Luc4m · @luc4m
86 followers · 11 posts · Server ioc.exchange

Interesting payload protected with (asas.exe)

extracted:

Elevator.exe is a UAC bypass tool written in rust.

shellcode: pastebin.com/AvbeENgM
and epsio decryption utility:
gist.github.com/luca-m/212395d

H/T:
@r3dbU7z -> twitter.com/r3dbU7z/status/162

#espio #redteam #shellcode #97319fc83dfed8015ded37bc8069dfe8

Last updated 3 years ago

eg0n โœ… · @eg0n
122 followers · 398 posts · Server defcon.social

You send a string of 9000 A's and see the telltale 1010 pattern in the memory dump after the program crashes. You frantically check the , but the memory address for the seems random everytime. But wait, if you add 1C to EAX, you get the start of where memory was overwritten everytime. Just to be safe you put in a couple 0x90s to get a nice sled into your . You lower your hoodie and run your hand through your hair. Damn you're good.

#debugger #overflow #nop #shellcode #hacker #synthesizer #music

Last updated 3 years ago

Hexorg · @hexorg
42 followers · 205 posts · Server techhub.social

What is everyoneโ€™s crown achievement? Mine was implementing RSA (including bigint modpow functionality) as x86 .

#cybersecurity #encryption #shellcode

Last updated 3 years ago

Ringzer0 · @ringzer0
136 followers · 137 posts · Server infosec.exchange

๐Ÿ’ช Arm yourself with new knowledge this Thursday, and watch Saumil Shahโ€™s (@therealsaumil) โ€œAn Introduction to and โ€ of the event last December. Happy watching!

๐ŸŽฅ youtu.be/H1OB1k4JxhA

Are you interested in learning more about , and how to run exploits for ARM64 devices? Then sign up for Saumilโ€™s brand-new in February: โ€œThe ARM64 Laboratoryโ€. Go to our website for more details and to sign up!

๐ŸŽŸ๏ธ ringzer0.training/trainings/th

#workshop #arm64 #assembly #shellcode #return2workshop #iot #training #exploit

Last updated 3 years ago

Astra Kernel :verified: · @AstraKernel
604 followers · 637 posts · Server infosec.exchange

โœจ Avoiding Detection with Shellcode Mutator

โ–ถ๏ธ Mutates exploit source code without affecting its functionality, changing its signature and making it harder to reliably detect as malicious

Repository:
github.com/nettitude/Shellcode

Article:
labs.nettitude.com/blog/shellc

#shellcode #redteaming #pentesters #redteamtips #infosec #exploitation #binaryexploitation

Last updated 3 years ago

· @postmodern
778 followers · 374 posts · Server infosec.exchange

What would be a good name for execve("/bin/sh") shellcode payloads?

#shellcode #namingthings

Last updated 3 years ago

Ringzer0 · @ringzer0
98 followers · 81 posts · Server infosec.exchange

๐Ÿ’ช LAST CALL for @therealsaumil's FREE โ€œAn Introduction to Assembly and Shellcodeโ€! Get hands-on skills in writing ARM64 code, and write your own ARM64 . Donโ€™t forget to score your ticket - sign up now! ๐Ÿ‘‡

๐ŸŽŸ๏ธ ringzer0.training/workshops.ht

#workshop #arm64 #assembly #shellcode #free

Last updated 3 years ago

· @postmodern
378 followers · 326 posts · Server infosec.exchange

Looking at IPv6 reverse shell shellcodes and noticed most of them are hardcoded to use an IPv4 address and convert it to an IPv6-to-IPv4 mapped address (aka ::ffff:A.B.C.D). This is kind of BS, as it prevents you from specifying a fully qualified IPv6 address. It would be fairly easy to add additional instructions that loads in the hi/lo parts of the IPv6 address, negates them to avoid \x00 bytes, then push them onto the stack for sockaddr_in6.sin6_addr.

#shellcode #ipv6 #pentesting

Last updated 3 years ago

Ringzer0 · @ringzer0
87 followers · 66 posts · Server infosec.exchange

๐Ÿ’ช ICYMI - @therealsaumilโ€™s workshop is in two days! Learn more about and the key differences to ARM32 from an language perspective, get hands-on skills in writing ARM64 assembly code, and write your own ARM64 !

