Red Team
Red team research and penetration testing methodologies from the Kaimz offensive security team. Covers Active Directory attacks, network exploitation, and social engineering.
6 articles
Red Teaming My Own Home Network: 6 Things I Found in 48 Hours
I’ve spent the last several years breaking into corporate networks professionally. Last weekend I finally turned those skills on my own home…
Why Your “Air-Gapped” Network Probably Isn’t (And How Attackers Cross the Gap)
The term “air-gapped” gets thrown around a lot in critical infrastructure and OT security conversations. The implication is clear: no network connection,…
How We Run Penetration Tests: The Kaimz Engagement Methodology
What Most Penetration Tests Get Wrong The security industry has a penetration testing problem. Too many “pentests” are little more than automated…
Social Engineering Assessments: Testing the Human Firewall
The Most Underestimated Attack Vector In a survey of major breaches between 2020 and 2025, social engineering was the initial access vector…
Active Directory Lateral Movement: Beyond Pass-the-Hash
Introduction Modern Active Directory environments have largely mitigated Pass-the-Hash through Credential Guard and Protected Users. This post covers three lesser-known lateral movement…
I Found a Misconfigured S3 Bucket Exposing 500,000 Customer Records — Here’s Exactly How
It was a Tuesday afternoon. I was doing routine OSINT recon on a client engagement — mapping their external attack surface before…