As you might be aware I'm a huge fan of Amazon EventBridge 😅♥️
Over the past year, I have created some open source projects to help the community extend EventBridge functionality and write tools for development.
Here is a list of tools I have written to help you all 👇🧵
GDA Android Reversing Tool - A New Decompiler Written Entirely In C++, So It Does Not Rely On The Java Platform, Which Is Succinct, Portable And Fast, And Supports APK, DEX, ODEX, Oat https://t.co/qpFcnAeG3v
For those of you using a NV GPU with Volta or Turing chipset, listen up! We hacked our way into the post-48k GPU shared memory region. This improved bcrypt cracking performance by an average of 25%. For instance a GTX2080Ti improved from 42116 H/s to 54770 H/s
RE just retired from @hackthebox_eu. As the creator of the box, I tried to bring phishing/macro obfuscation concepts to the initial access. The intended privescs were the WinRar ACE file exploit, and XXE in Ghidra. I'll show two unintended privescs too.
https://t.co/wy1FNRCBbO
#FakeLogonScreen is a C# utility to steal a user's password using a fake Windows logon screen. This password will then be validated and saved to disk. Useful in combination with #CobaltStrike's execute-assembly command.
https://t.co/o7AH6KBb79
Interesting samples (both signed obfuscated jscripts and drop intermd signed dll, uses couple of lolbins + persistence via UserInitMprLogonScript) ,https://t.co/g2bY52KkFv
https://t.co/yUXVqXyyhm
Poor man’s persistent threat detection (medium sized enterprises without SIEM)
A. Check Antivirus logs (best collected in central loc) > search for keywords (see screenshot)
https://t.co/rJvx5fX6z9
B. Run LOKI on exposed or suspiciously behaving systems
https://t.co/VVqnGnteb3