Offensive security · Field notes · Research
Breaking things.
Writing down why.
Practical notes from penetration testing, adversary emulation and red team engagements - focused on techniques, tradecraft and lessons that survive contact with real environments.
Latest
Recent research
Hands-on offensive security.
Windows
Who's Afraid of the Big Bad Wolf? Abusing Windows Access Controls
Understanding Windows ACLs, access tokens and privileges - and how attackers abuse the relationships between them.
Microsoft 365
Direct Send: The Phishing Vector You May Have Missed
How unauthenticated Microsoft 365 mail flow can become a convincing phishing path during a red team.
Entra ID
Not All Tokens Are Created Equal
Refresh tokens, FOCI clients and why token theft can become much more than a single session.
About
Real-world offensive security, without the theatre.
Corporal Bugz is a personal technical blog covering penetration testing, red teaming, Active Directory, Microsoft cloud attack paths and the occasional lesson learned the hard way.
More about me