Offensive research dude. Occasional CTF player (looking for a team!)

Joined July 2016
86 Photos and videos
sinusoid retweeted
I'm pleased to announce @HyperDbg v0.19. This release introduces a new module, HyperTrace, which brings hypervisor-level integration w/ tracing technologies such as Last Branch Record (LBR) & Processor Trace (PT). LBR is now available, with more coming. github.com/HyperDbg/HyperDbg…
2
20
90
8,777
sinusoid retweeted
We think of WASM as a mechanism to run compiled code in your browser, but what if we shimmed in all the host APIs necessary to run full implants with ALL logic entirely in the WASM VM? This post walks through what that looks like. praetorian.com/blog/wasmforg… #wasm #malware #sliver
3
24
72
8,760
sinusoid retweeted
In macOS Tahoe 26.4 Apple added a new security feature to Terminal that warns users of potentially malicious pastes with a "Possible malware, Paste blocked" prompt. Here how it actually works 🧵
14
95
745
113,132
sinusoid retweeted
New blog: Using LLMs the right way for malware analysis 💡Tips for building an autonomous AI analysis lab on a 12 yo laptop and getting stuff done faster without loss of accuracy. blog.gdatasoftware.com/2026/…
8
129
438
37,008
DEMOSCENE > all.
17 Dec 2025
Realtime code, handmade ascii animations and raw tracker music. The demo ’CMOS Cosmos’ by Razor 1911 in 2025 #demoscene #ascii #msdos
1
238
sinusoid retweeted
17 Dec 2025
Realtime code, handmade ascii animations and raw tracker music. The demo ’CMOS Cosmos’ by Razor 1911 in 2025 #demoscene #ascii #msdos
95
549
3,266
127,584
sinusoid retweeted
Replying to @Defte_
Update: Thanks to @RedTeamPT, I created a pull request for ntlmrelayx to reflect the new requirements: github.com/fortra/impacket/p… Now Shadow Creds are working again 😀
5
80
285
23,877
sinusoid retweeted
Jan 26
I've tried something new! I have streamed some unfiltered coding, writing a module to detect malicious bytes in a shellcode injection scenario for an EDR that would use the System Call Integrity Layer project: youtube.com/watch?v=gK4OXh6l… If this content is useful, or you like it, please let me know and give me some ideas what you would want to see! I want to grow in myself and help produce content that would be beneficial for our amazing cyber community! #blueteam #cybersecurity #redteam #driver #rust #rustlang #infosec #rustdriver #soc #cyber #cti #informationsecurity #infosec
1
17
67
6,239
sinusoid retweeted
Jan 12
When MicroQuickJS released, I spent 8.5 hours to summon an Exploit for it. Here is the Fault: var arr = new Array(30) var attack = { valueOf: function() { arr.length = 0 arr.length = 3 return 10 } } arr.splice(attack, 30) I document the full Ritual Process below
24 Dec 2025
New JS engine, old JS vulns :) Found a bug and wrote an exploit in 8 hours 645da364a8089c43953b345d3004fc76148cb2f136f74e211429ddc8452846d1 exp-shell.js ./mqjs ./exp-shell.js LEAKED: 77b6 1c5ff205 LIBC BASE: 77b6 1d600000 STACK PTR: 7ffd 143e1bb8 WROTE ROP CHAIN $ whoami nyan
4
20
167
28,506
sinusoid retweeted
i made a browser extension
35
218
4,407
112,448
sinusoid retweeted
Let's play peekaboo with PatchGuard! Read our blog post about hiding processes on modern Windows systems with HVCI enabled: outflank.nl/blog/2026/01/07/…
6
126
316
26,229
sinusoid retweeted
🔥Introducing a new Red Team tool - SessionHop: github.com/3lp4tr0n/SessionH… SessionHop utilizes the IHxHelpPaneServer COM object to hijack specified user sessions. This session hijacking technique is an alternative to remote process injection or dumping LSASS. Kudos to @tiraniddo for first discovering this years ago. Blue Team tip: Look for unusual child processes spawning from HelpPane.exe
5
138
396
34,433
sinusoid retweeted
22 Dec 2025
Reusing part of the ESC1-unPAC BOF code to create a ShadowCreds unPAC BOF 1. Write msDS-KeyCredentialLink attribute using obfuscated LDAP queries. 2. Authenticate to the KDC using PKINIT. 3. unPAC-the-hash. 4. Cleanup msDS-KeyCredentialLink. github.com/RayRRT/BOFs/tree/…
4
52
190
12,133
sinusoid retweeted
ProfileHound is a post-escalation tool to help find and achieve red-teaming objectives by locating domain user profiles on machines. It uses the BloodHound OpenGraph format to build a new edge called which determines if a user profile exists on a computer. This edge allows operators to make informed decisions about which computers to target for looting secrets. github.com/m4lwhere/profileh…
1
43
178
12,223
sinusoid retweeted
I've merged the first PR of 2026 for Wyrm, v0.7.2! This brings: - Spawn via Early Cascade Injection. - 'Wyrm Object Files (WOFs)' which allows the operator to extend the agent's capability via C/C /Rust/(probably even Zig) - currently only at compile time. Runtime WOFs will be released in due course. - The inject command for injecting Wyrm into another process. - AMSI bypass uses VEH^2 over amsi.dll patching. Perhaps I can split this out into a profile to allow the operator to choose which method they would like. - Refelctive DLL inherits ETW patching from your profile.toml. - C2 stability fixes. Thanks everyone for your support in 2025, lets make 2026 the year of the dragon 🐉 github.com/0xflux/Wyrm #redteam #blueteam #wyrm #pentesting #cyber #infosec #maldev #cybersecurity #pentest #tools #rust #rustlang
3
25
108
12,503
sinusoid retweeted
Using ADCS to Attack HTTPS-Enabled WSUS Clients: @cookieTheft and I have extended the research by @Coontzy1 on WSUS attacks and explored how to leverage misconfigured ADCS templates to gain code execution on HTTPS-enabled WSUS clients. 1/2🧵
2
79
290
25,960
sinusoid retweeted
I'm excited to finally share Chronomaly, a kernel exploit for Android and Linux kernels 5.10.x using CVE-2025-38352. As a reminder, please patch your Android devices if you haven't already! I recommend getting some 🍿 before reading this post 👀 All links in the thread below:
14
98
434
40,518
sinusoid retweeted
27 Dec 2025
I HATE EXPLOIT DEVELOPMENT I HATE EXPLOIT DEVELOPMENT I HATE EXPLOIT DEVELOPMENT I HATE EXPLOIT DEVELOPMENT I HATE EXPLOIT DEVELOPMENT I HATE EXPLOIT DEVELOPMENT OMG ! IT WORKS, ZERO DAY I LOVE EXPLOIT DEVELOPMENT I LOVE EXPLOIT DEVELOPMENT I LOVE EXPLOIT DEVELOPMENT
I HATE PROGRAMMING I HATE PROGRAMMING I HATE PROGRAMMING I HATE PROGRAMMING I HATE PROGRAMMING I HATE PROGRAMMING I HATE PROGRAMMING YES! IT WORKS! I LOVE PROGRAMMING I LOVE PROGRAMMING I LOVE PROGRAMMING
10
26
569
30,247
sinusoid retweeted
I got interviewed on CTF Radiooo! youtu.be/v22IRBJWBQkn. Big thanks to hosts @adamdoupe and @Zardus for the opportunity & the fun chat!
4
23
4,103