<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"><channel><link>https://bsky.app/profile/volkis.au</link><title>@volkis.au - Volkis</title><item><link>https://bsky.app/profile/volkis.au/post/3mub5czthlp2v</link><description>Happy Birthday to our Senior Security Consultant, Nathan! 🥳&#xA;&#xA;Whether he’s performing network and web app pentests or running security reviews, Nathan brings incredible skill and genuine kindness to everything he does at Volkis.</description><pubDate>30 Aug 2026 00:32 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mub5czthlp2v</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mtzeawtjns2w</link><description>Wallpapers, T-shirt designs, and other bits with the Volkis wolf on them. We put it all in one spot. 🐺👇</description><pubDate>26 Aug 2026 22:15 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mtzeawtjns2w</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mtsbpeoo4j2k</link><description>How mature is your Essential 8 actually? Not what the checklist says but what an attacker would find.</description><pubDate>24 Aug 2026 02:41 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mtsbpeoo4j2k</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mswgztxvvn2c</link><description>Where does &#34;Volkis&#34; come from? True story.&#xA;&#xA;Matt and Alexei were brainstorming names while Alexei was in Europe. Matt suggested &#34;Volk,&#34; after Alexei&#39;s dog. Close, but not quite.</description><pubDate>13 Aug 2026 01:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mswgztxvvn2c</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3msovnortfj2n</link><description>We are honest and transparent with ourselves, our clients, and the wider community.&#xA;&#xA;A philosophy at Volkis is to be &#34;open but secure&#34;.&#xA;&#xA;We make information public by default unless its under NDA, or could be damaging.</description><pubDate>10 Aug 2026 01:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3msovnortfj2n</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3msetr4m3vt2e</link><description>We&#39;re hearing a lot about how AI-generated pentest reports and hallucinated findings are plaguing our industry.&#xA;&#xA;What do we bring? Trust! The words in our reports are our own. Putting our name on it means we stand by every word and present something you can trust.</description><pubDate>06 Aug 2026 01:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3msetr4m3vt2e</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3msc7yuuzbz2f</link><description>Happy Birthday to the big boss, Alexei! 🐺&#xA;&#xA;As one of the two founders who made Volkis possible, thank you for inspiring and leading us with kindness and genuine curiosity to give the best of ourselves</description><pubDate>05 Aug 2026 00:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3msc7yuuzbz2f</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3ms55bikuf42x</link><description>We are Volkis. A group of hackers, Australian, independent from the big players, all local.&#xA;&#xA;We are dedicated to offensive security. We love it and we do it well.</description><pubDate>02 Aug 2026 23:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3ms55bikuf42x</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mrvqypy6ck2e</link><description>Anyone else&#39;s brain switch on the second the sun goes down?</description><pubDate>31 Jul 2026 01:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mrvqypy6ck2e</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mrtaiolcko2o</link><description>Meet the operator, Nathan Jarvie, our Senior Security Consultant.&#xA;&#xA;He&#39;s a hacker with deep hands-on experience, and he&#39;s chasing every certification he can get his hands on.&#xA;&#xA;13 certifications in cybersecurity so far, with more on the way.</description><pubDate>30 Jul 2026 01:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mrtaiolcko2o</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mre5p7qwie2m</link><description>Avoid this happening. Reach out today 👇</description><pubDate>24 Jul 2026 01:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mre5p7qwie2m</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mqzyip246l2f</link><description>There was a time when companies proudly talked about what they actually stood for. Then &#34;values&#34; just became corporate posters gathering dust in boardroom hallways.</description><pubDate>20 Jul 2026 00:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mqzyip246l2f</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mqt3akq3pi2r</link><description>We just moved the Volkis Handbook from v1 to v2.&#xA;&#xA;It still publishes everything we do that isn&#39;t confidential: methodologies, sample reports, internal policies, hiring guidelines, our AI usage rules. Open but secure since day one.</description><pubDate>17 Jul 2026 06:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mqt3akq3pi2r</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mqpyabkwfl2x</link><description>We put *.volkis.com.au and *.volk.is in scope for anyone who wants to try.</description><pubDate>16 Jul 2026 00:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mqpyabkwfl2x</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mql7qkmvdd2a</link><description>Look, we could hit you with the usual corporate jargon about &#34;synergistic paradigm-shifting cyber resilience&#34;, but honestly, we’d rather just do the job properly.</description><pubDate>14 Jul 2026 03:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mql7qkmvdd2a</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mq6de5lo3m2q</link><description>22% of assessed Australian government entities hit Maturity Level 2 across the Essential Eight, and the board reads it as progress. &#xA;&#xA;ML2 measures if the control exists, but not whether they can stop a real attack.