Eric Gonzales Eric Gonzales

Red Teaming the Adversary: Detecting Weaponized Infrastructure Before the First Phish

Can your current reconnaissance distinguish between a harmless parked domain and weaponized infrastructure that already possesses active mail servers and cloned login portals ready to strike? This analysis explores the detection of pre-staged adversary infrastructure, demonstrating how to identify malicious intent and capability to neutralize Business Email Compromise (BEC) campaigns before the first email is ever sent.

Read More
Threat NG Staff Threat NG Staff

From Black Box to White Box: Weaponizing Developer Breadcrumbs

Could the keys to your client's internal infrastructure be hiding in the "TODO" notes and SaaS links left behind in their public source code? This analysis explores the "Developer Breadcrumbs" technique, demonstrating how to automate the discovery of hidden staging environments and internal project intel to instantly escalate your social engineering attacks.

Read More