C0axx's profile picture. Red Team Operator @BHinfoSecurity #HackThePlanet APT-C-40 #Father - Married to @N1N4011 #Fishing #WeightLifting #CombatVeteran

Curtis Ringwald💥🖥💥

@C0axx

Red Team Operator @BHinfoSecurity #HackThePlanet APT-C-40 #Father - Married to @N1N4011 #Fishing #WeightLifting #CombatVeteran

Curtis Ringwald💥🖥💥 reposted

EDR vendors secure their sales pipelines but neglect monitoring GitHub for exposed installer tokens -leaving customers vulnerable to abuse and over-licensing. Adversaries likely exploit these tokens to build sandboxes for payload testing. Here are search patterns to help…

rad9800's tweet image. EDR vendors secure their sales pipelines but neglect monitoring GitHub for exposed installer tokens -leaving customers vulnerable to abuse and over-licensing.

Adversaries likely exploit these tokens to build sandboxes for payload testing. Here are search patterns to help…

Curtis Ringwald💥🖥💥 reposted

Pre-release! Airspace Visualizer is now on GitHub — ADS-B + VDL2 + AI assistant. - LInux (Windows w/minor tweaks) - Real-time aircraft display - Semantic RAG + chat - Geospatial overlays - Built for local data feeds 🔗 github.com/mebrown47/airs… Early, rough, and ready for you…

ElbaSatGuy's tweet image. Pre-release!

Airspace Visualizer is now on GitHub — ADS-B + VDL2 + AI assistant.

- LInux (Windows w/minor tweaks)

- Real-time aircraft display
- Semantic RAG + chat
- Geospatial overlays
- Built for local data feeds

🔗 github.com/mebrown47/airs…

Early, rough, and ready for you…

I’m taking part in the Extortion 17 Memorial Run/Ruck to honor the sacrifices of the warriors lost on August 6, 2011, and to support the families of the fallen. Help me reach my fundraising goal to benefit the special warfare community connected to the Travis Manion Foundation…


I just entered for a chance to win a suppressed .22 LR setup in @SilencerShop’s Hollywood Quiet Giveaway 🎬🤫. Enter here: swee.ps/EAWkkq_dkGlgPA


Curtis Ringwald💥🖥💥 reposted

You can reach any @Cloudflare domain content by accessing any other Cloudflare domain and using a spoofed SNI, even if the domains are blocked locally or are part of a network blacklist. I believe this is how Cloudflare is supposed to work, which is neat. POST and OPTIONS verbs.

deadvolvo's tweet image. You can reach any @Cloudflare domain content by accessing any other Cloudflare domain and using a spoofed SNI, even if the domains are blocked locally or are part of a network blacklist.

I believe this is how Cloudflare is supposed to work, which is neat. POST and OPTIONS verbs.

Curtis Ringwald💥🖥💥 reposted

Pentesters: What's the coolest thing you've done with Burp Suite? 💥🖋️ New to the industry? You'll want to make sure you're comfortable with it and BB King has got you covered! THIS Friday, June 13th: antisyphontraining.com/course/worksho…

Antisy_Training's tweet image. Pentesters: What's the coolest thing you've done with Burp Suite? 💥🖋️

New to the industry? You'll want to make sure you're comfortable with it and BB King has got you covered! 

THIS Friday, June 13th: antisyphontraining.com/course/worksho…

Curtis Ringwald💥🖥💥 reposted

🚨You have a true positive alert on a Windows/Linux endpoint—this is not a drill! Learn how to investigate & respond fast in Rapid Endpoint Investigations w/ Patterson Cake. Live demos + hands-on labs. 📅 Friday, June 6 💸 Pay-What-You-Can Register Now: antisyphontraining.com/course/worksho…

Antisy_Training's tweet image. 🚨You have a true positive alert on a Windows/Linux endpoint—this is not a drill! Learn how to investigate & respond fast in Rapid Endpoint Investigations w/ Patterson Cake. 

Live demos + hands-on labs.
📅 Friday, June 6
💸 Pay-What-You-Can
Register Now: antisyphontraining.com/course/worksho…

Curtis Ringwald💥🖥💥 reposted

Automated deployment of red team infrastructure through GitHub Actions workflows. It supports configurable C2 frameworks and phishing operations with a focus on secure, repeatable deployments. github.com/CultCornholio/…


Curtis Ringwald💥🖥💥 reposted

Microsoft Copilot for SharePoint just made recon a whole lot easier. 🚨   One of our Red Teamers came across a massive SharePoint, too much to explore manually. So, with some careful prompting, they asked Copilot to do the heavy lifting...   It opened the door to credentials,…

PenTestPartners's tweet image. Microsoft Copilot for SharePoint just made recon a whole lot easier. 🚨
 
One of our Red Teamers came across a massive SharePoint, too much to explore manually. So, with some careful prompting, they asked Copilot to do the heavy lifting...
 
