CG (@int3rrupt) 's Twitter Profile
CG

@int3rrupt

InfoSec Nerd | Cyber Bogan | Opinions are my own

ID: 318352509

calendar_today16-06-2011 10:45:23

33 Tweet

242 Takipçi

74 Takip Edilen

CG (@int3rrupt) 's Twitter Profile Photo

If you want a copy of the slides from my #CSides talk last night, How To Eat A Shell Backwards In 367 Bytes, then check out -> drive.google.com/open?id=1sZnxS… BSidesCanberra

CG (@int3rrupt) 's Twitter Profile Photo

I’m sure there is a dad joke in there about enabling unsolicited remote access #0day threatpost.com/unpatched-micr…

CG (@int3rrupt) 's Twitter Profile Photo

well I did say that I would share my slides and demo. i've got some time this month, so I might firm the attribution. slides -> tinyurl.com/y4edmjav demo-> tinyurl.com/y3ogfvf9 BSidesCanberra

CG (@int3rrupt) 's Twitter Profile Photo

How annoying is Windows shellcode packed with RTLDecompress buffer? Python to the rescue -> github.com/int3rrupted/Py…

CG (@int3rrupt) 's Twitter Profile Photo

Seeing EDR evasion is so hot right now, I just wanted to add my own. Call the victim and ask them to run the following at an elevated PowerShell prompt. Pow, Windows ATP bypassed -> Set-MpPreference -DisableRealtimeMonitoring $True #Bypass #GetARealJob #CyberDefence

BSidesCanberra (@bsidescbr) 's Twitter Profile Photo

"Advanced Windows Implant Development & Detection" by CG runs 2 days before BSides Canberra 2020 at the National Convention Centre. eventbrite.com.au/e/advanced-win…

CG (@int3rrupt) 's Twitter Profile Photo

What a week. Who would have thought my Australian Crowdstrike team would have set the Internet on fire by Wednesday. Now it’s time to pass out. #3CXpocalypse reddit.com/r/crowdstrike/…

CG (@int3rrupt) 's Twitter Profile Photo

Is it really necessary to go trawling through old commits of OpenSSH source just to understand what certain sshd messages actually mean in auth.log?