Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

r1cksec

@r1cksec@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Data breach revealed,
Malware lurks, silent, stealthy -
OSINT tracks the thread.

URLs I post may contain malware – be careful and check yourself before running anything.

690 Followers
156 Following
26 Posts
Joined November 19, 2022
Github:
https://github.com/r1cksec
Twitter:
https://twitter.com/r1cksec
BlueSky:
https://bsky.app/profile/r1cksec.bsky.social
Open post
r1cksec @r1cksec@infosec.exchange
· 1w ago
Drop any Windows DPAPI artifact and it identifies the format and the exact master key it needs, then decrypts once you supply the key. Offline, CLI + web UI. https://github.com/crypt0p3g/dpapi-toolkit #infosec #cybersecurity #redteam #pentest #opensource
GitHub

GitHub - crypt0p3g/dpapi-toolkit: Drop any Windows DPAPI artifact and it identifies the format and the exact master key it needs, then decrypts once you supply the key. Offline, CLI + web UI.

Drop any Windows DPAPI artifact and it identifies the format and the exact master key it needs, then decrypts once you supply the key. Offline, CLI + web UI. - crypt0p3g/dpapi-toolkit

1
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 1mo ago
LOLRMM is a curated list of Remote Monitoring and Management (RMM) tools that could potentially be abused by threat actors. https://lolrmm.io #infosec #cybersecurity #redteam #pentest
LOLRMM — Living Off the Land Remote Monitoring and Management
LOLRMM

LOLRMM — Living Off the Land Remote Monitoring and Management

Explore remote monitoring and management tools, forensic artifacts, and detections. Open source intelligence for threat hunters and defenders.

2
0
1
0
Open post
r1cksec @r1cksec@infosec.exchange
· 7mo ago

A new ClickFix variant dubbed "CrashFix" that intentionally crashes the browser then baits users into running malicious commands

https://www.huntress.com/blog/malicious-browser-extention-crashfix-kongtuke

#infosec #cybersecurity #threatintel #phishing #malware #redteam

huntress.com
18
0
12
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
A litterbox integration for the Mythic Command and Control Server https://github.com/Whispergate/Sphinx #infosec #cybersecurity #redteam #pentest
GitHub

GitHub - Whispergate/Sphinx: A litterbox integration for the Mythic Command and Control Server

A litterbox integration for the Mythic Command and Control Server - Whispergate/Sphinx

1
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 3mo ago
RelayKing is a comprehensive relay detection and enumeration tool designed to identify relay attack opportunities in Active Directory environments. https://github.com/depthsecurity/RelayKing-Depth #infosec #cybersecurity #redteam #pentest #opensource
github.com
2
0
1
0
Open post
r1cksec @r1cksec@infosec.exchange
· 3mo ago
Noma Labs discovered a prompt injection vulnerability within GitHubs new Agentic Workflows, allowing an unauthenticated attacker to silently pull data from private repositories by posting a crafted GitHub Issue https://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/ #infosec #cybersecurity #redteam #pentest
noma.security
1
0
2
0
Open post
r1cksec @r1cksec@infosec.exchange
· 5mo ago

When Windows Defender realizes that a malicious file has a cloud tag it rewrites the file to it's original location. The PoC abuses this behaviour to overwrite system files and gain administrative privileges.

https://github.com/Nightmare-Eclipse/RedSun

#infosec #cybersecurity #pentest #windows

github.com
3
0
5
0
Open post
r1cksec @r1cksec@infosec.exchange
· 6mo ago

It is possible as a low privileged user to parse the Windows event logs for any ASR exclusion

https://primusinterp.com/posts/WindowsASR/

#infosec #cybersecurity #redteam #pentest

primusinterp.com
2
0
2
0
Open post
r1cksec @r1cksec@infosec.exchange
· 5mo ago

A post about how to use Page Guard Exceptions to bypass AMSI

https://shigshag.com/blog/amsi_page_guard

#infosec #cybersecurity #redteam #pentest #windows

shigshag.com
1
0
1
0
Open post
r1cksec @r1cksec@infosec.exchange
· 3mo ago
A post that uses the Windows source code to illustrate several examples of how attackers can customize their indicators of compromise. https://www.abdulmhsblog.com/posts/useingthewindowssourcecode #infosec #cybersecurity #redteam #pentest
abdulmhsblog.com
0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 3mo ago
A post about the security implications of new features in SQL Server 2025 https://specterops.io/blog/2026/06/10/oops-i-weaponized-the-database-abusing-ai-features-in-mssql-2025 #infosec #cybersecurity #redteam #pentest
specterops.io
0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
Entra ID user enumeration and auth method discovery via the public GetCredentialType API https://github.com/RedByte1337/CredSpy #infosec #cybersecurity #redteam #pentest #opensource #cloud
github.com
0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
This blogpost explains how GPOs work and how filters can be applied in order to restrict their impact. https://www.intrinsec.com/hide-the-threat-gpo-lateral-movement/ #infosec #cybersecurity #redteam #pentest
Hide the threat - GPO lateral movement
INTRINSEC

Hide the threat - GPO lateral movement

Learn how to perform and understand lateral mouvement though GPO mechanism during pentest and red team assessments.

