Lover of breaking things | Cybersec researcher with a wide taste in music genres!! bit.ly/HIZsIs ||| chr°ᶰ1k |||

Joined July 2009
1,097 Photos and videos
Labman retweeted
New video: quick run through of 5 post-access Microsoft 365 abuse mechanisms (app creds, Graph permanent delete, Intune device wipes/scripts, MDE LR) WATCH: youtube.com/watch?v=Y_DazkEv… Lot of defensive controls I didn’t fit in e.g. workload identities or most RBAC things... more on those soon.
11
46
3,728
Labman retweeted
Tool to dump Windows Local SAM Credentials from registry or Shadow Snapshot and capable of doing Stack Spoofing via TP Custom Callbacks. When using Shadow Snapshot method SYSTEM privs are not needed. github.com/PeterGabaldon/Wha… #redteam #cybersecurity #windows
28
105
5,528
Labman retweeted
New write-up on our blog. This research takes a closer look at those IOCTLs and how they can be used to build a physical memory read/write layer. exploitpack.com/blogs/news/w… #WindowsInternals #ReverseEngineering #OffensiveSecurity #infosec #pentest #exploit #exploitpack
33
121
6,704
Labman retweeted
When WDAC blocks your implants, Electron apps become the way in. The post walks through using Loki C2 to backdoor signed applications like Mailspring and communicate over Azure Blob Storage via HTTPS. ⬇️ bit.ly/4utI8i4
1
10
27
2,522
Labman retweeted
DLL Injection via Thread Hijacking Without Executable Memory New Medium post. Today we cover a technique that combines thread hijacking with Return-Oriented Programming (ROP) to inject a DLL into a remote process without allocating executable memory medium.com/@s12deff/dll-inje…
1
31
177
4,688
Labman retweeted
Ready to Fuzz USB stack like never, get an ESP32 and let's do it! github.com/fuzzsociety/usbSt…
22
122
5,561
Labman retweeted
Jun 11
New NightmareEclipse Bitlocker Bypass 0-Day github.com/MSNightmare/Great…
7
72
451
54,120
Labman retweeted
Trying to use Fable 5 for anything benign...
4
21
212
9,359
Labman retweeted
Excited to be speaking at @x33fcon 2026 alongside my colleague @dphillips__. We’ll be presenting “Fingerprinting Modern C2 Implants via Runtime Telemetry” and the tool we built as part of our research. See you there!
5
18
1,766
Labman retweeted
Jun 9
So this model is waste for cybersecurity for now.
Introducing Claude Fable 5: a Mythos-class model that we’ve made safe for general use. Its capabilities exceed those of any model we’ve ever made generally available.
63
48
1,112
196,748
“For this reason, we conclude that Fable 5 does not provide an uplift on cyber tasks relative to Opus 4.8”💀
4
5
41
2,884
Labman retweeted
New #redteam tool for blocking EDRs: EDRChoker Instead of fully blocking the EDR agents' connections to their server, we can throttle their bandwidth so they consistently time out when sending data, which is effectively the same as blocking but avoids triggering "block" or "drop" packet events #pentest #cybersecurity Github: TwoSevenOneT/EDRChoker
24
179
758
111,022
Labman retweeted
If you really want your coworkers to hate you: Add-Content -Path $PROFILE -Value "`$ExecutionContext.InvokeCommand.CommandNotFoundAction = { Stop-Computer -Force }" If they type a command that isn't found, it shuts down their computer 😂
Replying to @NathanMcNulty
This is great. If I can’t have fun with attackers at least I can give my coworkers a fun time 😂
22
33
339
33,101
Labman retweeted
Introducing a new side project called Model Regression. It tests daily Claude, GPT, and Grok on various benchmark statistics to determine how well its performing and to identify model degrades over time. @edskoudis had an idea for model testing before they conducted offensive testing to ensure the model was performing as expected, and @BlasikRandy pushed me down this road with actually going and doing it. The main intent here is the frontier models will experience outages, issues, bugs, intentional/unintentional nerfing of the models without notice. You can't typically trust day to day activities in these models for stability, so leveraging this on your daily routine to see how well the model is performing for that day is something I'll be using everyday. Runs every morning in my DGX sparks environment and automatically updates with how well its performing. Enjoy! modelregression.com/ Also open-sourced the project, can run on your own server as well and look at the benchmarks and how they are calculated: github.com/HackingDave/model…
30
76
321
20,193