💀
0xTriboulet
  • Introduction
  • Achieving Access
    • achieving access: implantv1
    • achieving access: implantv2
    • achieving access: implantv3
  • Deceiving Defender
    • Deceiving Defender: Making nc.exe viable again
    • Deceiving Defender: Classic Bypass
    • Deceiving Defender: Name Bypass
    • Deceiving Defender: The Texas Two Step
    • Deceiving Defender: The Big Stack Bypass
      • Making Meterpreter Viable Again
    • Deceiving Defender: Meterpreter
  • Making Malware
    • making malware #0
    • making malware #1
    • making malware #2
  • Just Malicious
    • Advanced String Obfuscation
    • From C, with inline assembly, to shellcode
    • Thnks4RWX
  • TTPs
    • TTPs: Embedding Payloads with MSFVenom (x86)
    • TTPs: Embedding Payloads with MSFVenom (x64)
    • TTPs: Rust vs C++
    • TTPs: JmpNoCall
    • TTPs: BadAsm
    • TTPs: BadStrings
  • Unholy Unhooking
    • Unholy Unhooking: byoDLL
    • Unholy Unhooking: FrByoDLL
    • Unholy Unhooking: Rusty Fart
  • Weird Windows
    • Command Hijacking with .COM
    • Non-Existent File Paths
  • ZeroTotal
    • ZeroTotal: Msfvenom Calc
    • ZeroTotal: Self-Injecting Calc
    • ZeroTotal: Rusty Calc
  • Disclaimers
Powered by GitBook
On this page

Disclaimers

Some things you should know about my work, this page, and me

PreviousZeroTotal: Rusty Calc

Last updated 2 years ago

  1. All work here is a snapshot in time. You may or may not be able to achieve the same/similar effects when you try these techniques years, months, days, or even hours after the writeup.

  2. All work here, my GitHub, or anywhere is proof-of-concept (PoC). It is not intended to be a final product of any kind and can therefore sometimes prove to be inconsistent. I do these writeups part-time, sorry.

  3. All work here is intended to demonstrate and document security issues, and not intended to violate anyone's terms of service, privacy, or rights of any sort. Please contact me on Twitter if you feel you have been aggrieved in some way.

  4. If I made an error, mistake, or you believe information availible here to be incorrect, please contact me on Twitter so corrective action can be taken. This is not a technical support offer.

  5. While I'm willing and open to answering questions about my work or discuss the offensive security field, I do not offer technical support of any kind. Please do not ask.

With thanks, Steve Twitter:

@0xTriboulet