Tweets
- Tweets, current page.
- Tweets & replies
- Media
You blocked @peterwintrsmith
Are you sure you want to view these Tweets? Viewing Tweets won't unblock @peterwintrsmith
-
Pinned Tweet
I recently stumbled upon the code I had written for the Crystal Anti-Exploit Protection product back in 2011-2012 and decided to make it public! There’s lots of stuff in there for any fans of exploit dev/reversing/low level windows! Check it out:https://github.com/peterwintersmith/crystalaep …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
I’m excited to finally release a short book that’s about building C2 implants in C++. I hope it can serve as an educational resource for those in Red Teams who want to get started writing their own implants and related C2 components. You can read it here: https://shogunlab.gitbook.io/building-c2-implants-in-cpp-a-primer/ …pic.twitter.com/u745xGnkZ6
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
We’re very happy to announce dates for our next public Adversary Simulation and Red Team Tactics Training are now available... https://www.eventbrite.com/e/adversary-simulation-and-red-team-tactics-tickets-130556513045 …pic.twitter.com/cmXuNIwXY6
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Has anyone successfully retrieved an out/ref .NET method parameter when hosting the CLR? I have a function with signature public static void foo(out string[] bar) and I can’t seem to get at bar! I’ve tried the usual suspects, i.e. SAFEARRAY with VT_BYREF|VT_ARRAY|VT_BSTR
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Just pushed a new blog post to the
@MDSecLabs blog on Outlook based persistence - https://www.mdsec.co.uk/2020/11/a-fresh-outlook-on-mail-based-persistence/ …pic.twitter.com/P6MuhpwnMg
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Dominic Chell - Offensive Development: Post Exploitation Tradecraft in an EDR World
@domchell at@x33fcon 2020https://youtu.be/GHmOJhpMw_oThanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Since Microsoft is stepping up their game against OAuth Phishing attacks, we are releasing our internal version of the Office 365 Attack Toolkit. New features include interactive email search, email sending etc.https://github.com/mdsecactivebreach/o365-attack-toolkit …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Due to continued expansion, we have vacancies for UK based, experienced appsec professionals in our consultancy and pentest team https://www.mdsec.co.uk/careers/ pic.twitter.com/jJxeDsjcjf
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Segmentation Vault: Cloning Thick Client Access... a new blog post by
@dtmsecurity dives in to cloning OneDrive access https://www.mdsec.co.uk/2020/10/segmentation-vault/ …pic.twitter.com/dHmuyBrN7qThanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Our 2nd post of the week, Covert Web Shells in .NET by
@irsdl is now live athttps://www.mdsec.co.uk/2020/10/covert-web-shells-in-net-with-read-only-web-paths/ …Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
I found an interesting
#LOLBIN using Windows Update Client (wuauclt.exe) as a loader - blog, pull request to LOLBAS and in the wild sample here https://dtm.uk/wuauclt/ - I am hoping to finalise some of my work on the methodology I used soon@MDSecLabs so keep your eyes posted.Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
The final post in the lateral movement series by
@domchell is now live! This time we dive in to DLL Hijacking for jumping laterally... https://www.mdsec.co.uk/2020/10/i-live-to-move-it-windows-lateral-movement-part-3-dll-hijacking/ …pic.twitter.com/9mlErI8mrYThanks. Twitter will use this to make your timeline better. UndoUndo -
Anyone wanting to train combat sports in London should train with Paul Clark! He’s a fantastic coach with whom I’ve had many fantastic classes and 1-on-1 sessions over the past few years (and can’t wait to have more when things are back to normal routines!)https://twitter.com/pwclarky/status/1314239680481759232 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Welcome guys! Excited to be working with you both!https://twitter.com/MDSecLabs/status/1311651941085306882 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Just blogged on using Cobaltstrike Over External C2 via Dropbox: https://truneski.github.io/blog/2018/11/05/cobaltstrike-over-external-c2-via-dropbox/ … Github Repo: https://github.com/Truneski/external_c2_framework … Any feedback is appreciated and welcome
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Part 2 in
@domchell’s series on Windows lateral movement is now live on the blog https://www.mdsec.co.uk/2020/09/i-like-to-move-it-windows-lateral-movement-part-2-dcom/ … stayed tuned for part 3...pic.twitter.com/BIlIQZycTmThanks. Twitter will use this to make your timeline better. UndoUndo -
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Peter Winter-Smith Retweeted
Part 1 in the “I Like to Move It” series on lateral movement by
@domchell is now live... https://www.mdsec.co.uk/2020/09/i-like-to-move-it-windows-lateral-movement-part-1-wmi-event-subscription/ …#redteampic.twitter.com/YeKhQmITOPThanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Big thanks to
@Cyb3rWard0g for his assistance with the detection section here and putting the time in to produce a Mordor dataset!https://twitter.com/MDSecLabs/status/1300786988799401985 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Peter Winter-Smith Retweeted
Last weekends project was looking at 4(ish) ways to move laterally with Win32_ScheduledJob in both .NET and PowerShell:https://github.com/mez-0/MoveScheduler …
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
I couldn’t recommend working
@MDSecLabs highly enough! Great company, work environment and peers! I encourage anyone on the fence about a change to consider!https://twitter.com/MDSecLabs/status/1299281538601947137 …
Thanks. Twitter will use this to make your timeline better. UndoUndo
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.