Hello friend

Joined January 2021
12 Photos and videos
Pinned Tweet
Salut đŸ‘‹đŸŒ J’ai Ă©cris un article qui est un retour d’expĂ©rience d’une attaque rĂ©elle sur un rĂ©seau Wi-Fi WPA2-Enterprise. N’hĂ©sitez pas Ă  me donner votre avis 😉 virtualsamuraii.github.io/ne
 #redteam #wifi
7
24
110
7,037
VirtualSamurai retweeted
7 Nov 2025
You're starting a #redteam engagement tomorrow...Where would you train without spending tons of money ? We are releasing a new redteam lab with : - On-prem #ActiveDirectory - 5 vulnerable machines - Antivirus & Firewall Available on November 8th here : training.cyberwave.network
3
7
1,184
NEW RED TEAM LAB đŸŽâ€â˜ ïž You're starting a red team engagement tomorrow... - How would you manage to evade defense solutions (AV/EDR) ? - Where would you train without spending tons of money ? If you don't have the answers to these questions, don't worry, I got you covered. I'm planning to release a new #redteam lab on @cyb3rw4v3 consisting of : - A fictional company "on-prem" Windows #ActiveDirectory domain - 5 intentionally vulnerable machines - Antivirus and firewall This vulnerable playground simulates a real world enterprise network, implements common vulnerabilities and misconfigurations and goes through the whole cyber kill chain (initial access, privilege escalation, lateral movement, defense evasion...). Forget about the building/deploying/hosting part and focus only on what matters : your skills and tradecraft. I'm also doing a #giveaway competition. I'm offering free access to the lab for 3 individuals ! How to join : 1ïžâƒŁ Like 2ïžâƒŁ Retweet Winners announced on November 1st @ 5 PM UTC 2
3
6
13
1,170
And the winners are : - @L0rd5ud0 - @trevorsaudi - @f0rk3b0mb Congrats ! I will reach out via private message ;)
1
3
374
Guys, please join our discord server so I can easily reach out. discord.gg/gUjngstEvG

1
1
161
During a Red Team engagement, one must be aware of every action, even when it comes to Wi-Fi testing. Sometimes, we have to send "deauthentication" packets to authenticated devices using tools like Aireplay-ng, in an attempt to capture a handshake and access the targeted network through Wi-Fi. While defenders could quite easily monitor the deauth attacks using the following filter on Wireshark : wlan.fc.type_subtype == 12, sometimes attackers forget to use the appropriate options that could really enhance their OPSEC. For example, there's two options "-h" and "-s" in Aireplay-ng that both allow us to specify the source MAC address, replacing it with the access point's MAC address to mimick a legitimate deauth packet sent by the router.
1
7
246
Hey there đŸ‘‹đŸŒ I have been using an Ansible playbook to deploy a phishing server on a cloud instance for my engagements. Thought it might be useful for cyber security professionals out there. github.com/VirtualSamuraii/f

1
35
129
8,097
Salut đŸ‘‹đŸŒ Voici un petit article qui explique comment il est possible de personnaliser des outils publics pour contourner les antivirus. Ici, il s’agira de personnaliser l’agent Apollo du C2 Mythic pour contourner Windows Defender. virtualsamuraii.github.io/re

2
16
614
OSINT : Certaines entreprises divulguent des informations bien trop prĂ©cieuses dans leurs offres d'emploi. C'est par exemple le cas ici, l'entreprise en question donne mĂȘme la marque de son EDR. Ceci peut aider les attaquants Ă  dĂ©velopper des malwares (implants, loaders, packers) taillĂ©s spĂ©cifiquement pour contourner cet EDR. Dans le cadre d'un exercice Red Team, gĂ©nĂ©ralement les attaquants collectent ce genre d'informations pour mieux prĂ©parer leurs TTPs. Mais en dehors du cadre lĂ©gal, les ransomgangs et autres groupes Ă©tatiques (APT) peuvent en profiter pour dĂ©ployer des rançongiciels ou des portes dĂ©robĂ©es (espionnage industriel).
2
11
797
VirtualSamurai retweeted
5 Aug 2023
I've just started a blog on #maldev and #redteaming. Nothing fancy yet, just me trying to see if I've understood correctly. The first post is about a custom version of GetModuleHandle and GetProcAddress in #go. Check it out: blog.atsika.ninja/posts/cust

5
33
104
13,522
Hello world 👋 In 2022, @0xNarek and I studied an APT named Serpent Group that has been discovered by @proofpoint and @VMware TAU. This threat actor targeted numerous french government entities during the 2022 presidential campaign. We reproduced their TTPs and came up with our own custom Serpent C2 Server. github.com/VirtualSamuraii/s

1
6
11
1,079
Collector celui lĂ  @asso_hzv
14
763
Salut, shalom, salam camarades. Voici la 3eme partie de la sĂ©rie « Anatomie des EDR ». Cette fois ci, on va voir les processus, services, PPL et clĂ©s de registre Windows, utilisĂ©s par un EDR. virtualsamuraii.github.io/re
 #redteam #windows #edr #maldev
10
38
3,598
Hello, Voici la partie 2 de la sĂ©rie d’articles Anatomie des EDR. Cette fois ci, on va voir le fonctionnement des drivers d’un EDR avec plus de dĂ©tails (kernel, callbacks, minifilters, etc). virtualsamuraii.github.io/re
 #redteam #maldev #edr #blueteam
1
13
28
2,237
Salut salut, Voici un premier article que j’ai pondu pour dĂ©crire de maniĂšre trĂšs vulgarisĂ©e ce qu’est concrĂštement un EDR. J’ai pris #SentinelOne en exemple car il est considĂ©rĂ© comme Ă©tant l’un des leaders. virtualsamuraii.github.io/re
 #redteam #maldev
3
17
43
4,289
Hi there, I just started my own blog to share some of my research. The first two posts are disclosed vulnerability reports affecting #wordpress plugins for which it got assigned CVE-2022-3558 and CVE-2022-3634 a few months ago. virtualsamuraii.github.io/vu

299