RJ (@z3ro_c00l) 's Twitter Profile
RJ

@z3ro_c00l

Impacket Contributor | Sr. Pentester | Here for them sweet, tasty 0-days!

ID: 1512592988505092102

linkhttps://github.com/Z3rO-C00L calendar_today09-04-2022 00:49:02

61 Tweet

244 Followers

138 Following

RJ (@z3ro_c00l) 's Twitter Profile Photo

Red Teamers, struggling to find DA creds, but have sa privs to MSSQL? Create regkey that sends a post request to you with username of who logged in, kill sqlsvc.exe, and wait. YMMV with how pissed the client gets. #redteam #redteamtips

RJ (@z3ro_c00l) 's Twitter Profile Photo

Red Teamers - what’s your best story during a pentest? I’ll start. Very early in my career I yelled “YOLO” and bettercap’d the entire network, which went as expected… Crashed everything. 🤦‍♂️ #redteam #TalesFromTheRedTeam #ILikeChaos

Nic Losby (@blurbdust) 's Twitter Profile Photo

First and foremost, I would like to thank crack.sh and toorcon for their DES cracking service over the years. I am in absolutely no way trying to remove a revenue stream or cut into their profits.

eversinc33 🤍🔪⋆。˚ ⋆ (@eversinc33) 's Twitter Profile Photo

Dumbest AMSI bypass I know so far, but it works: sideloading a fake amsi.dll to a copied version of powershell which simply return S_OK / AMSI_RESULT_CLEAN for every command. I would have thought that there was some kind of signature check upon loading amsi.dll but apparently not

Dumbest AMSI bypass I know so far, but it works: sideloading a fake amsi.dll to a copied version of powershell which simply return S_OK / AMSI_RESULT_CLEAN for every command. I would have thought that there was some kind of signature check upon loading amsi.dll but apparently not
S3cur3Th1sSh1t (@shitsecure) 's Twitter Profile Photo

Last year we did analyse malware from a group targeting malware devs and or offensive security people. Here’s the story, which is also our first technical blog post - more to follow 🙌: r-tec.net/r-tec-blog-whe…

Forrest Kasler (@fkasler) 's Twitter Profile Photo

MFA cramping your style? Check out CuddlePhish! A weaponized Browser-in-the-Middle attack. Also, come see my Arsenal talk at Black Hat next week! github.com/fkasler/cuddle… mr.d0x I think you might like this ;) #Pentesting #redteam #BlackHat

RJ (@z3ro_c00l) 's Twitter Profile Photo

Want to take phishing to the next level via BiTM (Browser-in-The-Middle)? My talented coworker made it possible to get a video feed of the victims browser instance. Check out his talk at DEFCON github.com/fkasler/cuddle…

RJ (@z3ro_c00l) 's Twitter Profile Photo

Imagine putting in the work to setup legit phishing infrastructure and then hosting files via open directory. Then imagine hardcoding your telegram bot for anyone to spam messages to....

Imagine putting in the work to setup legit phishing infrastructure and then hosting files via open directory. Then imagine hardcoding your telegram bot for anyone to spam messages to....
Matt Johansen (@mattjay) 's Twitter Profile Photo

Holy crap - SEC Charges SolarWinds and Chief Information Security Officer with Fraud, Internal Control Failures sec.gov/news/press-rel…

Chris Bakke (@chrisjbakke) 's Twitter Profile Photo

Navigating "corporate speak" isn't easy. Here's a helpful guide I put together: "Let me check with my team" = No "Possibly" = No "On my roadmap" = Not happening "This will be done in Q4" = This will be done in Q2 next year "Disagree and commit" = I hate you "Per my last

RJ (@z3ro_c00l) 's Twitter Profile Photo

Kerberos Ticket Question: ✅ Is there a way to convert a TGT that’s in hex format from Windows built-in klist into a useable format (kirbi) without Rubeus?

SpecterOps (@specterops) 's Twitter Profile Photo

Introducing Cuddlephish. Check out the open-source BitM attack tool from Forrest Kasler, which allows pentesters to use the Browser-in-the-Middle technique on their campaigns & raise awareness of this attack vector for credential stealing. ghst.ly/3QHIfGi

RJ (@z3ro_c00l) 's Twitter Profile Photo

Despite years passing since its discovery, EternalBlue continues to haunt networks in 2024, reminding us of the persistent threat posed by unpatched vulnerabilities. #cybersecurity #EternalBlue #exploit

RJ (@z3ro_c00l) 's Twitter Profile Photo

I recently redesigned the web interface for the SpecterOps tool “CuddlePhish” 🐠. Such a killer Browser-in-the-Middle tool developed by Forrest Kasler! Brings phishing to the next level. github.com/fkasler/cuddle…