S1ckB0y 🤖 (@s1ckb0y1337) 's Twitter Profile
S1ckB0y 🤖

@s1ckb0y1337

"I'm matter, but I don't matter" - $uicideboy$

ID: 1235644694643818498

linkhttps://github.com/S1ckB0y1337 calendar_today05-03-2020 19:13:57

2,2K Tweet

1,1K Followers

1,1K Following

flux (@0xfluxsec) 's Twitter Profile Photo

Introducing: Hells Hollow - Thought rootkit SSDT hooking was dead? Following my previous work, I have managed to essentially reintroduce SSDT hooks, capable of modifying the *original* KTRAP_FRAME and more! Whitepaper: fluxsec.red/hells-hollow-a… #infosec #cybersecurity

Introducing: Hells Hollow - Thought rootkit SSDT hooking was dead? Following my previous work, I have managed to essentially reintroduce SSDT hooks, capable of modifying the *original* KTRAP_FRAME and more!

Whitepaper: fluxsec.red/hells-hollow-a…

#infosec #cybersecurity
vx-underground (@vxunderground) 's Twitter Profile Photo

New TTP dropped! Yesterday Microsoft announced a new feature coming in January, 2026. Microsoft Intune's Unattended Remote Help for Windows: remotely access devices over the cloud without requiring end user involvement by signing in with credentials. Yay!

Sean Metcalf (@pyrotek3) 's Twitter Profile Photo

If you have Active Directory Certificate Services (ADCS) in your environment, run Locksmith now! In Active Directory Security Assessments, we have found critical security issues in *most* ADCS configurations. The great thing about Locksmith is that it doesn't just highlight the

If you have Active Directory Certificate Services (ADCS) in your environment, run Locksmith now!

In Active Directory Security Assessments, we have found critical security issues in *most* ADCS configurations.

The great thing about Locksmith is that it doesn't just highlight the
incendiumrocks (@incendiumrockz) 's Twitter Profile Photo

I remember that I had to do some research online on how to make exploits for vulnerabilities over MS-RPC. With this blog, I hope to fill the gap on the lacking information available online on how to make these yourself. incendium.rocks/posts/Exploit-…

SpecterOps (@specterops) 's Twitter Profile Photo

Red teamers know the drill: endless file churning, hunting for passwords & tokens. 🔍 Meet DeepPass2, our new secret scanning tool that goes beyond structured tokens to catch those tricky free-form passwords too. Read Neeraj Gupta's blog post for more. ghst.ly/40HLNNA

Olaf Hartong (@olafhartong) 's Twitter Profile Photo

During my #BHUSA talk I've released many ETW research tools, of which the most notable is BamboozlEDR. This tool allows you to inject events into ETW, allowing you to generate fake alerts and blind EDRs. github.com/olafhartong/Ba… Slides available here: github.com/olafhartong/Pr…

wetw0rk (@wetw0rk_bot) 's Twitter Profile Photo

I have released all my prep notes prior to obtaining the #OSEE from OffSec. This includes material consumed before the AWE and after! You can find a link to it here: github.com/wetw0rk/AWE-PR…

MalDev Academy (@maldevacademy) 's Twitter Profile Photo

“AlphabeticalPolyGen” - generates and executes a polymorphic shellcode variant of a specified shellcode file: github.com/Maldev-Academy…

Garrett (@unsigned_sh0rt) 's Twitter Profile Photo

knew win10 had the dsquery.dll laying around but never knew what to do with it "rundll32.exe dsquery.dll OpenQueryWindow" will pop open a console for you and you can do some light LDAP recon you can also open with with win + ctrl + f probably useful for VDI/Citrix type tests

knew win10 had the dsquery.dll laying around but never knew what to do with it

"rundll32.exe dsquery.dll OpenQueryWindow" will pop open a console for you and you can do some light LDAP recon

you can also open with with win + ctrl + f

probably useful for VDI/Citrix type tests
Garrett (@unsigned_sh0rt) 's Twitter Profile Photo

frankensteined some code together to make a couple BOFs that set shadowcreds/rbcd for when proxying was acting up...maybe they're useful to you they dont clean up at the moment so that'll have to get added at some point...ops not done yet lol github.com/garrettfoster1…

NCV (@nickvourd) 's Twitter Profile Photo

See you at BSides Peoria on October 25, 2025! Excited to share this talk, and special thanks to Kyprianos Vasilopoul for his research contributions. #redteam #c2automation #bsides

See you at <a href="/bsidespeoria/">BSides Peoria</a> on October 25, 2025! Excited to share this talk, and special thanks to <a href="/kavasilo/">Kyprianos Vasilopoul</a> for his research contributions.
#redteam #c2automation #bsides
SEKTOR7 Institute (@sektor7net) 's Twitter Profile Photo

Triggering shellcode on certain network status. Register your custom callback with InternetSetStatusCallback() and condition your payload execution on different network events. Excellent idea (w/ source code) by Debjeet Banerjee (db ) Link: gist.github.com/whokilleddb/59…

Triggering shellcode on certain network status.

Register your custom callback with InternetSetStatusCallback() and condition your payload execution on different network events.

Excellent idea (w/ source code) by Debjeet Banerjee (<a href="/whokilleddb/">db</a> )

Link: gist.github.com/whokilleddb/59…
Luke Turvey (@turvsec) 's Twitter Profile Photo

I just released Flareprox 🔥 A Cloudflare based Fireprox alternative that allows you to route HTTP traffic through Cloudflare, to gain mostly unique IP Addresses, to avoid detection and blocks.

I just released Flareprox 🔥

A Cloudflare based Fireprox alternative that allows you to route HTTP traffic through Cloudflare, to gain mostly unique IP Addresses, to avoid detection and blocks.
spencer (@techspence) 's Twitter Profile Photo

Hard truths about Active Directory… - it’s older than most of the pentesters testing it - attackers know how to attack it as much as sysadmins know how to protect it - misconfigurations age like milk, not wine - once the domain is compromised, you’re basically looking at a

Steve S. (@0xtriboulet) 's Twitter Profile Photo

I put a BOF loader in a BOF so that you can run BOFs from a BOF. If you've had issues getting a BOF to work with CS's BOF loader in the past, you now have a drop-in way to get a little bit more compatibility. github.com/0xTriboulet/In…

NCV (@nickvourd) 's Twitter Profile Photo

Next week, BSides Peoria (IL), see you there! We’ve made some new integrations to SkyFall-Pack for the event. Special thanks to Kyprianos Vasilopoul for all his effort. #c2 #automation #redteam

Next week, <a href="/bsidespeoria/">BSides Peoria</a> (IL), see you there! We’ve made some new integrations to SkyFall-Pack for the event. Special thanks to <a href="/kavasilo/">Kyprianos Vasilopoul</a> for all his effort.
#c2 #automation #redteam