Weasel Sec
276 posts

Weasel Sec
@Weasel_Sec
RedTeam | PurpleTeam | PenTest | Chef . Views are mines 🇬🇧🇸🇬
Bergabung Nisan 2018
837 Mengikuti1.2K Pengikut
Tweet Disematkan
Weasel Sec me-retweet

I uploaded all the malware samples used in my book #EvasiveMalware to my Github:
github.com/d4rksystem/Eva…
I received some questions about the lab samples, so just posting it for everyone here 🤓
English
Weasel Sec me-retweet

Bypassing EDR in a Crystal Clear Way lorenzomeacci.com/bypassing-edr-…
English
Weasel Sec me-retweet

Why yes, yes we can use ESTSAUTH captured from evilginx to automatically register a passkey
Kuba Gretzky@mrgretzky
@NathanMcNulty This is super cool! (just catching up late after the weekend) Is it possible to generate that passkey using the previously captured cookies or tokens, through phishing? (using browser cookies in general)
English

@techspence Probably not, since it ultimately invokes wmiprvse.exe.
English
Weasel Sec me-retweet

GitHub - bats3c/shad0w: A post exploitation framework designed to operate covertly on heavily monitored environments github.com/bats3c/shad0w
English
Weasel Sec me-retweet

Goexec is a new take on some of the methods used to gain remote execution on Windows devices. Goexec implements a number of largely unrealized execution methods and provides significant OPSEC improvements overall
falconops.com/blog/introduci…
Github repo:
github.com/FalconOpsLLC/g…
Troisvierges, Luxembourg 🇱🇺 English

You've got to love it when AVs start flagging your official online course phishing training lab website as phishing... 🤦♂️
Also figured out Google will block emails including links to the lab.
virustotal.com/gui/url/ff9241…

English

@domchell Redirect them to a fake webinar where @peterwintrsmith is playing the guitar.
English
Weasel Sec me-retweet

@Weasel_Sec Nowadays Edrs have Add-ons for this but it was a thing in the past. I’have had great success in engagements with this method
github.com/mertdas/SharpI…
English

@frosty468119564 VirusTotal doesn't allow you to upload files larger than 650MB. I tried uploading a 650MB file and got the same result as with a 250MB file.
English
Weasel Sec me-retweet

🚨EDR Telemetry website is live! 🥳
I hope this makes it even easier for folks to compare the telemetry of EDR vendors and visualize their visibility gaps 🙂
‣ Website🔗edr-telemetry.com
‣ GitHub 🔗github.com/tsale/edr-tele…
**Telemetry results reflect the most recent updates from the EDR Telemetry project.

Kostas@Kostastsale
I created the first draft of a website for the EDR telemetry project to help people quickly compare vendor telemetry visibility. What do you think about it? Are there any specific features you want to see for the website? Built with ChatGPT 4o with canvas (wanted to test it out😂) EDR Telemetry project 🔗: github.com/tsale/EDR-Tele…
English
Weasel Sec me-retweet

0xC2 is now available and the site has been updated with a brief introduction
0xc2.io/posts/introduc…
English











