Outflank Security Tooling (OST) Releases

Outflank Security Tooling (OST) is dedicated to staying up to date on the latest trends, threats, and techniques. With its innovative cloud delivery platform, OST is designed to maintain a steady development pace, with an average release of one-to-two new tools per quarter as well as regular updates to enhance existing tools. This timeline provides an up-to-date record of our ongoing advancements and includes not only new releases and updates, but also other activities that the research team engages in, such as knowledge sharing sessions that discuss tradecraft, evasion, and other relevant topics.

OST RELEASES

2023

Q1 2023 Update Review

  Release type: Knowledge Sharing • Q1 2023 update review, walkthrough of most important additions of OST updates in Q1 2023  

Schedule a demo to learn more >

New Tool Release: RPC and Registry Tradecraft

 

Tool category: Internal Recon

• New tool release RPC and Registry Tradecraft: collection of scripts related to RPC and Windows Registry trickery

 

Schedule a demo to learn more >

New Tool Release: SideloadTrigger & Updates to Payload Generator, KerberoasAsk

 

Tool category: Privilege Escalation

•  New tool release SideloadTrigger: a BOF used for privesc abusing writeable paths

Updates:

•  Payload Generator now has new loaders and ‘predefined payloads’
•  KerberoasAsk support for pfx files, PasswordSpy

 

Schedule a demo to learn more >

Updates: Various cleanup and smaller bug fixed

 

Release type: Updates

•  Various cleanup and smaller bug fixed

 

Schedule a demo to learn more >

New tool release: Stage1 v2.0.0

 

Tool category: Command & Control

•  New tool release: Stage 1 v2.0.0, a major overhaull of the Stage1 C2 framework

 

 

Schedule a demo to learn more >

Session on latest research ‘The Registry Rundown for Red Teams’

 

Release type: Knowledge Sharing

•   Session on latest research ‘The Registry Rundown for Red Teams’

 

 

Schedule a demo to learn more >

Updates to Payload Generator

 

Release type: Updates

•   Payload Generator now also supports DripMemory & ROP Gadgets for EDR evasion

 

 

Schedule a demo to learn more >

New Tool Release: KernelTool & Updates to KerberosAsk

 

Tool category: Kernel Trickery

•  New tool release KernelTool: EDR blinding by modifying precoss details abusing a vulnerable driver

Updates:

•  KerberosAsk updates allowing for tgtdeleg and S4u

 

Schedule a demo to learn more >

ShovelNG (Lateral Pack) upgraded with new loaders

 

Release type: Updates

•  ShovelNG (Lateral Pack) upgraded with new loaders

 

Schedule a demo to learn more >