Cyber Geek, Pentester, Social Engineer & all round awesome guy! Should have been in the Avengers, but all the spots were taken! Views/opinions are my own 🙊

Joined May 2014
793 Photos and videos
Pinned Tweet
23 Feb 2019
The story of me breaking into Infosec: • I don't have any degree (still don’t) • I didn't have any cyber specific certifications • I wasn't directly mentored by anybody All I had was the drive to succeed & freely available resources created by the community
1
1
19
Spence retweeted
Thanks for the overwhelming support on launch day, it is genuinely appreciated everyone who's taken the time (and their hard earned cash) to purchase the course. What I negated to include on the launch post was the functions of the platform as I've had a few people ask on DMs and figured only fair to share. Security & Account MFA with TOTP supported for additional account security. Pentest results can be found at lms.zsec.red/security/pentes… helpfully carried out by Shinobi Security Accessibility Dark mode, colour-blind modes, reduced motion, font preferences, 15 language translations with RTL support using i18next Community Private Discord server with dedicated support channels (Note that the discord server is on a manual approval basis to prevent spam and abuse) Ticket-based helpdesk (if you have feedback, bugs or other issues please open a ticket and I'll try to push fixes as soon as I can) Certificates When you finish the course you have the option to generate a certificate which will give you a PDF, PNG, JPG and also the ability to verify your certificate, see here for my test account: lms.zsec.red/verify/MAE-2026… There is also built in 'share to LinkedIn' to help you show off your completion certificate! Badges / Achievements Everyone who purchases gets access to 'achievements' and 'badges' which unlock as you progress the course to show what stage you're at, plus you can share your public page by going to badges then click share. lms.zsec.red/profile/public/… Every piece of this has been designed to make the learning experience as smooth as possible while keeping the content secure.
Today is the day and I'm sorry it's been so long, and also provisionally delayed by nearly a week. lms.zsec.red launches today with my Malwareless Adversarial Emulation (MAE) course. If you signed up for the waitlist, you should have received an email.
1
4
33
6,820
Spence retweeted
Replying to @SecEventsPen
Thank you for all of the support along the way it's been a lot of hours!
1
1
156
Having watched this go from a casual chat to what it’s now become, seen first hand all the long hours, hard work, heart and soul he’s poured into it based on countless years of experience across, it’s great to see that what Andy has built is now avaialbale!
Today is the day and I'm sorry it's been so long, and also provisionally delayed by nearly a week. lms.zsec.red launches today with my Malwareless Adversarial Emulation (MAE) course. If you signed up for the waitlist, you should have received an email.
1
2
288
Spence retweeted
Today is the day and I'm sorry it's been so long, and also provisionally delayed by nearly a week. lms.zsec.red launches today with my Malwareless Adversarial Emulation (MAE) course. If you signed up for the waitlist, you should have received an email.
9
43
229
38,011
13 Dec 2024
This is legit, totally agree @myexploit2600 🤣👍🏻
Password that’s provided for the test: YP&53-/##11IT&$$[gvA6Re14KMe^t/1tc VS 90% password choice of their domain users: Winter24
1
97
Spence retweeted
In less than 45 minutes I download free trial copies of Windows Server 2022, Win 10 Enterprise from Microsoft. Span them up in VM workstation (now free) configured both ready for a new domain, using this walkthrough github.com/myexploit/LAB/blo… Vulnerable lab built.
1
48
154
12,207
Spence retweeted
27 Oct 2024
The first of a few blog posts I have in the wings, introducing LOLSearches, living off the land searches for SharePoint and Windows Explorer github.com/ZephrFish/LOLSear… blog.zsec.uk/lolsysadmin/
2
28
83
7,573
2 Oct 2024
Thanks for the great content @zeropointsecltd - I very much enjoyed completing the 'Initial access and persistence' course over the last few days in my spare time. A great course and content to help intro and act as a reminder towards the adversarial techniques
4
127
Spence retweeted
Myself and @00Waz are releasing the Desktop Decoder today, a useful tool to easily display an encoded hex value of the Wiegand data transmitted over the wire from an Access Control reader. Great for anyone into PACs! github.com/craigsblackie/des…
1
8
20
1,720
22 Aug 2024
New Blog Post is up This short blog post will talk through what a DLL is, types of common DLL attacks, along with some of the known functions required/used to execute malicious code. alternativesec.xyz/DLLs-the-… #pentest #cybersecurity

6
10
1,163
Spence retweeted
15 Aug 2024
👋 Hey Hackers! Bookmark this FREE Course!! ⚡ CS 390R: Reverse Engineering and Vulnerability Analysis Course. Complete Course: pwn.umasscybersec.org/lectur… #reverseengineering #CyberSecurity #bugbountytips
3
106
376
20,253
21 Jul 2024
New achievement/activity unlocked … watching YouTube video via the meta quest 3 headset, the learning/ethical hacking one’s bring a totally immersive experience
3
183
21 Jul 2024
Stumbled across this YT channel - if this is your Jam, go check the channel out! Awesome set @keithhurley 🫶🏻 Trance Classics Mix 6 youtu.be/qWpM3uiKvS4?si=ROZg…

2
2
5
202
Spence retweeted
The love I got on the webcomic tweet was pretty insane so of course when i redive into a project i like to be extra and turned it into an animated web comic instead 😊 be easy on me, i threw this together in under 24 hours, but let me know if you see the vision. p.s. its not too hard to add additional characters 😉
25
9
139
8,283
16 Jul 2024
Having seen @ZephrFish prep and plan for this, anyone who goes through it will be in for a great experience! Awesome work @inversecos @svch0st @ZephrFish and @XintraOrg 👏🏻
16 Jul 2024
NEW LAB RELEASE: TechTonik Inc 🥳 End-to-end emulation of a CISA write-up about Russian Intelligence attacking Jetbrains to target tech companies (APT29) 👇Solve the incident here 👇 xintra.org Test your detection skills on: 👀 TeamCity Exploitation (N-Day) 👀 Malicious Drivers 👀 Linux Windows Forensics 👀 DLL Hijacking Lab Contributors Adversarial Emulator @ZephrFish Incident Responder @svch0st @XintraOrg
1
1
7
2,823
Spence retweeted
11 Jul 2024
I might be looking for a Belgium-based medior/senior penetration tester soon. If you love working with a badass team, testing awesome customers, and helping blue teams get better … my DMs are open!
1
12
14
5,054
Spence retweeted
12 Jul 2024
I'm getting excited about attending @Steel_Con next week! Even made a lovely opening slide for my talk. I'm on from 11 - 12, and then you'll want to stay to see my friend @myexploit2600 who's on right after.
1
3
18
1,117
10 Jul 2024
This is pretty awesome and such a great addition to an amazing course! If you haven’t checked out @Antonlovesdnb’s Constructing Defence course, you’re missing out!
10 Jul 2024
💥Big day for Constructing Defense! I'm super excited to announce a brand new way to build the Constructing Defense lab via Ludus! ( ludus.cloud/ ) - this step is for folks who don't want to spend time manually configuring all the various lab components and just want to get to the TTP executions & queries. Check out the course page for more details and sign up today! course.constructingdefense.c…
3
147
Spence retweeted
I made a powershell module for hiding payloads in the pixels of an image That payload that's embedded can then be extracted and executed with the one liner that is also generated for you it really doesnt get much stealthier than this 😈
17
95
476
44,844
Spence retweeted
I made a powershell module to work with the LOLBAS project website to automate LOLBIN hunting and execution on your system this is a really cool way to learn what the current active lolbins are and how to use them
10
57
264
21,428