Joined June 2020
87 Photos and videos
Pinned Tweet
MacroPack new version is out! 🥳 With improved EDR evasion profiles and all kind of ready to use initial access formats and scenario! Also now everything can be leveraged with the new BallisKit GUI! 😎 #redteam
2
12
63
4,847
Introducing EDR Eclipse, our new premium extension for ShellcodePack! EDR Eclipse is an advanced kernel-assisted telemetry suppression module designed to blind the EDR without terminating it. Key capabilities: • Kernel callback removal • Dynamic offset resolution • Telemetry suppression • ETW-TI suppression • Minifilter neutralization Due to the sensitive nature of the technology, availability will be limited to eligible customers. More technical details, demonstrations, and videos are available on the BallisKit Discord! #RedTeam
2
17
102
6,052
BallisKit retweeted
New DarwinOps release! We mainly added more EDR Evasion profiles and improved JXA escape with the ability to generate a Macho/Dylib that does not use Osascript (or OSAKit) . This prevents detection of any Osascript EST events! #redteam
1
10
39
5,409
BallisKit retweeted
We updated our Sliver C2 BallisKit tutorial to adapt to the latest Sliver version. Learn how to use ShellcodePack/MacroPack to harden Sliver implants and turn them into initial access payloads! More C2 tutorials available on the blog (Adaptix, Mythic) blog.balliskit.com/tutorial-…
17
37
2,909
BallisKit retweeted
LNK is still a top-tier initial access vector. Most defenses still underestimate it. Soon to be released MacroPack 2.8.9 pushes LNK tradecraft further: • Advanced customization & evasion workarounds • Improved EDR bypass • Several delivery alternatives Version also contains other features such as VHDX container, new .NET shellcode injection, etc. Built from real-world testing against modern EDRs. #RedTeam
11
95
4,638
BallisKit retweeted
I just wrote a tutorial explaining how to combine Adaptix C2 with MacroPack and ShellcodePack! This provides multiple initial access and EDR evasion options to Adaptix C2 users. Tutorial includes: LNK, CLickOnce, DLL Sideloading, Exe, HTA, etc! #redteam blog.balliskit.com/tutorial-…
1
46
201
15,117
BallisKit ShellcodePack 2.8.1 is out! Focus: AppDomain injection & DLL sideloading, plus updated EDR evasion profiles! Learn how to backdoor .NET apps with our appdomain injection tutorial: blog.balliskit.com/appdomain… #redteam
1
9
31
2,615
BallisKit retweeted
The next ShellcodePack version supports AppDomain injection payloads! We also simplified and improved DLL sideloading/proxying and updated the EDR bypass profiles. Sideload anything with a few clicks! 😎 #redteam
11
56
3,285
BallisKit retweeted
Using #darwinOps, after setting up your redteam scenario, you can choose which phishing template will be most convincing for your engagement 😎 Contact us to know more about redteaming on macOS and ready to use phishing templates! #redteam
5
15
2,086
BallisKit retweeted
MacroPack new version is out! 🥳 With improved EDR evasion profiles and all kind of ready to use initial access formats and scenario! Also now everything can be leveraged with the new BallisKit GUI! 😎 #redteam
2
12
63
4,847
BallisKit retweeted
Hanging out with friends is also why we go to conf :) I had a great experience as a speaker at @hackcon Will definitively come back!
1
4
8
2,239
BallisKit retweeted
Replying to @EmericNasi
2
30
3,161
BallisKit retweeted
**OFFICIAL** EDR Tier List for 2026! Based on nothing but the people in chat, vibes, guests, opinions and limited experience. Thanks to @EmericNasi @ShitSecure @_JohnHammond and @domchell for jumping in a guests to help me out this time around!
33
103
675
270,447
BallisKit retweeted
👋Starting 2026 by updating my EDR tier list 🥳Going live on Twitch/YouTube Sunday at 20:00 CEST! Counting on you all to be there for some fun banter 🤡 Aslo AI gave me chad jaw line 😂
7
14
79
30,849