obscuresec

9.5K posts

obscuresec

obscuresec

@obscuresec

obscure security researcher. Do good. Be good. God Bless. Go Bills.

obscuresec.bsky.social เข้าร่วม Kasım 2011
643 กำลังติดตาม10.3K ผู้ติดตาม
obscuresec รีทวีตแล้ว
Empire
Empire@EmpireC2Project·
Empire v6.5 is live! - 8 new modules across BOF/C#/PS/Python - New C stager + PIC shellcode compiler for stage0 agent injection - Patchless AMSI & ETW bypasses - New Jobs tab on the agent page for managing background jobs - Python 3.14 support github.com/BC-SECURITY/Em…
English
0
14
58
3.3K
obscuresec
obscuresec@obscuresec·
Why watch or support the NFL at this point?
English
0
0
0
432
obscuresec รีทวีตแล้ว
Scriptmonkey_
Scriptmonkey_@scriptmonkey_·
@hakluke Alva Duckwall's presentation is worth a look if you're up against 802.1x youtu.be/rurYRDlf1Bo?si… There have been follow up talks in more recent confs, and tools on github that broadly automate these attacks now, but this starts at the beginning.
YouTube video
YouTube
English
1
1
13
1.9K
obscuresec รีทวีตแล้ว
Dino A. Dai Zovi
Dino A. Dai Zovi@dinodaizovi·
Rootkitting appliances, you say? There's a common refrain that attack is always evolving, but I was compromising Linux-based appliances in network penetration tests in the 2000's. Middleboxes with late 90's vulns that have privileged positions and access are the anti-pattern.
John Hultquist@JohnHultquist

We are releasing details on BRICKSTORM malware activity, a China-based threat hitting US tech to potentially target downstream customers and hunt for data on vulnerabilities in products. This actor is stealthy, and we've provided a tool to hunt for them. cloud.google.com/blog/topics/th…

English
0
4
8
2.9K
obscuresec
obscuresec@obscuresec·
@n00py1 @scriptjunkie1 Absolutely. There is an entire claims industry that shouldn't exist. From the VA IG you can see evidence the VA has of fake medical evidence (fraud) and the steps they take to identify it. I imagine whatever this bizarre rule is that its about service connection and not faking.
English
0
0
0
36
scriptjunkie (Matt)
scriptjunkie (Matt)@scriptjunkie1·
Hey, speaking as a veteran: It's fraud/abuse, like many other categories, for decades. It's well known - as you prepare to separate, veterans just volunteer tips on gaming the system. I bet non-disabled vets would overwhelmingly support slashing it. x.com/fentasyl/statu…
~~datahazard~~@fentasyl

English
3
0
6
1.1K
spencer
spencer@techspence·
All you need are some lolbins and a prayer #redteamtips
spencer tweet media
English
6
24
134
12.7K
obscuresec
obscuresec@obscuresec·
@HackingLZ That isn’t the line though. The line is “next year is our year.”
English
0
0
0
206
obscuresec
obscuresec@obscuresec·
@rootsecdev Many of the people I respect the most in this industry had to take the exam multiple times. It does not reflect negatively at all. You got it.
English
0
0
5
548
rootsecdev
rootsecdev@rootsecdev·
Failed my OSCP exam this morning. Super disappointed in myself since I’ve really poured my soul into everything this time around. Nonetheless I’ll shrug it off and try again.
GIF
English
93
5
523
48.6K
JJETS✈️
JJETS✈️@JJettas2·
Happy MADVENT! One lucky fan will receive my favorite Madden play, autographed! Follow below for a chance to win on Twitter or IG: Comment below with #Madden24Sweeps by Dec. 13 at 11:00 am EST to enter for a chance to win! You must be 18+ to enter.
JJETS✈️ tweet media
English
1.1K
164
2.3K
485.6K
Josh Allen
Josh Allen@JoshAllenQB·
The season of giving is upon us and one lucky fan will receive my favorite Madden play, autographed! Comment below with #Madden24Sweeps by Dec. 4 11:00 am ET to enter for a chance to win! ea.com/madvent-giveaw…
Josh Allen tweet media
English
3.2K
352
3K
606.9K
spencer
spencer@techspence·
What do you think are the most important qualities a pentester or red teamer should have? My top three are... 1. Humility - I know I don't know everything 2. Curiosity - a desire to learn more 3. Resilience - the will to stick with it
English
10
6
35
5.6K
Justin Elze
Justin Elze@HackingLZ·
Where are those OST threads now?
Justin Elze tweet media
English
9
1
62
8.1K
spencer
spencer@techspence·
Anyone else feel like we should differentiate RAT with legitimate 3rd party RAT or is that dumb? I feel like one needs a different name. I see RAT and I immediately think malicious implant
English
6
0
17
2.8K
obscuresec
obscuresec@obscuresec·
@bohops I still see forms of the same argument cropping up. Basically if a TA hasn't done something than you can't emulate it. Seeing it applied to admin tools that are already in the environment flustered me.
English
0
0
1
113
bohops
bohops@bohops·
@obscuresec First, that talk is epic 🔥 Second, what was this person talking about? lol
English
1
0
2
264
obscuresec
obscuresec@obscuresec·
@HackingLZ There is an infosec lesson in this picture.
English
0
0
2
308
Justin Elze
Justin Elze@HackingLZ·
Useful car repair facts
Justin Elze tweet media
English
18
55
457
26.7K
Dave Kennedy
Dave Kennedy@HackingDave·
😂😂😂💨
Dave Kennedy tweet media
QME
6
2
40
6.7K
Justin Elze
Justin Elze@HackingLZ·
I don’t like sports but I love memes. My friends don’t appreciate this meme for some reason 🤷‍♂️
Justin Elze tweet media
English
2
0
32
6.9K