Lee Chagolla-Christensen

@tifkin.bsky.social

I like making computers misbehave. Does stuff at http://specterops.io. Github: https://github.com/leechristensen Mastodon: @tifkin_@infosec.exchange

🏠 idalib is now available in IDA Home. Now hobbyists & enthusiasts can call IDA's analysis engine as a library. We're offering 30% off IDA Home until Aug 14.* Use code HOME30 at checkout. 👉 Learn More: hex-rays.com/ida-home *Offer not available for corporations, agencies or resellers.

Bild

What happens when a new Mythic agent can be generated, tested, and deployed in ~2 hours? @xpnsec.com explores "disposable tooling" and the implications for offensive operations and defenders alike. Check out the latest from GhostWorks ⬇️ https://ghst.ly/4oMyrdC

Disposable Tooling: Building LLM-Generated Mythic Agents from Prompt to Deployment

Using Claude Opus to autonomously generate Mythic C2 agents from prompt to deployment—and what that means for defenders.

ghst.ly

AI tooling and MCP servers are entering enterprises fast, often faster than security teams can assess the risks. During a recent engagement, @xpnsec.com found a new Claude Code vuln (CVE-2025-64755) while exploring MCP abuse paths. 👀 Read the details: ghst.ly/49ybl4W

An Evening with Claude (Code) - SpecterOps

This blog post explores a bug, (CVE-2025-64755), I found while trying to find a command execution primitive within Claude Code to demonstrate the risks of web-hosted MCP to a client.

ghst.ly

Happy Friday! @tifkin.bsky.social and I are happy to announce that we have cut the release for Nemesis 2.0.0 - check out the CHANGELOG for a (brief) summary of changes, and dive into our new docs for more detail! We're extremely proud and excited for this release github.com/SpecterOps/N...

GitHub - SpecterOps/Nemesis: An offensive data enrichment pipeline

An offensive data enrichment pipeline. Contribute to SpecterOps/Nemesis development by creating an account on GitHub.

github.com

Ghidra 11.3 is out! There's some awesome new features, but I want to highlight how responsive the dev team is to questions, issues, and feature suggestions. They've addressed several issues I've opened, notably a bunch of quality of life UI/UX things I've had while using Ghidra.

SlackPirate sets sail again! 🏴‍☠️ In his latest blog post, Dan Mayer intros his new PR to SlackPirate that lets you loot Slack again out of the box, a BOF to get you all the data you need to do it, & how to bee the most active slacker in your group chat. 🐝 ghst.ly/4hgwMIt

SlackPirate Set Sails Again! Or: How to Send the Entire “Bee Movie” Script to Your Friends in Slack

TLDR: SlackPirate has been defunct for a few years due to a breaking change in how the Slack client interacts with the Slack API. It has a…

ghst.ly

Want to run roadrecon, but a device compliance policy is getting in your way? You can use the Intune Company Portal client ID, which is a hardcoded and undocumented exclusion in CA for device compliance. It has user_impersonation rights on the AAD Graph 😃