Glad to be mentioned in such a great company! π @chudypb.bsky.social π₯
18.03.2025 08:03 β π 2 π 0 π¬ 0 π 0@mrgretzky.breakdev.org
Offensive security tools developer. Malware developer, hobby music producer, bedroom DJ & ex-MMO game hacker. Creator of Evilginx / Bartender @ BREAKDEV RED.
Glad to be mentioned in such a great company! π @chudypb.bsky.social π₯
18.03.2025 08:03 β π 2 π 0 π¬ 0 π 0π¨ Evilginx Pro is finally here! π¨π£π
This is it! After over two years of development, countless delays, and hundreds of manual company verifications, Evilginx Pro is finally live!
Thank you all for your invaluable support π
breakdev.org/evilginx-pro...
Since last year, I thought Ivanti Endpoint Manager was the most insecure tool you could use.
This year, I know itβs been Elon all along.
Big news: our trainings are live!
This year, weβre offering 13 courses led by top-notch experts. Whether you're red, blue, or somewhere in between,
come sharpen your skills, break stuff, and learn from the best!
π
1β4 Sept
π Meervaart, Amsterdam
π Tickets available now!
π weeztix.shop/qt2kzq6g
Excellent research by Sagi Olshansky shows how even a simple "Terms of Service" conditional access option in Entra ID can become a thorn in the side of phishing threat actors.
Evilginx phishlet development action included π£
medium.com/@Sniffler/te...
I've been dealing with mysterious high CPU utilization from WmiPrvSE.exe for MONTHS. I finally did some digging using github.com/luctalpe/WMI... (run wmimon from an elevated cmd prompt). Guess what the culprit was?
05.01.2025 03:54 β π 30 π 8 π¬ 4 π 0It's video games for red teamers π
21.12.2024 11:24 β π 1 π 0 π¬ 0 π 0The BREAKDEV RED software shop engine is finally finished π
Out of respect to all Evilginx fans, the purchase experience will be as friendly and fair as possible:
- Floating licenses ONLY
- No minimum cap for license purchases
Evilginx Pro release date: February 2025
Merry Christmas everyone! π
New #PEsieve & #HollowsHunter
(v0.4.0) are released: github.com/hasherezade/... & github.com/hasherezade/... - A lot has changed in the new version, check it out!
I wrote a fun, little blog post. Remote pre-auth file deletion in SolarWinds ARM allowed to achieve LPE on AD machines π
12.12.2024 18:03 β π 9 π 6 π¬ 1 π 0Who's leading the thoughts of the thought leader?! Cas is a true power broker, influencing the influencers from the shadows π
02.12.2024 14:37 β π 3 π 0 π¬ 1 π 0Thank you! I've finally managed to get it working. The API documentation is a bit rough, and the API itself holds a lot of technical debt, but now it finally works as I wanted.
02.12.2024 09:46 β π 0 π 0 π¬ 1 π 0π¨ BLACK FRIDAY 50% OFF 24-HOUR SALE π¨
Today I'm running the biggest sale, since the course release in 2023!
Get Evilginx Mastery course with lifetime access for 199 EUR ONLY today! π€©
Upgrade your phishing skills before Evilginx Pro drops!
πLink: academy.breakdev.org/evilginx-mas...
π¨ BLACK FRIDAY 50% OFF 24-HOUR SALE π¨
Today I'm running the biggest sale, since the course release in 2023!
Get Evilginx Mastery course with lifetime access for 199 EUR ONLY today! π€©
Upgrade your phishing skills before Evilginx Pro drops!
πLink: academy.breakdev.org/evilginx-mas...
π¨ The Black Friday sale is coming!
The sale drops at midnight today! (UTC+1)
It will be the biggest sale yet! π€©
I want to do a little promotion here as well:
For the dutch people following me: last year me and 2 other folks from HITB dutch crew started orangecon.nl.
Its a nonprofit which focusses on knowledge sharing with affordable trainings followed by a very affordable conference. Do check it out please!
I'm currently doing super exciting research (that's a joke π) trying to decide which invoicing platform with API access to use.
Can anyone confirm if Zoho Books is a good platform or if there is any alternative worth considering?
I'm having the time of my life π
Congrats man! Heads and brains always need special treatment if they're used daily to make a living π
26.11.2024 12:24 β π 1 π 0 π¬ 0 π 0Agreed. Sounds like I'm breaking the habit tonight π
22.11.2024 12:42 β π 5 π 0 π¬ 1 π 0I keep catching myself referring to "Linkin Park" as "LinkedIn Park".
Is it a sign of growing old? π΄
I kind of got discouraged after watching this movie π
www.youtube.com/watch?v=XZG1...
Time will tell. It is perfectly ok to keep both running at the same time and use both for the time being.
21.11.2024 12:01 β π 2 π 0 π¬ 0 π 0Noted. I thought I was the only one struggling with trying to manage too many different things simultaneously. What I try to do is handle the organizational things at the beginning of the week and then dedicate the following days to deep focus development with no distractions, same as you.
19.11.2024 19:49 β π 1 π 0 π¬ 0 π 0Paged Out! #5 is out βΒ enjoy! pagedout.institute
And if you like the cover, we have wallpapers!
I feel you! Do you have any options to automate payment processing & invoicing at least?
19.11.2024 16:59 β π 1 π 0 π¬ 1 π 0Evilginx Pro Update:
Tool is ready and awaits release.
I'm now creating an online shop engine, because why not π
I hope one day it becomes Steam for cybersecurity tools with Evilginx Pro its first release, like Half-Life 2 on Steam exactly 20 years ago.
Red team tools unite!
Welcome to the greener pastures! π
19.11.2024 12:42 β π 0 π 0 π¬ 1 π 0Good to see you on the interwebz again! π
18.11.2024 23:36 β π 3 π 0 π¬ 0 π 0Defenders use cross-origin requests through CSS url() or injected JS to leak your phishing URL in the HTTP Referer header.
Today, I've been reminded about the excellent post by Keanu Nys, which contains a lot of great evasion ideas!
insights.spotit.be/2024/06/03/c...
Beyond good olβ Run key, Part 144
www.hexacorn.com/blog/2024/11...