<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"><url><loc>https://knifecoat.com/Tools/Java</loc></url><url><loc>https://knifecoat.com/Resources/CN</loc></url><url><loc>https://knifecoat.com/Home</loc></url><url><loc>https://knifecoat.com/Resources/IL</loc></url><url><loc>https://knifecoat.com/Tools/CSharp</loc></url><url><loc>https://knifecoat.com/Tools/Windows</loc></url><url><loc>https://knifecoat.com/Posts/ASAR+Format+Spec</loc></url><url><loc>https://knifecoat.com/Posts/KDNET+on+Windows+11+over+Hyper-V</loc></url><url><loc>https://knifecoat.com/Resources/JP</loc></url><url><loc>https://knifecoat.com/Resources/JustReading/SMBGhost+pre-auth+RCE+abusing+Direct+Memory+Access+structs</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/WAM+BAM+-+Recovering+Web+Tokens+From+Office</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Same+Cloak%2C+More+Dagger</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/RPC+CFG+Bypass</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Rewind</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/NRBF+(BinaryFormatter)+decoder</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Hexacon+Quarkslab+Nvidia+fuzzing</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Hexacon+P0+Hacking+the+Cloud+with+SAML</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Hexacon+Akamai+RPC+%26+RPC+Toolkit</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Hexacon+Airbus+NetBackup</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/GPT3+Bot+Injection</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Get+LastPass+creds+(extension+memory+%26+chromium+debugging)</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Cobalt+Strike+RCE+(CVE-2022-42948)</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Cobalt+Strike+RCE+(CVE-2022-39197)</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/CLFS+0day+analysis+CVE-2022-37969</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/A+New+Attack+Surface+on+MS+Exchange+Part+4</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/WWHF+-+Statikk+Shiv%2C+Leveraging+Electron+Applications+For+Post-Exploitation</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Kix+scripts</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/5+bugs+in+WatchGuard+FW's</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/SharedMemUtils</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/CVE-2022-34718+Video+POC</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/CVE-2022-38029+ALPC+LPE</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Chrome+exploitation%2C+part+1</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Ring+0+using+VBA+Macro</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/AutodialDLL+for+persist+and+lateral+movement</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Pre-authenticated+Remote+Code+Execution+in+VMWare+NSX+Manager</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Oct/Hexacon+Recordings+(Partial)</loc></url><url><loc>https://knifecoat.com/Resources/JustReading/TelemetrySourcerer</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/TyphoonCon+CFT+CFP+(15th+March+2023)</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Reverse+engineering+integrity+checks+in+Black+Ops+3</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/POC2022+-+_simo36+Attacking+Apple's+Neural+Engine</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/POC2022+-+Starlabs%2C+How+to+backup+and+pwn+using+Time+Machine</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/POC2022+-+Hperalta89%2C+Debug+and+exploit+Electron+apps</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/POC2022+-+cq674350529%2C+MikroTik+RouterOS+Security%2C+The+Forgotten+IPC+Message</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/IORING+object+for+arbitrary+RW+on+Win11+22H2%2B</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Introduction+to+RK's+(CyberarkLabs)</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Hacking+the+PS4+PS5+through+the+PS2+Emulator+-+Part+1</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Following+APT29+by+Taking+a+Deeper+Look+at+Windows+Credential+Roaming</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Flare+On+9%2C+Elastic+Solutions</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Exchange+CVE-2022-41040+%26+CVE-2022-41082</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Ekoparty%2C+Microsoft+Teams+RCE</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Ekoparty+2022+BlueFrost+exploit+challenges</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/CVE-2022-41091+ZIP+MOTW+Bypass</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/CVE-2022-35803+EOP+in+CLFS</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/CVE-2021-1732%2C+win32k+window+object+type+confusion+leading+to+an+OOB</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/BHUSA2022+-+AdvSim+Abusing+SCM+Systems</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/ADCS+-+Certificates+and+Pwnage+and+Patches%2C+Oh+My!</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/RU+0day+broker%2C+1.5m+Signal+RCE</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/Windows+Defender+ASR+RE</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/FORCEDENTRY+(CVE-2021-30860)+xpdf</loc></url><url><loc>https://knifecoat.com/Posts/Arbitrary+Kernel+RW+using+IORING's</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2022+-+Nov/NightHawk+-+ProofPoint+Analysis</loc></url><url><loc>https://knifecoat.com/Posts/Boyer-Moore+Search+Optimization+ft.+ChatGPT</loc></url><url><loc>https://knifecoat.com/Posts/CVE-2022-21882%2C+Paint+By+Numbers</loc></url><url><loc>https://knifecoat.com/Resources/Twitter/2023+-+April/Windows+Kernel+Internals</loc></url><url><loc>https://knifecoat.com/Posts/Writing+Small+.NET+PE's</loc></url><url><loc>https://knifecoat.com/Posts/Feeling+Unsafe%2C+going+past+managed+.NET</loc></url><url><loc>https://knifecoat.com/Posts/ObjectDataProvider+Deserialization+using+a+Xaml+Formatter</loc></url><url><loc>https://knifecoat.com/Posts/Speec+No+Evil</loc></url><url><loc>https://knifecoat.com/Posts/Mo+Money+Mo+Madness%2C+with+Frida</loc></url><url><loc>https://knifecoat.com/Posts/OWASP+Mobile+Application+Security+(MAS)+p0wn</loc></url><url><loc>https://knifecoat.com/Posts/Coverage+guided+fuzzing+for+native+Android+libraries+(Frida+%26+Radamsa)</loc></url><url><loc>https://knifecoat.com/Posts/Installing+Burp+Suite+CA+on+Android+14</loc></url><url><loc>https://knifecoat.com/Posts/Tell+you+phone+to+link+me+at+the+coffee+shop</loc></url><url><loc>https://knifecoat.com/Posts/Fuzzing+Redux%2C+leveraging+AFL%2B%2B+Frida-Mode+on+Android+native+libraries</loc></url><url><loc>https://knifecoat.com/Posts/Solid+Block%2C+adventures+with+Tensorflow+and+Reinforcement+Learning+(RL)</loc></url><url><loc>https://knifecoat.com/Posts/Direct+Kernel+Object+Manipulation+(DKOM)+attacks+on+ETW+Providers</loc></url><url><loc>https://knifecoat.com/Posts/Reproducing+WhatsApp+CVE-2019-11932+with+AFL+%26+Frida</loc></url><url><loc>https://knifecoat.com/Posts/Runtime+Android+Object+Instrumentation</loc></url><url><loc>https://knifecoat.com/Posts/Scalable+research+tooling+for+agent+systems</loc></url></urlset>