home.social

#crtl — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #crtl, aggregated by home.social.

fetched live
  1. I’ve just published the second guide (out of three I’m going to publish on Crystal Palace, and in this case on Mythic C2. The first one is the one I published a few days ago, which breaks down Crystal Palace in great detail), with this one focusing more on Mythic C2, Xenon Agent and how I apply ‘Crystal Palace’ within this infrastructure.

    In this guide, I don’t explain how I bypass EDRs, but rather how Mythic actually works, as it’s a really interesting project for long-term personal and business C2 set-ups, and how the link with Crystal Palace works at a logical level.

    Finally, in the last piece of documentation, due out in a couple of days, I’ll tackle the subject of that infamous loader that I think we all hate. I’ll speak from my own experience and because I use Rust covering what I’ve learnt from Altered Security CETP and Zero-Point Security Ltd CRTL, as well as my personal preferences.

    In the meantime, here’s the link and a diagram that more or less represents (IN A VERY SIMPLIFIED, EXTREMELY SUMMARISED AND CONCISE WAY) a current workflow using Mythic to evade, in my case, Elastic 9.4.2, MDE and CrowdStrike (I do miss having a CrowdStrike licence; mine ran out a month and a half ago 😭 )

    (The documentation is in Spanish.:) )

    fallenangel666-blog.pages.dev/

    #Malware #CRTO #CRTL #ciberseguridad #hacking #windows #cybersecurity #RedTeam #kernel #C2 #mythicc2 #cobaltstrike #ring0