// hacker hermanos
Field notes for offensive security
Red team, cloud, y más
Latest posts
-
red team
When AWS IoT Secure Tunneling Opens the Door From the Inside
Amazon's IoT Secure Tunneling reaches devices behind a firewall through AWS-managed infrastructure.
-
red team
AWS IoT Core MQTT: A C2 Credential Measured in Years
A certificate-authenticated C2 channel bounded by years instead of a session clock, carried on port 443 to an Amazon endpoint.
-
red team
Traffic Filtering on Your C2 Redirector: What to Inspect and in What Order
A layered filtering stack for C2 redirectors: network controls, User-Agent validation, HTTP methods, URI paths, headers and IP blocking.
-
red team
Serverless C2 Redirectors: Lambda Functions and Infrastructure as Code
Build a serverless C2 redirector using AWS Lambda and API Gateway, deployed with Terraform.
Hacker Hermanos is where we write down what we're learning in offensive security — red teaming, C2 and cloud — and share the videos and talks along the way.
More about us