Dwaine Anderson

@Ando_13

-7.314397, 72.417572
Vrijeme pridruživanja: lipanj 2009.

Tweetovi

Blokirali ste korisnika/cu @Ando_13

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @Ando_13

  1. proslijedio/la je Tweet
    2. velj
    Poništi
  2. proslijedio/la je Tweet
    31. sij

    After showing a tool which remotely enumerates&destroys an cable if connected to a blue team controlled WiFi (for Internet upstream), made a clear point that this is not how the cable should be deployed. So I ported the tool to NMAP scanner 1/2

    Prikaži ovu nit
    Poništi
  3. proslijedio/la je Tweet
    29. sij

    GitHub - Xh4H/Satellian-CVE-2020-7980: PoC script that shows RCE vulnerability over Intellian Satellite controller -

    Poništi
  4. proslijedio/la je Tweet
    27. sij

    Just pushed a somewhat big update to SILENTTRINITY with a lot of forward compatibility fixes for Python 3.8 and made the PowerShell "stageless" stager public. Plus more modules and bug fixes

    Poništi
  5. proslijedio/la je Tweet
    25. sij

    Update the list of current USB cables with implants for keystroke injection attacks & more

    Prikaži ovu nit
    Poništi
  6. proslijedio/la je Tweet
    22. sij

    The .NET framework includes rich offensive capabilities that adversaries aren’t yet using, but we’ve been thinking about detection anyway.

    Poništi
  7. proslijedio/la je Tweet
    23. sij

    PoC (Denial-of-Service) for CVE-2020-0609 & CVE-2020-0610 Please use for research and educational purpose only.

    Poništi
  8. proslijedio/la je Tweet

    Three US firefighters, who had flown to Australia to assist with bushfire relief efforts, have died.

    Prikaži ovu nit
    Poništi
  9. proslijedio/la je Tweet
    22. sij

    Since this doesn't seem to be a thing, I've created a rudimentary python script that does it. Seems useful. Note: For now it requires both Sysinternals ListDLLs and Microsoft dumpbin.exe

    Prikaži ovu nit
    Poništi
  10. proslijedio/la je Tweet
    21. sij

    Hey Defender friends. Turns out that removing those services with Unicode/non-printable characters is pretty hard, so I wrote you a tool to help with that. I'll be releasing the offensive PoC later this week or early next week.

    Poništi
  11. proslijedio/la je Tweet
    21. sij

    Just released Satellite, a payload hosting and proxy software for red team operations. In the blog post, I discuss the feature set of Satellite as well as why an operator would choose it over Apache or Nginx.

    Prikaži ovu nit
    Poništi
  12. proslijedio/la je Tweet
    17. sij

    It’s the weekend and a good time to drop an IE zero day 👍 ADV200001 | Microsoft Guidance on Scripting Engine Memory Corruption Vulnerability

    Poništi
  13. proslijedio/la je Tweet
    17. sij

    I just published a video explaining the details of CVE-2020-0601 aka Curveball: The Microsoft CryptoAPI vulnerability that was reported by the NSA.

    Poništi
  14. proslijedio/la je Tweet
    17. sij

    Want to make service removal really fun? Create a service with a unicode name. The service will run but won't show in sc.exe, services.msc, or taskmgr.exe and will sometimes cause a critical error while trying to find it with PowerShell/WMI. Unicode wins again.🤦‍♂️

    Prikaži ovu nit
    Poništi
  15. proslijedio/la je Tweet
    18. sij

    My first blog post on browser exploitation for . I'll look at how to pop xcalc on current Linux Spidermonkey given a relative (oob) rw bug. Spidermonkey is the JavaScript Engine in Firefox. Exploit code also supplied.

    Poništi
  16. proslijedio/la je Tweet

    New IRAP report provides Australian public sector the ability to leverage additional services at PROTECTED level.

    Earth at night via satellite
    Poništi
  17. proslijedio/la je Tweet
    14. sij

    Support added to crack Citrix NetScaler (SHA512) hashes with hashcat 6.0.0:

    Prikaži ovu nit
    Poništi
  18. proslijedio/la je Tweet
    18. sij

    ": a Stealthy Lateral Movement Strategy" is now available to read Read if interested to see a new practical lateral movement Demo (TDS (MS SQL) & FTP): Prototype will be released soon

    Prikaži ovu nit
    Poništi
  19. proslijedio/la je Tweet
    17. sij

    Rumble in the pipe - a nice writeup about a vuln in by our teammate

    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·