 2:13 PM
Get a head start on your resolutions with Red Siege Training, future you will thank you!

Last chance to save on these courses:

🛡️ Offense for Defense 🔗 redsiege.com/o4d

⚔️ Penetration Testing: Beyond the Basics with Tim Medin 🔗 redsiege.com/btb

#hacking #infosec #cybersecurity #training
December 31, 2025 at 2:40 PM
Happy Holidays from the Red Siege team! Here's to rest, happiness, and a fantastic new year ahead.

#hacking #infosec #cybersecurity
December 24, 2025 at 2:02 PM
We’ve wrapped up Wednesday Offensive for this year, but we’re already booking guests for 2026!

It’s a simple 30 minute chat. No slides, no prep-heavy presentation, just an easy, fun conversation.

If you're interested head to redsiege.com/wedoff-guest

#hacking #infosec #cybersecurity
December 23, 2025 at 2:31 PM
EDR flagging your payload for high entropy? Principal Security Consultant Mike Saunders has a fix.

In this Red Siege Knowledge Brief he dives into Jargon, Mike's tool that disguises raw shellcode as innocent English words.

🔗 youtu.be/5PivPCtwyqA?...

#hacking #infosec #cybersecurity
Shellcode Obfuscation Made Simple
YouTube video by Red Siege
youtu.be
December 22, 2025 at 6:24 PM
Only 3 days left to grab the Red Siege Training Holiday Bundle!

Get Offense for Defense AND Penetration Testing: Beyond the Basics for just $849 until Dec 25 🔗 redsiege.com/holiday-bundle

Learn from the best. Secure the rest.

#hacking #infosec #cybersecurity #training
OFFENSE / DEFENSE HOLIDAY DEAL
The Cybersecurity Training combo you have been looking for, just in time for the Holidays!
redsiege.com
December 22, 2025 at 2:28 PM
An automated password-spraying campaign is targeting Palo Alto GlobalProtect and Cisco SSL VPN gateways, using thousands of IPs to probe for weak credentials rather than exploiting vulnerabilities.

via @bleepingcomputer.com

www.bleepingcomputer.com/news/securit...
New password spraying attacks target Cisco, PAN VPN gateways
An automated campaign is targeting multiple VPN platforms, with credential-based attacks being observed on Palo Alto Networks GlobalProtect and Cisco SSL VPN.
www.bleepingcomputer.com
December 18, 2025 at 7:27 PM
Only 7 days left to grab the Red Siege Training Holiday Bundle!

Get Offense for Defense AND Penetration Testing: Beyond the Basics with @timmedin.bsky.social for just $849 until Dec 25🔗 lnkd.in/ecaNEFF4

Learn from the best. Secure the rest.

#hacking #infosec #cybersecurity #training
OFFENSE / DEFENSE HOLIDAY DEAL
The Cybersecurity Training combo you have been looking for, just in time for the Holidays!
redsiege.com
December 18, 2025 at 2:43 PM
Thank you Sean Metcalf for coming on today and helping us end the year with a bang! We'll be back with the Wednesday Offensive on Jan 7 ❄️

#hacking #infosec #cybersecurity
December 17, 2025 at 8:25 PM
Time for the last Wednesday Offensive of the year! Sean Metcalf from @trustedsec.com will be leading today's discussion on the current state of Active Directory & Entra ID.

See you at 130pm ET 🔗 redsiege.com/wedoff

#hacking #infosec #cybersecurity
December 17, 2025 at 2:36 PM
In "Relics of the Past" Security Consultant Stuart Rorer provides insight on how to leverage past frameworks and old configuration files to assist in your penetration testing.

Read 🔗 redsiege.com/relics

#hacking #infosec #cybersecurity
December 16, 2025 at 9:21 PM
Hackers are exploiting two critical Fortinet authentication bypass vulnerabilities (CVE-2025-59718 and CVE-2025-59719) to gain unauthorized administrative access across multiple Fortinet products.

via @bleepingcomputer.com

www.bleepingcomputer.com/news/securit...

#hacking #infosec #cybersecurity
Hackers exploit newly patched Fortinet auth bypass flaws
Hackers are exploiting critical-severity vulnerabilities affecting multiple Fortinet products to get unauthorized access to admin accounts and steal system configuration files.
www.bleepingcomputer.com
December 16, 2025 at 6:27 PM
🔔TOMORROW🔔 It's the last Wednesday Offensive of the year! Sean Metcalf from @trustedsec.com will be leading the discussion on the current state of Active Directory & Entra ID.

Join the conversation at 130pm ET 🔗 redsiege.com/wedoff

#hacking #infosec #cybersecurity
December 16, 2025 at 2:41 PM