Sign in

coreimpact.bsky.social

@coreimpact.bsky.social
12 followers 4 following 24 posts
PostsRepliesMedia
coreimpact.bsky.social @coreimpact.bsky.social · 7h
Fortra Principal Exploit Writer Ricardo Narvaja analyzes CVE-2026-81963, a Windows CBS local privilege escalation vulnerability that could allow a controlled dpx.dll to load inside the SYSTEM-level TiWorker.exe process. Read the technical analysis and patch review: ow.ly/z2K250ZTarf
010
coreimpact.bsky.social @coreimpact.bsky.social · 29/09/2026
SecTor 2026 is coming up and Fortra will be in Toronto. Connect with Connor Johnson, Nick O’Hara, and Jasmine Zaker at booth #621 for offensive security discussions and demos. If you’re attending SecTor, stop by and see us!
001
coreimpact.bsky.social @coreimpact.bsky.social · 16/09/2026
Tomorrow at 44CON: Cobalt Strike Fundamentals. Join Jasmine Zaker, Senior Solutions Engineer at Fortra, for a hands-on session covering command and control and code execution fundamentals in Cobalt Strike. 📍 Novotel London West 📅 September 17
000
coreimpact.bsky.social @coreimpact.bsky.social · 14/09/2026
LegacyHive goes beyond “Hive loaded.” New research shows the public PoC can modify a protected administrator registry hive and influence a later High-integrity process. See what the testing revealed. ow.ly/qF4b50ZNoP3 #WindowsSecurity #VulnerabilityResearch #CyberSecurity
000
coreimpact.bsky.social @coreimpact.bsky.social · 16/07/2026
Most systems you can pull offline to test. A hospital's, you can't. See how a #pentest continuously covers the patient portal, EHR, and connected medical devices without disrupting care, from recon to final report: ow.ly/4P3q50ZiQG4
000
coreimpact.bsky.social @coreimpact.bsky.social · 02/07/2026
For a retail bank, a #pentest does two jobs: surface what an attacker could exploit, and prove to PCI DSS and FFIEC auditors that you looked. See how a full engagement covers both, from recon to final report. www.coresecurity.com/resources/case…
000
coreimpact.bsky.social @coreimpact.bsky.social · 30/06/2026
Get a detailed analysis of CVE-2026-35273, a serious vulnerability affecting Oracle PeopleSoft PeopleTools. Learn about how attackers can use this server-side forgery weakness and how the Fortra FIRE team created an exploit for Core Impact. ow.ly/1qnj50ZiIr3
000
coreimpact.bsky.social @coreimpact.bsky.social · 25/06/2026
What does a federal pen test look like? Get the full breakdown on how agencies use them to meet NIST/FISMA requirements, earn citizen trust, and harden defenses before an attacker finds the gaps: www.coresecurity.com/resources/case…
000
coreimpact.bsky.social @coreimpact.bsky.social · 19/05/2026
Impacket 0.13.1 is live! This release includes new relay surfaces, stronger support for modern Windows and SQL Server environments, and a set of practical improvements across the examples scripts. Check out the blog post to get more details: www.coresecurity.com/blog/whats-new…
000
coreimpact.bsky.social @coreimpact.bsky.social · 29/04/2026
Government security teams need an efficient, repeatable way to prove which security flaws, like misconfigurations and application vulnerabilities, pose real risk to operations and sensitive data. See how Core Impact can help. #PenTesting 👉https://www.coresecurity.com/industries/government
000
coreimpact.bsky.social @coreimpact.bsky.social · 27/04/2026
The Core Impact exploit library is always expanding, as our our expert researchers continue to expand exploit coverage across operating systems, enterprise applications, and network services. Check out our quarterly recap to find out the latest additions: ow.ly/RqKu50YQo7x
000
coreimpact.bsky.social @coreimpact.bsky.social · 22/04/2026
Looking to upgrade your offensive security? Check into one of our Adversary Emulation Suites! Choose from our Red Teaming or Offensive Security Suites and discover the comfort of advanced tools and training. Learn more: ow.ly/Nke050YO5AK #redteaming #offsec #securitysuites
000
coreimpact.bsky.social @coreimpact.bsky.social · 16/04/2026
Headed to Black Hat Asia? We'll see you there! Stop by booth #515 to discuss all things #offsec and then head over to the business hall to check out a speaking session from expert Kyle Avery!
