#SOCON2025 featured deep dives into identity attack paths, adversary tradecraft, and modern detection challenges.
Watch the full talk playlist ➡️ ghst.ly/socon25-talks
We're looking ahead now to #SOCON2026! Register and save your spot ➡️ ghst.ly/socon26-regb...
🎥 Revisit your favorite #SOCON2025 talks!
All presentations, including Scott Sutherland's talk on data analysis techniques to identify, understand, attack, & remediate SMB shares in AD environments, are available at ghst.ly/socon25-talks.
Did you miss #SOCON2025? Did you have a favorite talk you'd like to rewatch?
🎥 All presentations from SO-CON 2025 are now live at ghst.ly/socon25-talks.
💻 Slides for each talk are available at ghst.ly/socon25-slides.
SOCON swag
Last week I had a fantastic experience at @specterops.bsky.social's #SOCON2025 and subsequent IDOT training. It was a great opportunity to get in touch with leading experts. Apparently I also bugged them enough to merge my small BloodHound contribution. github.com/SpecterOps/B...
I had a great time at @specterops.bsky.social #SOCON2025 in Arlington/DC!
I'm grateful I get to meet all you awesome people; community members and Specters. Huge thanks to the many speakers and trainers 💙
See you next year!
Today is the first day of training at #SOCON2025! Let us know if you are joining here in Arlington or virtually. 🧑💻
I had a great time at #socon2025! Big thanks to the SpecterOps crew for hosting. Slides for my "Hunting SMB Shares" talk are below for those who are interested.
Slides
github.com/NetSPI/Power...
PowerHuntShares
github.com/NetSPI/Power...
Had a blast at #SOCON2025!
It was great to meet up with colleagues and friends 💜
The slides from my presentation are available here: github.com/JonasBK/Pres...
That's all folks! 👋 Thank you to everyone who attended & presented talks during our #SOCON2025 conference days. Our training courses kickoff tomorrow at 9AM back at Convene.
I did a talk!! #socon2025
Gooood morning, #SOCON2025! ☀️ We are excited to get Day 2 started. Fuel up and get caffeinated before we kick off today's talks.
Day 1 at #SOCON2025 has wrapped! 👊
We will see you right back here tomorrow for even more great content from our speakers. Check out the agenda for Day 2 at specterops.io/so-con.
Smile and say cheese! 😁
As you go between sessions at #SOCON2025 make sure to snap a photo with our display on Floor 29.
If you missed the session on NTLM at #SOCON2025, you're in luck! Join @tifkin.bsky.social, @cptjesus.bsky.social, and @harmj0y.bsky.social on April 17 for a webinar discussing their research into modeling NTLM relay attacks within BloodHound.
Register today! ➡️ ghst.ly/ntlm-web
Talking tomorrow so can just enjoy today before the nerves kick in 🤣 #socon2025
Welcome to #SOCON2025! Our CEO @davidmcguire.bsky.social is on stage now for today’s opening keynote. 🎤
#SOCON2025 Time \o/
It’s time! #SOCON2025 is kicking off now. 🥳
Grab your badge & t-shirt and join your fellow conference attendees for breakfast. Follow along here for today’s schedule of events & use our hashtag to share your own updates!
We are excited to see everyone at #SOCON2025 tomorrow! 🙌
Get the details on everything you need to know before arriving at the conference: specterops.io/so-con
Super excited to be speaking at SO‑CON 2025 on March 31st with my coworker Lance Cain. We’re diving into an example attack path from real-life red team assessments by Lance Cain, Dan Mayer, myself, and the entire @specterops.bsky.social crew. specterops.io/so-con/ #SOCON2025 #redteam
This is your sign to save your spot for #SOCON2025! Hear from speakers, including BeyondTrust's Fletcher Davis who will present techniques to weaponize AD CS to gain access to the cloud through certificate template abuse & enrollment service manipulation.
Register now 👉 ghst.ly/socon-bsky
Last year, Evan McBroom introduced LSA Whisperer at #SOCON2024. He’s back for #SOCON2025 with more credential recovery techniques & major tool update that make LSA Whisperer fully assessment-ready. Don’t miss it!
Register today ▶️ ghst.ly/socon-bsky
The agenda for #SOCON2025 has dropped! 🙌
Check out the schedule below and head to ghst.ly/socon-bsky to get the scoop on all things SO-CON & to register.
How does your org use #AttackPathManagement? We want to know!
Take our survey to get a free BloodHound T-shirt and also enter to win a free ticket to #SOCON2025. The deadline to be entered to win the SO-CON pass is Thursday, Feb. 6 at 11:59 PT. ghst.ly/4ar2lwQ
Dive into real-world threat actors’ playbooks. Join Miriam Wiesner at #SOCON2025 as she explores how adversaries exploit MS Graph API to breach defenses & exfiltrate data.
Learn more 👉 ghst.ly/socon-bsky
We want to hear how security teams are approaching Attack Path Management in their security posture, so we can better enhance BloodHound.
Fill out the survey linked below and claim a free BloodHound T-shirt & have a chance to win a ticket to #SOCON2025! ghst.ly/4ar2lwQ
ICYMI: We've set a fantastic presentation lineup for #SOCON2025! 🙌
Check out the list of talks for this year's conference and register 👉 ghst.ly/socon-bsky
From understanding attacker TTPs to building bulletproof detections, our Tradecraft Analysis course teaches network defenders & red team operators to navigate Windows systems & create impactful strategies.
Register for the course happening at #SOCON2025: ghst.ly/reg-socon25-...
👻 Excited to be presenting "Abusing AUs, Confusing the SOC: Entra ID's Administrative Unit Attack Paths" at #SOCON2025, March 31-April 1! You can register to join me with discount code SOCONSPEAKER20: ghst.ly/socon25-spkr
What can you expect to learn in our Azure Security Fundamentals training at #SOCON2025? Course architect
@1cemoon.bsky.social shares that students will dive into:
➡️ Azure Resource Manager
➡️ Common security misconfigurations
➡️ Entra ID authentication
Register today: ghst.ly/reg-socon25-...