elfx32 redteam blog

Sunday, January 23, 2022

 Welcome

at January 23, 2022 No comments:
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Newer Posts Home
Subscribe to: Posts (Atom)

DFIR Triage against Indirect Syscall C2 Loader

  • Intro to Timeroasting - A New Attack Against the Network Time Protocol (NTP)
    Today we will be shortly covering a tool called " Timeroast " by SecuraBV which takes advantage of the Network Time Protocol (NTP)...
  • Bypassing EDR/AV Solutions with Tarturus' Gate - An evolution of Halo's Gate for Direct Syscall Malware
    EDRs are constantly evolving with the cat-mouse nature of threats evolving and threat actors are becoming more cognizant of detection method...
  • AV Evasion via Powershell Cradles & Converting C# binaries into Powershell Scripts
      In this technique we will be going over how to have our payloads downloaded via HTTP and then being loaded directly into memory. This woul...

About Me

My photo
D-7
View my complete profile

Blog Archive

  • August 2026 (4)
  • July 2026 (1)
  • January 2024 (1)
  • November 2023 (1)
  • October 2023 (1)
  • September 2023 (1)
  • August 2023 (1)
  • March 2022 (1)
  • February 2022 (1)
  • January 2022 (1)

Report Abuse

Followers

Powered By Blogger

すてきな一日を

Contact Me

Name

Email *

Message *

  • Home

Search This Blog

Simple theme. Theme images by luoman. Powered by Blogger.