Kavishka Gihan (@_kavigihan) 's Twitter Profile
Kavishka Gihan

@_kavigihan

19 | Security researcher | Content Engineer @hackthebox_eu

ID: 1504505407360073728

linkhttps://kavigihan.medium.com/ calendar_today17-03-2022 17:10:34

905 Tweet

997 Followers

132 Following

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

Been working on building my own loader for #Windows, seems like using "CreateProcess" is much more likely to get detected than "CreateThread". Regardless, with PEzor github.com/phra/PEzor, you can easily evade most AVs including Windows Defender. #infosecurity #malwaredev

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

Bypassing Windows Defender to get a sliver beacon on the latest #windows 11 update using process injection and API Unhooking with PEzor. #infosec #malwaredev

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

"Self-deleting" #malware that bypasses #Windows Defender in the latest Windows 11 update using "Process Injection" to slip undetected, injecting shellcode into "OneDrive.exe". #infosec #malwaredevelopment #redteam

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

This is how "Windows Installation Files" can be weaponized into #malware that bypasses #Windows Defender in the latest Windows 11 distribution. #infosec #malwaredevelopment #zoom

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

In response to numerous requests, here's a brief walkthrough on how to implement this technique of using Windows Installers to deliver malware in your engagements. kavigihan.medium.com/using-windows-… #infosec #redteaming #windows #malwaredevelopment

Vulnlab (@vulnlab_eu) 's Twitter Profile Photo

Hey Vulnlab Community! Just taking a moment to reflect on how far we've come together. It's been about a year since Vulnlab first launched, and now we've got around 100 vulnerable machines spread across 50 labs, 2300 Discord members and more than 700 lab users! The main focus

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

My new chain "Unintended" consisting of 3 Linux machines will be released tomorrow on Vulnlab . Make sure to tune in and have fun! πŸ˜„ #infosec #redteaming #vulnlab

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

Lesgoo! My next submission "Intuition", a hard Linux machine, is going live this weekend on Hack The Box Make sure to tune in and have fun. Time to use that brain people!!! #InfoSec #cybersecurity #pentesting #informationsecurity #hacking

LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Intuition Hack The Box ! The attack chain to the user flag was great. Both privesc ways aren't satisfying to go through. Prepare yourself with a lot of patience. I got root unintendedly. I'll go back and try the intended. Thx Kavishka Gihan #hackthebox #htb #cyber

I just pwned Intuition <a href="/hackthebox_eu/">Hack The Box</a> ! The attack chain to the user flag was great. Both privesc ways aren't satisfying to go through. Prepare yourself with a lot of patience. I got root unintendedly. I'll go back and try the intended. Thx <a href="/_kavigihan/">Kavishka Gihan</a> #hackthebox #htb #cyber
Isuru Umayanga (@i_s_u_r_u_w_a) 's Twitter Profile Photo

pwned Intuition in Hack The Box! ,most easiest machine I have ever played Kavishka Gihan hackthebox.com/achievement/ma… #hackthebox #htb #cybersecurity

qt_merlyn1 (@qt_merlynn) 's Twitter Profile Photo

I really like Intuition! Good attack path for the user part. Root requires some light reading if you aren't familiar with the tech. Bigup brother Kavishka Gihan for the experience hackthebox.com/achievement/ma… #hackthebox #htb #cybersecurity

Kavishka Gihan (@_kavigihan) 's Twitter Profile Photo

A lot of the players reached out to me personally and said the same πŸ˜„ Its a shame most of them don't know the intended way resulting in impressions based on the unintended ways.

Martin Mielke (@xct_de) 's Twitter Profile Photo

This is somewhat similar for domain-joined ubuntu machines - if you can create the AD group "admin" and use_fully_qualified_names is set to false in sssd.conf, you will be able to sudo to root due to the default "%admin ALL=(ALL) ALL" sudoers entry.

Intigriti (@intigriti) 's Twitter Profile Photo

Meet the content creators behind this years #CTF πŸ§‘πŸΌβ€πŸ’» Our amazing creators have built challenges for beginners through to experts ⚑️ It's not too late to sign-up to take part in this years event πŸ‘‡ buff.ly/3CBWYxN #HackWithIntigriti #EthicalHacking #BugBounty

Meet the content creators behind this years #CTF πŸ§‘πŸΌβ€πŸ’»

Our amazing creators have built challenges for beginners through to experts ⚑️

It's not too late to sign-up to take part in this years event πŸ‘‡

buff.ly/3CBWYxN 

#HackWithIntigriti #EthicalHacking #BugBounty
LazyTitan (@lazytitan33) 's Twitter Profile Photo

I just pwned Fries on Hack The Box! This is a solid headscratcher of a "lab" made by Kavishka Gihan and ruycr4ft. It allows you to sharpen your skills on a variety of subjects, lots to learn and w/ an opportunity to improve some tooling. #HackTheBox #htb #CyberSecurity

I just pwned Fries on <a href="/hackthebox_eu/">Hack The Box</a>! This is a solid headscratcher of a "lab" made by <a href="/_kavigihan/">Kavishka Gihan</a> and <a href="/ruycr4ft/">ruycr4ft</a>. It allows you to sharpen your skills on a variety of subjects, lots to learn and w/ an opportunity to improve some tooling.  #HackTheBox #htb #CyberSecurity