Dima (@dawouw) 's Twitter Profile
Dima

@dawouw

Offensive Developer && Red Teamer @ Outflank

ID: 1083654136191696896

linkhttps://outflank.nl calendar_today11-01-2019 09:17:34

307 Tweet

714 Followers

371 Following

Cobalt Strike (@_cobaltstrike) 's Twitter Profile Photo

Cobalt Strike 4.11 is out now! This release introduces a novel Sleepmask, a novel process injection technique, a new prepend reflective loader with new evasive options, asynchronous BOFs, DNS over HTTPs and more! cobaltstrike.com/blog/cobalt-st…

Cobalt Strike 4.11 is out now! This release introduces a novel Sleepmask, a novel process injection technique, a new prepend reflective loader with new evasive options, asynchronous BOFs, DNS over HTTPs and more!
cobaltstrike.com/blog/cobalt-st…
NetSPI (@netspi) 's Twitter Profile Photo

Beacon Object Files (BOFs) in C2 platforms limit developers. ow.ly/rQ2e50VjZBU Read NetSPI's blog post to explore a reference design for a new BOF portable executable (PE) concept that bridges the gap between modern C++ development and memory-executable C2 integration.

Beacon Object Files (BOFs) in C2 platforms limit developers. ow.ly/rQ2e50VjZBU 

Read NetSPI's blog post to explore a reference design for a new BOF portable executable (PE) concept that bridges the gap between modern C++ development and memory-executable C2 integration.
CCob🏴󠁧󠁢󠁷󠁬󠁳󠁿 (@_ethicalchaos_) 's Twitter Profile Photo

A little while ago I tweeted about a potential BOF-PE design. So here it is, a new design that includes a fully linked PE, C++ exceptions and use of the STL template library.

Dylan Tran (@d_tranman) 's Twitter Profile Photo

Had a lot of fun digging into COM stuff with bohops recently! We ended up finding a way to laterally move without dropping a file. ibm.com/think/news/fil…

Bobby Cooke (@0xboku) 's Twitter Profile Photo

As promised... this is Loki Command & Control! 🧙‍♂️🔮🪄 Thanks to Dylan Tran for his work done on the project and everyone else on the team for making this release happen! github.com/boku7/Loki

Andrew Oliveau (@andrewoliveau) 's Twitter Profile Photo

RemoteMonologue - A Windows credential harvesting attack that leverages the Interactive User RunAs key and coerces NTLM authentications via DCOM. Remotely compromise users without moving laterally or touching LSASS. Hope you enjoy the blog & tool drop 🤟 ibm.com/think/x-force/…

Outflank (@outflanknl) 's Twitter Profile Photo

Yes! We're doing the Infosec Kart Cup again! 🏎️🤘 Mark June 19 in your calendars, and reserve your spot now at infoseckartcup.nl! The 2024 edition was sold out.

Yes! We're doing the Infosec Kart Cup again! 🏎️🤘

Mark June 19 in your calendars, and reserve your spot now at infoseckartcup.nl!  The 2024 edition was sold out.
CCob🏴󠁧󠁢󠁷󠁬󠁳󠁿 (@_ethicalchaos_) 's Twitter Profile Photo

I spoke about the initial credential guard vulnerability at #SOCON2025, but I left out the part where the fix could be bypassed. Both bypasses have now been fixed which I cover in my blog post along with some juicy technical details. Enjoy.

Jord (@0xlegacyy) 's Twitter Profile Photo

Yearly blog post just dropped: Control Flow Hijacking via Data Pointers 🐸 Showcasing how to find your own in Binary Ninja, how to weaponize and write a shellcode stub etc. Hopefully people find it useful :) legacyy.xyz/defenseevasion…

Bobby Cooke (@0xboku) 's Twitter Profile Photo

🧙‍♂️Loki project is up to 25 vulnerable ⚡️Electron apps! What features would you like to see added to Loki? Private beta has: 🧦SOCKS5 proxy 📝Task Queue 🛜C2 Server ⚡️Agent rewrite 🥷Evasion github.com/boku7/Loki

Yuval Gordon (@yug0rd) 's Twitter Profile Photo

🚀 We just released my research on BadSuccessor - a new unpatched Active Directory privilege escalation vulnerability It allows compromising any user in AD, it works with the default config, and.. Microsoft currently won't fix it 🤷‍♂️ Read Here - akamai.com/blog/security-…

🚀 We just released my research on BadSuccessor - a new unpatched Active Directory privilege escalation vulnerability
It allows compromising any user in AD, it works with the default config, and.. Microsoft currently won't fix it 🤷‍♂️
Read Here - akamai.com/blog/security-…
Outflank (@outflanknl) 's Twitter Profile Photo

Halfway through 2025 and our release counter is already in double digits with 11 shipped! Major highlights: - Async task support for OC2 -Portal overhaul - New BOF Loader - Enclave sleepmask in OC2 With more exciting releases to come, be sure to keep up: outflank.nl/products/outfl…

William Burgess (@joehowwolf) 's Twitter Profile Photo

[BLOG] Dynamically Instrumenting Beacon with BeaconGate - For All Your Call Stack Spoofing Needs! cobaltstrike.com/blog/instrumen…