000
coreimpact.bsky.social @coreimpact.bsky.social · 16/03/2026
We're wide awake for Insomni'hack ! Meet us in the conference hall to talk through offsec techniques, tooling decisions, and the patterns we’re all seeing in today's engagements. #silversponsor #insomnihack
000
coreimpact.bsky.social @coreimpact.bsky.social · 04/03/2026
Insomni'hack is almost here, and we’re so excited we can hardly sleep! Swing by our booth to talk shop about the latest offsec tools, techniques, and trends. We can’t wait to connect with you! #silversponsor #insomnihack #INSO26
000
coreimpact.bsky.social @coreimpact.bsky.social · 25/02/2026
In his latest blog, Core Security's own Ricardo Narvaja provides a PoC related to CVE-2026-2636, a blue screen of death (BSoD) on Windows CLFS driver www.coresecurity.com/blog/cve-2026-…
000
coreimpact.bsky.social @coreimpact.bsky.social · 06/02/2026
In 2025 alone, our expert #exploit writers have added 44 new exploits to the Core Impact library, ensuring users can safely run effective pen tests. Get details on recently released exploits: www.coresecurity.com/blog/core-impa…
000
Reposted by @coreimpact.bsky.social
Cobalt Strike @cobaltstrike.bsky.social · 05/02/2026
Moseying through the stargate and heading to Denver for Wild West Hackin’ Fest #MileHigh2026! Swing by booth #12, where our red team pros will be on deck, ready to talk trends, swap stories, and share their offensive security expertise See you on the cyber‑frontier, Wild West Hackin' Fest!
001
coreimpact.bsky.social @coreimpact.bsky.social · 23/12/2025
Seasons Greetings and Happy Holidays from Core Security! Here’s to a new year of impactful exploits and resilient defenses!
000
coreimpact.bsky.social @coreimpact.bsky.social · 10/12/2025
Landed in London for Black Hat Europe? We're ready and waiting to talk all things #offsec in the Business Hall at Booth 117! See you there! #BHEU
000
coreimpact.bsky.social @coreimpact.bsky.social · 09/12/2025
Core Impact 21.8 is live! This release is all about efficiency with smarter agent deployment (watch the demo below!), better reporting, smoother integration, and more. Check out the details in the blog: www.coresecurity.com/blog/core-impa…
000
coreimpact.bsky.social @coreimpact.bsky.social · 09/12/2025
Landed in London for Black Hat Europe? We're ready and waiting to talk all things #offsec at Booth 117! #BHEU
000
coreimpact.bsky.social @coreimpact.bsky.social · 23/10/2025
Attackers thrive on weak spots—but you can close the gaps. From forgotten devices to risky access policies, every entry point matters. Our latest blog reveals 7 attack vectors that are easy to miss and how to secure them before they become a problem. ow.ly/gfbR50XgqhU
000
coreimpact.bsky.social @coreimpact.bsky.social · 22/10/2025
New release! Version 0.13 of #Impacket includes new attack paths and relay tricks, channel binding updates, MSSQL workflow upgrades, SMB Improvements, and more. Learn all the details of the new release in the update blog: www.coresecurity.com/blog/whats-new…
010
coreimpact.bsky.social @coreimpact.bsky.social · 15/10/2025
The most dangerous assets are the ones you don’t know you have. ⚠️ Pen tests bring forgotten infrastructure to the surface so you can address it – before attackers do. ➡️ Learn how to find how much technical debt your company carries in our latest blog: ow.ly/v3um50XbZ6r
010