peterwintrsmith Profile Banner
Peter Winter-Smith Profile
Peter Winter-Smith

@peterwintrsmith

Followers
6K
Following
8K
Media
205
Statuses
2K

Security researcher & implant developer @mdseclabs; developing SAST @wsastsupport; malware, code analysis, appsec, cryptography. Trying to follow Christ.

London, UK
Joined August 2010
Don't wanna be here? Send us removal request.
@peterwintrsmith
Peter Winter-Smith
2 years
Today I am pleased to announce the release of a code analyser Iโ€™ve been working in my free time - wSAST ( https://t.co/0B4bbvWzbV) wSAST aims to make code analysis easier for application security consultants by providing tools to graph relationships, find paths between functions,
12
162
436
@peterwintrsmith
Peter Winter-Smith
1 month
Nice work @saab_sec ๐Ÿ”ฅ
@MDSecLabs
MDSec
1 month
Interested in an alternative approach to sleep masking for you malware? Check-out our latest blog post "Function Peekaboo: Crafting self masking functions using LLVM" by @saab_sec https://t.co/CTaydmHZi5
1
1
5
@premium
Premium
4 months
Why guess when you can know?
0
459
6K
@peterwintrsmith
Peter Winter-Smith
2 months
Amazing work from the team!
@domchell
Dominic Chell ๐Ÿ‘ป
2 months
This release is probably going to be one of our biggest and most impactful! Kudos to the team @peterwintrsmith @modexpblog @s4ntiago_p @GigelV41464 @saab_sec ๐Ÿ™Œ
1
0
5
@MDSecLabs
MDSec
2 months
In our latest blog post, we detail how you can leverage the Nighthawk API to streamline your Red Team Ops.... Automating Operations with Nighthawk - https://t.co/9hKMT9HM8A
0
18
66
@peterwintrsmith
Peter Winter-Smith
2 months
If itโ€™s true that @irsdl is looking for a new full-time position I recommend anyone wanting to hire an elite-level web/.NET researcher or consultant reach out to him immediately as he wonโ€™t be looking for long!
@SinSinology
SinSinology
2 months
NEED YOUR HELP! My Friend/Teacher Soroush (@irsdl) Is looking for a new company to join, you know him as the .NET-God, the guy who has popped exchange, sharepoint, has maintained ysoserial_.net for years, contributed to the exploitation scene numerous times, taught all of you
1
1
4
@elijahliststeve
Steve Shultz
1 month
She waited two hours for a word. God told her she already had it. Listen to this lesson about hearing God. It could change your life.
0
42
445
@irsdl
Soroush Dalili
4 months
I have launched YSoNet ( https://t.co/9BofGcFaWh) and added #SharePoint CVE-2025-49704 payload generator to it as the first thing. Here is how this can work: Running command: ``` ysonet.exe -p sharepoint --cve=CVE-2025-49704 -var 1 -c "calc" ``` Running C# code: ``` ysonet.exe
Tweet card summary image
github.com
Deserialization payload generator for a variety of .NET formatters - irsdl/ysonet
4
125
475
@peterwintrsmith
Peter Winter-Smith
5 months
Taha always working on something new ๐Ÿ’ช๐Ÿป๐Ÿ”ฅ
@tahadraidia
Taha Draidia
5 months
Iโ€™ve released ๐——๐—”๐—•๐—จ, a C library (with CLI and Python bindings) to unpack .NET assemblies from an ๐—ฎ๐˜€๐˜€๐—ฒ๐—บ๐—ฏ๐—น๐—ถ๐—ฒ๐˜€.๐—ฏ๐—น๐—ผ๐—ฏ file. https://t.co/hy13RdUhof #xamarin #mono #dotnet #assemblies #reverseengineer
1
0
4
@domchell
Dominic Chell ๐Ÿ‘ป
7 months
Only a couple more weeks left on the early bird discount for our @BlackHatEvents training with myself, @_batsec_ and @__invictus_ - Lots of fresh new material for 2025. This course isn't just about tradecraft, the focus is on building capabilities that will help red teams succeed
0
7
44
@domchell
Dominic Chell ๐Ÿ‘ป
8 months
Kept this one under wraps for a while, but happy to finally say @saab_sec and @GigelV41464 are joining @peterwintrsmith, @modexpblog, @_batsec_ and @s4ntiago_p in the @MDSecLabs R&D team next week... big things are coming ๐Ÿฅณ
5
7
61
@MDSecLabs
MDSec
8 months
Stumbled on ServiceNow during a red team? If not you might want to check our latest post on Red Teaming with ServiceNow by @__invictus_ https://t.co/pkCVT851X0
8
100
322
@domchell
Dominic Chell ๐Ÿ‘ป
10 months
@_RastaMouse @__invictus_ ๐Ÿ˜… I made it public anyway,
1
2
6
@peterwintrsmith
Peter Winter-Smith
10 months
What if DeepSeek is just ChatGPT o1 rebranded and this entire thing is just a move to make US tech stocks fall so the Chinese can buy up at bargain prices
2
0
10
@MDSecLabs
MDSec
11 months
January 27th 15:30 GMT. Join us for a live webinar showcasing some of Nighthawk's key features and evasive capabilities. Orgs can apply to register here: https://t.co/lIz4Jhp3KV
0
5
29
@eliran_nissan
Eliran Nissan
1 year
I am excited to share with you my latest research - "DCOM Upload & Execute" An advanced lateral movement technique to upload and execute custom payloads on remote targets Forget about PSEXEC and dive in! https://t.co/ruQJlXgLqV https://t.co/Yp25P6pZvH
Tweet card summary image
github.com
DCOM Lateral movement POC abusing the IMsiServer interface - uploads and executes a payload remotely - GitHub - deepinstinct/DCOMUploadExec: DCOM Lateral movement POC abusing the IMsiServer interf...
12
247
599
@peterwintrsmith
Peter Winter-Smith
1 year
Lots of stuff squeezed into this release, hopefully worth the wait!
@domchell
Dominic Chell ๐Ÿ‘ป
1 year
Some awesome work from @peterwintrsmith @modexpblog and @s4ntiago_p for this latest release ๐Ÿ”ฅ๐Ÿ”ฅ๐Ÿ”ฅ
1
1
28
@MDSecLabs
MDSec
1 year
Ready for some Thanks Giving reading? Nighthawk 0.3.3 Evanesco is now live for customers https://t.co/ySi9buZfWe #happythanksgiving
5
29
79
@peterwintrsmith
Peter Winter-Smith
1 year
Code name: Invisiwiener ๐ŸŒญ๐Ÿซฅ
@domchell
Dominic Chell ๐Ÿ‘ป
1 year
Here's a sneak peak of a new feature we have coming up in the next #Nighthawk release https://t.co/JrNk0kph5b @peterwintrsmith #goodbyeyara
1
0
19
@wsastsupport
wSAST Support
1 year
Our activation server had a problem updating which may have made activation of wSAST fail - if you encountered this please try again it should all be fixed now!
0
1
1
@peterwintrsmith
Peter Winter-Smith
1 year
Having a great time and enjoying the talks at Redtreat ๐Ÿ˜Ž
0
1
34
@peterwintrsmith
Peter Winter-Smith
1 year
My @IOActive hack::soho talk on wSAST is finally online! If static code analysis interests you then you may enjoy hearing a little about the journey, trials and tribulations of building a SAST engine from scratch!
2
23
66