hyd3sec

36 posts

hyd3sec banner
hyd3sec

hyd3sec

@hyd3sec

Spider @ SpiderLabs | Appsec Hacker | Offsec Junky | SOF Veteran | Crossfit Bro

SkyNet HQ Sumali Kasım 2019
92 Sinusundan307 Mga Tagasunod
hyd3sec nag-retweet
Yaniv Nizry
Yaniv Nizry@YNizry·
Stay tuned for a blogpost ;)
Yaniv Nizry tweet media
English
78
327
1.1K
0
hyd3sec nag-retweet
Bobby Cooke
Bobby Cooke@0xBoku·
I've been developing my own C2 recently and incorporating all the BOFs i've created. Right now its an agent in C/ASM, a python3 Flask REST API (yup, like shad0w😉), and operator commands via curl 😅 Big shoutout to @C5pider @NinjaParanoid @_batsec_!
Bobby Cooke tweet media
English
6
25
190
0
hyd3sec nag-retweet
Bobby Cooke
Bobby Cooke@0xBoku·
Created my first GUI program thanks to @C5pider! Its pretty terrible right now, but I have big hopes for the future lol
Bobby Cooke tweet media
English
8
8
68
0
hyd3sec nag-retweet
Bobby Cooke
Bobby Cooke@0xBoku·
Azure Outlook Command & Control. Threat Emulation Tool for North Korean APT InkySquid / ScarCruft / APT37. TTP = Abuse Microsoft Graph API for C2 Operations. Control a compromised Windows Device from your Outlook mailbox. github.com/boku7/azureOut… ShoutOuts too: \1
English
8
150
363
0
hyd3sec
hyd3sec@hyd3sec·
Best thing I've heard in my entire offsec career... "Just need a clean result for PCI Audit" is the pentesting equivalent of "Hey man I just need clean pee for this drug screen pls" - @johnjhacking
English
0
2
30
0
hyd3sec nag-retweet
Mr.Un1k0d3r
Mr.Un1k0d3r@MrUn1k0d3r·
@NinjaParanoid For what it's worth, do it for yourself to learn and improve your skills the reward is much more valuable. It does not matter if there is 100 tools that does it better or already exists. Gaining the knowledge along the way is the true value. ❤
English
0
6
42
0
hyd3sec nag-retweet
Bobby Cooke
Bobby Cooke@0xBoku·
Zero to Hero guide for Azure Device Code Phishing for Red Team engagements! Covers everything from creating a malicious Azure phishing infrastructure to achieving Azure Account Take-Over! Secrets to open OWA via Substrate! Credits: @424f424f @DrAzureAD 0xboku.com/2021/07/12/Art…
English
10
108
271
0
hyd3sec
hyd3sec@hyd3sec·
Just paid my car off and my credit score dropped 9 points. The logic behind credit scores is hilariously stupid
English
0
0
3
0
hyd3sec nag-retweet
Bobby Cooke
Bobby Cooke@0xBoku·
New Cobalt Strike BOF that dumps the Process Environment strings from walking PEB using inline Assembly code! @TrustedSec did it first ;) , but this one doesn't touch Kernel32.dll or any DLL's :) github.com/boku7/whereami
English
0
38
110
0
hyd3sec
hyd3sec@hyd3sec·
If you like chocolate milk you'll love this beer
hyd3sec tweet media
English
1
0
1
0
hyd3sec
hyd3sec@hyd3sec·
Them: We don't trust the internet so we can only accept the documents via fax or regular mail. Me: You do realize I'm going to just use an internet service to send you the fax, right? Nobody has fax machines anymore...
English
0
1
18
0