During DefCon 34, the Hakai Security team presented and publicly released four new tools developed to enhance offensive security research, evasion, obfuscation, and mobile pentesting.
Check out the summary of what was just added to our GitHub:
Mirage: Agnostic network traffic
Hakai Security dominated Las Vegas!
Our team had a massive presence on stage at BSides Las Vegas and DEF CON 34. We delivered 7 high-level technical talks, bringing cutting-edge research on exploit development, reverse engineering, detection evasion, mobile hacking, and APT
How much memory should be required to change the tag of an NPM package? Just a few bytes, right?
During research conducted by Yokai, Hakai Offensive Security's research team, analysis of Gitea's Package Registry revealed that a seemingly harmless endpoint could be abused to cause
Teams. Outlook.
Half your enterprise software. They're all quietly shipping a Chromium browser inside them called WebView2.
Murilo Caixeta shows how to turn that trusted, signed process into a genuine red team asset.
Murilo Caixeta @Murilo.caixeta_
Red Team Village