The year is almost 2026. We're still letting users double click JavaScript files in enterprise environments. 2027 is the year, I feel it. I definitely won't copy paste this post a year from now, no way.
I know a lot of people will hate me for saying this but it has to be said. I get a lot of DMs saying RT is getting harder everyday, traditional loaders dont work anymore, opensource tools tend to crash or get detected instantly. But wasnt that the whole point of Red team? Thats…
"Pet Friendly" apartment starter kit:
- 400 dollar non-refundable pet fee
- 250 dollar pet deposit
- 50 dollar a month pet rent
- 2 Pet limit, and can't have <arbitrary breed list>
- no dog park
- no walkable areas
Anyone got that giant iceberg of alternatives to whoami? I'd like to submit this one for Mac - system_profiler SPSoftwareDataType | grep "User Name" | awk -F': ' '{print $2}'
Indtroducing: What is this stealer?
A new repository that allows for you to identify Stealer malware by the system information text file format commonly included in stealer malware exfiltration.
We encourage everyone to check it out and contribute!
github.com/MalBeacon/what…
Wrote a blog on my experience replicating the LOLBin qwinsta using undocumented APIs, really an expansion of work done years ago by @harmj0y but using WinStation instead of Terminal Services. 0xv1n.github.io/posts/sessione…
Why run "hostname" on macOS when you can just run "nvram -xp | xmllint --xpath "string(//key[.='fmm-computer-name']/following-sibling::data[1])" - | base64 --decode | tr -d ' '"
POC for the silly shenanigans i talk about in my last blogpost can be found here github.com/xrombar/flower
now working on a version that doesn't rely on NtContinue, as I now have an "agnostic" IOC for such chains; on top of implementing different ways to "flow" :)
POC for the silly shenanigans i talk about in my last blogpost can be found here github.com/xrombar/flower
now working on a version that doesn't rely on NtContinue, as I now have an "agnostic" IOC for such chains; on top of implementing different ways to "flow" :)
Not sure if it's new or interesting but when Discord launches, it tries to execute `C:\Program Files\NVIDIA Corporation\\NVSMI\nvidia-smi.exe`. Would be a shame to hijack that non-existent bin if user's have Discord set to launch on Windows startup.
132 Followers 2K FollowingUm aquariano inquieto e curioso, que vive em busca de conhecimento. Técnico em Informática, Programador de Software, Geek, Nerd, Rockeiro, Filósofo e Artista.
116 Followers 2K FollowingVeteran - Preparing to go to Uni
Comp Sci - Threat Hunting - Math - STEM?
MathAcademy (math newb..)
Ex-Video Game Addict - Maxed OSRS on Arch BTW
2K Followers 4K FollowingSecEng - Threat Hunting & Insider Threat / Twitch & Discord Mod - Qrion / Former BSidesLV Sr Staff / In my dog dad era / Opinions are mine only
206 Followers 676 Followingjust a cat wearing jeans. interested in infosec and gaming.
#AdminRightsAreNotHumanRights - Sami
part time professional infosec shit poster
745 Followers 7K FollowingCybersecurity Company from Spain transferred to Alameen Karim Merali of Tanzania. No longer incorporated. We continue our fight against cybercrime. Detective.
10K Followers 155 Following🐴Pwnie Award Winning & Nation State funded psyop featuring 6 AI Anime Waifus and a Pup™ singing about APTs, Grifters, & Snake Oil in InfoSec
🖤🩷💚💙💜🤍
18K Followers 659 FollowingHacker, trainer, and guitarist | Black Hills InfoSec #RedTeam | @BreakForge Training | Produces music to hack to at @N0BANDW1DTH
37K Followers 2K Following20+ yrs in Infosec. Malware Influencer. I turn Malware into Art and Music. Art @MalwareArt. 4x Pwnie Nominee. 𝕍𝕏. GameDev. Autistic.
2K Followers 1K FollowingSenior Security Research Engineer, Threat Research and Detection Development @Elastic, 179CPT Cyber Operations Technician 170A @MOARNG
49K Followers 339 FollowingSecurity researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
9K Followers 332 FollowingReverse engineer, creator of @x64dbg and 100+ other projects. Love binary analysis and Windows internals. Dreaming about doing open source full time...
2K Followers 4K FollowingSecEng - Threat Hunting & Insider Threat / Twitch & Discord Mod - Qrion / Former BSidesLV Sr Staff / In my dog dad era / Opinions are mine only
223K Followers 6K FollowingFounder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
13K Followers 492 FollowingWe're determined to make the world a safer place through our-industry recognized managed security services.
Founded by @HackingDave|Sister company @TrustedSec
77K Followers 765 FollowingEnd-to-end Cybersecurity consulting team leading the industry, supporting organizations, and giving back. #Hacktheplanet
Blogs, news, webinars, and tools!