Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

r1cksec

@r1cksec@infosec.exchange
  • Open on infosec.exchange

Data breach revealed,
Malware lurks, silent, stealthy -
OSINT tracks the thread.

URLs I post may contain malware – be careful and check yourself before running anything.

0 Followers
0 Following
23 Posts
Joined November 19, 2022
Github:
https://github.com/r1cksec
Twitter:
https://twitter.com/r1cksec
BlueSky:
https://bsky.app/profile/r1cksec.bsky.social

Posts

Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · 5d ago
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
LOLRMM is a curated list of Remote Monitoring and Management (RMM) tools that could potentially be abused by threat actors. https://lolrmm.io #infosec #cybersecurity #redteam #pentest
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Aug 08, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
ANIMO is a comprehensive Azure AD / Entra ID assessment platform that combines PowerShell-based session management, Azure CLI parity, and native Graph / ARM API integration. https://github.com/dmcxblue/ANIMO #infosec #cybersecurity #redteam #pentest #cloud #opensource
GitHub

GitHub - dmcxblue/ANIMO: ANIMO Azure Network Intel & Mission Ops a C2 based on Azure/Entra assessmen

ANIMO Azure Network Intel & Mission Ops a C2 based on Azure/Entra assessments - dmcxblue/ANIMO

0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Aug 06, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
An MCP server that lets an AI agent drive NetExec (nxc) for authorized security testing only. https://github.com/mpgn/NetExec-mcp #infosec #cybersecurity #pentest #ai
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Aug 04, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
Windows Provisioning Package (.ppkg) generator. Payload runs as SYSTEM on apply. https://github.com/init1Security/PPKGPacker #infosec #cybersecurity #redteam #pentest
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Aug 03, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
A litterbox integration for the Mythic Command and Control Server https://github.com/Whispergate/Sphinx #infosec #cybersecurity #redteam #pentest
GitHub

GitHub - Whispergate/Sphinx: A litterbox integration for the Mythic Command and Control Server

A litterbox integration for the Mythic Command and Control Server - Whispergate/Sphinx

0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 31, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
Notes on Windows Component Object Model (COM hijacking, elevation of privilege, DCOM lateral movement, and persistence). Notes were generated by Kimi K3 Swarm may contain inaccuracies. https://github.com/An0nUD4Y/Offensive-COM #infosec #cybersecurity #redteam #pentest #windows
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 29, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
An open-source, self-hosted security research platform that turns focused AI analysis into de-duplicated, ranked findings with configurable validation and enrichment. https://github.com/Kritt-ai/open-kritt #infosec #ycbersecurity #redteam #pentest #ai
GitHub

GitHub - Kritt-ai/open-kritt: Orchestrate AI agents to find real vulnerabilities in code.

Orchestrate AI agents to find real vulnerabilities in code. - Kritt-ai/open-kritt

0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 27, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys. https://github.com/haxxm0nkey/credshound #infosec #cybersecurity #redteam #pentest #opensource
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 26, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
Extract Windows credentials directly from VM memory snapshots and virtual disks https://github.com/nikaiw/VMkatz #infosec #cybersecurity #redteam #pentest #opensource
0
1
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 25, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
There is a documented enforcement gap in Conditional Access policies that apply to "all resources" but have an exclusion for at least one resource. https://dirkjanm.io/bypassing-conditional-access-with-resource-exclusio #infosec #cybersecurity #redteam #pentest #cloud
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 24, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
This is a proof-of-concept tool to demonstrace CVE-2026-54121 a.k.a Certighost. https://github.com/aniqfakhrul/CVE-2026-54121 #infosec #cybersecurity #redteam #pentest
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 24, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
Nuclei-like credential surface scanner with BloodHound support. Audits local hosts for exposed secrets, cloud tokens, DevOps, and AI keys. https://github.com/haxxm0nkey/credshound #infosec #cybersecurity #redteam #pentest #opensource
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 18, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
A post about Git integrations that can be used to exploit insecure implementations. https://nopnop.pro/2026/06/17/exploiting-git-integrations-in-cloud-services/ #infosec #cybersecurity #redteam #pentest
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 17, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
This blogpost explains how GPOs work and how filters can be applied in order to restrict their impact. https://www.intrinsec.com/hide-the-threat-gpo-lateral-movement/ #infosec #cybersecurity #redteam #pentest
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 11, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
Entra ID user enumeration and auth method discovery via the public GetCredentialType API https://github.com/RedByte1337/CredSpy #infosec #cybersecurity #redteam #pentest #opensource #cloud
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 10, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
Noma Labs discovered a prompt injection vulnerability within GitHubs new Agentic Workflows, allowing an unauthenticated attacker to silently pull data from private repositories by posting a crafted GitHub Issue https://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/ #infosec #cybersecurity #redteam #pentest
1
0
2
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 08, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
A post about the security implications of new features in SQL Server 2025 https://specterops.io/blog/2026/06/10/oops-i-weaponized-the-database-abusing-ai-features-in-mssql-2025 #infosec #cybersecurity #redteam #pentest
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jul 06, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
A post that uses the Windows source code to illustrate several examples of how attackers can customize their indicators of compromise. https://www.abdulmhsblog.com/posts/useingthewindowssourcecode #infosec #cybersecurity #redteam #pentest
0
0
0
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Jun 24, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange
RelayKing is a comprehensive relay detection and enumeration tool designed to identify relay attack opportunities in Active Directory environments. https://github.com/depthsecurity/RelayKing-Depth #infosec #cybersecurity #redteam #pentest #opensource
2
0
1
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · May 05, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange

A post about how to use Page Guard Exceptions to bypass AMSI

https://shigshag.com/blog/amsi_page_guard

#infosec #cybersecurity #redteam #pentest #windows

1
0
1
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Apr 16, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange

When Windows Defender realizes that a malicious file has a cloud tag it rewrites the file to it's original location. The PoC abuses this behaviour to overwrite system files and gain administrative privileges.

https://github.com/Nightmare-Eclipse/RedSun

#infosec #cybersecurity #pentest #windows

3
0
5
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Mar 22, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange

It is possible as a low privileged user to parse the Windows event logs for any ASR exclusion

https://primusinterp.com/posts/WindowsASR/

#infosec #cybersecurity #redteam #pentest

. .\Primusinterp

Cheesing Microsoft Attack Surface Reduction rules

While working on varying engagements i have been messing with Microsoft Attack Surface Reduction (ASR) quite a bit, since clients often use it to make the life of adversaries(and red teamers) just a t

2
0
2
0
Open post
r1cksec
r1cksec @r1cksec@infosec.exchange · Feb 26, 2026
r1cksec
@r1cksec@infosec.exchange

Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread. URLs I post may contain malware – be careful and check yourself before running anything.

infosec.exchange

A new ClickFix variant dubbed "CrashFix" that intentionally crashes the browser then baits users into running malicious commands

https://www.huntress.com/blog/malicious-browser-extention-crashfix-kongtuke

#infosec #cybersecurity #threatintel #phishing #malware #redteam

Huntress

Dissecting CrashFix: KongTuke's New Toy | Huntress

Fake ad blocker crashes your browser, then offers a "fix." Go inside KongTuke's CrashFix campaign, from malicious extension to ModeloRAT for VIP targets.

18
0
12
0

Remote instance

infosec.exchange
Open on original server
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 13:26:18 UTC