Compass Security Blog - Offensive Defense

We just released a big update for EntraFalcon. The new Security Findings Report adds an interactive HTML overview to EntraFalcon that consolidates…

Read more

While not new, a self-referencing LNK file in combination with winget configuration instructions can be a viable initial access payload for…

Read more

Last year we wrote about a Windows 11 vulnerability that allowed a regular user to gain administrative privileges. Not long after, Manuel Kiesel from…

Read more

Over the course of 2025, we performed several hundred security assessments for our clients. In each of these, security analysts must understand a new…

Read more

NTLM is the legacy authentication protocol in Windows environment. In the past few years, I've had the opportunity to write on this blog about NTLM…

Read more