silentwarble (@silentwarble) 's Twitter Profile
silentwarble

@silentwarble

github.com/MythicAgents/H…

ID: 1785063890650337280

linkhttp://silentwarble.com calendar_today29-04-2024 21:50:09

154 Tweet

358 Followers

265 Following

Rad (@rad9800) 's Twitter Profile Photo

Wrote a short blog post on: - ETW Threat Intelligence generated by SetThreadContext (hardware breakpoints) - Kernel debugging and reversing - Setting HWBPs in a more "stealthy" manner (not the same ETW TI events generated - no detections) Check it out praetorian.com/blog/etw-threa…

silentwarble (@silentwarble) 's Twitter Profile Photo

Stumbled across this. Really nicely organized anti-debugging techniques for malware dev or otherwise. anti-debug.checkpoint.com

Cody Thomas (@its_a_feature_) 's Twitter Profile Photo

Many in the Mythic Community have asked for a way to standardize BOF/.NET execution within Mythic Agents. Today I'm releasing Forge, a new Mythic container to do just that: posts.specterops.io/forging-a-bett… We're starting off with default support for Apollo and Athena. Check it out! :)

silentwarble (@silentwarble) 's Twitter Profile Photo

Ah so that's where that spike in Chinese traffic came from. Along with an increase of vuln scanners slamming my website. My site is static, you guys can stop now... - freebuf.com/sectool/419846… - blog.csdn.net/FreeBuf_/artic…

Anthony. (@anthonysecurity) 's Twitter Profile Photo

github.com/praetorian-inc… Harald is an in-memory tiny high-level CPU, able to process a set of instructions to generate application-layer protocols to be used over a given network protocol (TCP/UDP). Harald will consume a stream of OPCODES and apply different transformations to

silentwarble (@silentwarble) 's Twitter Profile Photo

I found this blog post to be useful as I'm also just now starting to look at implementing RAG for a project. Nice to see how someone else is using it in a security context: trustedsec.com/blog/from-rags…

silentwarble (@silentwarble) 's Twitter Profile Photo

Just came across this AutoIT malware framework. Haven't tested it but looks interesting. Boy I haven't used AutoIT in over a decade. github.com/CroodSolutions…

silentwarble (@silentwarble) 's Twitter Profile Photo

If your org has MS 365 don't overlook PowerApps and Power Automate. I'm finding it to be quite useful for both nefarious and process purposes. Easier to deploy tooling in an already approved platform vs a custom webapp.

c0rnbread (@0xc0rnbread) 's Twitter Profile Photo

Today I'm releasing Xenon, a custom Mythic agent for Windows targets written in C. Notable features include: 📁 Modular command/code inclusion 🦠 Malleable C2 Profile support 🪨 Compatible with Cobalt Strike BOFs github.com/MythicAgents/X… Blog series - c0rnbread.com/creating-mythi…

Bobby Cooke (@0xboku) 's Twitter Profile Photo

As promised... this is Loki Command & Control! 🧙‍♂️🔮🪄 Thanks to Dylan Tran for his work done on the project and everyone else on the team for making this release happen! github.com/boku7/Loki

Cody Thomas (@its_a_feature_) 's Twitter Profile Photo

This has been a LONG time coming! This is just the beginning though :) I'll be recording more for updates, features, workflow updates, and yes - a developer series too! Be sure to let me know what you do/don't like about this format and what kinds of things you'd like to see!

silentwarble (@silentwarble) 's Twitter Profile Photo

This continues to be a great tool. I'm using it to make stripped down throwaway VMs for when we do ops. Otherwise win11 is such a hog: github.com/ntdevlabs/tiny…

Josh (@passthehashbrwn) 's Twitter Profile Photo

New blog from me about a bug in Power Apps that allows execution of arbitrary SQL queries on hosts connected through on-prem data gateways. This can turn external O365 access into compromised on-prem SQL servers. ibm.com/think/x-force/…

Cody Thomas (@its_a_feature_) 's Twitter Profile Photo

Are you thinking of writing a C2? Do you want to modify an existing C2? Have you ever thought "why on earth did they do it that way"? Join me as I show what I've learned from 7 years of open source C2 and agent development so you can start off with success :) I can't wait!