#Payloads

Rene Robichaudnerowild
2025-05-16
Rene Robichaudnerowild
2025-01-07
2024-08-16

Added integration tests for ronin-payload's new payload encoders and discovered that Python2 does not support evaling a print statement. Python3 however added support for this.

>>> eval('print "test"')
Traceback (most recent call last):
File "<stdin>", line 1, in <module>
File "<string>", line 1
print "test"
^
SyntaxError: invalid syntax

Lol, wtf, how did people seriously tout Python2 over Python3. Even Ruby and JavaScript are more consistent.

#python2 #payloads #roninrb

2024-08-14

When you refer to a UNIX/Linux/macOS/BSD or sh/bash/zsh command payload, what do you common refer to them as?

#namingthings #payloads

2024-08-12

and how would you group Windows PowerShell command payloads in a directory structure of other payloads?
#namingthings #payloads

2024-08-12

How would you group Windows cmd.exe command payloads in a directory structure of other payloads?
#namingthings #payloads

2024-07-22

Ronin 2.1.0 has finally been released! Lots of new stuff in this release, like new database tables, new payloads, ronin-recon, ronin-app, and more.
ronin-rb.dev/blog/2024/07/22/r
#ronin #roninrb #ruby #infosec #securitytools #recon #payloads #opensource

2024-05-07

How useful would you say a command injection payload that exfils a single file via curl to a webserver might be? Do you think it should be built-in to a framework or offered as a 3rd-party thing?
#pentesting #exploitdev #payloads

2024-04-19

You've probably heard of the xz-utils backdoor by now. You shouldn't submit backdoors to Open Source projects... unless it's to ronin-payloads! We're always looking for more payloads!
#opensource #ruby #payloads #shellcode #webshells #hacking #corny #shamelesspromotion

2024-02-27

TIL Nashorn is a JavaScript VM written in Java and gives direct access to Java classes. There's even a reverse shell payload for it, which has apparently been improved/fixed by this chap @mosesrenegade who's on here.
gist.github.com/mosesrenegade/
#reverseshells #nashorn #payloads

2023-12-15

For a tool that compiles C payloads, how would you prefer to specify the cross-compiler?
#payloads #pentesting #redteaming #exploitdev

2023-12-14

🇨🇳 #LandSpace is targeting a hop test 🚀 later this month, during which a stainless steel prototype of #Zhuque3’s first stage would lift off to a height of about 100 metres and land back on Earth in a controlled manner.
It will be able to lift #payloads up to 21.3 tonnes to #LEO when expendable, or 18.3 tonnes when the first stage is recovered down range, or 12.5 tonnes when the first stage returns to the #LaunchSite scmp.com/news/china/science/ar

#ReusableRocket

2023-11-15

#Web #Fundamentals

Heute #Command #Injection Part 2 😃
Das Prinzip ist klar, die zig Möglichkeiten wie man Filter umgehen kann jedoch noch nicht wirklich. Das praktische Beispiel habe ich nur mit dem gegebenen #CheatSheet lösen können. Einfach ein paar Befehle ausprobiert und sogar mit mehreren Erfolg gehabt. Befehl entsprechend dem Gesuchten angepasst und schwups schon kam man an die Lösung. 🎉

Aber selbst auf die #payloads zu kommen...das dauert noch 👀

github.com/payloadbox/command-

[8🔥] #tryhackme

🛡 H3lium@infosec.exchange/:~# :blinking_cursor:​H3liumb0y@infosec.exchange
2023-10-25

"🔍 Deep Dive into Malvertising: Techniques & Tactics 🕵️"

The malvertising campaign under the spotlight uses a unique fingerprinting method to distribute time-sensitive payloads. Malicious ads target software like Notepad++ and PDF converters. A two-tier filtering system is in place: 1️⃣ IP checks to discard VPNs and non-genuine IPs, 2️⃣ System fingerprinting to detect VMs. Those who pass are directed to a decoy site resembling the real Notepad++ website. The payload is a .hta script, uniquely named for each victim, making it time-sensitive. This level of sophistication in malvertising campaigns is alarming, indicating a shift in tactics and techniques by threat actors.

Source: Malwarebytes Blog by Jérôme Segura

Tags: #MalvertisingDeepDive #CyberThreats #Evasion #Fingerprinting #Payloads #CyberSecurityTrends 🧐🔗🚫

2023-06-12

We also just added another guide on how to port Metasploit payloads to ronin-payloads.
ronin-rb.dev/docs/porting/meta
#ronin #metasploit #payloads #ruby

Avoid The Hack!avoidthehack
2023-04-03

3CX Supply Chain Campaign

Trojanized 3CXDesktopApp installers are running rampant in a supply-chain attack campaign.

Dropping multiple , including information stealers, which can transfer account credentials and wallet keys directly to the attackers.

zscaler.com/security-research/

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst