security engineer / hacker / red teamer / researcher

Joined August 2011
137 Photos and videos
DTM retweeted
Why yes, yes we can use ESTSAUTH captured from evilginx to automatically register a passkey
Replying to @NathanMcNulty
This is super cool! (just catching up late after the weekend) Is it possible to generate that passkey using the previously captured cookies or tokens, through phishing? (using browser cookies in general)
4
31
129
34,848
DTM retweeted
you can use gmod to verify your age by the way
Discord announces that users will need to verify their age from early March onwards in-order-to access age restricted content. All accounts will be set to a ā€œteen-by-defaultā€ experience until otherwise verified as an adult. (discord.com/press-releases/d…)
440
12,483
192,335
8,078,914
DTM retweeted
I came across a simple technique that abuses Fondue.exe, a native Windows binary, to execute a custom malicious APPWIZ.cpl file placed in the same directory. PoC and More details on how it was discovered later! #redteam #offsec
5
44
233
15,350
DTM retweeted
Wow this post really blew up! If you want to know more about the smallest possible files that do things, check out the 6th annual Binary Golf Grand Prix, happening now til January 18th! x.com/binarygolf/status/1979…

Binary Golf Grand Prix 6 begins now! #BGGP6 theme: "Recycle"
3
7
1,261
DTM retweeted
Two blog posts just dropped - one with the details on the bloatware pwning shenanigans I was up to earlier in the year, and another on pipetap, a new Windows named pipe proxy/tool. sensepost.com/blog/2025/pwni… sensepost.com/blog/2025/pipe…
1
36
121
15,388
DTM retweeted
We are giving away 1 free spot for level ZERO. If you are a cyber pro or tech bro and want a full system reset - now is your chance. To enter: šŸ”„ retweet Bonus entry: šŸ’¬ comment below - 1 thing you want to fix in the new year. Winner announced Friday. #wehackhealth
20
30
21
16,230
DTM retweeted
Part 1 of my #BGGP6 writeup about nasm's most mysterious object file format, RDOFF. n0.lol/bggp6-rdoff/

Today I got RDOFF (.rdf) files working in nasm 2.15. I wrote my own lib bc nasm didn't generate properly. Also patched the 32-bit loader in `rdx` with mmap tricks (shoutout ixi). An executable RDOFF has likely never run on a 64 bit system before today. Writeup soon! #BGGP6
10
35
9,667
DTM retweeted
22 Nov 2025
Slides and Such for my @BSidesVienna talk about Linux H4x as just a bunch of syscalls, Living Under the Land on Linux Slides: docs.google.com/presentation… and Such: github.com/magisterquis/lutl…

6
15
1,824
15 Nov 2025
Released a write up for three python pip package entries for #BGGP6 - rap.sh/Python_Pip_Golf

Binary Golf Grand Prix 6 begins now! #BGGP6 theme: "Recycle"
1
3
6
1,086
DTM retweeted
New writeup for #BGGP6 !! What's the smallest Wireshark dissector? What's the most annoying Wireshark dissector? Find out here: n0.lol/bggp6-wireshark/
1
12
38
8,744
DTM retweeted
26 Oct 2025
Last month, @d_tranman and I gave a talk @MCTTP_Con called "COM to the Darkside" focusing on COM/DCOM cross-session and fileless lateral movement tradecraft. Check out the slides here: github.com/bohops/COM-to-the… Recording should be released soon.
1
80
250
23,368
DTM retweeted
23 Oct 2025
Credential Guard was supposed to end credential dumping. It didn't. @bytewreck just dropped a new blog post detailing techniques for extracting credentials on fully patched Windows 11 & Server 2025 with modern protections enabled. Read for more ā¤µļø ghst.ly/4qtl2rm

11
336
738
137,092
DTM retweeted
Challenge Announcement: binary.golf/6

4
10
748
DTM retweeted
Binary Golf Grand Prix 6 begins now! #BGGP6 theme: "Recycle"
4
25
59
28,132
DTM retweeted
BGGP6 will start tomorrow instead of today! Sorry 4 The Wait
4
15
1,693
13 Oct 2025
I have taken to really love the Binary Golf competitions - super excited for #BGGP6 *cue Mario Kart race start music*
The Sixth Annual Binary Golf Grand Prix #BGGP6 will start Friday 10/17!!! @binarygolf Fall/Winter 2025

ALT Luigi spinning in Mario Golf

3
479
DTM retweeted
The Sixth Annual Binary Golf Grand Prix #BGGP6 will start Friday 10/17!!! @binarygolf Fall/Winter 2025

ALT Luigi spinning in Mario Golf

9
12
2,938
DTM retweeted
An Insider Look At The APT35 Operations cloudsek.com/blog/an-insider…
9
37
117
89,204
27 Sep 2025
Red Treat was incredible. Thank you so much to @domchell @StanHacked @MarcOverIP for your hard work making another successful year. The calibre of content shared the conversations was šŸ‘Œand @max__grim thanks for another swanky badge
#RedTreat2025 is a wrap @StanHacked @MarcOverIP - thanks to all the speakers and the panel team for an extra awesome con this year 🫶
2
2
21
2,022