Systems, people and ideas, all of them have hidden vulnerabilities | CRTO | CRTP | OSCP | PNPT

New update for Beatrice Pro Edition. I improved modifying api hashing in Adaptix C2 payloads. I also Improved patching of raw binaries making it more consistent and added flags to convert to shellcode and xor encode it. #penetrationtesting #redteaming
2
4
24
1,707
New update for Beatrice Pro Edition. Support for Dotnet binaries has been added! The "--dotnet" flag will obfuscate strings in a Dotnet binary. The "--only-strings" flag will replace strings from given YARA rules and will skip modifying bytes. #redteaming #penetrationtesting
1
2
15
2,057
New update for Beatrice Pro Edition. Ive been working on understanding more Adaptix C2 payloads and wrote new manual patches for Adaptix. I was able to make Adaptix evade multiple EDRs and added it to the guide. #redteaming #penetrationtesting
2
4
325
LainKusanagi retweeted
We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
42
710
10,562
230,904
Beatrice Pro Edition has been updated! -New flag to obfuscate Import Address Table -Improved alternative encodings -Evasion with Cobalt Strike added to the guide Check out Beatrice Pro edition: buymeacoffee.com/lainkusanag…
6
29
2,041
Beatrice Pro Edition is out! Parse and test YARA rules, modify strings and includes a guide for AV and EDR evasion and support for Blue/Purple Teaming Ops. Get it at buymeacoffee.com/lainkusanag… and first 30 can use code QP2VOSSH for a 20% discount! #penetrationtesting #redteaming
2
13
1,372
LainKusanagi retweeted
New Weekly Purple Team episode 🟣 Getting AdaptixC2 past Windows Defender using Beatrice Opcode substitution → mutate the beacon at the machine code level without touching strings or imports Also covers: 🔵 YARA hunting w/ Velociraptor 🔵 SIEM detections for Adaptix beacons 👇 youtu.be/H3BdgCekrjY #PurpleTeam #AVEvasion #DetectionEngineering
2
3
13
1,335
In this article I show a way to modify Mimikatz to evade Defender medium.com/@luisgerardomoret… #penetrationtesting #redteaming
1
34
163
11,592
Finally releasing my tool Beatrice[.]py To bypass detection methods like Yara rules that look for certain bytes and memory scanners Beatrice[.]py patches machine code in binaries with alternative x64 assembly opcodes of the same size. github.com/raskolnikov90/Bea…
7
365
In this article I’ll show how to find and modify the assembly of binaries and shellcode as a way to evade byte based detection. I’ll first show how to do this manually then how to script it and finally show a tool we can also use. medium.com/@luisgerardomoret… #penetrationtesting
14
80
5,566
My machine "Sysco" is available at Hack Smarter Labs! hacksmarter.org/events/4fff8… #penetrationtesting
4
368
Easy machine, a bit of code analysis will quickly reveal what to exploit. Root was fun since you have to play with it then you can leak what you need easily. labs.hackthebox.com/achievem… #hackthebox
21
846
Easy machine, pretty straightforward user flag. Root is also easy but I wonder if there are other privilege escalation paths since I feel like I picked the lowest hanging fruit. labs.hackthebox.com/achievem… #hackthebox #penetrationtesting
23
1,113
I liked user, really digging into the application, really hard to figure the last step but once you do and look back, it makes a lot of sense. For root its more simpler than it looks and with the right search you can find what you need. labs.hackthebox.com/achievem… #hackthebox
1
27
814
Pretty hard machine, having to abuse DNS in a way haven't done before, enumerating and abusing a completely new service for me, to discovering you can do a lot more than you can think of with a certain ACL. labs.hackthebox.com/achievem… #hackthebox #penetrationtesting
1
2
20
784