BallisKit

365 posts

BallisKit banner
BallisKit

BallisKit

@BallisKit

BallisKit provides tooling and services to professional Pentesters & Red Teams. We develop MacroPack, ShellcodePack, and DarwinOps. #redteam #infosec

France Katılım Haziran 2020
34 Takip Edilen2.9K Takipçiler
Sabitlenmiş Tweet
BallisKit
BallisKit@BallisKit·
MacroPack new version is out! 🥳 With improved EDR evasion profiles and all kind of ready to use initial access formats and scenario! Also now everything can be leveraged with the new BallisKit GUI! 😎 #redteam
BallisKit tweet media
English
1
13
61
4.3K
BallisKit
BallisKit@BallisKit·
BallisKit ShellcodePack 2.8.1 is out! Focus: AppDomain injection & DLL sideloading, plus updated EDR evasion profiles! Learn how to backdoor .NET apps with our appdomain injection tutorial: blog.balliskit.com/appdomain-inje… #redteam
English
0
9
31
2.3K
BallisKit
BallisKit@BallisKit·
The next ShellcodePack version supports AppDomain injection payloads! We also simplified and improved DLL sideloading/proxying and updated the EDR bypass profiles. Sideload anything with a few clicks! 😎 #redteam
GIF
English
0
11
55
3K
BallisKit
BallisKit@BallisKit·
Using #darwinOps, after setting up your redteam scenario, you can choose which phishing template will be most convincing for your engagement 😎 Contact us to know more about redteaming on macOS and ready to use phishing templates! #redteam
BallisKit tweet media
English
0
5
14
1.9K
BallisKit
BallisKit@BallisKit·
MacroPack new version is out! 🥳 With improved EDR evasion profiles and all kind of ready to use initial access formats and scenario! Also now everything can be leveraged with the new BallisKit GUI! 😎 #redteam
BallisKit tweet media
English
1
13
61
4.3K
BallisKit
BallisKit@BallisKit·
@redteamcore It's not EntryPoint, it's related to EvasionPack, an internal tool we use to find way to break EDR parsers.
English
0
0
0
103
kyxiaxiang
kyxiaxiang@redteamcore·
@BallisKit EP?EntryPoint Patch is really a good idea. I have done something similar on my own RTO platform.🙃
English
1
0
0
151
BallisKit retweetledi
Melvin langvik
Melvin langvik@Flangvik·
**OFFICIAL** EDR Tier List for 2026! Based on nothing but the people in chat, vibes, guests, opinions and limited experience. Thanks to @EmericNasi @ShitSecure @_JohnHammond and @domchell for jumping in a guests to help me out this time around!
Melvin langvik tweet media
English
32
104
679
267K
BallisKit retweetledi
Melvin langvik
Melvin langvik@Flangvik·
👋Starting 2026 by updating my EDR tier list 🥳Going live on Twitch/YouTube Sunday at 20:00 CEST! Counting on you all to be there for some fun banter 🤡 Aslo AI gave me chad jaw line 😂
Melvin langvik tweet media
English
7
14
80
30.7K
BallisKit
BallisKit@BallisKit·
DarwinOps just leveled up 🚀 Now supports AppleScript (SCPT), a format actively abused for macOS phishing. Plus new Ruby, VSCode , NPM & Homebrew payloads. A true macOS red team Swiss Army knife. AppleScript initial access guide by @antoinedss 👇 blog.balliskit.com/macos-redteam-… #redteam
English
0
4
18
3.2K
BallisKit
BallisKit@BallisKit·
Tutorial: DLL Sideloading and function proxying with ShellcodePack BallisKit ShellcodePack version 2.8.0 is available! This version comes with a new GUI, EDR evasion methods as well as enhanced DLL sideloading/hijacking. You can find the tutorial here: blog.balliskit.com/tutorial-dll-s…
English
2
31
134
8.6K
BallisKit
BallisKit@BallisKit·
News about our MacOS Objective-C implant for DarwinOps! We implemented a MachO reflective loader to run C and Objective-C tools from memory 🙂 We included ready-to-load Mach-O binaries, making advanced macOS evasion techniques easy to use and plug-and-play. #RedTeam #macOS
English
2
11
32
2.7K
BallisKit retweetledi
BallisKit
BallisKit@BallisKit·
We are preparing a new version of ShellcodePack! -> Automated and improved DLL sideloading/proxying capacity -> AppDomain injection -> New Responsive GUI! -> Many more new features And of course up to date EDR evasion :) #shellcodepack
BallisKit tweet media
English
0
7
30
3.4K
BallisKit retweetledi
BallisKit
BallisKit@BallisKit·
PKG is a kind of MacOS MSI equivalent. It's also used as an initial access payload! Read how DarwinOps can be used to generate PKG for redteams. We also included a method to run the PKG without admin privileges -> Reduced number of clicks! #redteam blog.balliskit.com/macos-redteam-…
English
0
10
36
6.4K