hacker_ralf's profile picture. Pentest, Red Team, Offsec Dev

HackerRalf

@hacker_ralf

Pentest, Red Team, Offsec Dev

置頂

This is C2 I decided to write publicly. If you are interested, I hope for feedback) I am fixing version 0.1 ... adaptix-framework.gitbook.io/adaptix-framew… #c2


The AdaptixC2 model allows you to develop your own agents and listeners. There are already several similar extenders from the community, and two blogs describing the creation process. For example p0142.github.io/posts/lamperlv…

p0142.github.io

Lessons from Perlyite(Building a custom Adaptix agent)

Process of developing a custom agent for the Adaptix C2. Creating a listener, getting a callback, and basic command execution.


AdaptixC2 v0.11 is out! Feature updates, fixes, new BOFs, and 2 new community-contributed agents! Releass Notes: adaptix-framework.gitbook.io/adaptix-framew…

hacker_ralf's tweet image. AdaptixC2 v0.11 is out! 

Feature updates, fixes, new BOFs, and 2 new community-contributed agents! 

Releass Notes: adaptix-framework.gitbook.io/adaptix-framew…

HackerRalf 已轉發

NoMoreStealers - a Windows file system minifilter driver that protects sensitive user data from untrusted processes github.com/EvilBytecode/N…


HackerRalf 已轉發

This PR from fulc2um github.com/fortra/impacke… implements Shadow RDP on Impacket, this is so fking cool omgggg


HackerRalf 已轉發

Released my Cobalt Strike BOF for fork & run injection! Features Draugr stack spoofing, PPID spoofing, multiple execution methods, and indirect syscalls for enhanced OpSec. github.com/NtDallas/BOF_S…

RtlDallas's tweet image. Released my Cobalt Strike BOF for fork & run injection! Features Draugr stack spoofing, PPID spoofing, multiple execution methods, and indirect syscalls for enhanced OpSec.

github.com/NtDallas/BOF_S…

HackerRalf 已轉發

Patching one technique doesn't close the entire attack vector. dMSA abuse is still a problem, and @_logangoins just dropped a reality check with new tooling to prove it. Learn more about the issue & the new BadTakeover BOF. ghst.ly/42POg9L


AdaptixC2 v0.9 is out! github.com/Adaptix-Framew… * New dock-based client * Public Web-API * New BOFs in Extension-Kit Full changelog: adaptix-framework.gitbook.io/adaptix-framew…

hacker_ralf's tweet image. AdaptixC2 v0.9 is out! 

github.com/Adaptix-Framew…

* New dock-based client
* Public Web-API
* New BOFs in Extension-Kit

Full changelog: adaptix-framework.gitbook.io/adaptix-framew…

I've been rewriting the AdaptixC2 client for the past two weeks. I wanted to make it more flexible, dynamic, and user-friendly. I think I've succeeded. [v0.9]


HackerRalf 已轉發

You want to load your shellcode in .NET without calling VirtualProtect? Use RuntimeHelpers.PrepareMethod to create a predictable RWX memory region for you. This method also doesn't require a delegate function pointer, since you override a .NET method. github.com/Mr-Un1k0d3r/Do…


HackerRalf 已轉發

Added my implementation of file/directory hiding kernel driver. github.com/daem0nc0re/Vec…

daem0nc0re's tweet image. Added my implementation of file/directory hiding kernel driver.

github.com/daem0nc0re/Vec…

HackerRalf 已轉發

🛠️ NTSleuth - an advanced Windows syscall extraction and analysis framework that automatically discovers, documents, and analyzes system calls across all Windows architectures 🌐 github.com/xaitax/NTSleuth


AdaptixC2 v0.8 is out! github.com/Adaptix-Framew… * AxScript: new events and functions * Added Targets Manager * Updated tunnels Full update details: adaptix-framework.gitbook.io/adaptix-framew…

hacker_ralf's tweet image. AdaptixC2 v0.8 is out!

github.com/Adaptix-Framew…

* AxScript: new events and functions
* Added Targets Manager
* Updated tunnels

Full update details: adaptix-framework.gitbook.io/adaptix-framew…

HackerRalf 已轉發

I automated the POC for stealing policies from MP relays from this blog into a modified version of mssqlclient specterops.io/blog/2025/07/1… would work too with any other piv account to the DB github.com/garrettfoster1… (no PR because impacket doesnt merge, sorry)


HackerRalf 已轉發

New blog post just dropped! West Shepherd breaks down extending the Mythic Poseidon agent for ARM64 Dylib injection on Apple Silicon. Details include: ✅ Shellcode construction ✅ Memory allocation ✅ Runtime patching ✅ Thread creation Read more ⤵️ ghst.ly/41Nu4ED


AdaptixC2 v0.7 is out! github.com/Adaptix-Framew… * AxScript scripting support * Credential Manager added * BOF support in the Gopher agent * New BOFs: potato-dcom, nanodump, noconsolation Full update details: adaptix-framework.gitbook.io/adaptix-framew…

hacker_ralf's tweet image. AdaptixC2 v0.7 is out!

github.com/Adaptix-Framew…

* AxScript scripting support
* Credential Manager added
* BOF support in the Gopher agent
* New BOFs: potato-dcom, nanodump, noconsolation

Full update details: adaptix-framework.gitbook.io/adaptix-framew…

HackerRalf 已轉發

Golden dMSA: One key to rule them all Just found a new flaw in Windows Server 2025's dMSAs that lets attackers brute-force ALL managed service account passwords with 1024 attempts. This research builds on the awesome research Golden gMSA (@YuG0rd ). semperis.com/blog/golden-dm…

RedPanda4Good's tweet image. Golden dMSA: One key to rule them all
Just found a new flaw in Windows Server 2025's  dMSAs that lets attackers brute-force ALL managed service account passwords with 1024 attempts.  This research builds on the awesome research Golden gMSA (@YuG0rd ).  

semperis.com/blog/golden-dm…

HackerRalf 已轉發

Have you always wanted to roll out your own offensive monitoring network? See how Async BOFs enable automatic notifications for when users log in, useful applications (such as password vaults) are started, or the user tries to log off/shut down. outflank.nl/blog/2025/07/1…

OutflankNL's tweet image. Have you always wanted to roll out your own offensive monitoring network? See how Async BOFs enable automatic notifications for when users log in, useful applications (such as password vaults) are started, or the user tries to log off/shut down.  outflank.nl/blog/2025/07/1…

Loading...

Something went wrong.


Something went wrong.