yamakadi

175 posts

yamakadi banner
yamakadi

yamakadi

@_yamakadi

希望と絶望の渦間 Katılım Nisan 2011
132 Takip Edilen114 Takipçiler
Rasta Mouse
Rasta Mouse@_RastaMouse·
How long before you admit to yourself that something is lost, it's not coming back, and you just need to buy a new one...?
English
8
1
15
6K
yamakadi
yamakadi@_yamakadi·
@kyleavery @modexpblog The credits are definitely missing your name. I referenced a few articles for this example but your well-structured and clearly commented code is what made it work.
English
0
0
2
148
Kyle Avery
Kyle Avery@kyleavery·
@modexpblog @_yamakadi Planned to publish a short post on this topic today… never hit send. 🙃 Maybe tomorrow
English
1
0
3
253
yamakadi
yamakadi@_yamakadi·
I have added an example for patching “Environment.Exit” to ClrOxide. You can keep the overeager to exit assemblies from crashing your processes now. 🤩 github.com/yamakadi/clrox…
yamakadi tweet media
English
1
5
18
3.3K
yamakadi
yamakadi@_yamakadi·
@Octoberfest73 Price is usually less of an issue than the amount of red tape. Anything less than $500 with a one time payment option and a vague invoice is easier as a one off charge than a formal process that could take months and not even get approved. Consulting in Japan 😭
English
0
0
2
170
Octoberfest7
Octoberfest7@Octoberfest73·
Broad question: how much would you/your org be willing to pay as a one-time fee to access a high quality offensive security tool via private GitHub page? $50-100? I figure with a sponsership model a lot of folks will pay for a month, grab all the code, and cancel anyways
English
20
1
25
13.5K
trickster0
trickster0@trickster012·
A year ago or so someone made a blogpost about execution on azure hosts via Azure function apps if my memory serves me right, which would make a weird graph with a trigger to execute some code like powershell. anyone remembers? I can't remember or find it and i am pissed!
English
1
1
1
973
yamakadi retweetledi
Cas van Cooten
Cas van Cooten@chvancooten·
Hacker summer camp fomo *engage*
GIF
English
0
3
15
2.7K
yamakadi
yamakadi@_yamakadi·
@HakaiOffsec @memN0ps Great job! 😁 I couldn’t get around to releasing the fixed version of ldr and now I don’t have to 😆
English
0
0
1
95
Rasta Mouse
Rasta Mouse@_RastaMouse·
@_xpn_ if I was crazy enough to get a Mac for dev work, what would you go for? Doesn't need to be portable so desktop or laptop is fine.
English
6
0
5
4.8K
yamakadi
yamakadi@_yamakadi·
@chvancooten @lpha3ch0 This is possible but awkward in rust and no guarantees for what kind of data you might end up with until trying to compile and making sense of the errors. Nim really makes you appreciate it the farther you are away from it 😂
English
0
0
1
48
Cas van Cooten
Cas van Cooten@chvancooten·
@lpha3ch0 People working in languages that don't have compile time preprocessing support reading this tweet be like
GIF
English
1
0
6
330
Steve Campbell
Steve Campbell@lpha3ch0·
This is why I previously used slurp() in Nim to store a base64 encoded byte array of shellcode and then reverse the array, at compile time. Base64 is low entropy: const letters = slurp('sc.bin').encode().reverse()
Red Siege Information Security@RedSiege

"You’re encrypting your shellcode so you don’t get caught, and that might get you caught." In this new blog, Principal Consultant @hardwaterhacker discusses how the CrowdStrike Falcon detection works, and how to get around it. READ: redsiege.com/entropy #hacking #infosec

English
2
3
33
5.7K
Cas van Cooten
Cas van Cooten@chvancooten·
This should be fun 👀
Cas van Cooten tweet media
English
7
0
87
11.5K
yamakadi retweetledi
Tansu Yegen
Tansu Yegen@TansuYegen·
An ordinary day in Istanbul
English
21
278
1.8K
155.9K
yamakadi
yamakadi@_yamakadi·
Credits to @C5pider and @R0h1rr1m by the way, and good folks at @TrustedSec. I’ve referenced their work thoroughly, and my code is basically CoffeeLdr in rust, but it’s missing something to actually make it work 😭
English
2
0
4
286
yamakadi
yamakadi@_yamakadi·
Huge shout-out to @chvancooten for forcing me to start on this by allowing risky commands into NimPlant, and @_Kudaes_ and @ropnop whose dinvoke_rs and go-clr libraries helped make things finally click!
English
0
0
3
450
yamakadi
yamakadi@_yamakadi·
I started on this two years ago, while trying to mimic NimPlant's execute-assembly command for the v1 rust implant, had some working versions, and even tried just using Nim to do execute-assembly and pass data through FFI.
English
1
0
2
373