Tw1sm Profile Banner
Matt Creel Profile
Matt Creel

@Tw1sm

Followers
1K
Following
1K
Media
29
Statuses
248

Adversary Simulation @ SpecterOps | OSCP | CRTO | https://t.co/LfiIqD4M4l

Washington, DC
Joined April 2018
Don't wanna be here? Send us removal request.
@Tw1sm
Matt Creel
3 months
Nothing new, but formalized some operator notes on Entra ID/Azure tradecraft I've found to be exceptionally useful on ops. Overlooked this myself for quite some time and thought others in the same boat might find it worth a read! šŸ“–.
2
45
113
@Tw1sm
Matt Creel
10 days
Mythic support is not agent specific so any Mythic agent you run the ldapsearch bof from should be compatible with this.
0
0
2
@Tw1sm
Matt Creel
10 days
Couple of new and not-so-new commits to bofhound added support for additional parsers.- Mythic logs (connecting to a live Mythic server).- OutflankC2 logs.- Havoc logs. And support to directly upload output to BHCE for you.
2
8
35
@Tw1sm
Matt Creel
23 days
RT @RedByte1337: GraphSpy just got scarily powerful!šŸ”„. šŸ¤–Automated device code entry.šŸ–„ļøPost-comprimise automation (device registration, WinH….
0
31
0
@Tw1sm
Matt Creel
24 days
RT @_xpn_: So excited to see this one come out! Awesome post from @n0pe_sled on why IdP's should still be scrutinized! (tl;dr: OneLogin le….
0
46
0
@Tw1sm
Matt Creel
1 month
RT @SpecterOps: Wondering how you can maintain persistence while staying under the radar?. Antero Guy just dropped his guide on COM hijacki….
0
70
0
@Tw1sm
Matt Creel
1 month
Tweet media one
0
2
0
@Tw1sm
Matt Creel
1 month
RT @_logangoins: I'm super happy to announce an operationally weaponized version of @YuG0rd's BadSuccessor in .NET format! With a minimum o….
0
168
0
@Tw1sm
Matt Creel
2 months
RT @podalirius_: šŸš€ Launching TheManticoreProject – a long-term offensive & defensive security ecosystem in Go!. First release (the core lib….
0
31
0
@Tw1sm
Matt Creel
2 months
RT @infosecnoodle: Short post on an alternative method for obtaining Microsoft Entra refresh tokens via Beacon. Proof of concept BOF is ava….
0
65
0
@Tw1sm
Matt Creel
2 months
RT @its_a_feature_: Many in the Mythic Community have asked for a way to standardize BOF/.NET execution within Mythic Agents. Today I'm rel….
0
35
0
@Tw1sm
Matt Creel
2 months
RT @binitamshah: cuddlephish : Weaponized multi-user browser-in-the-middle (BitM) for penetration testers : . Detai….
0
6
0
@Tw1sm
Matt Creel
2 months
RT @RedByte1337: šŸ“§ GraphSpy 1.5.0 is out now and brings a brand new Outlook Graph module!. āœ…Read emails in any folder.āœ…Send HTML-formatted….
0
24
0
@Tw1sm
Matt Creel
3 months
RT @AndrewOliveau: RemoteMonologue - A Windows credential harvesting attack that leverages the Interactive User RunAs key and coerces NTLM….
0
178
0
@Tw1sm
Matt Creel
3 months
RT @SpecterOps: Accurately see what permissions are exploitable in your AD environment. @_Mayyhem discusses a recent update in BloodHound t….
0
28
0
@Tw1sm
Matt Creel
4 months
RT @unsigned_sh0rt: Along with this blog, I published an update to SCCMHunter that enables credential recovery all from the admin module. N….
0
55
0
@Tw1sm
Matt Creel
4 months
RT @freefirex2: Would you like to transition from local user to cloud access w/o having to dump browser cookies or hope SSO via kerberos is….
0
51
0
@Tw1sm
Matt Creel
5 months
RT @pentest_swissky: BOFHound: AD CS Integration by Matt Creel (@Tw1sm)
0
6
0
@Tw1sm
Matt Creel
5 months
RT @SpecterOps: SlackPirate sets sail again! šŸ“ā€ā˜ ļø. In his latest blog post, Dan Mayer intros his new PR to SlackPirate that lets you loot S….
0
17
0
@Tw1sm
Matt Creel
6 months
RT @_xpn_: Achievement unlocked, my first blog with SoecterOps šŸ¤— This post looks at ADFS OAuth2 support, Device Registration, Enterprise PR….
0
118
0