<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>GlobeTech LLC — Blog</title>
    <link>https://globetech.biz/blog/</link>
    <description>Offensive security write-ups from GlobeTech LLC.</description>
    <language>en-us</language>
    <atom:link href="https://globetech.biz/feed.xml" rel="self" type="application/rss+xml"/>
    <item>
      <title>The RETurn of AMSI – Easy DLL Patching without C3</title>
      <link>https://globetech.biz/blog/the-return-of-amsi-easy-dll-patching-without-c3/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/the-return-of-amsi-easy-dll-patching-without-c3/</guid>
      <pubDate>Mon, 16 Jun 2025 12:00:00 +0000</pubDate>
      <description>TL;DR For people that just want the slides and github link AMSI and ETW detections If you’ve been tapped into Defender (Home and / or Endpoint Product) since the end of Summer 2024, you’ve no doubt seen the newer AMSI and ETW patch detections. In fact, a lot of tooling has change</description>
    </item>
    <item>
      <title>Unveiling Vulnerabilities: The Power of Penetration Testing</title>
      <link>https://globetech.biz/blog/unveiling-vulnerabilities-the-power-of-penetration-testing/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/unveiling-vulnerabilities-the-power-of-penetration-testing/</guid>
      <pubDate>Mon, 04 Sep 2023 12:00:00 +0000</pubDate>
      <description>Human prompt: “write an article for my penetration testing website” Human paragraph: I need content for my website, not just for you, but for me. See, I won’t get good Search Engine Optimization (SEO) results unless I have content on my site. But guess what? The content I write i</description>
    </item>
    <item>
      <title>Fallacy of the OWASP Top 10</title>
      <link>https://globetech.biz/blog/fallacy-of-the-owasp-top-10/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/fallacy-of-the-owasp-top-10/</guid>
      <pubDate>Tue, 01 Aug 2023 12:00:00 +0000</pubDate>
      <description>The OWASP Top Ten is a widely recognized document that highlights the most critical security risks in web applications. It serves as a guide for developers, security professionals, and organizations to prioritize and address common vulnerabilities. Designed by the Open Web Applic</description>
    </item>
    <item>
      <title>DNS Sinkholing for ‘security’</title>
      <link>https://globetech.biz/blog/dns-sinkholing-for-security/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/dns-sinkholing-for-security/</guid>
      <pubDate>Sat, 08 Jul 2023 12:00:00 +0000</pubDate>
      <description>The Power of DNS Sinkhole Devices: Exploring the Benefits of PiHole In today’s digital landscape, online security is a top concern for individuals and organizations alike. As cyber threats continue to evolve, implementing robust defense mechanisms becomes essential. One such tool</description>
    </item>
    <item>
      <title>Evading EDR by DLL Sideloading in C#</title>
      <link>https://globetech.biz/blog/evading-edr-by-dll-sideloading-in-csharp/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/evading-edr-by-dll-sideloading-in-csharp/</guid>
      <pubDate>Fri, 19 May 2023 12:00:00 +0000</pubDate>
      <description>The blog post accompanies my public conference talks on this topic. Slides are available at the bottom. One thing I learned from doing this talk is that a surprisingly high number of InfoSec professionals believe that bypassing EDR is not possible or is an exception. It should be</description>
    </item>
    <item>
      <title>OSEP Review – The  Experienced Penetration Tester</title>
      <link>https://globetech.biz/blog/osep-review-the-experienced-penetration-tester/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/osep-review-the-experienced-penetration-tester/</guid>
      <pubDate>Sat, 05 Jun 2021 12:00:00 +0000</pubDate>
      <description>What I’ll Cover What The Course Is How OSEP compares to OSCP Similarities and differences The Course Review Who I am, and who this is aimed for My study plan and time involved PDF videos, exercises and extra miles Final Materials “Walkthrough” of how to use the Challenge labs Cha</description>
    </item>
    <item>
      <title>Spiceworld Virtual 2020 Practical Hacking</title>
      <link>https://globetech.biz/blog/spiceworld-virtual-2020-practical-hacking/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/spiceworld-virtual-2020-practical-hacking/</guid>
      <pubDate>Thu, 17 Sep 2020 12:00:00 +0000</pubDate>
      <description>Spiceworks Annual IT Conference ” https://www.spiceworks.com/spiceworld/ “ For the past few years, I’ve been going to SpiceWorld and took the opportunity this year to present. My session was focused around “practical hacking”, as in, the simple flaws that I’m going to search for </description>
    </item>
    <item>
      <title>Red Team – Windows Kits – CDB.exe</title>
      <link>https://globetech.biz/blog/red-team-windows-kits-cdb-exe/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/red-team-windows-kits-cdb-exe/</guid>
      <pubDate>Mon, 06 Jul 2020 12:00:00 +0000</pubDate>
      <description>Blog Preface – “Windows Kits” While running through some MITRE techniques, I happened upon the ADK tools and SDK tools and found a great collection of programs used for development, debugging, and administration. It just so happens, they’re also great for Red Teaming. Many of the</description>
    </item>
    <item>
      <title>Red Team – Windows Kits – ADPlus.exe</title>
      <link>https://globetech.biz/blog/red-team-windows-kits-adplus-exe/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/red-team-windows-kits-adplus-exe/</guid>
      <pubDate>Mon, 15 Jun 2020 12:00:00 +0000</pubDate>
      <description>Blog Preface – “Windows Kits” While running through some MITRE techniques, I happened upon the ADK tools and SDK tools and found a great collection of programs used for development, debugging, and administration. It just so happens, they’re also great for Red Teaming. Many of the</description>
    </item>
    <item>
      <title>OSCP Review</title>
      <link>https://globetech.biz/blog/oscp-review/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/oscp-review/</guid>
      <pubDate>Tue, 12 May 2020 12:00:00 +0000</pubDate>
      <description>This is a review of my OSCP experience. I registered in late 2018 and received my OSCP in May of 2019 with one exam attempt. This review is coming out in 2020. The Offensive Security Certified Professional is a golden standard in the CyberSecurity and Penetration Testing communit</description>
    </item>
    <item>
      <title>OSWP Review</title>
      <link>https://globetech.biz/blog/oswp-review/</link>
      <guid isPermaLink="true">https://globetech.biz/blog/oswp-review/</guid>
      <pubDate>Sun, 26 Apr 2020 12:00:00 +0000</pubDate>
      <description>This is my review of the OSWP course material. I passed this certification in late 2019. The Offensive Security Wireless Professional is a certification course and exam that tests your knowledge around wireless penetration testing. Offensive Security is easily my favorite certifi</description>
    </item>
  </channel>
</rss>
