<feed xmlns="http://www.w3.org/2005/Atom"> <id>https://ring0shady.github.io/</id><title>Ring0Shady</title><subtitle>Security Researcher focused on the architecture of modern threats. Specializing in Kernel-mode exploitation, custom malware development, and advanced Red Teaming methodologies. This space serves as a technical log for binary analysis, debugging deep system internals, and crafting low-level exploits from scratch.</subtitle> <updated>2026-06-08T23:31:44+00:00</updated> <author> <name>Hossam Ayman Shady</name> <uri>https://ring0shady.github.io/</uri> </author><link rel="self" type="application/atom+xml" href="https://ring0shady.github.io/feed.xml"/><link rel="alternate" type="text/html" hreflang="en" href="https://ring0shady.github.io/"/> <generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator> <rights> © 2026 Hossam Ayman Shady </rights> <icon>/assets/img/favicons/favicon.ico</icon> <logo>/assets/img/favicons/favicon-96x96.png</logo> <entry><title>Mastering the Terminal — Essential CLI Shortcuts</title><link href="https://ring0shady.github.io/posts/gemini-code-1780961075020/" rel="alternate" type="text/html" title="Mastering the Terminal — Essential CLI Shortcuts" /><published>2026-06-01T08:00:00+00:00</published> <updated>2026-06-08T23:31:28+00:00</updated> <id>https://ring0shady.github.io/posts/gemini-code-1780961075020/</id> <content type="text/html" src="https://ring0shady.github.io/posts/gemini-code-1780961075020/" /> <author> <name>Hossam Ayman Shady</name> </author> <category term="Technology" /> <category term="Devops" /> <summary>A quick guide to the absolute essential command-line shortcuts to speed up your daily workflow.</summary> </entry> <entry><title>Windows Drivers &amp; Kernel Exploitation: From Development to EDR Bypass</title><link href="https://ring0shady.github.io/posts/windows-driver-kernel-exploitation/" rel="alternate" type="text/html" title="Windows Drivers &amp;amp; Kernel Exploitation: From Development to EDR Bypass" /><published>2026-05-11T18:00:00+00:00</published> <updated>2026-05-11T18:00:00+00:00</updated> <id>https://ring0shady.github.io/posts/windows-driver-kernel-exploitation/</id> <content type="text/html" src="https://ring0shady.github.io/posts/windows-driver-kernel-exploitation/" /> <author> <name>security_research</name> </author> <category term="Security Research" /> <category term="Windows Internals" /> <summary>A comprehensive deep-dive into Windows kernel driver development, vulnerability classes, privilege escalation via token stealing, BYOVD attacks, and EDR callback neutralization — written for security researchers studying kernel exploitation.</summary> </entry> <entry><title>Shellcode Development — From Zero to Bypassing Windows Defender in 2026</title><link href="https://ring0shady.github.io/posts/shellcode-development-zero-to-advanced/" rel="alternate" type="text/html" title="Shellcode Development — From Zero to Bypassing Windows Defender in 2026" /><published>2026-04-02T13:00:00+00:00</published> <updated>2026-04-03T23:00:24+00:00</updated> <id>https://ring0shady.github.io/posts/shellcode-development-zero-to-advanced/</id> <content type="text/html" src="https://ring0shady.github.io/posts/shellcode-development-zero-to-advanced/" /> <author> <name>Hossam Ayman Shady</name> </author> <category term="Malware Development" /> <category term="Red Team" /> <summary>A comprehensive guide to shellcode development in C/C++ — from understanding what shellcode is, through basic execution techniques, to advanced EDR/AV bypass methods including direct syscalls, indirect syscalls, sleep obfuscation, and process injection. Covers Windows 10 and 11 protections up to 2026.</summary> </entry> <entry><title>Active Directory Certificate Services (AD CS) Attacks — Complete Guide to All 11 ESC Techniques</title><link href="https://ring0shady.github.io/posts/adcs-complete-attack-guide/" rel="alternate" type="text/html" title="Active Directory Certificate Services (AD CS) Attacks — Complete Guide to All 11 ESC Techniques" /><published>2026-04-01T10:00:00+00:00</published> <updated>2026-04-01T12:04:18+00:00</updated> <id>https://ring0shady.github.io/posts/adcs-complete-attack-guide/</id> <content type="text/html" src="https://ring0shady.github.io/posts/adcs-complete-attack-guide/" /> <author> <name>Hossam Ayman Shady</name> </author> <category term="Active Directory" /> <category term="Certificate Services" /> <summary>The most comprehensive guide to AD CS (Active Directory Certificate Services) attacks covering all 11 ESC techniques with step-by-step exploitation, enumeration, tools, commands, expected outputs, and remediation.</summary> </entry> <entry><title>ADCS Abuse — ESC9 &amp; ESC10 in Detail</title><link href="https://ring0shady.github.io/posts/esc9/" rel="alternate" type="text/html" title="ADCS Abuse — ESC9 &amp;amp; ESC10 in Detail" /><published>2026-04-01T10:00:00+00:00</published> <updated>2026-04-01T11:54:01+00:00</updated> <id>https://ring0shady.github.io/posts/esc9/</id> <content type="text/html" src="https://ring0shady.github.io/posts/esc9/" /> <author> <name>Hossam Ayman Shady</name> </author> <category term="Active Directory" /> <category term="ADCS" /> <summary>A deep-dive into Active Directory Certificate Services ESC9 and ESC10 privilege escalation techniques — theory, enumeration, exploitation, detection, and remediation.</summary> </entry> </feed>
