geech's Avatar

geech

@captaingee.ch

cybercrime connoisseur && exploitz engineering enthusiast | synapse fanboy | second breakfast enthusiast

115
Followers
132
Following
42
Posts
26.05.2023
Joined
Posts Following

Latest posts by geech @captaingee.ch

k being “call stack” in windbg and “kill process” in lldb is a cruel, cruel collision. Thanks Tim apple

08.11.2025 22:28 👍 0 🔁 0 💬 0 📌 0
Post image

All Azure users are hereby authorized to start Halloween early

29.10.2025 18:05 👍 1 🔁 0 💬 0 📌 0

even wearing my flynn's arcade shirt to the theater wasn't enough to save that movie ;(

great vfx, great soundtrack, bad movie. long live tron: legacy, the only sequel to tron.

12.10.2025 19:12 👍 0 🔁 0 💬 0 📌 0
Preview
shrek is standing next to a donkey in the forest ALT: shrek is standing next to a donkey in the forest

when i find who wrote iso 32000 7.6.4.3.3/.4 - i'm not mad, i just want to talk #flareon

29.09.2025 02:29 👍 0 🔁 0 💬 0 📌 0

cardboard sign is very on brand👌

14.09.2025 22:14 👍 1 🔁 0 💬 0 📌 0

if i see someone wearing these i'm going to respectfully and politely hulk smash them (the glasses) into the sidewalk

30.08.2025 18:59 👍 1 🔁 0 💬 0 📌 0

"ai is going to change everything" dawg this is a bunch of "while true; do curl xxxxxxxxxx"

14.08.2025 12:11 👍 1 🔁 0 💬 0 📌 0
Preview
ctfd_first_blood_bot.py GitHub Gist: instantly share code, notes, and snippets.

threw together a quick first blood discord bot for CTFd for an event im hosting next week gist.github.com/captainGeech...

02.08.2025 22:17 👍 0 🔁 0 💬 0 📌 0
Post image

working on a simple web chal and was too lazy to write the ui myself, gemini almost turned this into a second challenge 🙃

age of llm==age of free xss?

29.07.2025 23:22 👍 2 🔁 0 💬 0 📌 0
Preview
Ongoing SonicWall Secure Mobile Access (SMA) Exploitation Campaign using the OVERSTEP Backdoor | Google Cloud Blog A financially-motivated threat actor is targeting fully patched end-of-life SonicWall devices to deploy a backdoor known as OVERSTEP.

I wrote a new blog with Mandiant IR + FLARE on some new intrusion activity by a group we track as UNC6148, likely using a mix of n-day and 0-day exploits to compromise SonicWall SMA 100 series VPN appliances. They have some nifty post-exploitation tooling as well

cloud.google.com/blog/topics/...

16.07.2025 14:44 👍 2 🔁 0 💬 0 📌 0

shuka should give a talk at anticon

10.07.2025 23:15 👍 2 🔁 0 💬 0 📌 0
Post image

Signal sticker pack metadata is fun

signal.art/addstickers/...

10.07.2025 22:34 👍 1 🔁 0 💬 0 📌 0
Preview
a group of men standing on a race track with a yellow sign that says huuuulkkkkk ALT: a group of men standing on a race track with a yellow sign that says huuuulkkkkk

the true GOAT

06.07.2025 20:57 👍 1 🔁 0 💬 0 📌 0

(this is even more egregious and frustrating when you do it for internal tools)

05.07.2025 15:41 👍 0 🔁 0 💬 0 📌 0

if you need to use AggresIve styling, dark patterns, popups, and anti-user defaults to get people to use your new features, maybe they are not good features :)

05.07.2025 15:40 👍 2 🔁 1 💬 1 📌 0

there is something so satisfying about writing rop chains, idk what it is, just a super fun puzzle

01.07.2025 00:57 👍 2 🔁 0 💬 0 📌 0
Preview
Phone unlocking firm Cellebrite to acquire mobile testing startup Corellium for $170M | TechCrunch Cellebrite said the deal will help with the "accelerated identification of mobile vulnerabilities and exploits."

Picked a bad day to wear my Corellium t-shirt smh ☠️

techcrunch.com/2025/06/05/p...

05.06.2025 19:05 👍 0 🔁 0 💬 0 📌 0
Preview
COLDRIVER Using New Malware To Steal Documents From Western Targets and NGOs | Google Cloud Blog Russian government-backed group COLDRIVER is using LOSTKEYS malware to steal files and system information from NGOs and western targets.

I wrote some details on LOSTKEYS: malware which we directly attribute to COLDRIVER. They don't deploy it often, but we have seen it a few times and want to make people aware of it.

cloud.google.com/blog/topics/...

07.05.2025 14:13 👍 18 🔁 14 💬 1 📌 1

why more JS engines don't have a native bogosort implementation is truly a wonder

26.04.2025 17:17 👍 0 🔁 0 💬 0 📌 0
Post image

greetings fellow windows 11 upgrade refuser

01.04.2025 19:30 👍 3 🔁 0 💬 1 📌 0
Post image

"And this is why using AppContainer with a packaged app is easier"

screw you microsoft i do what i want

learn.microsoft.com/en-us/window...

01.04.2025 19:20 👍 1 🔁 0 💬 0 📌 1
Preview
winnativetemplate/Makefile at main · captainGeech42/winnativetemplate Template repo for using Make to compile simple win32/MSVC code - captainGeech42/winnativetemplate

if you despise using Visual Studio as much as i do, here you go

github.com/captainGeech...

31.03.2025 22:12 👍 0 🔁 0 💬 0 📌 0

Too many OPSEC experts out there, I’m an OOPSEC expert. Lmk if you need help adding The Atlantic to YOUR pc small group chats. Signal and more!

27.03.2025 17:12 👍 5 🔁 0 💬 0 📌 0
Post image

hey microsoft, hot take, what if you didnt push ads for random games in your fucking operating system as notifications

09.03.2025 22:15 👍 7 🔁 0 💬 0 📌 0
Preview
a child is doing a handstand on a swing over a puddle of water ALT: a child is doing a handstand on a swing over a puddle of water

diaphora vs vmware-vmx

meanwhile, me watching:

07.03.2025 02:05 👍 0 🔁 0 💬 0 📌 0

arrested development season 1 is the true peak of comedy

04.03.2025 00:08 👍 2 🔁 0 💬 0 📌 0

lmfao this worked perfectly. thank you to "brute force to make up for my lack of brain cells"

02.03.2025 11:46 👍 1 🔁 0 💬 0 📌 0

reverse engineering and thinking about reducing problem spaces to hit vulnerable code paths is hard.

fuzzing however, is both "easy" and "fast" - lazy ftw

(may work, may not work, we'll see. need a @digitalocean.com sponsorship lol)

02.03.2025 02:10 👍 1 🔁 0 💬 0 📌 1