It opened the door to credentials,…

Curtis Ringwald💥🖥💥 reposted

In-case you missed the webcast, here's the GitHub link github.com/rvrsh3ll/Bolth…. Blog post coming soon! One of my fav bits we talked about was using this to have your C2 call to 127.0.0.1:port or even adding dev tunnels to the ClickOnce. Many options. Modify to taste 🧑‍🍳

I'm just gonna slide this little teaser shot in for today's @BHinfoSecurity webcast I'm giving.... And you thought self-signed ClickOnce payloads were dead..

rvrsh3ll's tweet image. I'm just gonna slide this little teaser shot in for today's @BHinfoSecurity webcast I'm giving.... And you thought self-signed ClickOnce payloads were dead..


Curtis Ringwald💥🖥💥 reposted

I'm just gonna slide this little teaser shot in for today's @BHinfoSecurity webcast I'm giving.... And you thought self-signed ClickOnce payloads were dead..

rvrsh3ll's tweet image. I'm just gonna slide this little teaser shot in for today's @BHinfoSecurity webcast I'm giving.... And you thought self-signed ClickOnce payloads were dead..

Hey folks! Check out ALL of the upcoming webcasts: poweredbybhis.com WEDNESDAY - Antisyphon Anticast Join Simply Cyber's Dr. Gerald Auger for a free, one-hour hands-on session and learn how to audit small businesses using CIS Controls 18. Get practical tips,…

BHinfoSecurity's tweet image. Hey folks!

Check out ALL of the upcoming webcasts: poweredbybhis.com

WEDNESDAY - Antisyphon Anticast

Join Simply Cyber's Dr. Gerald Auger for a free, one-hour hands-on session and learn how to audit small businesses using CIS Controls 18. 
 
Get practical tips,…
BHinfoSecurity's tweet image. Hey folks!

Check out ALL of the upcoming webcasts: poweredbybhis.com

WEDNESDAY - Antisyphon Anticast

Join Simply Cyber's Dr. Gerald Auger for a free, one-hour hands-on session and learn how to audit small businesses using CIS Controls 18. 
 
Get practical tips,…


Curtis Ringwald💥🖥💥 reposted

You have got a valid NTLM relay but SMB and LDAP are signed, LDAPS has got Channel Binding and ESC8 is not available... What about WinRMS ? :D Blogpost: sensepost.com/blog/2025/is-t… Tool: github.com/fortra/impacke… And also, big thanks to jmk (Joe Mondloch) for the collab' :D!

Defte_'s tweet image. You have got a valid NTLM relay but SMB and LDAP are signed, LDAPS has got Channel Binding and ESC8 is not available... What about WinRMS ? :D

Blogpost: sensepost.com/blog/2025/is-t…
Tool: github.com/fortra/impacke…

And also, big thanks to jmk (Joe Mondloch) for the collab' :D!

Curtis Ringwald💥🖥💥 reposted

Recently came across a pretty neat technique to silently load (malicious) VS Code extensions using its bootstrapping and portability features. Thought it was interesting enough to warrant my first blog post in 4 years 🙃 Check it out 👇 casvancooten.com/posts/2025/02/…


Curtis Ringwald💥🖥💥 reposted

I wanted to quickly account for the DJI firmware for AntSDR for an optional use case that could feed DragonSync and @LukeSwitzer_ mobile app - here’s Luke’s Mac mod and my DJI mod. Seems to work without jacking anything up @viperbjk 🤞 github.com/alphafox02/Dro…


Curtis Ringwald💥🖥💥 reposted

New "tool" to make life easier when doing post ex in Azure environments: github.com/LuemmelSec/Pen…

theluemmel's tweet image. New "tool" to make life easier when doing post ex in Azure environments:

github.com/LuemmelSec/Pen…

Curtis Ringwald💥🖥💥 reposted

Sorry folks, I had to remove the Disconnected GPO project from GitHub... but never fear, it has returned as Disconnected RSAT since it now supports the Certificate Authority and Certificate Templates snap-ins in addition to Group Policy support. github.com/CCob/DRSAT


Curtis Ringwald💥🖥💥 reposted

🎄Christmas Giveaway Time🎄 We are going to give this M81 MRC chest pack away to a random fren. Super simple to have your name in the hat. Like this post, follow us if you haven't already, share this post. Each action counts as an entry. Current followers are already in.

wendigo_works's tweet image. 🎄Christmas Giveaway Time🎄
We are going to give this M81 MRC  chest pack away to a random fren.
Super simple to have your name in the hat. Like this post, follow us if you haven't already, share this post. Each action counts as an entry. Current followers are already in.

Curtis Ringwald💥🖥💥 reposted

pytune - a post-exploitation tool for enrolling a fake device into Intune with multiple platform support github.com/secureworks/py…


Loading...

Something went wrong.


Something went wrong.