Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @EmericNasi
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @EmericNasi
-
Prikvačeni tweet
How to disable Dynamic Code Mitigation Policy (ACG) to be able to inject code and deploy hooks into Microsoft Edge and others https://blog.sevagas.com/?Code-Injection-Disable-Dynamic-Code-Mitigation-ACG …pic.twitter.com/yJsN8Abwl6
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
I was tired of outdated XSS cheat sheets that don't touch on frameworks, html5, filter bypasses and other important stuff, so I made my own. I hope you find it as useful as I do. :) https://netsec.expert/2020/02/01/xss-in-2020.html …
#bugbountytipspic.twitter.com/Mdygq1PI9Z
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
My first blog post! Bypassing AV via in-memory PE execution. I've created a tool to go along with the post and help automate creating undetected PEs, links inside the post
https://blog.dylan.codes/bypassing-av-via/ …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
To people who write to my protonmail address from gmail or corporate account... Thats not how it works!
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
I just released the slides I presented at
#sigsegv2 I still plan to write one or two posts on code injection.https://github.com/sevagas/weaponize_process_injection_windows_SIGSEGv2_2019 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
How to apply WNF code injection technique to any process: https://blog.sevagas.com/?Code-Injection-Exploit-WNF-callback … Here is an example with code injection into Firefoxpic.twitter.com/ghOePEDEug
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
#SigSegv2 was a great event! Many thanks to the staff. I enjoyed giving a talk on code injection and meeting everyone :)pic.twitter.com/NZ3OaEmEei
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
Et voilà même avec les protections d’
#Edge, à#SigSegv2@EmericNasi montre comment il a réussi en contournant l’interdiction d’injection de code dynamique par un drapeau caché de déboggage...#0day
RTFM @sigsegv_eventpic.twitter.com/xiuSjr3Lwr
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Begining of
#SigSegV2 conf. Happy to be here. N'hésitez pas à dm si vous voulez discuter :)Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
"... cloud communication was encrypted using XOR cipher with the key embedded in the products."
https://www.bleepingcomputer.com/news/security/fortiguard-used-hardcoded-key-xor-to-encrypt-communications/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
Everyone knows Driver Signature Enforcement....
The problem is: Attackers can load any signed driver and abuse its functionality. For example, the process hacker driver can be abused to dump the memory of lsass.exe.
Read about it in my blog
https://repnz.github.io/posts/abusing-signed-drivers/ …pic.twitter.com/FjQ5fC4vdE
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Honored to be speaking at SIGSEGv 2. About weaponizing process injection on Windows.https://twitter.com/sigsegv_event/status/1191310258200809472 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
Our new
@OutflankNL blog post on abusing the SYLK file format. This 1980s file type can host macros in modern versions of MS Office / Excel without hitting protected mode. Post includes recommendations for mitigation (note: active abuse in the wild).https://outflank.nl/blog/2019/10/30/abusing-the-sylk-file-format/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
Just release part 2 of code injection series. How to bypass mechanisms protecting against invalid remote start address. As an example, I inject and deploy hooks in Firefox. https://blog.sevagas.com/?Bypass-start-address-protection …pic.twitter.com/wNAKeYGgWK
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
I hear you like lolbins... odbcconf.exe /a {REGSVR c:\test\test.dll" it loads the DLL and calls DllRegisterServer :)
#LOLBINPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
Did you know that Windows smart screen ignores .BAT files that contain _only_ certain keywords like 'calc' despite coming from the internet? Did you also know that in CMD if you execute 'calc' it will first look for an executable in the same dir with the name 'calc'? Result:pic.twitter.com/tRJtALZXuP
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Petit Sio proslijedio/la je Tweet
Just got done researching how access token manipulation can be leveraged to impersonate SYSTEM from local admin! I dig into alternatives to winlogon.exe that can also be leveraged to impersonate SYSTEM. Detections for access token manipulation included
https://posts.specterops.io/understanding-and-defending-against-access-token-theft-finding-alternatives-to-winlogon-exe-80696c8a73b …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Just released macro_pack 1.7 with new support of IQY, UAC bypass, and MS Access macro. Thank you
@wh1tenoise2 for the pull request :)https://github.com/sevagas/macro_pack/releases …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Just bought my ticket for
@offensive_con ! It was great last year. This time I dont think submitting a talk. I want to enjoy as simple attendee :)Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Just release part 2 of code injection series. How to bypass mechanisms protecting against invalid remote start address. As an example, I inject and deploy hooks in Firefox. https://blog.sevagas.com/?Bypass-start-address-protection …pic.twitter.com/wNAKeYGgWK
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.