Relocatable - Write C-code that will be directly compiled into raw shellcode, which can be loaded into any process without the need for tools such as Donut or sRDI https://t.co/CuuaAyBRlM
Search 15M+ Microsoft 365 tenants by org name or domain and discover all known domains in the same tenant: https://t.co/QxzqVo4sbf. Legacy methods like Autodiscover/GetFederationInfo no longer work (https://t.co/qoKZCMIIU6).
Onboard yourself - PaloAlto Global Protect edition:
1. Become local admin
2. Export device cert from original workstation
3. Import cert in your VM
4. Login with user creds
5. Enjoy EDR-free testing :)
#HuntingTipOfTheDay: explorer.exe /root,"c:/your/file.exe" will spawn your exe from the main explorer.exe, not a new one. This breaks normal process chains. Hunt for explorer.exe with "/root", as well as explorer spawning unusual children (e.g. rundll32, mshta, powershell).
GitHub - sshuttle/sshuttle: Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS tunneling. https://t.co/tCjkz8G6IL
💡 Linux tip of the day
Use brace expansion with mkdir -p to create multiple nested directories in one go!
This oneliner
$ mkdir -p projects/{frontend,backend}/{src,test,docs}
will create 6 directories instantly 👇
I created a small automotive themed CTF! The first person to solve all the challenges will get a free CAN Bus Throwing Star. Check it out at https://t.co/VT4gL6QIL0
CVE-2025-24071 happens since the file is trying to load a remote location, sending the NTLM hash when it's extracted, but it happens regardless if it's compressed in RAR or ZIP or not, @domchell wrote about this back in 2021 can I get a CVE???
#redteam
https://t.co/3Vw1TP49Gn
A python script that builds a Malleable C2 Profile almost fully automated, use any URL and it's endpoints and it will parse it to build the requests and responses, some sites may not work since it requires to have a certain size of data, so it's a POC! 😅
https://t.co/EJWyKYOiHS
#redteam
Is Notepad really safe for sensitive information? Think again!
Even if you don’t save it, Notepad can still reveal more than you’d expect. Watch Andrew Prince demonstrate how this simple tool can become a goldmine for #digitalforensics, and a powerful asset during your next penetration test. 👀
Want to learn more from Andrew Prince on digital forensics and other hot defensive security topics? Join us next month for SOC Level 1 Live! Spots are limited, so secure yours now before they’re gone! https://t.co/2hs59C5T8P
🚀 WPProbe is now live!
Here: https://t.co/eewdFfxzPs
I'm releasing WPProbe, a fast and modular WordPress scanner written in Go.
Current features:
- Plugin enumeration & CVE detection
- Fast concurrent scanning
- File output support
This is an initial version, and some parts still need refining. Feedback and contributions are welcome, but keep in mind that I maintain this in my free time.
Try it out and let me know what you think!
🚀 Today I'm launching ArgFuscator: an open-source platform documenting command-line obfuscation tricks AND letting you generate your own
🔥 68 executables supported out of the box - use right away, make tweaks, or create your own
👉 Now available at https://t.co/eZbpI08AzP