<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Derek Martin — Blog]]></title><description><![CDATA[Red Team Operator & Security Engineer — blog, projects, and notes on offensive security.]]></description><link>https://derekmartin.xyz</link><generator>GatsbyJS</generator><lastBuildDate>Thu, 26 Mar 2026 16:03:47 GMT</lastBuildDate><item><title><![CDATA[Weekly Vulnerability Roundup — February 27, 2026]]></title><description><![CDATA[Three major vulnerability stories this week, each targeting a different part of the stack. A CVSS 10.0 Cisco SD-WAN zero-day that's been…]]></description><link>https://derekmartin.xyz/blog/weekly-vuln-roundup-2026-02-27</link><guid isPermaLink="false">https://derekmartin.xyz/blog/weekly-vuln-roundup-2026-02-27</guid><pubDate>Fri, 27 Feb 2026 00:00:00 GMT</pubDate></item><item><title><![CDATA[There Are Many More Pentesters Than Jobs]]></title><description><![CDATA[The number was always big enough to be its own argument. Three and a half million. That was the figure — three and a half million unfilled…]]></description><link>https://derekmartin.xyz/blog/there-are-no-jobs</link><guid isPermaLink="false">https://derekmartin.xyz/blog/there-are-no-jobs</guid><pubDate>Sun, 22 Feb 2026 00:00:00 GMT</pubDate></item><item><title><![CDATA[Offensive Security Weekly: February 20, 2026]]></title><description><![CDATA[Three stories, examined with appropriate skepticism. 1. PromptSpy: First AI-Powered Android Malware — Or Just a Lab Curiosity?

ESET…]]></description><link>https://derekmartin.xyz/blog/offensive-security-weekly-feb20-2026</link><guid isPermaLink="false">https://derekmartin.xyz/blog/offensive-security-weekly-feb20-2026</guid><pubDate>Fri, 20 Feb 2026 00:00:00 GMT</pubDate></item><item><title><![CDATA[Abusing MSBuild for Defense Evasion: A Detection Engineering Playbook]]></title><description><![CDATA[MSBuild is a trusted Microsoft binary that ships with every Windows installation — and it's a favorite tool for adversaries looking to…]]></description><link>https://derekmartin.xyz/blog/msbuild-defense-evasion</link><guid isPermaLink="false">https://derekmartin.xyz/blog/msbuild-defense-evasion</guid><pubDate>Thu, 12 Feb 2026 00:00:00 GMT</pubDate></item><item><title><![CDATA[Building a Custom C2 Channel Over DNS: Lessons from the Lab]]></title><description><![CDATA[Off-the-shelf C2 frameworks are powerful, but they come with known signatures. When you need to blend into normal network traffic, building…]]></description><link>https://derekmartin.xyz/blog/c2-over-dns</link><guid isPermaLink="false">https://derekmartin.xyz/blog/c2-over-dns</guid><pubDate>Wed, 28 Jan 2026 00:00:00 GMT</pubDate></item><item><title><![CDATA[Using LLMs to Accelerate Recon: What Works, What Doesn't]]></title><description><![CDATA[I integrated GPT-4 into our red team reconnaissance and vulnerability triage workflow and cut manual effort by roughly 30%. Here's exactly…]]></description><link>https://derekmartin.xyz/blog/llm-recon-automation</link><guid isPermaLink="false">https://derekmartin.xyz/blog/llm-recon-automation</guid><pubDate>Sat, 10 Jan 2026 00:00:00 GMT</pubDate></item><item><title><![CDATA[Running 15 Purple Team Tests a Month: My Framework]]></title><description><![CDATA[Purple teaming at scale requires structure. When you're running roughly 15 tests per month across a large enterprise, you can't afford to…]]></description><link>https://derekmartin.xyz/blog/purple-team-framework</link><guid isPermaLink="false">https://derekmartin.xyz/blog/purple-team-framework</guid><pubDate>Fri, 19 Dec 2025 00:00:00 GMT</pubDate></item><item><title><![CDATA[From PwC Auditor to Red Team Operator: A Non-Linear Career Path]]></title><description><![CDATA[People ask me all the time how I went from auditing pension funds at PwC to breaking into enterprise networks for a living. The honest…]]></description><link>https://derekmartin.xyz/blog/career-path</link><guid isPermaLink="false">https://derekmartin.xyz/blog/career-path</guid><pubDate>Sun, 30 Nov 2025 00:00:00 GMT</pubDate></item><item><title><![CDATA[Smart Contract Auditing for Red Teamers: Where to Start]]></title><description><![CDATA[The overlap between offensive security and smart contract auditing is bigger than you think. If you can find vulnerabilities in web…]]></description><link>https://derekmartin.xyz/blog/smart-contract-auditing</link><guid isPermaLink="false">https://derekmartin.xyz/blog/smart-contract-auditing</guid><pubDate>Sat, 08 Nov 2025 00:00:00 GMT</pubDate></item><item><title><![CDATA[The OSCP Course Won't Fully Prepare You — Here's What Will]]></title><description><![CDATA[By Derek Martin | March 2025 I recently passed the OSCP exam — root and Administrator on every target. But it took me five attempts to get…]]></description><link>https://derekmartin.xyz/blog/oscp-exam-preparation-guide</link><guid isPermaLink="false">https://derekmartin.xyz/blog/oscp-exam-preparation-guide</guid><pubDate>Sat, 15 Mar 2025 00:00:00 GMT</pubDate></item></channel></rss>