๐ŸŽŸ๏ธ ringzer0.training/workshops.html

#free #arm64 #assembly #shellcode

Last updated 3 years ago

Emory · @emory
72 followers · 272 posts · Server soc.kvet.ch

well my ticket about not respecting excluded folders that contain and/or code (and even tools like `lspci`) is finally being escalated to someone that hopefully knows what i'm even talking about.

i don't know how other people deal with this on self-managed personal workstations but my solution for macOS workstations is BitDefender and i would be so happy if it wasn't training me to click "exclude" every single day.

#BitDefender #shellcode #exploit #infosec

Last updated 3 years ago

Ringzer0 · @ringzer0
86 followers · 62 posts · Server infosec.exchange

๐Ÿ’ช Want to learn more about ? Join Saumil Shahโ€™s FREE workshop, and learn the key differences between ARM32 and ARM64 from an language perspective, get hands-on skills in writing ARM64 assembly code, and write your own ARM64 !

๐ŸŽŸ๏ธ ringzer0.training/workshops.ht

#arm64 #assembly #shellcode

Last updated 3 years ago

· @postmodern
364 followers · 295 posts · Server infosec.exchange

Should reverse shell shellcode payloads accept only IPs, or accept host names and automatically resolve them to IPs?

#shellcode #pentesting

Last updated 3 years ago

Alex · @alexbell
0 followers · 4 posts · Server infosec.exchange

Pro tip: if you're baffled how a piece of is able to bind/listen/accept while appearing to call getuid over and over it's because you're looking at the wrong table

#shellcode #syscall

Last updated 3 years ago

Ringzer0 · @ringzer0
84 followers · 59 posts · Server infosec.exchange

๐Ÿ’ช Want to learn more about ? Join Saumil Shahโ€™s (@therealsaumil) FREE workshop, and learn the key differences between ARM32 and ARM64 from an language perspective, get hands-on skills in writing ARM64 assembly code, and write your own ARM64 !

๐ŸŽŸ๏ธ ringzer0.training/workshops.ht

#arm64 #assembly #shellcode

Last updated 3 years ago

Marco Ivaldi · @raptor
1185 followers · 320 posts · Server infosec.exchange

i found the outline i wrote up of all the posts i had planned to write back in 2019/2020 before shit in my personal life became too difficult for there to be room for such things.
i think i'm going to pick those back up and bring them to fruition.
the topics, each with various sub topics for individual posts are:

  • tips tricks and caveats
  • chaining
  • creation, debugging, and use
  • stack corruption
  • heap corruption
  • info leaks
  • real world as exercises

i would also like to bring back the live n-day exploit dev sessions on the @exploiteers discord some time in the near future.

#arm #exploitation #blog #rop #shellcode #bugs

Last updated 3 years ago

sasaga :verified: · @sanchez
7 followers · 14 posts · Server hachyderm.io

I share with you some SHELLCODES that I programmed in ASM for the Windows x86/64 platform.
github.com/sasaga/SHELLCODES-W

#asm #shellcode

Last updated 3 years ago

gucci ๐Ÿช‚ · @gucci
-1 followers · 7 posts · Server infosec.exchange

โš™๏ธโ€‹ BrokenFlow: A simple PoC to invoke an encrypted shellcode by using an hidden call

github.com/enkomio/BrokenFlow

Invoking encrypted shellcode by using hidden call, Antonio Parata.

#shellcode #staticanalysis

Last updated 3 years ago

Antonio Montillo · @anto
6 followers · 3 posts · Server mastodon.xyz

๐’๐ก๐ž๐ฅ๐ฅ๐œ๐จ๐๐ž ๐ƒ๐ž๐ฏ๐ž๐ฅ๐จ๐ฉ๐ฆ๐ž๐ง๐ญ

Rop with shellcode
lnkd.in/d2rXu_aq

Rop Injector
lnkd.in/dJ6K8tRk

OSED Scripts
lnkd.in/dXbKWWHU

Shellcode Development Article
lnkd.in/dzwwzbe8

Book: The Shellcoder's Handbook
lnkd.in/dSa38D5T

Awesome Exploit Development
lnkd.in/gsYRqdgZ

Download ebook: lnkd.in/e-UyPeV

#shellcode #bufferoverflow #pentest #hacking #cybersecurity #redteam #informationsecurity

Last updated 3 years ago

· @postmodern
217 followers · 106 posts · Server infosec.exchange

Should shellcode still be included in an exploit framework in the year 2022?

#shellcode #exploit #infosec

Last updated 3 years ago