</description><pubDate>09 Jul 2026 00:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mq6de5lo3m2q</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mq3pljlywd24</link><description>Meet Matthew Strahan, Co-Founder and Managing Director at Volkis.&#xA;&#xA;At Volkis, “people first” shows up in the details: how we talks about clients, hiring, learning, remote work, culture, and even security itself.</description><pubDate>07 Jul 2026 23:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mq3pljlywd24</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mow7ccnua62q</link><description>Meet Alexei Doudkine, Co-Founder and Offensive Director at Volkis.&#xA;&#xA;Alexei is one of the reasons the Volkis voice is so direct.&#xA;&#xA;The job is to think like a hacker, explain what matters, and help the client get to a better place.</description><pubDate>23 Jun 2026 01:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mow7ccnua62q</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3moti62abtk25</link><description>86,644 Fortinet firewalls across 194 countries, compromised with verified working credentials. Banks, hospitals, telecoms, government agencies.</description><pubDate>21 Jun 2026 23:03 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3moti62abtk25</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mojmy3wjga2l</link><description>People are your strongest cybersecurity asset. The most powerful security move you can make is to build a culture that normalises good security.&#xA;&#xA;Make it normal to question someone&#39;s presence in the office, forward a suspicious email to security, lock your screen, etc.</description><pubDate>18 Jun 2026 01:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mojmy3wjga2l</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mnybxrv6ii2j</link><description>Once an attacker has obtained Domain Admin on a network, DCShadow (aka Rogue Domain Controller) is a neat technique for dumping more information and persisting access.</description><pubDate>11 Jun 2026 03:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mnybxrv6ii2j</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mntefsruhh2w</link><description>Here are a few examples of how attackers make phishing domains look convincing. Would you be fooled?</description><pubDate>09 Jun 2026 04:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mntefsruhh2w</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mngbchk3oy2t</link><description>Varonis Threat Labs disclosed &#34;GhostTree&#34;, a cool new technique that weaponises NTFS junctions for EDR evasion.&#xA;&#xA;By pointing a junction back at its own parent, an attacker creates a directory loop that yields effectively infinite paths:&#xA;C:\Parent\Child1\Child2\Child1\Child2\...</description><pubDate>03 Jun 2026 23:30 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mngbchk3oy2t</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mnedddkgx22j</link><description>There are thousands of wordlists available on the internet, but downloading them all blindly is a quick way to run out of storage and waste time.</description><pubDate>03 Jun 2026 05:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mnedddkgx22j</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mmxgwtqi7b2b</link><description>We published our internal AI usage guidelines. It covers:&#xA;&#xA;🤖 When you should (and shouldn&#39;t) use AI with client data&#xA;🤖 The acceptable way to use AI for reporting&#xA;🤖 Why you shouldn&#39;t use AI to communicate with your coworkers&#xA;&#xA;&#xA;https://handbook.volkis.com.au/operations/ai-guidelines/</description><pubDate>29 May 2026 02:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mmxgwtqi7b2b</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mmrvalulko27</link><description>Using AI for hacking is like a using the pokies.&#xA;&#xA;You pay tokens for an output, and hope that the output is good.&#xA;&#xA;The thing is, if you don&#39;t have solid knowledge of hacking, then you don&#39;t know whether the output is good.&#xA;&#xA;So you still need humans who are good at hacking.</description><pubDate>26 May 2026 21:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mmrvalulko27</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mmnf33gun62u</link><description>We took our recent Associate Security Consultant hire to shadow an internal pentest earlier this year, and it was the best.&#xA;&#xA;Alissa&#39;s training paid off on real network! It was pure joy. It brought back to the incredible rush of hacking.&#xA;&#xA;I never want to lose the love of hacking.&#xA;&#xA;Thanks Alissa!</description><pubDate>25 May 2026 02:01 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mmnf33gun62u</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mltzre4lbg2n</link><description>Back in 2018, when a CVE was released, it took 2.3 years to exploit.&#xA;2024: 56 days.&#xA;Now: 1 day.&#xA;End of 2026? 1 hour.&#xA;&#xA;Reactive approaches to security are no longer effective.&#xA;&#xA;If you want expert guidance for the new era, get in touch.&#xA;&#xA;https://www.volkis.com.au/contact/</description><pubDate>15 May 2026 00:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mltzre4lbg2n</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mk2cfhqpxx2y</link><description>🧪 Volkis Lab Challenge: Command Execution  &#xA;&#xA;Drop your payload 🐺</description><pubDate>22 Apr 2026 01:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mk2cfhqpxx2y</guid></item><item><link>https://bsky.app/profile/volkis.au/post/3mjvotql7sv2u</link><description>🧪 Volkis Lab: Privilege Escalation  &#xA;&#xA;You don’t need exploits when the system hands you the right tool.&#xA;&#xA;🐺 Can you spot it?</description><pubDate>20 Apr 2026 05:02 +0000</pubDate><guid isPermaLink="false">at://did:plc:wvxtdntdfl2dinbo5t7dwmnp/app.bsky.feed.post/3mjvotql7sv2u</guid></item></channel></rss>