Resources

Downloadable PDFs

Lares Continuous Defensive Improvement Through Adversarial Simulation and Collaboration corporate profile (image)

News & Events

Blog

What Leadership Needs to See: Turning Adversary Testing Into Evidence 150 150 Andrew Heller

What Leadership Needs to See: Turning Adversary Testing Into Evidence

Executives and boards do not make decisions based on technical output. They make decisions based on clear evidence, risk narratives, and business impact. One of the most overlooked strengths of adversary testing is its ability to generate this kind of clarity. This blog explains what leadership actually needs to see and how adversary simulation provides…

read more
Audit Success vs Operational Resilience: Understanding the Gap 150 150 Andrew Heller

Audit Success vs Operational Resilience: Understanding the Gap

Compliance is a necessary part of enterprise security. It provides structure, accountability, and a baseline for control maturity. But compliance is not security. Passing an audit confirms that controls exist. It does not confirm they work under real-world attack conditions. CISOs understand this. Boards are beginning to. Attackers always have. This blog explains where compliance…

read more
Purple Teaming: The Fastest Way to Improve Detection and Response 150 150 Andrew Heller

Purple Teaming: The Fastest Way to Improve Detection and Response

Many organizations assume their detections will activate during a real intrusion. Yet when Lares runs adversary simulations, we routinely observe well-managed environments failing to detect privilege escalation, cloud role misuse, or lateral identity movement. The gap is not due to weak teams. It is due to the difference between what tools claim to detect and…

read more
From Low-Value Identity to High-Value Impact: A Realistic Attack Chain 150 150 Andrew Heller

From Low-Value Identity to High-Value Impact: A Realistic Attack Chain

A simple identity compromise can escalate into full cloud or data access. See a realistic attack chain and what it means for enterprise security teams.

read more
How Adversaries Actually Test Enterprise Environments 150 150 Andrew Heller

How Adversaries Actually Test Enterprise Environments

Most security programs are built around assessments that operate by scope. Pentests, compliance audits, and tool-driven reviews all share this constraint. They evaluate environments based on what is allowed, not based on how real attackers behave. Adversaries do not work inside scopes. They test environments the way engineers test systems. They explore, chain, pivot, escalate,…

read more
TTX and TTP Replay: The Win-Win Combo We Undervalue 1200 630 Andrew Heller

TTX and TTP Replay: The Win-Win Combo We Undervalue

Most organizations run tabletop exercises and detection tests in isolation, creating blind spots that only show up during real incidents. Pairing a tabletop exercise with a TTP replay exposes the cracks in people and process, then verifies the fixes in controls and telemetry. This combined approach delivers the evidence needed to build a defensible, data-backed security posture.

read more
From Compliance to Combat: Why Financial Services Still Bleed 1200 630 Andrew Heller

From Compliance to Combat: Why Financial Services Still Bleed

Audit-ready is not attack-ready. Lares shows financial institutions how adversaries bypass compliance to target payments, PII, and mainframes.

read more
AI Didn't Breach You. Your Configuration Did. 1200 630 Andrew Heller

AI Didn't Breach You. Your Configuration Did.

Despite headlines about autonomous LLM-driven cyberattacks, recent incidents like the ServiceNow Count(er) Strike vulnerability and so-called “LLM hijacking” campaigns all came down to old techniques: enumeration, poor ACLs, and exposed credentials.

read more
The MFA That Wasn’t (Part 2) 1200 630 Andrew Heller

The MFA That Wasn’t (Part 2)

We didn’t escalate privileges. We didn’t break anything.
We authenticated, then watched the CRM leak full names, departments, employee IDs, and account IDs into the browser.

Everything trusted the login.
And that trust is what got them compromised.

read more
What Your Pentest Isn't Telling You 1200 630 Andrew Heller

What Your Pentest Isn't Telling You

Passing a penetration test doesn’t mean you’re secure. Most pentests follow strict rules and timelines that attackers ignore. Red Teaming simulates real-world adversaries to reveal how threats move, persist, and evade detection. Purple Teaming turns these insights into immediate defensive improvements. Shift from compliance to true readiness with realistic attack simulation, live defender collaboration, and measurable results.

read more

Webcasts

Videos

Where There is Unity, There is Victory

[Ubi concordia, ibi victoria]

– Publius Syrus

Contact Lares Consulting logo (image)

Continuous defensive improvement through adversarial simulation and collaboration.

Email Us

©2025 Lares, a Damovo Company | All rights reserved.