Posts

Showing posts with the label Dynamic Analysis

Redelk - Tardily Deployable Tool For Cherry-Red Teams Used For Tracking Too Alarming Nigh Blueish Squad Activities Equally Good Equally Improve Usability Inwards Long Term Operations

Image
Red Team's SIEM - slow deployable tool for Red Teams used for tracking together with alarming nearly Blue Team activities every bit good every bit improve usability for the Red Team inward long term operations. Initial world free at BruCON 2018: Video: https://www.youtube.com/watch?v=OjtftdPts4g Presentation slides: https://github.com/outflanknl/Presentations/blob/master/MirrorOnTheWall_BruCon2018_UsingBlueTeamTechniquesinRedTeamOps_Bergman-Smeets_FINAL.pdf Goal of the project Short: a Red Team's SIEM. Longer: a Red Team's SIEM that serves 3 goals: Enhanced usability together with overview for the cerise squad operators past times creating a primal place where all relevant operational logs from multiple teamservers are collected together with enriched. This is peachy for historic searching inside the performance every bit good every bit giving a read-only persuasion on the performance (e.g. for the White Team). Especially useful for multi-scenario, multi-tea...

Phantom Evasion - Python Av Evasion Tool Capable To Generate Fud Executable Fifty-Fifty Amongst The Virtually Mutual 32 Fleck Metasploit Payload (Exe/Elf/Dmg/Apk)

Image
Phantom-Evasion is an interactive antivirus evasion tool written inwards python capable to generate (almost) FUD executable fifty-fifty amongst the most mutual 32 fleck msfvenom payload (lower detection ratio amongst 64 fleck payloads). The aim of this tool is to brand antivirus evasion an slowly chore for pentesters through the usage of modules focused on polymorphic code in addition to antivirus sandbox detection techniques. Since version 1.0 Phantom-Evasion also include a post-exploitation department dedicated to persistence in addition to auxiliary modules. The next OSs officialy back upward automatic setup: Kali Linux Rolling 2018.1+ (64 bit) Parrot Security (64 bit) The next OSs are probable able to run Phantom Evasion through manual setup: Arch Linux (64 bit) BlackArch Linux (64 bit) Elementary (64 bit) Linux Mint (64 bit) Ubuntu 15.10+ (64 bit) Windows 7/8/10 (64 bit) Contributors Special thank you lot to: phra https://github.com/phra stefano118 http...