Joined February 2022
7 Photos and videos
After quite a long break, another box of mine will be released! Enjoy!
If you wanted a soft serve, you should have gone for ice cream 😏 Here's the content that's coming to the #HackTheBox platforms this week! 🔴 PingPong, the last HTB Season 10 Machine, created by Geiseric 🔴 Plug and Pray, a Challenge created by C3TUS Find them on #HTB Labs and Enterprise Platform: okt.to/JcpXQ4 #Cybersecurity #InformationSecurity #NewRelease #Hacking #CyberSkills
1
2
121
Geiseric retweeted
29 Apr 2025
📧 GraphSpy 1.5.0 is out now and brings a brand new Outlook Graph module! ✅Read emails in any folder ✅Send HTML-formatted emails directly in GraphSpy ✅Access shared mailboxes ✅Search for sensitive information like passwords 🔗Check out GraphSpy here: github.com/RedByte1337/Graph…
1
24
60
4,963
Geiseric retweeted
15 Apr 2025
Microsoft seems to have recently deprecated the legacy account.activedirectory.windowsazure[.]com endpoint, which GraphSpy was using to list and add MFA methods for a user. GraphSpy 1.4.3 now utilizes the mysignins[.]microsoft[.]com API now (which is also a FOCI resource!)
4
17
1,324
2 Apr 2025
Unpopular opinion: if red team publishes a new research/technique, detections should not be shared as well.
9
580
Geiseric retweeted
17 Jan 2025
GraphSpy just hit 600 stars on GitHub after releasing version 1.4!✨ This version introduces the new Entra ID module, better loading animations, and JSON syntax highlighting. Check it out here: github.com/RedByte1337/Graph…
3
24
65
8,222
Geiseric retweeted
Old but gold 🏅 Vintage created by Geiseric will go live on 30 November 2024 at 19:00 UTC. Lantern will be retired! ✔️ Hard ✔️ Windows → Choose your Machine and start #hacking: okt.to/BkgKWo #HackTheBox #HTB #CyberSecurity #NewRelease
8
77
5,540
Geiseric retweeted
20 Nov 2024
Time to dive into Active Directory again - Redelegate by @Geiseric4 will be released on Thursday!
1
13
66
3,026
15 Nov 2024
As many others did, I also created a BlueSky account, hopefully leaving this platform. If you want to keep in touch bsky.app/profile/geiseric.bs…, see you there!

270
25 Oct 2024
Question for all SCCM gurus out there. I'm using version 2403 which doesn't seem to support HTTP anymore, just EHTTP or HTTPS. Does this mean I can't perform the relay attack obtaining policies?
1
2
707
Geiseric retweeted
Congratulations to @Geiseric4 for clearing our Certified Azure Red Team Professional exam! #AzADLab #CARTP #AlteredSecurity cc @nikhil_mitt x.com/AlteredSecurity/status… alteredsecurity.com/azureadl…
1
1
7
723
Geiseric retweeted
10 Aug 2024
Ifrit has been solved! Congrats on the first bloods @Geiseric4 @rootjaxk NLTE!
5
30
2,463
6 Aug 2024
Happy to say I'm now CRTM certified! Thanks @AlteredSecurity and @nikhil_mitt for the nice experience!
4
37
1,374
Geiseric retweeted
GIUDA betrayed again, how to get a new and fresh TGT (or a TGS - if you settle for little) on behalf of another logged user on a Windows machine. How it works: lnkd.in/dYDxq5nx #redteam #giuda #kerberos thx to MzHmO@github
7
28
1,997
Geiseric retweeted
22 Jul 2024
Had fun working on a PoC to execute commands in other users' sessions. This could be automated into a chain of actions potentially leading to full domain compromise. Scroll down to "Thoughts" in the repo :) github.com/Leo4j/SessionExec #Pentesting #ActiveDirectory #CyberSecurity
34
74
6,327
Geiseric retweeted
Fyi we restarted from scratch (i.e. latest Fortra’s master branch). We had gotten so « ahead » that new pending PRs were always conflicting. We will need to do that once in a while, since our end goal is not to replace the official repo 🙂‍↔️ Merged 4 PRs tonight
And welcome to @Geiseric4 who's now a maintainer on it 🚀
8
24
7,340
30 May 2024
Hello! This fork aims to be the most bleeding-edge, but of course it's not possible without your contributions. If you are making a PR to Fortra's Impacket, please mirror it here github.com/ThePorgs/impacket… Fortra=steady and stable, Porgs=BleedingEdge (less conflicts = quicker merge)
2
23
88
8,195
16 Apr 2024
Joining VulnLab has been one of the best decisions I could make, both as a player and as a content creator. Very happy to be part of this community!
16 Apr 2024
Hey Vulnlab Community! Just taking a moment to reflect on how far we've come together. It's been about a year since Vulnlab first launched, and now we've got around 100 vulnerable machines spread across 50 labs, 2300 Discord members and more than 700 lab users! The main focus always stayed on realistic enterprise environments but we also managed to dive a bit into other topics like AppSec, Reversing, Kiosk Escapes and even Windows Userland & Kernel Exploitation. I want to give a big shoutout to all of you for making this possible. Whether you're giving support to the project, solving machines in the lab or creating content - your dedication and expertise are what make Vulnlab thrive. We've got some of the most talented and dedicated players and machine authors out there. So, a huge shoutout to each and every one of you for making Vulnlab what it is today. Here's to countless more late nights, epic wins, and friendships. @0xr0BIT @k0zmer @ATeamJKR @macz01590714 @Yeeb_ @_Sm1l3z @django88_ @snowscan @d3sty_ @ottersec_ @Geiseric4 @_ar0x4 @Fumenoid @csenox1 @secure_sec77 @toonii_14 @_kavigihan @Sno0wOfficial @MantodeaSec
1
3
29
1,802
28 Mar 2024
Letsgoooo, have fun everyone! 🔥🔥
Don’t let your judgment get clouded 😶‍🌫️ The LAST Machine of this #HTB Season is coming up! Mist created by Geiseric will go live on 30 March 2024 at 19:00 UTC. Rebound will be retired! ✔️ Insane ✔️ Windows → Join the competition & start #hacking: okt.to/xcX09n
3
2
39
2,185
17 Jan 2024
Fun DA route 🧵: 1) No creds, poison the network, get some Proxy-Authentications flowing 2) Add a new computer via ntlmrelayx 3) Creds owned -> certipy find -> 2 CAs with ESC8 4) Can't relay DC, custom templates for computers 5) Relay CA1 to CA2 with the custom computer cert
3
27
161
13,806
17 Jan 2024
🧵 6) Obtain CA1 pfx 7) Authenticate and obtrain ccache/hash 8) S4U2Self -> impersonate admin 9) Damn CrowdStrike doesn't let me backup CA keys 10) Add new local admin via atexec 11) Login with RDP -> certsrv.msc -> manual CA backup 12) Exfil backup -> golden cert
1
20
1,436
17 Jan 2024
🧵 13) Forge admin cert -> can't auth coz PKINIT_NOT_TRUSTED error 14) certipy auth -ldap-shell as Admin 15) Profit!
1
15
1,213