New blog post: Dumping LSASS Without Touching Disk
Improved LSASS dumping in SpecterInsight’s dumper module, focusing on stealthy, in-memory techniques.
Read it here:
https://t.co/iyhUNU9fP8
#RedTeam#CyberSecurity#WindowsInternals#ThreatEmulation
SpecterInsight v6.0.0 is live! Inveigh workflows, local and remote exploit integration, native Zig payloads with source code obfuscation, network intelligence, and SSL C2 to enhance your threat emulation activities.
https://t.co/LuwKxolcYj
SpecterInsight 5.1.0 is out!!! AI agent ops, full Kerberos attack library, 8-technique LSASS dumping, Early Cascade Injection, WFP EDR blocking, Ghost Task persistence & more.
https://t.co/SCsDc2RCH0
Just released SpecterInsight v5.0.0! This version delivers a detailed operational event log, user experience improvements, and stability/bug fixes. Check out the full details here!
https://t.co/jNdlJNszjD
SpecterInsight 4.4.0 just released! This version provides a new module for lateral movement and EDR silencer techniques via Group Policy, a Firewall module, and 7 new SpecterScripts.
https://t.co/I009HBGWgz
SpecterInsight version 4.3.0 is chocked full of bug fixes, new payload pipelines, and a new hardware breakpoint AMSI bypass. Check it out!
https://t.co/mDMvyvMJyN
Check out this post on selecting bypasses and applying tailored obfuscation to evade AV.
Please let me know if you find this post helpful. Let me know if there’s anything I can do to improve SpecterInsight!
https://t.co/wTTeS8vkB3
SpecterInsight v4.2.0 has been released!
We’ve packed a bunch of improvements to our PowerShell obfuscation and payload pipeline features. Check out the release notes here:
https://t.co/rLMBAiEO1y
In this post, I demonstrate how to use SpecterInsight to create a payload pipeline to evade AV detection and application controls.
https://t.co/nYsEca66T7
Check out the new release of SpecterInsight v4.1.0! There are now payload pipelines for LNK files, MSBuild XML files, and InstalUtil.exe compatible exe.
https://t.co/7lD3HodnhN
I’m moving over to Bluesky! Head over there today to check out my new AMSI bypass technique and details on the release of SpecterInsight 4.0.0: Direct System Call Module, Process Injection, and New AMSI Bypass.
https://t.co/PmIHb5DaQY
We just released SpecterInsight 3.1.0 along with the first release of SpecterInsight VM, a pre-configured Kali Linux system with SpecterInsight C2 fully installed along with Elastic and Kibana for tracking your red team engagements! Check it out!
https://t.co/45rma71Hfj
Checkout my new post on extracting plaintext credentials from Windows Event Logs!
This technique ships with and is fully integrated with SpecterInsight C2.
https://t.co/vMnbUEcQQ4
https://t.co/qIvoHt0zOW
Just released SpecterInsight v2.2.0! This release brought a new obfuscated .NET Native AOT payload and 7 new SpecterScripts for lateral movement and persistence. See the release notes for more details!