Init1Security

172 posts

Init1Security

Init1Security

@init1security

Elevating security with expert offensive strategies

Long Beach Inscrit le Ekim 2024
62 Abonnements440 Abonnés
Init1Security
Init1Security@init1security·
A new tool in our arsenal: DotBlind, a Python script that applies sandbox evasion, anti-debug techniques, AES and XOR encryption to compiled .NET binaries for evasion, it's looking very promising, testing with execute-assembly should be a big win, currently dropping to disk and executing is functional. 🫡 #redteam
English
5
19
126
9.2K
Init1Security
Init1Security@init1security·
@bohops As always all the cool talks are outside the U.S., jk,jk. Congrats super interesting topic as always!
English
1
0
0
41
bohops
bohops@bohops·
COM is a gift that keeps on giving.. yet another relic of the Windows OS that is unlikely to go away in the near future.
Security BSides Prague@bsidesprg

🚨 Speaker Announcement – #BSidesPrague2026 🎤 Marco Balzarin Abusing the Ordinary: New COM-Based Windows Attack Vectors Explore Windows COM from an offensive angle—new hunting methods and undocumented techniques for stealthy code execution via legitimate components. #Bsides

English
2
9
73
6.5K
Init1Security
Init1Security@init1security·
Excited to deliver our first Red Team workshop in Spanish for Mexico! This course is customized to provide a solid understanding of Red Teaming and to train offline LLMs for Red Team operations, while still working with C2 and following the attack chain: Initial Access techniques, Persistence, Privilege Escalation, and more!. 🇲🇽 #redteam
Init1Security tweet media
English
0
4
26
1.7K
Rasta Mouse
Rasta Mouse@_RastaMouse·
I'm going to legit try and make the jump to Linux as my daily driver. Wish me luck, fam.
English
21
0
114
15.9K
Init1Security
Init1Security@init1security·
Tokens are incredibly powerful in terms of scope and access. Get the correct one and your access becomes extraordinary. With ANIMO, we try to automate this and use a seamless approach so users can easily obtain and use these tokens. #redteam
Init1Security tweet media
English
0
0
8
1.3K
Init1Security
Init1Security@init1security·
Experimented with using WIM files as containers. Normally DISM requires admin privileges to extract them, but you can decompress a WIM byte-by-byte in C#/PowerShell by copying the correct offsets (7-Zip can create the WIM). No admin, no DISM, no wimgapi.dll just PowerShell. Even kept the ADS stream of an LNK payload that extracts and executes via a LOLBIN. #redteam
Init1Security tweet media
English
0
7
49
2.7K
Init1Security
Init1Security@init1security·
This is great the tool seems stable, and we're diving into its latest updates. Then we're releasing ANIMO to the public: a full Azure "C2" that supports multiple known Azure techniques, ranging from Initial Access to Data exfiltration. Really excited!! #redteam
Init1Security tweet mediaInit1Security tweet mediaInit1Security tweet media
English
0
7
35
3.7K
Init1Security
Init1Security@init1security·
@KernelDBG Absolutely, it’s the capabilities we take into consideration to get around EDR/AV. The interesting bit is the JScript and VBScript 🫡
English
0
0
0
69
FFE4
FFE4@KernelDBG·
@init1security chm is a monitored extension for all DERs
English
1
0
1
106
Init1Security
Init1Security@init1security·
Years ago, we used older macro-enabled techniques such as EarlyAPC and NtMapViewOfSection in our macros, but we have since fully transitioned to more "obscure" extensions and successfully applied them to CHM files. The Initial Access Framework has come along way!! #redteam
English
1
15
87
6K
Init1Security
Init1Security@init1security·
After 3+ years in development, the Initial Access Framework (Ashley) is now targeting macOS and Linux extensions in the future. It's building up nicely!! #redteam
Init1Security tweet media
English
1
6
29
2.1K
Init1Security
Init1Security@init1security·
Raphael Mudge, the creator of Cobalt Strike, gave a free course on Red Team concepts and using Cobalt Strike a great resource for anyone working with C2. #redteam youtube.com/watch?v=i6tsLW…
YouTube video
YouTube
English
0
27
127
7.1K