@ipurplei
iAccount based inGreece
About this account
- Account based in
- Greece
- Connected via
- Greece Android App
Account-level information from X, not a live location or the device used for a specific post.
Red/Purple Teamer | Blogger | Mod @ https://nitter.cf/t.co/f4RyUGl0zb | https://nitter.cf/t.co/nLrzzAcQw9
Internet
Joined January 2012
- Tweets15.6K
- Following824
- Followers27.3K
- Likes4.3K
If you are looking at cyber security training, I wrote an article to highlight 4 companies to follow/attend their trainings
ADE Skills - Adversarial Detection Engineering Knowledge Base
ADE taxonomy, worked technique files, platform bug patterns, mitigations, and purple-team scoping tooling.
github.com/Adversarial-Detec…
Build guide for Red Teaming home lab. GOAD lab setup in Proxmox and pfSense, Operator/C2, and Redirectors. github.com/pho5nix/Red-Team-…
InjectSetConsole - Performs process code injection by leveraging a Windows named pipe. Unlike traditional techniques, it does not use the:
✅ VirtualAllocEx &
✅ WriteProcessMemory APIs
github.com/TwoSevenOneT/Inje…
notRDP - A Havoc C2 plugin that creates an invisible alternate Windows desktop, streams it to a browser-based viewer, and supports full mouse/keyboard interaction like RDP, but invisible to the target user github.com/dagowda/notRDP
DDE Callback Hijacking - A Process Injection Technique medium.com/@jaytiwari05/dde-…
MemGuard - Zero-Dependency LSASS Memory Shield & EDR Hook Detector github.com/prox0959/MemGuard
LocalStranger - create a driver mapper to map unsigned kernel drivers into kernel space, and a program to elevate the user to NT-AUTHORITY
github.com/nbs32k/LocalStran…
Even more privileged ADCS ESC_CES adhdmurky.github.io/posts/po…
Purple Team Automation - Automated adversary emulation (Caldera) against an AD lab to validate Sigma detection coverage and map results to MITRE ATT&CK github.com/joshuagodwin7929/…
🎙️ Earlier this week, I wrote about the Dump Encoding Library case that was disclosed recently.
💭 Are ransomware groups going to use the WerEnc.dll library to perform the encryption in the future? Possibly.
The full flow of the technique is displayed below:
🖊️ ipurple.team/2026/09/21/dump…
OnTheEdge - a small Windows research PoC written in C for studying credential-related data that may be present in the memory of Microsoft Edge processes while the browser is running. github.com/JssNGC/OnTheEdge
Red Team vs Pentest: Active Directory Attack Workflow stillbigjosh.com/writeup.htm…