Max Grim (@max__grim) 's Twitter Profile
Max Grim

@max__grim

Red Teamer @OutflankNL | Cyber Security | Messing around with hardware

ID: 153570407

calendar_today08-06-2010 22:23:52

91 Tweet

553 Followers

286 Following

Outflank (@outflanknl) 's Twitter Profile Photo

Outflank's own Pieter Ceelen will be at @XOffensive21584 in Athens! Check out his session on June 21st at 11:00am, where he'll be giving the TL;DR on lessons learned from thread led digital #redteaming

Outflank's own <a href="/ptrpieter/">Pieter Ceelen</a> will be at @XOffensive21584 in Athens! Check out his session on June 21st at 11:00am, where he'll be giving the TL;DR on lessons learned from thread led digital #redteaming
Outflank (@outflanknl) 's Twitter Profile Photo

Sore muscled but satisfied looking back at the first #InfosecKartCup With 135+ people this was a fantastic social event for infosec profs in NL. Always great to connect offline! Thank you all for attending. Thank you Northwave. Intelligent Security Operations. for co-organizing. See you next year?

Sore muscled but satisfied looking back at the first #InfosecKartCup

With 135+ people this was a fantastic social event for infosec profs in NL. Always great to connect offline!

Thank you all for attending. Thank you <a href="/Northwave_Sec/">Northwave. Intelligent Security Operations.</a> for co-organizing.

See you next year?
Outflank (@outflanknl) 's Twitter Profile Photo

OST's Stage1 C2 is now Outflank C2, an optimised, OPSEC focused custom C2 framework with: •Native implants for Windows, macOS and Linux •Dynamic code exec •Proxying support •Peer-to-peer C2 between all three implants Get more info at bit.ly/4cgw8rl

OST's Stage1 C2 is now Outflank C2, an optimised, OPSEC focused custom C2 framework with: 
 •Native implants for Windows, macOS and Linux
 •Dynamic code exec
 •Proxying support
 •Peer-to-peer C2 between all three implants
Get more info at bit.ly/4cgw8rl
Outflank (@outflanknl) 's Twitter Profile Photo

Who’s the real #GrimResource? Spoiler: It’s us! 😏 Here's our latest blog on using MSC files for initial access: outflank.nl/blog/2024/08/1… Fun fact: Elastic’s post on this technique came from a sample caught by a blue team, originally used by a red team through our OST offering.

Who’s the real #GrimResource? Spoiler: It’s us! 😏

Here's our latest blog on using MSC files for initial access: outflank.nl/blog/2024/08/1…

Fun fact: <a href="/elastic/">Elastic</a>’s post on this technique came from a sample caught by a blue team, originally used by a red team through our OST offering.
Adam Chester 🏴‍☠️ (@_xpn_) 's Twitter Profile Photo

For anyone who's badge I managed to "Pwnz0rz111" today at RedTreat, you can revert back to the "original" FW by booting the badge, and once my spooky purge face shows up, press the middle button (the up button) and then the top button (the select button). The image just overlays

For anyone who's badge I managed to "Pwnz0rz111" today at RedTreat, you can revert back to the "original" FW by booting the badge, and once my spooky purge face shows up, press the middle button (the up button) and then the top button (the select button).

The image just overlays
marcoverip.bsky.social 🌻 (@marcoverip) 's Twitter Profile Photo

And thats a wrap of #RedTreat 2024 2 days of hardcore red teaming research and meeting other rt researchers and operators. Mind still 🤯 processing some of the discussions! Thanks to all the attendees and speakers for being present at our little conf! /c MDSec Outflank

Outflank (@outflanknl) 's Twitter Profile Photo

🚀 We're hiring a DevOps/Cloud Engineer at Outflank! Join us to build and manage complex Azure environments that deliver our OST toolkit. Skills: Kubernetes (AKS), GitOps, IaC, Tekton, Python💻 It's NOT an offensive role! Based in NL or a time zone-friendly region? Let's chat!

Outflank (@outflanknl) 's Twitter Profile Photo

We worked with Dirk-jan to get this as an exclusive into Outflank Security Tooling with a new tool called ROADtune. ROADtune allows red teamers to: - bypass CAP by faking device compliance registration - loot secrets from applications pushed to compliant devices Cool stuff!

We worked with <a href="/_dirkjan/">Dirk-jan</a>  to get this as an exclusive into Outflank Security Tooling with a new tool called ROADtune.

ROADtune allows red teamers to:
- bypass CAP by faking device compliance registration
- loot secrets from applications pushed to compliant devices

Cool stuff!
Outflank (@outflanknl) 's Twitter Profile Photo

Virtual fortresses aren’t as invincible as they seem 🏰⚔️. Read about our latest research on using Secure Enclaves in Windows for offensive ops — plus fresh insights for red teamers. Check out Part 1 of our blog series here: outflank.nl/blog/2025/02/0…

Outflank (@outflanknl) 's Twitter Profile Photo

Headed to Singapore for BlackHat Asia? Join Outflank's own Max Grim for a deep dive into Outflank C2 (OC2) and discover how it can cut through the noise and extract critical insights, enabling smarter operations.#BHASIA Black Hat

Headed to Singapore for BlackHat Asia? Join Outflank's own <a href="/max__grim/">Max Grim</a> for  a deep dive into Outflank C2 (OC2) and discover how it can cut through  the noise and extract critical insights, enabling smarter operations.#BHASIA <a href="/BlackHatEvents/">Black Hat</a>
Core Impact (@_coreimpact) 's Twitter Profile Photo

Headed to Singapore for BlackHat Asia? Be sure to stop by booth 507 to talk all things #offsec and then join Outflank's Max Grim to learn how Outflank C2 (OC2) can cut through the noise and extract critical insights, enabling smarter operations.#BHASIA Black Hat

Headed to Singapore for BlackHat Asia? Be sure to stop by booth 507 to talk all things #offsec and then join <a href="/OutflankNL/">Outflank</a>'s <a href="/max__grim/">Max Grim</a> to learn how Outflank C2 (OC2) can cut through  the noise and extract critical insights, enabling smarter operations.#BHASIA <a href="/BlackHatEvents/">Black Hat</a>
Outflank (@outflanknl) 's Twitter Profile Photo

Yes! We're doing the Infosec Kart Cup again! 🏎️🤘 Mark June 19 in your calendars, and reserve your spot now at infoseckartcup.nl! The 2024 edition was sold out.

Yes! We're doing the Infosec Kart Cup again! 🏎️🤘

Mark June 19 in your calendars, and reserve your spot now at infoseckartcup.nl!  The 2024 edition was sold out.
OrangeCon (@orangecon_nl) 's Twitter Profile Photo

The Registry Rundown. Last year Cedric Van Bockhaven & Max Grim showed us how even non-administrators can do some very interesting things with the registry. #Cybersecurity #WindowsRegistry #Infosec Watch here: youtu.be/MxDq552Di3Y?si…