boombyte
@paskal0x00
Space cowboy
ID: 1026730295880503297
07-08-2018 07:22:33
222 Tweet
88 Followers
1,1K Following
Nothing special, just a 30 Mb .NET assembly to run secretsdump[.]py from memory with pythonnet and Diego Capriotti’s so hot Pyramid 🔥🐍
I'm so excited today to announce that I'm launching my own online training platform Calypso Heavy Industries (CHI) 🎊 The first course to appear on Labs is "Windows Instrumentation with Frida", check it out: labs.calypso.pub/windows-instru… Labs is partnering with Vector 35, when you sign up you get a
A year ago I published a blog post on bypassing EDR using CS profiles. I’ve updated it to include an additional way of preventing msvcrt.dll from being flagged by Defender: by making the payload CRT library-independent. kleiton0x00.github.io/posts/Harnessi… #redteam #malware #CyberSecurity