Red Blue Team – Telegram
Red Blue Team
5.02K subscribers
38 photos
5 videos
33 files
1.43K links
-> 20 June 2019

]-> RedTeam | BlueTeam | Pentest

[-> Blue Team @BlueTeamKit
Download Telegram
CSharp Alternative Shellcode Callbacks

Alternative #shellcode execution techniques using Windows callback functions

Each CSharp file contains code to execute shellcode using native Windows callbacks. I tried to use much less common callback techniques that weren't typically documented online as far as I could tell. This way they should be more evasive.

https://github.com/wsummerhill/CSharp-Alt-Shellcode-Callbacks
@BlueTeamkit
@BlueRedTeam
#Red_Team

​​List of Awesome macOS Red Teaming Resources.

As more and more companies begin to adopt macOS as a daily office solution, we often encounter macOS operating system during our Pentest/Red Teaming process.

How to #hacking #macOS, how to achieve Persistence under macOS, and using this as a starting point Lateral Movement to DC is a topic worth research.

This list is for anyone who wants to learn about Red Teaming for macOS but has no starting point.

https://github.com/tonghuaroot/Awesome-macOS-Red-Teaming

@BlueRedTeam
1
Code snippets to add on top of #Cobalt_Strike sleep mask to achieve patchless hook on AMSI and ETW.

Feature:
→ Breakpoint will be removed during sleep to avoid scanner (I hope lol)
→ Avoid scanner like moneta that will detect if DLL is modified.

Usage :

1. Include "patchless.c" in sleepmask.c (only supports x64)

2.Add the functions required to do patchless hook on desired functions

→ You may refer to sleepmask.c to see what have been amended

3.Put patchless.c in src47 folder

4.Compile

https://github.com/ScriptIdiot/sleepmask_PatchlessHook

@BlueRedTeam
👍2
If you have a high skill in web penetration testing, send a message to join our team: denoscription in DM.
@Kaveh_TM
👎5👍2
#Red_Team

A RedTeam Toolkit

ARTToolkit is an interactive cheat sheet, containing an useful list of offensive security tools and their respective commands/payloads, to be used in red teaming exercises.

https://github.com/arttoolkit/arttoolkit.github.io

Find the project at https://ARTToolkit.github.io

Created by Maurits Maas
This project was based on the creation of John Woodman and was inspired by GTFOBins and LOLBAS. I relied heavily on WADComs site template to make this one.

@BlueRedTeam
👍2
#Red_Team

And many more. I created this repo to have an overview over my starred repos. I was not able to filter in categories before. Feel free to use it for yourself. I do not list Kali default tools as well as several testing tools which are state of the art.

https://gist.github.com/z0rs/e1c640e2892cb6737602fec5d5496480

@BlueRedTeam
👍5
#C2

Open source cross-platform adversary emulation/red team framework, it can be used by organizations of all sizes to perform security testing. Sliver's implants support C2 over Mutual TLS (mTLS), WireGuard, HTTP(S), and DNS and are dynamically compiled with per-binary asymmetric encryption keys.

https://github.com/BishopFox/sliver

@BlueRedTeam
👍1