Red Blue Team – Telegram
Red Blue Team
5.02K subscribers
38 photos
5 videos
33 files
1.43K links
-> 20 June 2019

]-> RedTeam | BlueTeam | Pentest

[-> Blue Team @BlueTeamKit
Download Telegram
#Red_Team

A very basic, single-file, #PHPshell. It can be used to quickly execute commands on a server when pentesting a PHP application. Use it with caution: this noscript represents a security risk for the server.

https://github.com/flozz/p0wny-shell

@BlueRedTeam
CSharp Alternative Shellcode Callbacks

Alternative #shellcode execution techniques using Windows callback functions

Each CSharp file contains code to execute shellcode using native Windows callbacks. I tried to use much less common callback techniques that weren't typically documented online as far as I could tell. This way they should be more evasive.

https://github.com/wsummerhill/CSharp-Alt-Shellcode-Callbacks
@BlueTeamkit
@BlueRedTeam
#Red_Team

​​List of Awesome macOS Red Teaming Resources.

As more and more companies begin to adopt macOS as a daily office solution, we often encounter macOS operating system during our Pentest/Red Teaming process.

How to #hacking #macOS, how to achieve Persistence under macOS, and using this as a starting point Lateral Movement to DC is a topic worth research.

This list is for anyone who wants to learn about Red Teaming for macOS but has no starting point.

https://github.com/tonghuaroot/Awesome-macOS-Red-Teaming

@BlueRedTeam
1
Code snippets to add on top of #Cobalt_Strike sleep mask to achieve patchless hook on AMSI and ETW.

Feature:
→ Breakpoint will be removed during sleep to avoid scanner (I hope lol)
→ Avoid scanner like moneta that will detect if DLL is modified.

Usage :

1. Include "patchless.c" in sleepmask.c (only supports x64)

2.Add the functions required to do patchless hook on desired functions

→ You may refer to sleepmask.c to see what have been amended

3.Put patchless.c in src47 folder

4.Compile

https://github.com/ScriptIdiot/sleepmask_PatchlessHook

@BlueRedTeam
👍2
If you have a high skill in web penetration testing, send a message to join our team: denoscription in DM.
@Kaveh_TM
👎5👍2
#Red_Team

A RedTeam Toolkit

ARTToolkit is an interactive cheat sheet, containing an useful list of offensive security tools and their respective commands/payloads, to be used in red teaming exercises.

https://github.com/arttoolkit/arttoolkit.github.io

Find the project at https://ARTToolkit.github.io

Created by Maurits Maas
This project was based on the creation of John Woodman and was inspired by GTFOBins and LOLBAS. I relied heavily on WADComs site template to make this one.

@BlueRedTeam
👍2
#Red_Team

And many more. I created this repo to have an overview over my starred repos. I was not able to filter in categories before. Feel free to use it for yourself. I do not list Kali default tools as well as several testing tools which are state of the art.

https://gist.github.com/z0rs/e1c640e2892cb6737602fec5d5496480

@BlueRedTeam
👍5