
Chetan Nayak (Brute Ratel C4 Author)
@NinjaParanoid
Followers
30K
Following
3K
Media
348
Statuses
3K
Founder Dark Vortex/Brute Ratel | Former RedTeam @CrowdStrike @Mandiant @niiconsulting
Dark Vortex
Joined April 2017
RT @whokilleddb: Porting some of CS-Situational-Awareness-BOF's to BRC4, and documenting the equivalent commands where relevant. PR: http….
github.com
Porting some of CS-Situational-Awareness-BOF to BRC4 and listing the equivalent BRC4 command where applicable!
0
12
0
RT @ShitSecure: For anyone using BRC4. My colleage @dis0rder_0x00 ported several BOFs to COFF format and we made a pull request to the offi….
0
39
0
Completed a massive overhaul to Brute Ratel 2.3, bringing crazy OPSEC enhancements and extensive modularization. Stay tuned for an exciting release. #brc4.
1
10
100
Was having a conversation with a customer exactly about this a few days back. This is why I don't trust any 18-20 year old entrepreneurs. You need experience and a mental mindset cultivated over a period of years to actually run a company and solve problems instead of just.
Handing people a bunch of knowledge on a topic doesn't make up for experience. We often encounter this issue when helping people set up their race car suspension, tune, and other elements of their drag racing program. They end up going fast quickly but miss out on years of.
4
8
69
This. Exactly what I love about @elastic EDR. If you want to make the world a better place, share your research/detections. If you speak about how OSTs are bad, and then do not help anyone, you are just being a hypocrite.
A hill I will always die on. Intrusion detection tools that don't expose their detection logic with alerts are a sure sign that product management is out of touch or has misaligned priorities with SOC goals. The product's goal is to help analysts perform their job effectively.
1
13
88
Next incoming question: "Do we list all dcsync'd passwords for the entire domain and all cleartext credentials harvested/cracked in the report?" 😂.I've seen atleast more than one report containing 2 pages of just cleartext passwords and usernames, because the RedTeamer thought.
Serious question for the collective genius minds of infosec: who’s actually responsible for cleanup after a red team op? Me, mid-exfil, deleting payloads like a janitor with a C2? Or is that someone else’s job? Just tryna do it right before I get yelled at again.
6
2
50
Brute Ratel 2.2 - Rinnegan is now available for download. The more OpSec features will be available only on a private video for customers. Rest of the features/API information is now available publicly. #BRc4.
bruteratel.com
Badger doesn’t care. It takes what it wants!
0
9
42
After a long period of dev, Brute Ratel release 2.2 - Rinnegan will be released today. Crazy shenanigans went into this release. Those who know what Rinnegan means, should know whats coming 🙂. Stay tuned for the upcoming blog post and release video. #BRc4
7
8
106
BRC4 BOF Artillery is now updated with new BOFs such as capturing ntlmv2 hashes, and remote process interaction BOFs etc. and a detailed Readme guide with POCs for usage.
github.com
Contribute to paranoidninja/BRC4-BOF-Artillery development by creating an account on GitHub.
5
23
112
Added Pool party BOF and a few process/memory util BOFs to More BOFs incoming. .
github.com
Contribute to paranoidninja/BRC4-BOF-Artillery development by creating an account on GitHub.
0
15
58
And someone was saying our vetting is so good it can't be leaked. Lol. Everything leaks!.
I can verify the NightHawkC2 leak was legit. It is an older version, so I don't personally think this will be used to abuse companies. It took some work to get it running, which took rewriting a bit. My opinion: Too old and complex for skids to abuse atm.
3
5
34
I have created a common BOF repository for Brute Ratel. This includes open-source ported BOFS such as Kerbeus-BOF, and few of my own. I plan to add a few more by the end of the day. Customers can request additional porting requests in the official discord channel. #BRc4.
2
33
115