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
A post about Git integrations that can be used to exploit insecure implementations. https://nopnop.pro/2026/06/17/exploiting-git-integrations-in-cloud-services/ #infosec #cybersecurity #redteam #pentest
Arbitrary

The gift that keeps giving: Exploiting Git Integrations in Cloud Services

1. Introduction

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys. https://github.com/haxxm0nkey/credshound #infosec #cybersecurity #redteam #pentest #opensource
GitHub

GitHub - haxxm0nkey/credshound: Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys.

Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys. - haxxm0nkey/credshound

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
This is a proof-of-concept tool to demonstrace CVE-2026-54121 a.k.a Certighost. https://github.com/aniqfakhrul/CVE-2026-54121 #infosec #cybersecurity #redteam #pentest
GitHub

GitHub - aniqfakhrul/CVE-2026-54121: Certighost POC

Certighost POC. Contribute to aniqfakhrul/CVE-2026-54121 development by creating an account on GitHub.

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
There is a documented enforcement gap in Conditional Access policies that apply to "all resources" but have an exclusion for at least one resource. https://dirkjanm.io/bypassing-conditional-access-with-resource-exclusio #infosec #cybersecurity #redteam #pentest #cloud
dirkjanm.io
0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
Extract Windows credentials directly from VM memory snapshots and virtual disks https://github.com/nikaiw/VMkatz #infosec #cybersecurity #redteam #pentest #opensource
github.com
0
1
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys. https://github.com/haxxm0nkey/credshound #infosec #cybersecurity #redteam #pentest #opensource
GitHub

GitHub - haxxm0nkey/credshound: Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys.

Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys. - haxxm0nkey/credshound

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
An open-source, self-hosted security research platform that turns focused AI analysis into de-duplicated, ranked findings with configurable validation and enrichment. https://github.com/Kritt-ai/open-kritt #infosec #ycbersecurity #redteam #pentest #ai
GitHub

GitHub - Kritt-ai/open-kritt: Open-source, self-hosted AI vulnerability research tool that orchestrates agents to find and validate security issues in code.

Open-source, self-hosted AI vulnerability research tool that orchestrates agents to find and validate security issues in code. - Kritt-ai/open-kritt

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
Notes on Windows Component Object Model (COM hijacking, elevation of privilege, DCOM lateral movement, and persistence). Notes were generated by Kimi K3 Swarm may contain inaccuracies. https://github.com/An0nUD4Y/Offensive-COM #infosec #cybersecurity #redteam #pentest #windows
GitHub

GitHub - An0nUD4Y/Offensive-COM: Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijacking, elevation of privilege, DCOM lateral movement, and persistence primitives with

Research notes on Windows Component Object Model (COM) attack surface for offensive security and vulnerability research. Covers COM hijacking, elevation of privilege, DCOM lateral movement, and per...

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
Windows Provisioning Package (.ppkg) generator. Payload runs as SYSTEM on apply. https://github.com/init1Security/PPKGPacker #infosec #cybersecurity #redteam #pentest
GitHub

GitHub - init1Security/PPKGPacker: Python scripts that helps in the development of PPKG binaries

Python scripts that helps in the development of PPKG binaries - init1Security/PPKGPacker

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
An MCP server that lets an AI agent drive NetExec (nxc) for authorized security testing only. https://github.com/mpgn/NetExec-mcp #infosec #cybersecurity #pentest #ai
github.com
0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 2mo ago
ANIMO is a comprehensive Azure AD / Entra ID assessment platform that combines PowerShell-based session management, Azure CLI parity, and native Graph / ARM API integration. https://github.com/dmcxblue/ANIMO #infosec #cybersecurity #redteam #pentest #cloud #opensource
GitHub

GitHub - dmcxblue/ANIMO: ANIMO Azure Network Intel & Mission Ops a C2 based on Azure/Entra assessments

ANIMO Azure Network Intel & Mission Ops a C2 based on Azure/Entra assessments - dmcxblue/ANIMO

0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 1mo ago
A POC tool for exploring dev-tunnels https://github.com/xpn/Ouroboros #infosec #cybersecurity #redteam #pentest
github.com
0
0
0
0
Open post
r1cksec @r1cksec@infosec.exchange
· 1mo ago
How WebDav can be used to bypass Smartscreen, and MOTW. https://g3tsyst3m.com/initial%20access/Using-WebDav-to-Outsmart-Smartscreen,-MOTW,-and-that-OTHER-Alert #infosec #cybersecurity #redteam #pentest #phishing #windows
g3tsyst3m.com
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 22:23:17 UTC