moloch's Avatar

moloch

@littlejoetables

Offsec at OpenAI Former Bishop Fox Red Team

339
Followers
171
Following
12
Posts
13.11.2024
Joined
Posts Following

Latest posts by moloch @littlejoetables

Preview
Release v1.7.2 ยท BishopFox/sliver Change Log Improvements to shell you can now manage multiple shells and swap between them Use ctrl+] to background an interactive shell Use shells ls to list shells Use shells attach to re-attac...

New Sliver release!

> Improvements to shell you can now manage multiple shells and swap between them!
> Windows PE metadata spoofing
> Improvements to MacOS shellcode loader
> Bug fixes

github.com/BishopFox/sl...

23.02.2026 02:47 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
Release v1.6.0 ยท BishopFox/sliver What's Changed Verbose error when msfvenom fails in generate starger by @rkervella in #1239 Bump gorm.io/gorm from 1.25.0 to 1.25.1 by @dependabot[bot] in #1234 Check for nil session when using se...

github.com/BishopFox/sl...

31.12.2025 22:43 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
Release v0.0.4 ยท moloch--/sgn What's Changed Upstream by @moloch-- in https://github.com/moloch--/sgn/pull/2 New Contributors @moloch-- made their first contribution in https://github.com/moloch--/sgn/pull/2 Full Changelog:...

Updated Sliver's SGN implementation to use a wasm-based build of Keystone assembler making it easier to cross-compile to all platforms (to almost every GOOS/GOARCH)

SGN standalone: github.com/moloch--/sgn...
Wasm keystone (fork of For-ACGN)

20.10.2025 02:22 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
On-Demand BOF

From the team that brought you COFF Loader, CS-Situational-Awareness-BOF, and CS-Remote-OPs-BOF, we are excited to release our first on-demand class: Building BOFs. Read our new blog to find out what else we have loading for 2025! trustedsec.com/blog/on-dema...

05.12.2024 18:26 ๐Ÿ‘ 12 ๐Ÿ” 5 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 1
Post image
06.12.2024 01:27 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image
03.12.2024 04:46 ๐Ÿ‘ 3 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

The most fun thing is that Tailscale is also a Go library and you can just import it.

29.11.2024 14:06 ๐Ÿ‘ 6 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image

Cheers

25.11.2024 16:30 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

Things I work well: Use all the resolvers on the system and send the chunks in parallel, you'll need to number them anyways and this increases performance a lot more than dynamic encoding.

I include a CRC32 as the IP (both 4 bytes) to detect corrupted data and when to re-transmit a chunk.

20.11.2024 14:37 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

We should chat at OBTS! Mostly I regret trying to get too fancy, I implemented a DNS-0x20 detection, where the implant switches between Base58/32 depending on if it detects if the resolver are modifying case. This increases speed but also complexity, and I think it was a mistake, stick to Base32.

20.11.2024 14:30 ๐Ÿ‘ 2 ๐Ÿ” 0 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0

DNS is such a pain! Base32 is the way to go.

20.11.2024 05:29 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0

Tailwind

18.11.2024 18:13 ๐Ÿ‘ 1 ๐Ÿ” 0 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

Stuff like this only happens in SFO in my experience, really what sets the bay area apart. You never know who's within earshot at the bar or on the BART.

18.11.2024 17:36 ๐Ÿ‘ 0 ๐Ÿ” 0 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0

Just added a whole bunch more people to my Hackers starter pack ๐Ÿฅฐ go.bsky.app/NRP3ecE

14.11.2024 12:19 ๐Ÿ‘ 126 ๐Ÿ” 46 ๐Ÿ’ฌ 20 ๐Ÿ“Œ 4